TROYANOSYVIRUS
Active ThreatLOW

197.248.141.242

Country of Origin🇰🇪 KE
First Detection1/8/2026
Last Activity1/8/2026
ISPSafaricom
🎯
93
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇰🇪 KE
City
Nairobi
ASN
AS37061
ISP
Safaricom

Attack Types

malware_capture

Attacked Ports

3306

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
25808080
Vulnerabilities
CVE-2007-3205CVE-2019-9637CVE-2007-1349CVE-2018-18312CVE-2022-22719CVE-2025-23048CVE-2017-12814CVE-2019-10098CVE-2019-0217CVE-2011-1176CVE-2020-11022CVE-2025-59775CVE-2020-11993CVE-2019-10097CVE-2017-12883CVE-2023-27522CVE-2022-28614CVE-2019-0220CVE-2019-9517CVE-2020-11984
Hostnames
mail.nairobisouthhospital.org
CPEs
cpe:/a:openssl:openssl:1.0.2qcpe:/o:unix:unixcpe:/a:microsoft:internet_information_servicescpe:/a:microsoft:asp.netcpe:/a:jquery:jquery:1.10.2cpe:/a:apache:mod_perl:2.0.8cpe:/a:php:php:5.6.40cpe:/o:microsoft:windowscpe:/a:microsoft:internet_information_services:8.5cpe:/a:perl:perl:5.16.3cpe:/a:apache:http_server:2.4.38

Risk Assessment

25
/100
LowMediumHighCritical