TROYANOSYVIRUS
Active ThreatLOW

193.37.152.180

Country of Origin🇫🇷 France
First Detection5/4/2026
Last Activity5/4/2026
ISPContabo GmbH
🎯
438
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇫🇷 France
City
Lauterbourg
ASN
AS51167
ISP
Contabo GmbH

Attack Types

ssh_telnet_honeypot

Attacked Ports

23

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2122538011044346558799399520822083208620873306
Vulnerabilities
CVE-2018-10549CVE-2016-9934CVE-2016-7129CVE-2023-38408CVE-2016-9138CVE-2018-19520CVE-2017-7890CVE-2019-6977CVE-2018-20685CVE-2016-10161CVE-2020-14145CVE-2024-3566CVE-2019-9641CVE-2016-10397CVE-2022-4900CVE-2023-48795CVE-2016-7411CVE-2017-9226CVE-2017-7963CVE-2016-9137
Hostnames
webmail.medmarcloud.comcpanel.medmarcloud.commedmarcloud.comcpcontacts.medmarcloud.comwebdisk.medmarcloud.commail.medmarcloud.comvmi78018.contabo.hostcpcalendars.medmarcloud.comwww.medmarcloud.com
CPEs
cpe:/a:openbsd:openssh:7.4cpe:/a:exim:exim:4.96.2cpe:/a:oracle:mysqlcpe:/a:php:php:5.5.38cpe:/a:cpanel:whmcpe:/a:pureftpd:pure-ftpdcpe:/a:apache:http_server

Risk Assessment

35
/100
LowMediumHighCritical