TROYANOSYVIRUS
Active ThreatHIGH

59.24.133.197

Country of Origin🇰🇷 South Korea
First Detection2/11/2026
Last Activity4/14/2026
ISPKorea Telecom
🎯
181
Total Attacks
🔌
100
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇰🇷 South Korea
City
Gumi
ASN
AS4766
ISP
Korea Telecom

Attack Types

tcp_trap

Attacked Ports

12092374254826983084329639944156490355255527562257445904631763566776700872397317+80

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
804438000833399993500035002380805000050001
Vulnerabilities
CVE-2021-21707CVE-2007-3205CVE-2024-5458CVE-2022-37454CVE-2021-21705CVE-2017-9120CVE-2017-8923CVE-2021-21706CVE-2024-33662CVE-2022-31625CVE-2022-31626CVE-2022-31628CVE-2022-31630CVE-2022-4900CVE-2024-33661CVE-2024-3566CVE-2021-21703CVE-2021-21704CVE-2017-9118CVE-2022-31629
CPEs
cpe:/a:php:php:7.4.20cpe:/a:f5:nginxcpe:/a:openresty:openrestycpe:/a:angularjs:angular.jscpe:/a:portainer:portainer:2.17.1cpe:/a:getbootstrap:bootstrap:3.4.1

Risk Assessment

60
/100
LowMediumHighCritical