ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 158.94.210.31:2404.

Database Entry


IOC ID:1739737
IOC: 158.94.210.31:2404
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS202412 OMEGATECH-AS
Country:- GB
First seen:2026-02-01 18:44:54 UTC
Last seen:2026-03-31 07:49:43 UTC
UUID:19277c40-ff9e-11f0-a8b1-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:drb-ra RAT RemcosRAT

Avatar
abuse_ch
Possible win.remcos botnet C2 server