TROYANOSYVIRUS
Active ThreatMEDIUM

190.123.65.197

Country of Origin🇧🇷 Brazil
First Detection4/13/2026
Last Activity4/13/2026
ISPGERENCIA TELECOMUNICACOES LTDA - ME
🎯
1,158
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇧🇷 Brazil
City
Betim
ASN
AS271344
ISP
GERENCIA TELECOMUNICACOES LTDA - ME

Attack Types

ssh_telnet_honeypot

Attacked Ports

22

Associated Malware

Attempted Credentials

🔐root/112233
2x
🔐root/letmein
2x
🔐root/q1w2e3
2x
🔐root/Abc12345
2x
🔐root/a1s2d3
2x
🔐root/12345679
2x
🔐root/@#$%^&*!()
2x
🔐root/p@ssw0rd
2x
🔐root/raspberry
2x
🔐root/root
2x
🔐root/qwer1234
2x
🔐root/zKagent@2025
2x
🔐root/Lasere4426
2x
🔐dixi/09N1RCa1Hs31
2x
🔐root/12345x
2x

Executed Commands

$echo 'dGVzdA==' | base64 -d 2>/dev/null2x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22804438080
Hostnames
velocidade.bhznet.com.brvelocidade.bhzfibra.com.br
CPEs
cpe:/a:apache:http_servercpe:/a:openbsd:openssh:8.2p1cpe:/o:canonical:ubuntu_linux

Risk Assessment

45
/100
LowMediumHighCritical