86.130.9.139
Classification: Neutral
86.130.9.139 is a neutral IP address. Reported by 3 threat sources, last seen 2023-09-18. Network: AS2856 Ip Pools.
MITRE ATT&CK associations
Malware families: QAKBOT (S0650)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ET CNC Feodo Tracker Reported CnC Server UDP | Emerging Threats | 2023-08-19 12:52:20 | 2023-09-18 12:41:01 | malicious-activity | |
| ET CNC Feodo Tracker Reported CnC Server TCP | Emerging Threats | 2023-08-19 12:52:17 | 2023-09-16 12:45:18 | malicious-activity | |
| QakBot | ThreatFox Abuse.ch | 2023-08-17 10:17:02 | 2023-08-19 09:18:28 | malicious-activity | S0650 QakBot |
| Mail Spammer | Abuseat.org | 2023-08-17 10:17:05 | 2023-08-17 10:17:05 |
Tags
c&c port:2222 oakboat pinkslipbot qbot quakbotWhois information
- AS name
- AS2856 Ip Pools
- AS registry
- ripencc
- AS date
- 2005-02-07 00:00:00
- AS CIDR
- 86.128.0.0/12
- CIDR
- 86.128.0.0/13
- Registrant
- Ip Pools
- Address
- BT Wholesale UK
- City
- Taunton
- Postal code
- TA1 1JD
- Country
- GB — United Kingdom 🇬🇧
- Contact email
- [email protected]
- First indexed
- 2023-08-17 10:17:02
- Last updated
- 2025-02-14 01:55:12
Malicious IPs in the same CIDR
86.128.94.208 86.131.219.109 86.141.8.71 86.132.45.131 86.132.14.70