TROYANOSYVIRUS
Active ThreatMEDIUM

45.156.87.252

Country of Origin🇳🇱 Netherlands
First Detection3/4/2026
Last Activity4/13/2026
ISPPfcloud UG (haftungsbeschrankt)
🎯
138
Total Attacks
🔌
2
Ports
📡
2
Attack Types
🦠
0
Malware

Geolocation

Country
🇳🇱 Netherlands
City
Eygelshoven
ASN
AS51396
ISP
Pfcloud UG (haftungsbeschrankt)

Attack Types

malware_capture
tcp_trap

Attacked Ports

2701727027

Associated Malware

No associated malware

ThreatFox Intelabuse.ch

⚠️KNOWN C2 SERVER
Malware Families
win.remcos
Threat Types
botnet_cc
Confidence: 100%

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
22
CPEs
cpe:/a:openbsd:openssh:8.2p1cpe:/o:canonical:ubuntu_linux

Risk Assessment

55
/100
LowMediumHighCritical