🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 72.61.140.138:6738.

Database Entry


IOC ID:1956301
IOC: 72.61.140.138:6738
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Remus
Confidence Level : Confidence level is high (100%)
Is compromised? : False
ASN:AS47583 AS-HOSTINGER
Country:- LT
First seen:2026-10-07 14:27:34 UTC
Last seen:2026-10-09 01:48:58 UTC
UUID:eef46bd3-c258-11f1-bd13-42010aa4000a
Reporter Bitsight
Reward 5 credits from ThreatFox
Tags:c2 cda044b23c09ea74757275a0b5703dd5 Remus

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2026-10-08 05:25:08 7d72264319c996b8c3dabfb3ae01961f7c124471207bae849e85cea32c82c79a