TROYANOSYVIRUS
Active ThreatLOW

211.238.12.208

Country of Origin🇰🇷 South Korea
First Detection3/1/2026
Last Activity3/1/2026
ISPHostway IDC
🎯
18
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇰🇷 South Korea
City
Unknown
ASN
AS9952
ISP
Hostway IDC

Attack Types

ssh_telnet_honeypot

Attacked Ports

22

Associated Malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2280
Vulnerabilities
CVE-2016-10708CVE-2023-51767CVE-2010-4755CVE-2023-48795CVE-2016-0777CVE-2016-10012CVE-2021-23017CVE-2018-16843CVE-2010-5107CVE-2007-2768CVE-2019-6111CVE-2010-4478CVE-2014-1692CVE-2023-38408CVE-2008-3844CVE-2021-3618CVE-2019-20372CVE-2019-9516CVE-2016-10010CVE-2015-6564
CPEs
cpe:/a:f5:nginx:1.12.2cpe:/a:openbsd:openssh:5.3

Risk Assessment

25
/100
LowMediumHighCritical