TROYANOSYVIRUS
Active ThreatMEDIUM

43.228.157.57

Country of Origin🇵🇰 Pakistan
First Detection3/18/2026
Last Activity3/31/2026
ISPGhosty Networks LLC
🎯
14,012
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇵🇰 Pakistan
City
Unknown
ASN
AS205759
ISP
Ghosty Networks LLC

Attack Types

ssh_telnet_honeypot

Attacked Ports

22

Associated Malware

Attempted Credentials

🔐web/w3b
3x
🔐students/students
3x
🔐seatunnel/seatunnel
3x
🔐root/roottoor
3x
🔐web2/123
3x
🔐testuser/p@ssw0rd
3x
🔐root/hahaha
3x
🔐ubuntu/ubuntu@2024!
3x
🔐root/test12345678
3x
🔐abms/c##abms/123$%^
3x
🔐music/music
3x
🔐root/131313
3x
🔐oracle/oracle1qaz2wsx
3x
🔐rust/rust
3x
🔐lijinhui/zjhimn980305
3x

Executed Commands

$uname -s -v -n -r -m8x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22
CPEs
cpe:/a:openbsd:openssh:10.0p2cpe:/o:debian:debian_linuxcpe:/o:linux:linux_kernel

Risk Assessment

55
/100
LowMediumHighCritical