ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 172.111.162.252:2620.

Database Entry


IOC ID:1750538
IOC: 172.111.162.252:2620
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS9009 M247
Country:- RO
First seen:2026-02-19 06:27:12 UTC
Last seen:2026-03-31 07:51:59 UTC
UUID:5b524bf3-0d05-11f1-a068-42010aa4000a
Reporter Neiki
Reward 5 credits from ThreatFox
Tags:AUTO-REG persistence RAT remcos REMOTEHOST
Reference: https://www.threat.rip/file/d312880a3b96319a2bc7ec6940c6303254573293f984daf1c5d809ad8b3fb306/config