TROYANOSYVIRUS
Active ThreatLOW

42.98.214.195

Country of Origin🇭🇰 Hong Kong
First Detection5/5/2026
Last Activity5/5/2026
ISPHKT Limited
🎯
24
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇭🇰 Hong Kong
City
Ho Man Tin
ASN
AS4760
ISP
HKT Limited

Attack Types

ssh_telnet_honeypot

Attacked Ports

23

Associated Malware

Attempted Credentials

🔐root/aquario
1x
🔐root/7ujMko0vizxv
1x
🔐admin/1111111
1x
🔐admin/pass
1x
🔐root/admin
1x

Executed Commands

$shell2x
$system2x
$q2x
$cd /dev/shm; cat .s || cp /bin/echo .s; /bin/busybox ERNOD1x
$cat /proc/mounts; /bin/busybox ERNOD1x
$dd bs=52 count=1 if=.s || cat .s || while read i; do echo $i; done < .s1x
$/bin/busybox ERNOD1x
$sh1x
$enable1x
$while read i1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
80
Hostnames
42-98-214-195.static.netvigator.com

Risk Assessment

25
/100
LowMediumHighCritical