TROYANOSYVIRUS
Active ThreatLOW

72.56.65.54

Country of Origin🇳🇱 Netherlands
First Detection1/23/2026
Last Activity1/23/2026
ISPTimeweb, LLP
🎯
20
Total Attacks
🔌
3
Ports
📡
2
Attack Types
🦠
0
Malware

Geolocation

Country
🇳🇱 Netherlands
City
Amsterdam
ASN
AS210976
ISP
Timeweb, LLP

Attack Types

tcp_trap
web_honeypot

Attacked Ports

80543219090

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2280443
Vulnerabilities
CVE-2025-23419CVE-2023-44487
Hostnames
yandex.orgyandex.uzyandex.trxn--d1acpjx3f.xn--p1aiyandex.ruyandex.byyandex.mdyandex.eeyandex.fryandex.ityandex.tjyandex.com.tryandex.jobsyandex.com.amyandex.azyandex.ltyandex.comyandex.co.ilyandex.kzyandex.com.geyandex.tmyandex.netyandex.aeroyandex.lvya.ruyandex.de
CPEs
cpe:/o:linux:linux_kernelcpe:/a:f5:nginx:1.24.0cpe:/a:openbsd:openssh:9.6p1cpe:/o:canonical:ubuntu_linux

Risk Assessment

30
/100
LowMediumHighCritical