3.74.27.83
Classification: Suspicious
3.74.27.83 is a suspicious IP address. Linked to Njrat, Quasarrat malware. Reported by 1 threat source, last seen 2025-08-22. Network: AS16509 A100 ROW GmbH.
MITRE ATT&CK associations
Malware families: NJRAT (S0385) QUASARRAT (S0262)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| XWorm | ThreatFox Abuse.ch | 2025-08-13 17:18:03 | 2025-08-22 14:18:59 | malicious-activity | |
| Quasar RAT | ThreatFox Abuse.ch | 2025-07-07 21:17:28 | 2025-07-09 20:20:00 | malicious-activity | S0262 QuasarRAT |
| NjRAT | ThreatFox Abuse.ch | 2024-10-07 14:17:04 | 2025-05-25 11:21:00 | malicious-activity | S0385 njRAT |
Tags
njrat port:17846 bladabindi lime-worm port:14987 port:18377 port:14005 port:14026 rat port:14673 port:10698 port:15638 port:12230 yggdrasil cinarat quasarrat port:19275 port:17355 xworm port:15466Whois information
- AS name
- AS16509 A100 ROW GmbH
- AS registry
- arin
- AS date
- 2017-12-20 00:00:00
- AS CIDR
- 3.64.0.0/12
- CIDR
- 3.0.0.0/9
- Registrant
- A100 ROW GmbH
- Address
- 410 Terry Ave N.
- City
- Frankfurt am Main
- State
- WA
- Postal code
- 60313
- Country
- DE — Germany 🇩🇪
- Contact email
- [email protected], [email protected], [email protected], [email protected]
- First indexed
- 2024-10-07 14:17:04
- Last updated
- 2026-08-04 19:15:33
Malicious IPs in the same CIDR
3.64.4.198 3.70.164.132 3.70.45.136 3.69.115.178 3.68.171.119 3.71.146.175 3.65.196.126 3.73.120.104 3.65.193.237 3.75.145.52 3.67.62.142 3.72.79.211