ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 37.120.206.69:5200.

Database Entry


IOC ID:843632
IOC: 37.120.206.69:5200
IOC Type :ip:port
Threat Type :botnet_cc
Malware: Ave Maria
Malware alias:AVE_MARIA, AveMariaRAT, Warzone RAT, WarzoneRAT, avemaria
Confidence Level : Confidence level is high (100%)
ASN:AS9009 M247
Country:- RO
First seen:2022-08-16 18:15:21 UTC
Last seen:2023-09-27 13:52:21 UTC
UUID:644e2bcf-1d8f-11ed-ae73-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:AveMariaRAT

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-08-17 17:20:05 66fe35bea283335f4fc67950ca3f4a73f5a937bf1b7144435ca68078aef1da75
2022-08-16 18:15:25 ffe13fa2fdec8497233e363cefdc05d2ab43263b0362c00c1a75713ca99ce104
2022-08-16 18:15:23 45e2b3a23fe19f6fae36f077bd794de0b67735b2d8654d445f2c405217c88953