TROYANOSYVIRUS
Active ThreatHIGH

94.26.106.200

Country of Origin🇩🇪 Germany
First Detection3/4/2026
Last Activity4/9/2026
ISPdataforest GmbH
🎯
857
Total Attacks
🔌
12
Ports
📡
4
Attack Types
🦠
0
Malware

Geolocation

Country
🇩🇪 Germany
City
Kriftel
ASN
AS215607
ISP
dataforest GmbH

Attack Types

ssh_telnet_honeypot
printer_honeypot
tcp_trap
credential_capture

Attacked Ports

22801080306031289100201142202236530519616000061206

Associated Malware

No associated malware

Attempted Credentials

🔐123/123
2x
🔐ks/ks
2x
🔐admin/admin$
1x
🔐123456/123456
1x
🔐support/support
1x
🔐pc/pc
1x
🔐1234/1234
1x
🔐admin/admin
1x
🔐12345/12345
1x
🔐ansible/123456789
1x
🔐amanda/123456
1x
🔐postgres/321
1x
🔐admin/default
1x
🔐user1/user1
1x
🔐root/Qwerty123
1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
2022
CPEs
cpe:/a:openbsd:openssh:10.0-hpn14v15

Risk Assessment

75
/100
LowMediumHighCritical