ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 185.241.208.212:443.

Database Entry


IOC ID:1666956
IOC: 185.241.208.212:443
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS210558 services-1337-gmbh
Country:- DE
First seen:2025-12-03 14:05:26 UTC
Last seen:2025-12-12 18:39:45 UTC
UUID:1de3f8b7-d051-11f0-a341-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:remcos
Reference: https://bazaar.abuse.ch/sample/cc7d970b366fac85dffbfef76441a241827cad22ca0797f8c19d5b1bad4b8b89/

Avatar
abuse_ch
remcos (aka RemcosRAT,Remvio,Socmer) botnet C2