TROYANOSYVIRUS
Active ThreatLOW

194.165.25.139

Country of Origin🇨🇾 CY
First Detection4/2/2026
Last Activity4/2/2026
ISPSinum Currus Ltd
🎯
8
Total Attacks
🔌
3
Ports
📡
2
Attack Types
🦠
0
Malware

Geolocation

Country
🇨🇾 CY
City
Unknown
ASN
AS5531
ISP
Sinum Currus Ltd

Attack Types

malware_capture
tcp_trap

Attacked Ports

445143365533

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2280111443
Vulnerabilities
CVE-2025-32728CVE-2008-3844CVE-2023-48795CVE-2023-44487CVE-2021-41617CVE-2025-26465CVE-2007-2768CVE-2016-20012CVE-2024-6387CVE-2021-3618CVE-2025-23419CVE-2023-38408CVE-2023-51385CVE-2023-51767CVE-2021-36368
Hostnames
netbox.teztour.comnoc.teztour.comvpn-139.msk.tez-tour.com
CPEs
cpe:/a:openbsd:openssh:8.7cpe:/a:f5:nginx:1.20.1

Risk Assessment

25
/100
LowMediumHighCritical