TROYANOSYVIRUS
Active ThreatLOW

198.20.106.173

Country of Origin🇳🇱 Netherlands
First Detection2/27/2026
Last Activity2/28/2026
ISPInternap Holding LLC
🎯
28
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇳🇱 Netherlands
City
Amsterdam
ASN
AS32475
ISP
Internap Holding LLC

Attack Types

ssh_telnet_honeypot

Attacked Ports

22

Associated Malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2280443
Vulnerabilities
CVE-2025-23419CVE-2023-44487
Hostnames
www.yakidi.orgyakidi.orgsh5-7980.ich-5.com
CPEs
cpe:/o:linux:linux_kernelcpe:/a:f5:nginx:1.24.0cpe:/a:openbsd:openssh:9.6p1cpe:/o:canonical:ubuntu_linux

Risk Assessment

30
/100
LowMediumHighCritical