TROYANOSYVIRUS
Active ThreatLOW

120.204.102.4

Country of Origin🇨🇳 China
First Detection3/29/2026
Last Activity3/29/2026
ISPShanghai Mobile Communications Co.,Ltd.
🎯
38
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
6
Malware

Geolocation

Country
🇨🇳 China
City
Shanghai
ASN
AS24400
ISP
Shanghai Mobile Communications Co.,Ltd.

Attack Types

adb_honeypot

Attacked Ports

5555

Associated Malware

Executed Commands

$rm -rf /data/local/tmp/*4x
$ps | grep log2x
$/data/local/tmp/nohup su -c /data/local/tmp/log2x
$rm /data/local/tmp/tv.apk2x
$pm install /data/local/tmp/tv.apk2x
$/data/local/tmp/nohup /data/local/tmp/log2x
$pm path com.google.home.tv2x
$chmod 0755 /data/local/tmp/nohup2x
$chmod 0755 /data/local/tmp/log2x
$ps | grep rig2x

Risk Assessment

35
/100
LowMediumHighCritical