JA3 Fingerprints

You can find further information about the JA3 fingerprint 49ed2ef3f1321e5f044f1e71b0e6fdd5, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:49ed2ef3f1321e5f044f1e71b0e6fdd5
First seen:2018-10-02 18:04:17 UTC
Last seen:2020-08-03 21:55:41 UTC
Status:Blacklisted
Malware samples:2'940
Destination IPs:337
Malware:TrickBot -
Listing date:2020-01-09 14:19:59

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-08-03 21:55:419a17a022ef237ee8e295211ebcba118dVirustotal results 50 / 71 (70.42%) 79.143.31.246:443
2020-07-31 01:44:48bd2c8862b73c848400a311cc4a80c284Virustotal results 46 / 69 (66.67%) 185.183.96.43:443
2020-07-25 13:45:13c21d37653dff2316776c6f15d5189b96Virustotal results 29 / 72 (40.28%) 125.74.58.136:443
2020-07-25 13:45:07c21d37653dff2316776c6f15d5189b96Virustotal results 29 / 72 (40.28%) 14.204.185.254:443
2020-07-25 13:45:05c21d37653dff2316776c6f15d5189b96Virustotal results 29 / 72 (40.28%) 101.69.146.33:443
2020-07-25 12:02:57bf4c018661a61b99504179d670e190daVirustotal results 25 / 72 (34.72%) 125.74.58.136:443
2020-07-25 12:02:53bf4c018661a61b99504179d670e190daVirustotal results 25 / 72 (34.72%) 14.204.185.254:443
2020-07-25 12:02:52bf4c018661a61b99504179d670e190daVirustotal results 25 / 72 (34.72%) 14.204.185.143:443
2020-07-25 12:02:52bf4c018661a61b99504179d670e190daVirustotal results 25 / 72 (34.72%) 111.161.121.26:443
2020-07-25 12:02:51bf4c018661a61b99504179d670e190daVirustotal results 25 / 72 (34.72%) 60.213.21.175:443
2020-07-25 12:02:47bf4c018661a61b99504179d670e190daVirustotal results 25 / 72 (34.72%) 101.69.146.33:443
2020-07-24 19:09:54a3a4fcf83092fe0515402b7a077e70b8Virustotal results 19 / 72 (26.39%) 101.69.146.33:443
2020-07-24 19:09:51a3a4fcf83092fe0515402b7a077e70b8Virustotal results 19 / 72 (26.39%) 14.204.185.254:443
2020-07-24 19:09:46a3a4fcf83092fe0515402b7a077e70b8Virustotal results 19 / 72 (26.39%) 125.74.58.136:443
2020-07-24 19:09:44a3a4fcf83092fe0515402b7a077e70b8Virustotal results 19 / 72 (26.39%) 60.213.21.175:443
2020-07-24 19:09:43a3a4fcf83092fe0515402b7a077e70b8Virustotal results 19 / 72 (26.39%) 14.204.185.143:443
2020-07-22 12:23:342c2e1c21840a5ca747367a7d8749d8e8n/a185.14.31.104:443
2020-07-11 22:50:175bd54b447bfb50c65748c1e10d2c15c7Virustotal results 58 / 73 (79.45%) 195.123.239.67:443
2020-07-10 11:55:11f6c3535120fdce3953d3c33fb2e719b7Virustotal results 51 / 72 (70.83%) 185.183.96.43:443
2020-07-10 06:21:36e743a25b1b1461c5b5051d8216d75af2n/a185.14.31.72:443
2020-07-10 05:57:49ee2d68a1451c4b4dae64dbe1a1c36b75n/a185.183.96.43:443
2020-07-10 05:55:23e4174c10531fa62d9ba1db286b9843c6n/a195.123.239.67:443
2020-07-10 05:21:18e134ee3259c56b89c9a8bd23e98733c9n/a45.148.120.153:443
2020-07-10 05:15:58e7c622727dc56a1d3fe1a86bb013e0b6n/a195.123.239.67:443
2020-07-08 18:05:25723d8513fa89baf78a5f21c5be29a4b3n/a185.14.31.104:443
2020-07-08 17:50:025b967ad9eabd6590b9ceb083a7732a5en/a185.14.31.104:443
2020-06-30 13:28:44c5e924e945463d476b764669e3804be3n/a185.99.2.115:443
