ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 104.223.84.21:5656.

Database Entry


IOC ID:1744294
IOC: 104.223.84.21:5656
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS36352 AS-COLOCROSSING
Country:- US
First seen:2026-02-10 15:02:50 UTC
Last seen:2026-03-31 07:43:49 UTC
UUID:9b666a59-068d-11f1-a068-42010aa4000a
Reporter Neiki
Reward 5 credits from ThreatFox
Tags:defense_evasion discovery execution persistence RAT remcos REMOTEHOST
Reference: https://www.threat.rip/file/49c1226d79ee8c47fc700a6fe23223ea172b6662d38a0207b4ee79b8cbcb99db/config