ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 172.245.195.213:14641.

Database Entry


IOC ID:1811586
IOC: 172.245.195.213:14641
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is high (99%)
Is compromised? : False
ASN:AS36352 AS-COLOCROSSING
Country:- US
First seen:2026-05-14 12:31:54 UTC
Last seen:never
UUID:4c731c5b-4e3e-11f1-b930-42010aa4000a
Reporter netresec
Reward 5 credits from ThreatFox

Avatar
netresec
ddcgfgghhjghhhtgfdrgdgfgfjyuujguiugikugy[.]duckdns[.]org, AS36352, JA3 a85be79f7b569f1df5e6087b69deb493, JA4 t13i010400_0f2cb44170f4_5c4c70b73fa0, JA3S eb1d94daa7e0344597e756a1fb6e7054