2020-06-26 22:50:38b5c66b021546dd3b602defaf200a52afn/a185.14.31.104:443
2020-06-26 22:32:3444ff1fc8d87db778351484a83604a762n/a185.14.31.104:443
2020-06-26 21:14:313a8669277c59e07a2e6e2f30fcba1431n/a185.14.31.104:443
2020-06-26 21:13:471f39953a5c969e91c15bcc986a6bec91n/a185.14.31.104:443
2020-06-26 21:12:105b6fd2261ca683ccfe3d91431a24360cn/a185.14.31.104:443
2020-06-26 21:09:391c1efa2ae993d61cc3ced78dbbfe4bf5n/a185.14.31.104:443
2020-06-25 18:22:2409f4c9bad2c5ed4b9fce4c91f1d5668cn/a185.186.77.216:443
2020-06-24 11:22:11a8c018bcfb7b24f9b8f1bc20540955f1n/a185.99.2.115:443
2020-06-24 08:25:37873a4c497c0c592fc3930e8de1cee614n/a185.14.31.72:443
2020-06-24 06:09:424b1a69c66e67e3f227fd3976558a06ebn/a185.99.2.115:443
2020-06-23 15:44:241cde18ef3ad239d68d60f73536537583n/a185.99.2.115:443
2020-06-23 15:27:512a57c6a493d8c36b6ea372ad0ce439c8n/a91.235.129.25:443
2020-06-23 15:27:3702d352fa8af33b8ddd57931237fd17c0n/a51.89.115.103:443
2020-06-23 15:19:4523007880f925faa90cf2a4c13d3ffff6n/a51.89.115.103:443
2020-06-23 15:05:11ec2f865798029540e933b678295a8c8cn/a185.186.77.216:443
2020-06-23 15:05:10ec2f865798029540e933b678295a8c8cn/a195.123.239.194:443
2020-06-22 16:29:49b41f15ee9c220f9e3392f067e6727950n/a185.14.31.72:443
2020-06-22 14:23:427e360e5e84d36e57df80aa95e1fc2298Virustotal results 57 / 71 (80.28%) 195.123.243.60:443
2020-06-22 07:51:145f8d84cddda474477132cc6d602be116Virustotal results 51 / 69 (73.91%) 195.123.243.60:443
2020-06-21 19:35:102ecbf3ac77a474d5b13aa3864822fd5dVirustotal results 54 / 70 (77.14%) 195.123.246.69:443
2020-06-21 07:46:29fd2179919852756948de14dec44cb0f2Virustotal results 56 / 71 (78.87%) 195.123.246.69:443
2020-06-21 06:36:18f983378d63d687688b25d51a58843a29Virustotal results 37 / 66 (56.06%) 195.123.243.60:443
2020-06-20 15:40:248a81583d5d2ca017800dd1fbb31be194Virustotal results 39 / 73 (53.42%) 185.14.31.72:443
2020-06-15 09:24:22bac3a4384e07a6a251e981bc7ed06047Virustotal results 53 / 74 (71.62%) 165.22.98.96:443
2020-06-13 09:20:014403893b4ddc9446422a647fb4eb7837Virustotal results 38 / 74 (51.35%) 107.175.72.141:443
2020-06-09 11:27:17d206ad9daddd13b802a73ea8d373d41fVirustotal results 50 / 70 (71.43%) 195.123.246.69:443
2020-06-09 11:23:28d05ad6c985c13660cdb565221ef9854fVirustotal results 49 / 69 (71.01%) 195.123.246.69:443
2020-06-09 11:12:05c7d7dbe98bd55b3447eb7a10f783aa61Virustotal results 52 / 67 (77.61%) 195.123.243.60:443
2020-06-09 09:27:159fa05bf7c69a5afcbf875233e2223a26Virustotal results 53 / 69 (76.81%) 195.123.246.69:443
2020-06-09 09:13:35973bc8b006c33fe3326f1d958a32053cVirustotal results 57 / 71 (80.28%) 195.123.246.69:443
2020-06-09 09:09:009366d255325c95e7fca41a4cd5905ddaVirustotal results 54 / 70 (77.14%) 195.123.246.69:443
2020-06-09 09:08:389044782d941ee6bf1e38535fe0add8f9n/a195.123.246.69:443
2020-06-09 08:28:506eaa93ff647677f4e48dec0ef3b788c4Virustotal results 60 / 72 (83.33%) 195.123.246.69:443
2020-06-09 07:54:311e10679399505bacd4365822d8324d06Virustotal results 54 / 69 (78.26%) 195.123.246.69:443
