197.248.5.22 Threat Intelligence and Host Information

General

This page contains threat intelligence information for the IPv4 address 197.248.5.22 and was generated either as a result of observed malicious activity or as an information gathering exercise to assist with enrichment of security events and context. All information is gathered passively through aggregation of public sources, or observations through activity upon honeynets. The host score is calculated through a series of statistically weighted values and machine learning which takes into account metadata such as host information, frequency, volume and global distribution of malicious activity, association with other known malicious hosts or networks, proxying or anonymising behaviour such as with tor exit nodes, residential proxies or VPN services, and many other attributes. These values are historical and indicative only - and should not be taken to be an accurate representation of the users, businesses or networks in which they reside.

Potentially Malicious Host 🟡 40/100

Host and Network Information

  • Tags: cyber security, ioc, malicious, Nextray, phishing

  • View other sources: Spamhaus VirusTotal

  • Contained within other IP sets: cleanmx_phishing

Malware Detected on Host

Count: 5 81830748fea30b81f84ff2c35b1e4eae001cb9bbd555c3331e6318b82c5d444c 51a9663b56cbbed06cce17feef041e9cb508e16b839e22e386d8e95869ddf948 7a0712c8fd906bf6f7589a90cf3e6e24a448ac981077e7cde96fd1d55808b9d6 0741442af57012483cf19a051af75c8d88051990e97279cecf01e30e28f72924 2c86551de2ee6c2d5efc4ca6c9827e39d8cda122feb6918c0a2589c7481a9a2e

Map

Whois Information

  • inetnum: 197.248.0.0 - 197.248.63.255
  • netname: Safaricom-Business
  • descr: For Safaricom KENYA Enterprise Business Unit
  • country: KE
  • admin-c: JM27-AFRINIC
  • admin-c: DA1485-AFRINIC
  • tech-c: DA1485-AFRINIC
  • status: ASSIGNED PA
  • mnt-by: MNT-SAF2004
  • parent: 197.248.0.0 - 197.248.255.255
  • person: Domain Admin
  • address: Safaricom Limited
  • address: Safaricom House
  • address: POBox 46350-00100 Nairobi
  • address: Kenya
  • address: Nairobi
  • address: Kenya
  • phone: tel:+254-020427
  • nic-hdl: DA1485-AFRINIC
  • mnt-by: MNT-SAF2004
  • person: John Muita
  • address: P.O Box 66827, 00800
  • address: Nairobi
  • address: Kenya
  • address: Nairobi
  • address: Kenya
  • phone: tel:+254-722-002829
  • fax-no: tel:+254-722-003272
  • nic-hdl: JM27-afrinic
  • mnt-by: GENERATED-UNS1E7EXFG6F7TJILQ9DMMHDN4Y0VRSV-MNT
  • route: 197.248.5.0/24
  • descr: Safaricom Limited
  • origin: AS33771
  • mnt-by: MNT-SAF2004

Links to attack logs

****** ****** ******

Share on: