TROYANOSYVIRUS
Ameaca AtivaALTO

157.245.115.125

Primeira Deteccao21/02/2026
Ultima Atividade05/04/2026
ISPDigitalOcean, LLC
🎯
441
Ataques Totais
🔌
1
Portas
📡
1
Tipos de Ataque
🦠
3
Malware

Geolocalizacao

Pais
🇺🇸 Estados Unidos
Cidade
Clifton
ASN
AS14061
ISP
DigitalOcean, LLC

Tipos de Ataque

ssh_telnet_honeypot

Portas Atacadas

22

Malware Associado

Credenciais Tentadas

🔐minoxidil4you/minoxidil4you!
8x
🔐root/minoxidil4you!
7x
🔐admin123/minoxidil4you!
4x
🔐userminoxidil4you/minoxidil4you!
4x
🔐minoxidil4youweb/minoxidil4you!
4x
🔐MINOXIDIL4YOU/minoxidil4you!
4x
🔐manager/minoxidil4you!
4x
🔐ubuntu/minoxidil4you!
4x
🔐support/minoxidil4you!
4x
🔐admin/minoxidil4you!
4x
🔐noreply/minoxidil4you!
4x
🔐hostmaster/minoxidil4you!
4x
🔐debian/minoxidil4you!
4x
🔐root123/minoxidil4you!
4x
🔐administrator/minoxidil4you!
4x

Comandos Executados

$uname -a1x
$ls -la /home/ 2>/dev/null | grep -q phil && echo 'phil_found' || echo 'ok'1x
$uname -a 2>&1 || echo unknown1x

Exposicao Shodan InternetDBShodan

Dados InternetDB, nao em tempo real

Portas
22804439000
Vulnerabilidades
CVE-2024-33662CVE-2021-42650CVE-2024-33661CVE-2022-24961
Hostnames
www.americasober.comamericasober.comamericasober.prod
CPEs
cpe:/a:openbsd:openssh:8.2p1cpe:/a:f5:nginxcpe:/a:angularjs:angular.jscpe:/o:canonical:ubuntu_linuxcpe:/a:portainer:portainer:2.0.0

Avaliacao de Risco

60
/100
BaixoMedioAltoCritico