ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 79.134.225.54:3530.

Database Entry


IOC ID:4792
IOC: 79.134.225.54:3530
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Ave Maria
Malware alias:AVE_MARIA, AveMariaRAT, Warzone RAT, WarzoneRAT, avemaria
Confidence Level : Confidence level is high (100%)
ASN:AS6775 FINK-TELECOM-SERVICES
Country:- CH
First seen:2021-03-24 07:12:44 UTC
Last seen:never
UUID:54b02154-8c70-11eb-858b-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:AveMariaRAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2021-03-25 05:00:27 d22b5f0952081bb59e1e1d6f2cb2ff88376461813414622f0c534855fc43039c
2021-03-24 07:12:45 0dc8b267631d1894fbc6644468e5a9d9b9543257e0a85c271af230c757831496