ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 89.148.149.203:2222.

Database Entry


IOC ID:1289751
IOC: 89.148.149.203:2222
IOC Type :ip:port
Threat Type :botnet_cc
Malware: QakBot
Malware alias:Oakboat, Pinkslipbot, Qbot, Quakbot
Confidence Level : Confidence level is moderate (50%)
ASN:AS59766 ASWICITY
Country:- IT
First seen:2024-06-27 18:48:25 UTC
Last seen:never
UUID:d5f2bb90-34b5-11ef-8261-42010aa4000a
Reporter drb_ra
Reward 5 credits from ThreatFox
Tags:QakBot WicitY - Internet Service Provider
Reference: https://search.censys.io/hosts/89.148.149.203

Avatar
drb_ra
Qakbot Found
C2: 89[.]148[.]149[.]203:2222
Certificate: d49e751ab919a2325baf5e9022d47cf4b7ebe6cae24e47e98eb1a8e300c8b4b5
Country: Italy
ASN: WicitY - Internet Service Provider