TROYANOSYVIRUS
Active ThreatLOW

61.130.162.246

Country of Origin🇨🇳 China
First Detection3/19/2026
Last Activity4/29/2026
ISPChinanet
🎯
43
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
1
Malware

Geolocation

Country
🇨🇳 China
City
Unknown
ASN
AS4134
ISP
Chinanet

Attack Types

ssh_telnet_honeypot

Attacked Ports

22

Associated Malware

Attempted Credentials

🔐root/ubuntu
1x
🔐root/debian
1x
🔐root/centos
1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
1235541883194743696001600660226080700180008001801180288060806280828090809681128125818684228461860288249000901390919221
Vulnerabilities
CVE-2024-6763CVE-2024-13009CVE-2023-48795CVE-2024-6387CVE-2024-8184CVE-2024-9823CVE-2023-51384CVE-2023-51385CVE-2023-51767CVE-2024-22201CVE-2025-26465CVE-2025-11143CVE-2026-35414CVE-2008-3844CVE-2025-32728CVE-2025-5115CVE-2007-2768
CPEs
cpe:/a:oracle:jrecpe:/a:f5:nginxcpe:/a:eclipse:jetty:9.4.53cpe:/a:pivotal_software:rabbitmqcpe:/a:ntp:ntp:3cpe:/a:openresty:openrestycpe:/a:openbsd:openssh:9.4

Risk Assessment

35
/100
LowMediumHighCritical