JA3 Fingerprints

You can find further information about the JA3 fingerprint 49ed2ef3f1321e5f044f1e71b0e6fdd5, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:49ed2ef3f1321e5f044f1e71b0e6fdd5
First seen:2018-10-02 18:04:17 UTC
Last seen:2021-08-08 22:08:01 UTC
Status:Blacklisted
Malware samples:6'184
Destination IPs:701
Malware:TrickBot -
Listing date:2020-01-09 14:19:59

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-06-02 03:06:3710dfe99fe136e2daa22a70aa1ecc9e41n/a137.66.16.9:443
2023-06-02 03:06:3510dfe99fe136e2daa22a70aa1ecc9e41n/a137.66.16.10:443
2023-06-02 03:06:3510dfe99fe136e2daa22a70aa1ecc9e41n/a137.66.16.8:443
2023-06-02 03:06:3510dfe99fe136e2daa22a70aa1ecc9e41n/a137.66.16.6:443
2023-06-02 03:06:3510dfe99fe136e2daa22a70aa1ecc9e41n/a137.66.16.11:443
2023-06-02 03:06:3510dfe99fe136e2daa22a70aa1ecc9e41n/a137.66.16.4:443
2023-06-02 03:06:3510dfe99fe136e2daa22a70aa1ecc9e41n/a137.66.16.3:443
2023-05-27 23:44:0194e61f8b2ee795a4dd9026dc30ca8c76n/a195.133.48.80:443
2023-05-23 00:02:2419c3ac729925ee5491f963f84faf9842n/a192.42.96.202:443
2023-05-23 00:02:2319c3ac729925ee5491f963f84faf9842n/a192.42.43.31:443
2023-05-18 01:09:0903848e4973dca3874936408b3d163cacn/a146.185.219.165:443
2023-05-04 08:24:54a3f04f707a0b2e452a61f01391706520n/a137.66.56.194:443
2023-04-23 17:40:510a85410c988ae0698352d21ed1215108n/a23.94.70.12:443
2023-04-15 18:25:11a09bfbcac469ccb01588d5dad416e23an/a86.104.194.116:443
2023-04-01 07:44:41125022db0c99257050fcc58fd9e7c858n/a206.188.197.143:80
2023-04-01 07:30:56070bb0112f5a397a5c5c145e9ddf6b87Virustotal results 18 / 67 (26.87%) 206.188.197.143:80
2023-04-01 07:26:27099e3d949f419abc07859a434a69bf12Virustotal results 32 / 68 (47.06%) 206.188.197.143:80
2023-03-31 00:49:4228834c386fab395d20beaac6ca40566fn/a206.188.197.143:80
2023-03-29 05:20:34b50240741768778e5637800c2a160c8dn/a191.101.251.141:443
2023-02-27 06:53:5454eef0f45a04cd91cd7db38310fc785fn/a193.117.208.107:7200
2023-02-24 20:27:25354c97eded1238a098a02b2be9a3f095Virustotal results 23 / 70 (32.86%) 137.66.56.194:443
2023-02-21 10:21:3818697c4a122a23d293d0f05bc1ab88e4n/a101.43.111.6:9896
2023-02-19 02:41:05aa67879a7659f29ef8adb0f0caef19e1n/a137.66.55.142:443
2023-02-08 15:22:358606155de5b680684d77aa0469ae8ce1n/a104.25.209.23:443
2023-02-08 15:22:338606155de5b680684d77aa0469ae8ce1n/a172.67.71.120:443
2023-02-04 13:40:24d3dc39d9662ed977a382af4cce000a48n/a113.160.132.237:443
2023-02-01 10:19:150592454bef8b2369cc43d1c9caff2cdbVirustotal results 36 / 69 (52.17%) 113.160.132.237:443
2023-01-09 22:50:4806a0926d25a6e6ea860d9e1fa20fbd8bn/a51.38.134.203:8080
