TROYANOSYVIRUS
Active ThreatLOW

189.203.203.66

Country of Origin🇲🇽 Mexico
First Detection1/11/2026
Last Activity4/29/2026
ISPTOTAL PLAY TELECOMUNICACIONES SA DE CV
🎯
27
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇲🇽 Mexico
City
Mexico City
ASN
AS22884
ISP
TOTAL PLAY TELECOMUNICACIONES SA DE CV

Attack Types

malware_capture

Attacked Ports

445

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2123801024102510281050222233068443888750000
Vulnerabilities
CVE-2017-9788CVE-2023-31122CVE-2021-34798CVE-2012-0031CVE-2022-29404CVE-2022-28614CVE-2013-0942CVE-2012-2687CVE-2022-31813CVE-2014-0098CVE-2025-58098CVE-2022-22721CVE-2018-1301CVE-2012-0053CVE-2022-22719CVE-2021-32791CVE-2013-4365CVE-2013-2765CVE-2017-3169CVE-2006-20001
Hostnames
fixed-189-203-203-66.totalplay.net
CPEs
cpe:/o:canonical:ubuntu_linuxcpe:/a:apache:http_server:2.2.20cpe:/a:mysql:mysql:5.1.58-1ubuntu1-log

Risk Assessment

25
/100
LowMediumHighCritical