🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for domain ymemes.noip.at.

Database Entry


IOC ID:1923422
IOC: ymemes.noip.at
IOC Type :domain
Threat Type :botnet_cc
Malware: Remcos
Malware alias:RemcosRAT, Remvio, Socmer
Confidence Level : Confidence level is elevated (75%)
Is compromised? : False
ASN:AS200051 VPSLab-Networks
Country:- RU
First seen:2026-09-17 18:55:21 UTC
Last seen:never
UUID:5508e698-b2c9-11f1-8450-42010aa4000a
Reporter abuse_ch
Reward 10 credits from kiwingulam4h
Tags:remcos
Reference: https://bazaar.abuse.ch/sample/c7c71e0287d20f430b16930c0584080be0fae71c59ccd1babba70c62df952b20/

Avatar
abuse_ch
remcos (aka RemcosRAT,Remvio,Socmer) botnet C2 on port 7077 TCP