ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 130.12.182.167:5000.

Database Entry


IOC ID:1734232
IOC: 130.12.182.167:5000
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS36680 NETIFACELLC
Country:- GB
First seen:2026-01-18 20:05:55 UTC
Last seen:2026-03-13 07:43:43 UTC
UUID:18cf1281-f4a9-11f0-9957-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:remcos
Reference: https://bazaar.abuse.ch/sample/9fe4d4fa0652fe7d37175a5e866dd0ec2f446c9b1d92ca6eb88dfdaf04984a99/

Avatar
abuse_ch
remcos (aka RemcosRAT,Remvio,Socmer) botnet C2