ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain agronew.duckdns.org.

Database Entry


IOC ID:1819493
IOC: agronew.duckdns.org
IOC Type :domain
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS42675 OBEHOSTING
Country:- SE
First seen:2026-05-28 13:20:35 UTC
Last seen:never
UUID:02c6e830-5a98-11f1-b930-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:remcos
Reference: https://bazaar.abuse.ch/sample/7f8c49231298ef810a51c32f6fe9e554c68651729c1a97e24739b2e5e28fa340/

Avatar
abuse_ch
remcos (aka RemcosRAT,Remvio,Socmer) botnet C2 on port 51842 TCP