{
    "id": "1742340",
    "ioc": "23.27.49.143:2404",
    "ioc_type": "ip:port",
    "threat_type": "botnet_cc",
    "malware": "win.remcos",
    "malware_printable": "Remcos",
    "malware_alias": "RemcosRAT,Remvio,Socmer",
    "confidence_level": "100",
    "first_seen": "2026-02-06 06:31:14 UTC",
    "last_seen": "2026-03-21 17:53:36 UTC",
    "reporter": null,
    "reference": "https:\/\/www.threat.rip\/file\/b4b272fca3ed76c4a6c31dd84e3d2805cf7b26f9e65234d8c22020b8e58779ba\/config",
    "threatfox_link": "https:\/\/threatfox\/ioc\/1742340",
    "tags": [
        "defense_evasion",
        "delphi",
        "discovery",
        "DonutLoader",
        "Loader",
        "RAT",
        "remcos",
        "REMOTEHOST"
    ]
}