{
    "id": "1685203",
    "ioc": "0028.duckdns.org",
    "ioc_type": "domain",
    "threat_type": "botnet_cc",
    "malware": "win.remcos",
    "malware_printable": "Remcos",
    "malware_alias": "RemcosRAT,Remvio,Socmer",
    "confidence_level": "100",
    "first_seen": "2025-12-23 18:01:21 UTC",
    "last_seen": "2026-04-02 06:00:20 UTC",
    "reporter": null,
    "reference": "https:\/\/tria.ge\/251223-r3jg4atjgx",
    "threatfox_link": "https:\/\/threatfox\/ioc\/1685203",
    "tags": [
        "c2",
        "domain",
        "RAT",
        "remcos",
        "triage"
    ]
}