ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 118.161.12.237:443.

Database Entry


IOC ID:1294621
IOC: 118.161.12.237:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: QakBot
Malware alias:Oakboat, Pinkslipbot, Qbot, Quakbot
Confidence Level : Confidence level is moderate (50%)
ASN:AS3462 HINET
Country:- TW
First seen:2024-07-04 18:48:43 UTC
Last seen:never
UUID:09630904-3a36-11ef-8261-42010aa4000a
Reporter drb_ra
Reward 5 credits from ThreatFox
Tags:HINET Data Communication Business Group QakBot
Reference: https://search.censys.io/hosts/118.161.12.237

Avatar
drb_ra
Qakbot Found
C2: 118[.]161[.]12[.]237:443
Certificate: f38d749106893c018e5d909f8192bdb8f3c8c638f2d6c7ca4d478fe9c22edbcc
Country: Taiwan
ASN: HINET Data Communication Business Group