TROYANOSYVIRUS
Active ThreatLOW

88.9.171.26

Country of Origin🇪🇸 Spain
First Detection4/14/2026
Last Activity4/14/2026
ISPTelefonica De Espana S.a.u.
🎯
13
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
2
Malware

Geolocation

Country
🇪🇸 Spain
City
Donostia / San Sebastian
ASN
AS3352
ISP
Telefonica De Espana S.a.u.

Attack Types

adb_honeypot

Attacked Ports

5555

Associated Malware

Executed Commands

$am start -n com.ufo.miner/com.example.test.MainActivity1x
$ps | grep trinity1x
$rm /data/local/tmp/ufo.apk1x
$pm install /data/local/tmp/ufo.apk1x
$rm -rf /data/local/tmp/*1x
$pm path com.ufo.miner1x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

25
/100
LowMediumHighCritical