TROYANOSYVIRUS
Active ThreatCRITICAL

64.225.103.73

Country of Origin🇩🇪 Germany
First Detection3/28/2026
Last Activity4/2/2026
ISPDigitalOcean, LLC
🎯
166
Total Attacks
🔌
18
Ports
📡
7
Attack Types
🦠
1
Malware

Geolocation

Country
🇩🇪 Germany
City
Frankfurt am Main
ASN
AS14061
ISP
DigitalOcean, LLC

Attack Types

tcp_trap
ssh_telnet_honeypot
printer_honeypot
smtp_honeypot
malware_capture
web_honeypot
tcp_trap

Attacked Ports

2325804434456311234252548916000644380008086904210250114341878920000

Associated Malware

Attempted Credentials

🔐User-Agent: Go-http-client/1.1/Connection: close
9x
🔐GET /query?q=SHOW+DIAGNOSTICS HTTP/1.1/Host: 51.178.49.206:23
3x
🔐GET /v2/_catalog HTTP/1.1/Host: 51.222.138.43:23
3x
🔐GET /cgi-bin/authLogin.cgi HTTP/1.1/Host: 51.222.138.43:23
3x
🔐User-Agent: Mozilla/5.0 (compatible; Odin; https://docs.getodin.com/)/Accept: */*
1x
🔐GET / HTTP/1.1/Host: 51.178.49.206:23
1x

Executed Commands

$Accept-Encoding: gzip2x

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Risk Assessment

87
/100
LowMediumHighCritical