JA3 Fingerprints

You can find further information about the JA3 fingerprint 3cda52da4ade09f1f781ad2e82dcfa20, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:3cda52da4ade09f1f781ad2e82dcfa20
First seen:2017-07-30 18:41:36 UTC
Last seen:2019-05-21 17:34:18 UTC
Status:Blacklisted
Malware samples:272
Destination IPs:179
Malware:Quakbot
Listing date:2019-05-20 05:19:27

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-05-21 17:34:1802b6ee7164eff6c2b7909c56f5089d64n/a104.255.82.205:443
2019-05-19 22:12:0994c78a96c91d72955211e1553e0bc7a7n/a96.22.239.27:2222
2019-05-18 19:36:29c565f3af38cca262d89187161f84cc3cn/a2.50.156.213:443
2019-05-18 17:48:589baee4fb015a8ec893b5625833f0a52cn/a96.241.121.101:443
2019-05-10 23:23:2745c58ce40dd73d742a81b4726b943fafVirustotal results 43/70 (61.43%) 76.106.120.58:995
2019-05-10 23:23:2745c58ce40dd73d742a81b4726b943fafVirustotal results 43/70 (61.43%) 166.62.180.194:2222
2019-05-10 23:23:2745c58ce40dd73d742a81b4726b943fafVirustotal results 43/70 (61.43%) 96.22.239.27:2222
2019-05-10 23:23:2745c58ce40dd73d742a81b4726b943fafVirustotal results 43/70 (61.43%) 73.55.10.195:443
2019-05-03 15:04:228919586f74f52703ebb8b3eb3489c386Virustotal results 33/71 (46.48%) 50.246.229.50:32103
2019-04-22 16:25:32797215ce236d9dbd73e7d3c85f03ee8cVirustotal results 46/70 (65.71%) 37.59.46.50:443
2019-04-14 10:17:413e1edaf0d7073cef8667aa5e5f44cfa1Virustotal results 43/69 (62.32%) 181.119.30.39:443
2019-04-13 09:03:02de15d44c87433d191ca2f1e635cc1131Virustotal results 42/68 (61.76%) 162.237.221.101:443
2019-04-12 04:17:175e1525be60c1fdbb1176851122ebfb07Virustotal results 48/71 (67.61%) 94.23.35.188:443
2019-04-12 04:17:175e1525be60c1fdbb1176851122ebfb07Virustotal results 48/71 (67.61%) 188.165.222.11:443
2019-04-10 11:53:23a23fdafe1a4f0af4082ee74d3695ed87Virustotal results 35/71 (49.30%) 173.79.220.2:443
2019-04-06 12:27:070ec2131cb55ce20349d33cc08be4cd4eVirustotal results 22/70 (31.43%) 216.221.73.45:2222
2019-04-02 13:38:1102d97b52b679d16f3e63f8f4a3ceba36Virustotal results 45/66 (68.18%) 94.23.35.188:443
2019-03-23 03:42:522d888acf4748e0d2e3e054e5f23dbce6Virustotal results 43/66 (65.15%) 94.23.35.188:443
2019-03-23 03:42:522d888acf4748e0d2e3e054e5f23dbce6Virustotal results 43/66 (65.15%) 188.165.206.208:443
2019-03-23 03:42:522d888acf4748e0d2e3e054e5f23dbce6Virustotal results 43/66 (65.15%) 188.165.222.11:443
2019-03-20 17:55:549dfa9e4da513496d3bdf114d48caa44cVirustotal results 5/71 (7.04%) 185.158.251.52:443
2019-03-20 12:58:2315659b5e1ac8cc5d4fe87e5098102514Virustotal results 46/69 (66.67%) 94.23.35.188:443
2019-03-10 18:46:387a016358db69fad33351f9216a65d0abVirustotal results 41/68 (60.29%) 37.59.46.50:443
2019-03-10 18:46:387a016358db69fad33351f9216a65d0abVirustotal results 41/68 (60.29%) 188.165.222.11:443
2019-03-09 20:41:21754571db59acd7ea85cdf8aaadd44f26Virustotal results 39/64 (60.94%) 37.59.46.50:443
2019-03-08 00:17:37c6b02da8a86d9186ad9811ac11e1c4b5Virustotal results 33/63 (52.38%) 188.165.206.208:443
2019-03-06 10:11:201c83d1f0bcfc7959e21864ae946ebb78Virustotal results 43/67 (64.18%) 192.198.85.26:443
2019-03-03 23:01:15d9536de3884eca4a795cc41a441170ffVirustotal results 20/62 (32.26%) 98.183.37.64:995
2019-03-01 11:28:08c1e12e27fd30be665a7e087eef72ce86Virustotal results 37/70 (52.86%) 94.23.35.188:443
2019-02-11 01:16:23cba8ae81c0f4ea25f39484f2d98a13c9Virustotal results 35/70 (50.00%) 70.183.154.153:995
