TROYANOSYVIRUS
Active ThreatLOW

119.207.147.133

Country of Origin🇰🇷 South Korea
First Detection4/4/2026
Last Activity4/4/2026
ISPKorea Telecom
🎯
38
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
4
Malware

Geolocation

Country
🇰🇷 South Korea
City
Anyang-si
ASN
AS4766
ISP
Korea Telecom

Attack Types

adb_honeypot

Attacked Ports

5555

Associated Malware

Executed Commands

$rm -rf /data/local/tmp/*4x
$ps | grep log2x
$/data/local/tmp/nohup su -c /data/local/tmp/log2x
$pm install /data/local/tmp/tv.apk2x
$am start -n com.google.home.tv/com.example.test.MainActivity2x
$/data/local/tmp/nohup /data/local/tmp/log2x
$chmod 0755 /data/local/tmp/nohup2x
$chmod 0755 /data/local/tmp/log2x
$ps | grep rig2x
$rm -f /data/local/tmp/tv.apk2x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

30
/100
LowMediumHighCritical