TROYANOSYVIRUS
Active ThreatLOW

119.114.254.186

Country of Origin🇨🇳 China
First Detection3/13/2026
Last Activity3/13/2026
ISPCHINA UNICOM China169 Backbone
🎯
28
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
3
Malware

Geolocation

Country
🇨🇳 China
City
Unknown
ASN
AS4837
ISP
CHINA UNICOM China169 Backbone

Attack Types

adb_honeypot

Attacked Ports

5555

Associated Malware

Executed Commands

$am start -n com.ufo.miner/com.example.test.MainActivity2x
$/data/local/tmp/nohup su -c /data/local/tmp/trinity2x
$ps | grep trinity2x
$chmod 0755 /data/local/tmp/nohup2x
$chmod 0755 /data/local/tmp/trinity2x
$rm -rf /data/local/tmp/*2x
$pm path com.ufo.miner2x
$/data/local/tmp/nohup /data/local/tmp/trinity2x

Risk Assessment

30
/100
LowMediumHighCritical