Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with njrat

Database Entry


Malware:njrat
First seen:2015-12-22 04:56:54 UTC
Last seen:2020-02-19 11:24:04 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-02-07 14:01:13d7400a37f97f944e4eeb22fa332f4d97n/anjrat82.64.128.42:6613
2019-12-01 02:57:535b0cad0b2517ca291fd28b0990fdf9c9Virustotal results 25 / 69 (36.23%) njrat54.255.139.136:80
2019-07-04 14:14:06b87d782cc4086eb88550b4705e74dba6n/anjrat179.180.17.194:9830
2019-07-04 06:00:29cf7139c8298d2eb579e0ee1d593621b8n/anjrat179.180.17.194:9830
2019-05-29 05:59:200008996b982d0d86e1a89932e466bdfeVirustotal results 33/70 (47.14%) njrat109.236.80.32:8808
2018-11-02 01:43:41f8d23dd14ad06168d45d3d23aed631f0Virustotal results 16/67 (23.88%) njrat145.239.140.188:60