TROYANOSYVIRUS
Active ThreatHIGH

220.154.133.166

Country of Origin🇨🇳 China
First Detection12/30/2025
Last Activity4/25/2026
ISPCHINANET Nanjing Jishan IDC network
🎯
100
Total Attacks
🔌
4
Ports
📡
2
Attack Types
🦠
2
Malware

Geolocation

Country
🇨🇳 China
City
Unknown
ASN
AS134756
ISP
CHINANET Nanjing Jishan IDC network

Attack Types

ssh_telnet_honeypot
tcp_trap

Attacked Ports

222200222222222

Associated Malware

Attempted Credentials

🔐root/mysql
1x
🔐root/nginx
1x
🔐root/linux
1x
🔐root/centos
1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22

Risk Assessment

60
/100
LowMediumHighCritical