TROYANOSYVIRUS
Active ThreatMEDIUM

91.121.202.116

Country of Origin🇫🇷 France
First Detection4/30/2026
Last Activity5/2/2026
ISPOVH SAS
🎯
1,607
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇫🇷 France
City
Unknown
ASN
AS16276
ISP
OVH SAS

Attack Types

ssh_telnet_honeypot

Attacked Ports

23

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2253804434655872083208620873306
Vulnerabilities
CVE-2023-42116CVE-2020-28019CVE-2023-38408CVE-2010-5107CVE-2020-28017CVE-2021-27216CVE-2010-4755CVE-2020-15778CVE-2011-5000CVE-2020-28022CVE-2020-28024CVE-2016-3115CVE-2014-2532CVE-2016-10011CVE-2008-3844CVE-2023-42117CVE-2016-10708CVE-2025-67896CVE-2020-28010CVE-2019-6110
Hostnames
ns5.andymillar.net
CPEs
cpe:/a:openbsd:openssh:5.3cpe:/a:cpanel:whmcpe:/a:oracle:mysqlcpe:/a:cpanel:cpanelcpe:/a:exim:exim:4.93

Risk Assessment

40
/100
LowMediumHighCritical