Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with AveMariaRAT

Database Entry


Malware:AveMariaRAT
First seen:2020-03-19 03:22:25 UTC
Last seen:2021-03-29 14:56:58 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-03-29 14:56:58ed7d4095f6f3ca8104b8ccfca07518b7Virustotal results 26 / 71 (36.62%) AveMariaRAT103.224.241.225:1604
2021-03-29 14:56:58ed7d4095f6f3ca8104b8ccfca07518b7Virustotal results 26 / 71 (36.62%) AveMariaRAT103.224.241.225:1604
2020-12-04 09:51:24e4a474aaacf4cbc96183ff936f3893c1n/aAveMariaRAT185.128.25.29:6606
2020-12-04 09:51:24e4a474aaacf4cbc96183ff936f3893c1n/aAveMariaRAT185.128.25.29:6606
2020-04-08 15:59:05b50369a956cfff0ced9779ffdfcae38an/aAveMariaRAT45.125.239.219:6204
2020-04-08 15:59:05b50369a956cfff0ced9779ffdfcae38an/aAveMariaRAT45.125.239.219:6204
2020-03-19 03:22:2547552bc44e6dd7ff10dfe3ad06601e5bn/aAveMariaRAT185.244.30.193:6065
2020-03-19 03:22:2547552bc44e6dd7ff10dfe3ad06601e5bn/aAveMariaRAT185.244.30.193:6065