2023-01-01 07:19:487a0151a72581e590799407d387a7d96an/a47.117.116.73:50035
2022-12-29 07:17:130a0d1297165801dddd5186d52a50dd84n/a35.226.221.156:443
2022-12-29 07:17:090a0d1297165801dddd5186d52a50dd84n/a35.226.111.104:443
2022-12-29 07:17:090a0d1297165801dddd5186d52a50dd84n/a35.226.196.171:443
2022-12-29 07:17:060a0d1297165801dddd5186d52a50dd84n/a35.226.208.177:443
2022-12-29 07:17:050a0d1297165801dddd5186d52a50dd84n/a35.226.89.151:443
2022-12-29 07:17:040a0d1297165801dddd5186d52a50dd84n/a35.226.159.138:443
2022-12-29 07:17:000a0d1297165801dddd5186d52a50dd84n/a35.226.219.97:443
2022-12-29 07:16:580a0d1297165801dddd5186d52a50dd84n/a35.226.18.254:443
2022-12-02 22:24:1246215c231e0840cff2e3f9401d8504c4n/a104.16.160.179:443
2022-12-02 22:24:1246215c231e0840cff2e3f9401d8504c4n/a104.16.105.155:443
2022-12-02 22:24:1046215c231e0840cff2e3f9401d8504c4n/a104.16.204.218:443
2022-12-02 22:24:0846215c231e0840cff2e3f9401d8504c4n/a104.16.19.173:443
2022-12-02 22:24:0846215c231e0840cff2e3f9401d8504c4n/a104.16.12.134:443
2022-12-02 22:24:0746215c231e0840cff2e3f9401d8504c4n/a104.16.243.216:443
2022-12-02 22:24:0746215c231e0840cff2e3f9401d8504c4n/a104.16.129.128:443
2022-12-02 22:24:0646215c231e0840cff2e3f9401d8504c4n/a104.17.7.116:443
2022-12-02 22:24:0646215c231e0840cff2e3f9401d8504c4n/a104.16.198.197:443
2022-12-02 22:24:0646215c231e0840cff2e3f9401d8504c4n/a104.16.127.142:443
2022-12-02 22:24:0646215c231e0840cff2e3f9401d8504c4n/a104.16.74.185:443
2022-12-02 22:24:0546215c231e0840cff2e3f9401d8504c4n/a104.16.166.165:443
2022-12-02 22:24:0346215c231e0840cff2e3f9401d8504c4n/a104.16.254.244:443
2022-12-02 22:24:0346215c231e0840cff2e3f9401d8504c4n/a104.16.250.244:443
2022-12-02 22:24:0246215c231e0840cff2e3f9401d8504c4n/a104.16.247.178:443
2022-12-02 22:24:0246215c231e0840cff2e3f9401d8504c4n/a104.16.124.115:443
2022-12-02 22:24:0146215c231e0840cff2e3f9401d8504c4n/a104.16.181.155:443
2022-12-02 22:24:0146215c231e0840cff2e3f9401d8504c4n/a104.16.58.131:443
2022-12-02 22:24:0046215c231e0840cff2e3f9401d8504c4n/a104.16.116.105:443
2022-12-02 22:24:0046215c231e0840cff2e3f9401d8504c4n/a104.16.199.87:443
2022-12-02 22:24:0046215c231e0840cff2e3f9401d8504c4n/a104.16.195.203:443
2022-12-02 22:23:5946215c231e0840cff2e3f9401d8504c4n/a104.16.248.77:443
2022-12-02 22:23:5946215c231e0840cff2e3f9401d8504c4n/a104.16.190.161:443
2022-12-02 22:23:5846215c231e0840cff2e3f9401d8504c4n/a104.16.10.133:443
2022-12-02 22:23:5846215c231e0840cff2e3f9401d8504c4n/a104.17.5.237:443
2022-12-02 22:23:5846215c231e0840cff2e3f9401d8504c4n/a104.16.240.235:443
2022-12-02 22:23:5846215c231e0840cff2e3f9401d8504c4n/a104.16.219.179:443
