ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 172.245.152.196:28080.

Database Entry


IOC ID:1740917
IOC: 172.245.152.196:28080
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS36352 AS-COLOCROSSING
Country:- US
First seen:2026-02-04 07:43:10 UTC
Last seen:2026-03-08 17:44:53 UTC
UUID:2dc7338f-013e-11f1-ac94-42010aa4000a
Reporter Neiki
Reward 5 credits from ThreatFox
Tags:collection discovery RAT remcos REMOTEHOST
Reference: https://www.threat.rip/file/2bd901d0e341285aa3df6f4b122c557545008e1f3f912502464dcadaeaad3165/config