ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 104.238.220.231:4871.

Database Entry


IOC ID:1315915
IOC: 104.238.220.231:4871
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is high (100%)
ASN:AS23470 RELIABLESITE
Country:- US
First seen:2024-08-24 14:40:22 UTC
Last seen:never
UUID:cb2d760c-6226-11ef-ac38-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RAT RemcosRAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2024-08-24 14:40:25 2e6db642fad3918398b520cf655d6ca7fc040bd177e30a30bd7f549adb4e48c0