TROYANOSYVIRUS
Active ThreatLOW

95.211.222.182

Country of Origin🇳🇱 Netherlands
First Detection3/27/2026
Last Activity3/30/2026
ISPLeaseWeb Netherlands B.V.
🎯
18
Total Attacks
🔌
18
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇳🇱 Netherlands
City
Unknown
ASN
AS60781
ISP
LeaseWeb Netherlands B.V.

Attack Types

tcp_trap

Attacked Ports

123033327083143171717918781220112365326762283203370838492426164925954280576606185363457

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
228044340404500560160016379700170037006808080839095920027017
Vulnerabilities
CVE-2023-49921CVE-2023-44487CVE-2024-52979CVE-2026-22795CVE-2025-68160CVE-2024-13009CVE-2025-11143CVE-2021-23017CVE-2025-23419CVE-2025-12657CVE-2009-3767CVE-2024-0727CVE-2009-1390CVE-2025-37727CVE-2024-8184CVE-2024-22201CVE-2023-31418CVE-2024-52980CVE-2025-68384CVE-2023-46674
Hostnames
mail.devx.aladmin-dev.blueberrysgrill.com
CPEs
cpe:/a:redislabs:redis:8.6.2cpe:/a:oracle:jrecpe:/a:openssl:openssl:1.1.1wcpe:/a:expressjs:expresscpe:/a:mongodb:mongodb:6.0.27cpe:/a:f5:nginx:1.18.0cpe:/a:eclipse:jetty:9.4.53cpe:/o:debian:debian_linuxcpe:/o:linux:linux_kernelcpe:/a:nodejs:node.jscpe:/a:openbsd:openssh:8.4p1cpe:/a:elastic:elasticsearch:7.17.9

Risk Assessment

35
/100
LowMediumHighCritical