2019-02-06 12:11:2144cdb7a0624bbde607eb2ae1356c2bc3Virustotal results 45/70 (64.29%) 173.12.74.190:80
2019-02-06 09:27:485c6446b05ad56f6ae0be17410272cd34Virustotal results 47/70 (67.14%) 209.152.153.64:443
2019-02-06 06:47:272ca8548e743ee039e2b8894c535f5c5fn/a192.198.85.26:443
2019-02-06 01:55:40f458e860d637364abf8a8c027a8259b2Virustotal results 39/71 (54.93%) 65.116.179.83:443
2019-02-06 01:55:40f458e860d637364abf8a8c027a8259b2Virustotal results 39/71 (54.93%) 24.173.61.30:443
2019-02-06 01:55:40f458e860d637364abf8a8c027a8259b2Virustotal results 39/71 (54.93%) 208.74.246.153:443
2019-01-19 22:51:128cdaf4ed0f12b1030dd1515e07d5daa7Virustotal results 9/68 (13.24%) 71.244.151.51:995
2019-01-17 10:27:0540bd588d8b0808ae1d62e56ae36075daVirustotal results 24/70 (34.29%) 73.52.28.5:443
2019-01-17 10:27:0540bd588d8b0808ae1d62e56ae36075daVirustotal results 24/70 (34.29%) 69.243.133.209:443
2019-01-17 10:27:0540bd588d8b0808ae1d62e56ae36075daVirustotal results 24/70 (34.29%) 189.175.124.143:443
2019-01-16 12:14:22d429170a3e2762bdd0869fb155bdad47n/a37.10.71.110:443
2019-01-08 20:41:40971d005c9802b239ef68a953b99e8052Virustotal results 44/68 (64.71%) 65.184.86.143:2222
2019-01-08 20:09:0970f2613f7331b90b002cb7865c22a731Virustotal results 47/70 (67.14%) 65.184.86.143:2222
2019-01-03 14:28:545e470e065810ee21dac5cac7d0b54e0fVirustotal results 32/71 (45.07%) 185.158.249.138:443
2019-01-03 10:54:48627ba09c59524c5e232d8632630f6758Virustotal results 24/71 (33.80%) 185.158.249.138:443
2018-12-23 19:32:3817873efe0d1a3de195e4d880ec85c16fVirustotal results 33/71 (46.48%) 189.175.148.230:443
2018-12-23 14:21:3355435cf7360c7802e9cc8c07301a4337Virustotal results 44/70 (62.86%) 104.3.91.20:995
2018-12-22 11:12:081dc06010af8da0c59ea89d39ebf1b5c5Virustotal results 36/71 (50.70%) 97.76.139.138:80
2018-12-22 11:12:081dc06010af8da0c59ea89d39ebf1b5c5Virustotal results 36/71 (50.70%) 79.166.127.191:443
2018-12-17 17:32:27d8f39686d2d3c48677332e1226126825Virustotal results 39/67 (58.21%) 68.59.209.183:995
2018-12-07 10:58:14a0ce47033eb34e8ec59ebe1a36bc2192Virustotal results 9/68 (13.24%) 69.30.241.245:443
2018-12-07 07:50:01fbf320d287f734ee16607b2725b7cdf9Virustotal results 26/69 (37.68%) 73.104.11.234:443
2018-11-23 10:02:36c3f3a8bb275bffa08c96ad4814dc52cfVirustotal results 25/48 (52.08%) 144.76.39.209:443
2018-11-22 21:11:23972f5eab223873eebb324785829ad372Virustotal results 37/68 (54.41%) 178.162.132.76:443
2018-11-20 21:45:241c177bfa9ccc1624fca79db3fad18cc1Virustotal results 13/67 (19.40%) 178.162.132.76:443
2018-11-20 16:05:550a3bc604816cfb397c07ec6bb79ad77fVirustotal results 25/68 (36.76%) 185.203.118.214:443
2018-11-18 20:13:559e379763d8a783c603a65c6d596369a9n/a185.203.118.214:443
2018-11-14 19:03:303b0222852692612fe67b2ac76599a343Virustotal results 9/65 (13.85%) 185.158.249.206:443
2018-11-14 03:17:0803606fb730cc2a483e4a1a7f22c76887Virustotal results 20/69 (28.99%) 185.158.251.119:443
2018-11-13 20:55:2006796a5bef5ea412b229ce1d67a0275aVirustotal results 18/65 (27.69%) 70.183.154.153:995
2018-11-13 14:51:27c80e3126121053e9112b400242381fb5Virustotal results 35/67 (52.24%) 185.158.249.174:443
2018-11-09 22:16:06cd65a537f08b18421fca4eda931f7534Virustotal results 5/68 (7.35%) 85.204.74.146:443
2018-11-05 12:46:01e4329dbcaad448f1532ed42246d40deaVirustotal results 34/68 (50.00%) 24.209.130.208:443
