ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 207.180.248.154:7242.

Database Entry


IOC ID:1887822
IOC: 207.180.248.154:7242
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remus
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS51167 CONTABO
Country:- DE
First seen:2026-08-25 20:45:24 UTC
Last seen:never
UUID:e5b01291-a0c5-11f1-a7c1-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:Remus
Reference: https://bazaar.abuse.ch/sample/0d4391dff5042019739e753b18b7d79627ecc59e2c52b0ea681a484267f33004/

Avatar
abuse_ch
remus botnet C2 at http://coxnext.click:7242/files resolving to 207.180.248.154:7242

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2026-08-25 20:50:20 f9b2120a061c50d6385976c360feadf9f1791b743bc43b3702e35734e718d25d
2026-08-25 20:50:19 0d4391dff5042019739e753b18b7d79627ecc59e2c52b0ea681a484267f33004