TROYANOSYVIRUS
Active ThreatLOW

217.196.21.114

Country of Origin🇰🇿 KZ
First Detection1/10/2026
Last Activity4/19/2026
ISPJusan Mobile JSC
🎯
13
Total Attacks
🔌
1
Ports
📡
1
Attack Types
🦠
0
Malware

Geolocation

Country
🇰🇿 KZ
City
Unknown
ASN
AS35104
ISP
Jusan Mobile JSC

Attack Types

malware_capture

Attacked Ports

445

Associated Malware

No associated malware

Shodan InternetDB ExposureShodan

InternetDB data, not real-time

Ports
258184884439000
Vulnerabilities
CVE-2021-26691CVE-2018-1303CVE-2010-2730CVE-2020-35452CVE-2020-11993CVE-2024-38474CVE-2020-1927CVE-2024-38476CVE-2022-31813CVE-2019-1559CVE-2018-1301CVE-2022-26377CVE-2022-28615CVE-2010-1899CVE-2018-11763CVE-2019-10081CVE-2022-1292CVE-2025-59775CVE-2017-15715CVE-2022-2068
Hostnames
mail.ars.kzARSSRV030.arystan.net
CPEs
cpe:/o:microsoft:windowscpe:/a:microsoft:asp.netcpe:/a:apache:http_server:2.4.29cpe:/a:microsoft:internet_information_services:7.5cpe:/a:openssl:openssl:1.0.2ncpe:/a:microsoft:exchange_servercpe:/a:microsoft:internet_information_services

Risk Assessment

25
/100
LowMediumHighCritical