2022-12-02 22:23:5846215c231e0840cff2e3f9401d8504c4n/a104.16.102.186:443
2022-12-02 22:23:5746215c231e0840cff2e3f9401d8504c4n/a104.16.57.132:443
2022-12-02 22:23:5746215c231e0840cff2e3f9401d8504c4n/a104.16.202.233:443
2022-12-02 22:23:5646215c231e0840cff2e3f9401d8504c4n/a104.16.179.157:443
2022-12-02 22:23:5646215c231e0840cff2e3f9401d8504c4n/a104.16.145.223:443
2022-12-02 22:23:5646215c231e0840cff2e3f9401d8504c4n/a104.16.40.130:443
2022-12-02 22:23:5646215c231e0840cff2e3f9401d8504c4n/a104.16.164.118:443
2022-12-02 22:23:5546215c231e0840cff2e3f9401d8504c4n/a104.16.253.8:443
2022-12-02 22:23:5546215c231e0840cff2e3f9401d8504c4n/a104.16.213.254:443
2022-12-02 22:23:5546215c231e0840cff2e3f9401d8504c4n/a104.16.104.217:443
2022-12-02 22:23:5446215c231e0840cff2e3f9401d8504c4n/a104.16.56.217:443
2022-12-02 22:23:5446215c231e0840cff2e3f9401d8504c4n/a104.16.17.240:443
2022-12-02 22:23:5446215c231e0840cff2e3f9401d8504c4n/a104.16.161.193:443
2022-12-02 22:23:5346215c231e0840cff2e3f9401d8504c4n/a104.16.94.215:443
2022-12-02 22:23:5246215c231e0840cff2e3f9401d8504c4n/a104.16.54.117:443
2022-12-02 22:23:5246215c231e0840cff2e3f9401d8504c4n/a104.16.20.216:443
2022-12-02 22:23:5246215c231e0840cff2e3f9401d8504c4n/a104.16.189.154:443
2022-12-02 22:23:5246215c231e0840cff2e3f9401d8504c4n/a104.16.125.19:443
2022-12-02 22:23:5246215c231e0840cff2e3f9401d8504c4n/a104.16.229.126:443
2022-12-02 22:23:5146215c231e0840cff2e3f9401d8504c4n/a104.16.193.64:443
2022-12-02 22:23:5046215c231e0840cff2e3f9401d8504c4n/a104.16.117.129:443
2022-12-02 22:23:5046215c231e0840cff2e3f9401d8504c4n/a104.16.92.157:443
2022-12-02 22:23:5046215c231e0840cff2e3f9401d8504c4n/a104.16.16.132:443
2022-12-02 22:23:4846215c231e0840cff2e3f9401d8504c4n/a104.16.114.91:443
2022-12-02 22:23:4846215c231e0840cff2e3f9401d8504c4n/a104.16.51.163:443
2022-12-02 22:23:4746215c231e0840cff2e3f9401d8504c4n/a104.16.44.18:443
2022-12-02 22:23:4746215c231e0840cff2e3f9401d8504c4n/a104.16.18.219:443
2022-12-02 22:23:4746215c231e0840cff2e3f9401d8504c4n/a104.16.37.254:443
2022-12-02 22:23:4646215c231e0840cff2e3f9401d8504c4n/a104.16.122.148:443
2022-12-02 22:23:4646215c231e0840cff2e3f9401d8504c4n/a104.16.149.168:443
2022-12-02 22:23:4546215c231e0840cff2e3f9401d8504c4n/a104.16.174.202:443
2022-12-02 22:23:4546215c231e0840cff2e3f9401d8504c4n/a104.16.249.134:443
2022-12-02 22:23:4346215c231e0840cff2e3f9401d8504c4n/a104.16.236.117:443
2022-12-02 22:23:4346215c231e0840cff2e3f9401d8504c4n/a104.16.11.195:443
2022-12-02 22:23:4346215c231e0840cff2e3f9401d8504c4n/a104.16.209.159:443
2022-12-02 22:23:4246215c231e0840cff2e3f9401d8504c4n/a104.16.14.1:443

# of entries: 100 (max: 100)