ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 189.140.37.137:443.

Database Entry


IOC ID:1292022
IOC: 189.140.37.137:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: QakBot
Malware alias:Oakboat, Pinkslipbot, Qbot, Quakbot
Confidence Level : Confidence level is moderate (50%)
ASN:AS8151 UNINET
Country:- MX
First seen:2024-07-01 18:48:24 UTC
Last seen:never
UUID:7f3654c5-37da-11ef-8261-42010aa4000a
Reporter drb_ra
Reward 5 credits from ThreatFox
Tags:QakBot UNINET
Reference: https://search.censys.io/hosts/189.140.37.137

Avatar
drb_ra
Qakbot Found
C2: 189[.]140[.]37[.]137:443
Certificate: 46948af22ebeeeb88c9cf23afb26f1fa6f0da9bad9a37a2d4891ecb88e246511
Country: Mexico
ASN: UNINET