3.74.27.83

Classification: Suspicious

3.74.27.83 is a suspicious IP address. Linked to Njrat, Quasarrat malware. Reported by 1 threat source, last seen 2025-08-22. Network: AS16509 A100 ROW GmbH.

MITRE ATT&CK associations

Malware families: NJRAT (S0385) QUASARRAT (S0262)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
XWorm ThreatFox Abuse.ch 2025-08-13 17:18:03 2025-08-22 14:18:59 malicious-activity
Quasar RAT ThreatFox Abuse.ch 2025-07-07 21:17:28 2025-07-09 20:20:00 malicious-activity S0262 QuasarRAT
NjRAT ThreatFox Abuse.ch 2024-10-07 14:17:04 2025-05-25 11:21:00 malicious-activity S0385 njRAT

Tags

njrat port:17846 bladabindi lime-worm port:14987 port:18377 port:14005 port:14026 rat port:14673 port:10698 port:15638 port:12230 yggdrasil cinarat quasarrat port:19275 port:17355 xworm port:15466

Whois information

AS name
AS16509 A100 ROW GmbH
AS registry
arin
AS date
2017-12-20 00:00:00
AS CIDR
3.64.0.0/12
CIDR
3.0.0.0/9
Registrant
A100 ROW GmbH
Address
410 Terry Ave N.
City
Frankfurt am Main
State
WA
Postal code
60313
Country
DE — Germany 🇩🇪
Contact email
[email protected], [email protected], [email protected], [email protected]
First indexed
2024-10-07 14:17:04
Last updated
2026-08-04 19:15:33

Malicious IPs in the same CIDR

3.64.4.198 3.70.164.132 3.70.45.136 3.69.115.178 3.68.171.119 3.71.146.175 3.65.196.126 3.73.120.104 3.65.193.237 3.75.145.52 3.67.62.142 3.72.79.211