TROYANOSYVIRUS
Ameaca AtivaCRITICO

45.135.194.49

Pais de Origem🇩🇪 Alemania
Primeira Deteccao18/03/2026
Ultima Atividade19/03/2026
ISPPfcloud UG (haftungsbeschrankt)
🎯
929
Ataques Totais
🔌
100
Portas
📡
12
Tipos de Ataque
🦠
1
Malware

Geolocalizacao

Pais
🇩🇪 Alemania
Cidade
Desconhecida
ASN
AS51396
ISP
Pfcloud UG (haftungsbeschrankt)

Tipos de Ataque

ssh_telnet_honeypot
yaml_exploit_honeypot
printer_honeypot
smtp_honeypot
elasticsearch_honeypot
adb_honeypot
malware_capture
printer_honeypot

Portas Atacadas

2122232580816311024102510811082108310881099111111311194120012341235+80

Malware Associado

Credenciais Tentadas

🔐User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:146.0) Gecko/20100101 Firefox/146.0/Accept: */*
3x
🔐GET /..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd HTTP/1.1/Host: 146.59.94.170:23
1x
🔐GET /..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd HTTP/1.1/Host: 15.235.184.72:23
1x
🔐Connection: close/(vazio)
1x
🔐GET /..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd HTTP/1.1/Host: 51.178.49.206:23
1x

Comandos Executados

$Connection: close4x

Exposicao Shodan InternetDBShodan

Dados InternetDB, nao em tempo real

Portas
22
Hostnames
45.135.194.49.ptr.pfcloud.network
CPEs
cpe:/o:canonical:ubuntu_linuxcpe:/a:openbsd:openssh:8.9p1

Avaliacao de Risco

80
/100
BaixoMedioAltoCritico