2018-11-05 12:46:00e4329dbcaad448f1532ed42246d40deaVirustotal results 34/68 (50.00%) 152.26.208.26:443
2018-10-13 12:29:26a5638df18783f6c56cfef50b96b3c5e8Virustotal results 56/68 (82.35%) 94.23.35.188:443
2018-10-04 22:05:21a5bf958a8d0e3a89d9e856fe6d8d11bdn/a185.212.44.63:443
2018-09-30 13:10:156fe0467ad268ca38407ba9bfd2f27832Virustotal results 28/69 (40.58%) 142.44.207.84:443
2018-09-30 08:29:42fb74468d8241c7b98fe46ad1e01898c0n/a185.212.44.63:443
2018-09-27 18:05:54018c280e905ddc6800d7874ae9236ec7n/a65.116.179.83:443
2018-09-25 09:54:0707d457058ef1f9698a8ea0756eacb8a1n/a185.219.83.73:443
2018-09-23 06:51:12021bfa97ebb32765c9a6f39ee9f5c2e1n/a68.129.231.84:443
2018-09-14 16:48:40eb186ca3573690c7a0d6c3323ea1d2fdVirustotal results 7/66 (10.61%) 62.113.238.143:443
2018-09-10 08:46:1771783e00dbc752b3edeca73b2b9f11c0n/a185.158.251.187:443
2018-09-06 19:40:24eae82ca94386e384339592238c07603dn/a62.113.238.143:443
2018-09-06 14:53:5294c9621f51f772bef67c6f176edb94e2Virustotal results 10/65 (15.38%) 62.113.238.143:443
2018-08-27 16:55:15ddac411371ef5630f1486c3388f03468Virustotal results 41/66 (62.12%) 185.158.251.175:443
2018-08-26 15:55:55599c4eefd3421362f4fcd3d7c134e8a6Virustotal results 35/66 (53.03%) 212.73.150.39:443
2018-08-26 00:00:050ea4aa921d0b72fcab4b55c02f9b337fn/a47.221.46.163:443
2018-08-25 18:19:5275450f83b658b4803684b561afe2aa32Virustotal results 19/68 (27.94%) 212.73.150.39:443
2018-08-25 00:47:084389f7b0bf872ece2cce361417f124b4Virustotal results 34/68 (50.00%) 212.73.150.39:443
2018-08-24 14:34:06b11cda5162736b95981436f0577c4272Virustotal results 12/68 (17.65%) 62.113.238.143:443
2018-08-23 14:35:35c897dfbe787dc7acfcb49d7838b8e89cVirustotal results 7/67 (10.45%) 185.158.251.175:443
2018-08-23 14:33:5200ab177f5e11fe9c0936693501c642a6n/a24.180.246.147:443
2018-08-23 12:38:45feae37306ae40504da0b79d3b632bde7n/a212.73.150.39:443
2018-08-21 20:35:41ddc9c2e3e09554ff7ffe5f66117733a8n/a212.73.150.39:443
2018-08-18 21:47:34c712c5314adac57b81a9cd8a252d5ba7n/a185.158.251.175:443
2018-08-16 21:31:26a47b6eb5fe6a0e0c163c084548e4c421Virustotal results 58/68 (85.29%) 37.59.46.50:443
2018-08-16 21:31:26a47b6eb5fe6a0e0c163c084548e4c421Virustotal results 58/68 (85.29%) 188.165.222.11:443
2018-08-14 11:13:405a110c7cefcaec528dc5c84bfbbcc4a5n/a185.158.251.175:443
2018-08-06 18:33:022b5deb80fb83a8ffd52435dac968951an/a185.158.251.175:443
2018-08-06 15:09:2500750a04d800010a7c00e44d923b7f02n/a94.23.35.188:443
2018-08-04 18:40:16002f304487d3b3ffec9e9dcce8619a24n/a71.190.202.120:443
2018-08-03 20:48:39c903021b9b6abd31940d023d5ddcc002n/a50.32.243.36:443
2018-08-03 01:53:560e6742f83f53eada92f4f28eae56613fVirustotal results 21/68 (30.88%) 216.201.159.118:443
2018-07-31 15:50:28342a4d1bbe5f84913139e319ee508301Virustotal results 17/68 (25.00%) 24.209.130.208:443
2018-07-25 15:52:556632250521ac4d6612be6431093ffcbfVirustotal results 23/60 (38.33%) 98.103.2.226:443
2018-07-25 06:30:45762a900fdc00e4f985e9238848006453Virustotal results 24/60 (40.00%) 68.49.120.179:443
2018-07-25 05:33:3599aeddccc1c4efd5205d6fa3e76801b2Virustotal results 23/60 (38.33%) 75.189.235.216:443
2018-07-24 18:23:220998b70e9b563cf89e94b852c9761b66Virustotal results 23/60 (38.33%) 70.118.18.242:443
2018-07-24 18:14:477d568b841e359d8c52025b7f186ffdfcVirustotal results 14/58 (24.14%) 67.197.97.144:443

# of entries: 100 (max: 100)