94.59.123.30

Classification: Neutral

94.59.123.30 is a neutral IP address. Reported by 3 threat sources, last seen 2023-07-07. Network: AS5384 Emirates Telecommunications Corporation.

MITRE ATT&CK associations

Malware families: QAKBOT (S0650)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET CNC Feodo Tracker Reported CnC Server UDP Emerging Threats 2023-06-09 10:50:31 2023-07-07 13:09:51 malicious-activity
ET CNC Feodo Tracker Reported CnC Server TCP Emerging Threats 2023-06-09 10:50:27 2023-07-07 13:09:46 malicious-activity
ET CNC Feodoo Tracker Reported CnC Server UDP Emerging Threats 2023-06-20 12:30:24 2023-07-06 13:45:45 malicious-activity
QakBot ThreatFox Abuse.ch 2023-06-06 22:17:05 2023-06-08 21:17:59 malicious-activity S0650 QakBot
Mail Spammer Barracuda 2023-06-06 22:17:05 2023-06-06 22:17:05

Tags

c&c port:2222 oakboat pinkslipbot qbot quakbot

Whois information

AS name
AS5384 Emirates Telecommunications Corporation
AS registry
ripencc
AS date
2008-06-12 00:00:00
AS CIDR
94.59.96.0/19
CIDR
94.59.120.0/21
Registrant
Emirates Telecommunications Corporation P O Box 1150, Dubai, UAE
Address
Emirates Telecommunications Corporation P O Box 1150, Dubai, UAE
City
Abu Dhabi
Country
AE — United Arab Emirates 🇦🇪
Contact email
[email protected]
First indexed
2023-06-06 22:17:05
Last updated
2023-07-07 13:09:51

Malicious IPs in the same CIDR

94.59.115.194