2020-06-09 06:45:164925e855fb2180f13b76e8df59265ce1n/a193.9.60.148:443
2020-06-09 06:33:4035f1a002a68f6c1d23434e6af2138e1cn/a193.9.60.148:443
2020-06-09 06:20:202374c6d5b8404b27e6bb3608b798cafan/a195.123.246.69:443
2020-06-07 07:57:1873735213ebad27eed3f94e5292196311Virustotal results 43 / 70 (61.43%) 185.14.31.72:443
2020-05-22 23:05:530701aa72e85685acc10c5bda16ee6f95n/a195.123.239.67:443
2020-05-21 21:41:117a090ed53a78af1f9785e698f683852aVirustotal results 48 / 72 (66.67%) 185.142.99.8:443
2020-05-17 07:48:54c8b7bc89d1e664207fcbe9c53dce3465n/a144.91.76.208:443
2020-05-17 07:43:02c77d118b63a47135c806d27aceb35f2fn/a144.91.76.208:443
2020-05-12 15:36:22bc308ad165af2fe7a8edac91357c8ffcVirustotal results 53 / 72 (73.61%) 195.123.243.60:443
2020-05-09 10:28:07fad271a9d141224332ec55af93959fb8n/a185.186.77.216:443
2020-05-09 08:18:23f68927cb749787303ed5147d54805a0an/a185.186.77.216:443
2020-05-06 17:16:50eaa5706ee7d0d6db9d133e950b7ef530n/a185.186.77.216:443
2020-05-06 14:00:36e111153bbb18becdd7814eb488ffc1fbn/a195.123.239.194:443
2020-05-06 12:41:46d9a1faa2da56aa69db4b60696fbf2fcen/a195.123.239.194:443
2020-05-06 12:37:51dbf82ec3d69b706c3264983c9fe3b7bbn/a185.186.77.216:443
2020-05-06 00:58:00c6a5713f6c633fae4ba1d88f57be2430n/a185.186.77.216:443
2020-05-05 22:17:26c4206c89c590e3f36af09a054844facbn/a185.186.77.216:443
2020-05-05 16:55:05c2de5111de3c8c4990012825ee6321b1n/a185.186.77.216:443
2020-05-05 05:20:11bc8e37d99bf5ee373f6948a1221035adn/a195.123.239.194:443
2020-05-04 09:10:52b81b5a9f7cbde507b0752e7953e15463n/a185.186.77.216:443
2020-05-03 21:59:28b4806e6d90f31199605f1bb870c06003n/a185.186.77.216:443
2020-05-02 23:36:08aced86fcc864ea8d70005e5fafd8a690Virustotal results 53 / 71 (74.65%) 92.234.120.194:443
2020-05-02 20:20:14ab9d8df7e2608ac12158a37cd2dc3d77n/a185.186.77.216:443
2020-05-02 12:19:19a9347b5fd0e914a187f8f71ca7f2a6c3n/a185.186.77.216:443
2020-05-02 09:12:31a7d625a0c2e525b79c0b1cdd77886e41n/a185.186.77.216:443
2020-05-02 06:33:16a6b3bca446e118a6a6a95b4961c38c55n/a185.186.77.216:443
2020-05-02 05:10:03a61cb48d84b531d1feabc8a557bb83e8n/a195.123.239.194:443
2020-05-02 04:19:51a5b06f77b226ab19b1ed3ed834746be6n/a185.186.77.216:443
2020-05-02 04:19:51a5b06f77b226ab19b1ed3ed834746be6n/a195.123.239.194:443
2020-05-01 08:59:3395251123e5e91889b7d9895df155f4d7n/a195.123.239.194:443
2020-05-01 07:44:188f602fc9d29d1008d9d6abe658be2ffdn/a195.123.239.194:443
2020-05-01 07:44:178f602fc9d29d1008d9d6abe658be2ffdn/a185.186.77.216:443
2020-05-01 05:43:4782cc036cd9f2e8980fdceffe2823e50bn/a185.186.77.216:443
2020-05-01 03:06:537176739cc976ff17b3387e743d175fb3n/a195.123.239.194:443
2020-05-01 02:16:236c2eba15c479e3f9d92e1423ad8b7aedn/a185.186.77.216:443
2020-05-01 02:01:1769d3af8be75b28554c9b9380ff541587n/a195.123.239.194:443
2020-05-01 00:24:485e36e1e42654bfb5b7c6529ad4ae1f27n/a195.123.239.194:443
2020-04-30 23:56:385ad0c3967150ede1bd36615aa596dd35n/a195.123.239.194:443
2020-04-30 22:01:3953e0d56bbf53e94aa650074c8d27d787n/a185.186.77.216:443

# of entries: 100 (max: 100)