TROYANOSYVIRUS
Active ThreatLOW

221.236.21.55

Country of Origin🇨🇳 China
First Detection1/15/2026
Last Activity4/14/2026
ISPCHINANET SiChuan Telecom Internet Data Center
🎯
49
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇨🇳 China
City
Unknown
ASN
AS38283
ISP
CHINANET SiChuan Telecom Internet Data Center

Attack Types

redis_honeypot

Attacked Ports

6379

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
188356728000800880808081808992009876
Vulnerabilities
CVE-2023-44487CVE-2025-23419CVE-2025-37731CVE-2025-68384CVE-2024-6763CVE-2024-13009CVE-2024-52980CVE-2025-68390CVE-2024-8184CVE-2025-37727CVE-2025-11143CVE-2025-5115
Hostnames
55.21.236.221.broad.cd.sc.dynamic.163data.com.cn
CPEs
cpe:/a:apache:rocketmq:5.3.2cpe:/a:oracle:jrecpe:/a:nodejs:node.jscpe:/o:canonical:ubuntu_linuxcpe:/o:linux:linux_kernelcpe:/a:eclipse:jetty:9.4.54cpe:/a:vmware:rabbitmq:4.2.2cpe:/a:elastic:elasticsearch:7.17.29cpe:/a:f5:nginx:1.24.0

Risk Assessment

25
/100
LowMediumHighCritical