TROYANOSYVIRUS
Active ThreatMEDIUM

213.202.222.56

Country of Origin🇩🇪 Germany
First Detection4/2/2026
Last Activity4/9/2026
ISPWIIT AG
🎯
1,701
Total Attacks
🔌
4
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇩🇪 Germany
City
Nordhorn
ASN
AS24961
ISP
WIIT AG

Attack Types

tcp_trap

Attacked Ports

5902590359075908

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2212344327017
Vulnerabilities
CVE-2025-69419CVE-2023-5678CVE-2009-3765CVE-2025-3084CVE-2009-3766CVE-2022-2068CVE-2023-0217CVE-2022-3602CVE-2024-0727CVE-2025-69418CVE-2022-1292CVE-2026-22796CVE-2025-3085CVE-2025-15467CVE-2022-1473CVE-2023-0466CVE-2022-3996CVE-2023-1255CVE-2022-3358CVE-2025-6707
Hostnames
srv30534.dus7.dedi.server-hosting.expert
CPEs
cpe:/o:canonical:ubuntu_linuxcpe:/a:google:web_servercpe:/a:mongodb:mongodb:6.0.19cpe:/a:openbsd:openssh:8.9p1cpe:/a:openssl:openssl:3.0.2cpe:/a:ntp:ntp:3

Risk Assessment

50
/100
LowMediumHighCritical