TROYANOSYVIRUS
Active ThreatHIGH

47.99.97.46

Country of Origin🇨🇳 China
First Detection1/7/2026
Last Activity3/25/2026
ISPHangzhou Alibaba Advertising Co.,Ltd.
🎯
751
Total Attacks
🔌
100
Ports
📡
4
Attack Types
🦠
0
Malware

Geolocation

Country
🇨🇳 China
City
Hangzhou
ASN
AS37963
ISP
Hangzhou Alibaba Advertising Co.,Ltd.

Attack Types

adb_honeypot
malware_capture
tcp_trap
cisco_asa_honeypot

Attacked Ports

10311081109811861194119813891443144515221523153815431555159017011723201420402376+80

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
1317212223707985961751791952112212432643403894004274434445155546667828438809921023
Vulnerabilities
CVE-2011-5000CVE-2025-26465CVE-2016-10010CVE-2021-41617CVE-2018-20685CVE-2008-3844CVE-2018-10088CVE-2023-51767CVE-2015-6564CVE-2023-44487CVE-2023-51385CVE-2011-4327CVE-2016-10011CVE-2016-0777CVE-2019-6109CVE-2016-10009CVE-2021-36368CVE-2010-5107CVE-2017-15906CVE-2018-15919
CPEs
cpe:/a:openbsd:openssh:7.2p2cpe:/a:apache:subversioncpe:/a:openbsd:openssh:6.6.1cpe:/a:openbsd:openssh:7.6p1cpe:/a:openbsd:openssh:5.3cpe:/o:linux:linux_kernelcpe:/a:mysql:mysql:5.7.44-logcpe:/a:openbsd:openssh:X.Xcpe:/a:xiongmaitech:uc-httpd:1.0.0cpe:/a:realvnc:realvnc:::enterprisecpe:/o:microsoft:windowscpe:/a:openbsd:openssh:7.5cpe:/o:canonical:ubuntu_linuxcpe:/a:eset:nod32_antivirus:99cpe:/a:f5:nginx:1.22.1

Risk Assessment

75
/100
LowMediumHighCritical