TROYANOSYVIRUS
Active ThreatMEDIUM

64.226.85.238

Country of Origin🇩🇪 Germany
First Detection1/6/2026
Last Activity4/7/2026
ISPDIGITALOCEAN-ASN
🎯
14
Total Attacks
🔌
4
Ports
📡
4
Attack Types
🦠
0
Malware

Geolocation

Country
🇩🇪 Germany
City
Frankfurt am Main
ASN
AS14061
ISP
DIGITALOCEAN-ASN

Attack Types

tcp_trap
elasticsearch_honeypot
web_honeypot
tcp_trap

Attacked Ports

8044380819200

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
224435000500150055010
Vulnerabilities
CVE-2023-44487CVE-2025-23419
Hostnames
api.staging.onerapidplay.comwww.api.staging.onerapidplay.com
CPEs
cpe:/a:f5:nginx:1.24.0cpe:/o:linux:linux_kernelcpe:/a:expressjs:expresscpe:/a:openbsd:openssh:9.6p1cpe:/a:nodejs:node.jscpe:/o:canonical:ubuntu_linux

Risk Assessment

45
/100
LowMediumHighCritical