Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with AveMariaRAT

Database Entry


Malware:AveMariaRAT
First seen:2020-03-19 03:22:25 UTC
Last seen:2023-01-10 13:51:46 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2023-01-10 13:51:46f4c455ec0f756fb233a6665a1aeadee3n/aAveMariaRAT45.139.105.207:4782
2022-09-28 13:48:42deb2bc249c06d328da87cc21a0db4134Virustotal results 17 / 71 (23.94%) AveMariaRAT86.63.204.69:5000
2021-03-29 14:56:58ed7d4095f6f3ca8104b8ccfca07518b7Virustotal results 26 / 71 (36.62%) AveMariaRAT103.224.241.225:1604
2021-03-29 14:56:58ed7d4095f6f3ca8104b8ccfca07518b7Virustotal results 26 / 71 (36.62%) AveMariaRAT103.224.241.225:1604
2020-12-04 09:51:24e4a474aaacf4cbc96183ff936f3893c1n/aAveMariaRAT185.128.25.29:6606
2020-12-04 09:51:24e4a474aaacf4cbc96183ff936f3893c1n/aAveMariaRAT185.128.25.29:6606
2020-04-08 15:59:05b50369a956cfff0ced9779ffdfcae38an/aAveMariaRAT45.125.239.219:6204
2020-04-08 15:59:05b50369a956cfff0ced9779ffdfcae38an/aAveMariaRAT45.125.239.219:6204
2020-03-19 03:22:2547552bc44e6dd7ff10dfe3ad06601e5bn/aAveMariaRAT185.244.30.193:6065
2020-03-19 03:22:2547552bc44e6dd7ff10dfe3ad06601e5bn/aAveMariaRAT185.244.30.193:6065