TROYANOSYVIRUS
Active ThreatMEDIUM

34.91.248.132

Country of Origin🇳🇱 Netherlands
First Detection4/10/2026
Last Activity4/24/2026
ISPGoogle LLC
🎯
129
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇳🇱 Netherlands
City
Groningen
ASN
AS396982
ISP
Google LLC

Attack Types

ssh_telnet_honeypot

Attacked Ports

22

Associated Malware

Attempted Credentials

🔐admin/admin
3x
🔐admin/kjashd123sadhj123d1SS
3x
🔐root/kjashd123sadhj123d1SS
3x
🔐root/root
2x
🔐pi/pi
2x
🔐ubuntu/ubuntu
2x
🔐deploy/deploy
2x
🔐ubnt/ubnt
1x
🔐kali/kali
1x
🔐root/1
1x
🔐root/123456
1x
🔐root/1qaz@WSX
1x
🔐test/test
1x

Executed Commands

$uname -a1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22
Hostnames
132.248.91.34.bc.googleusercontent.com
CPEs
cpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:9.6p1

Risk Assessment

55
/100
LowMediumHighCritical