94.59.123.30
Classification: Neutral
94.59.123.30 is a neutral IP address. Reported by 3 threat sources, last seen 2023-07-07. Network: AS5384 Emirates Telecommunications Corporation.
MITRE ATT&CK associations
Malware families: QAKBOT (S0650)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ET CNC Feodo Tracker Reported CnC Server UDP | Emerging Threats | 2023-06-09 10:50:31 | 2023-07-07 13:09:51 | malicious-activity | |
| ET CNC Feodo Tracker Reported CnC Server TCP | Emerging Threats | 2023-06-09 10:50:27 | 2023-07-07 13:09:46 | malicious-activity | |
| ET CNC Feodoo Tracker Reported CnC Server UDP | Emerging Threats | 2023-06-20 12:30:24 | 2023-07-06 13:45:45 | malicious-activity | |
| QakBot | ThreatFox Abuse.ch | 2023-06-06 22:17:05 | 2023-06-08 21:17:59 | malicious-activity | S0650 QakBot |
| Mail Spammer | Barracuda | 2023-06-06 22:17:05 | 2023-06-06 22:17:05 |
Tags
c&c port:2222 oakboat pinkslipbot qbot quakbotWhois information
- AS name
- AS5384 Emirates Telecommunications Corporation
- AS registry
- ripencc
- AS date
- 2008-06-12 00:00:00
- AS CIDR
- 94.59.96.0/19
- CIDR
- 94.59.120.0/21
- Registrant
- Emirates Telecommunications Corporation P O Box 1150, Dubai, UAE
- Address
- Emirates Telecommunications Corporation P O Box 1150, Dubai, UAE
- City
- Abu Dhabi
- Country
- AE — United Arab Emirates 🇦🇪
- Contact email
- [email protected]
- First indexed
- 2023-06-06 22:17:05
- Last updated
- 2023-07-07 13:09:51