JA3 Fingerprints

You can find further information about the JA3 fingerprint 849b04bdbd1d2b983f6e8a457e0632a8, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:849b04bdbd1d2b983f6e8a457e0632a8
First seen:2017-07-16 08:37:17 UTC
Last seen:2021-07-25 08:33:18 UTC
Status:Blacklisted
Malware samples:898
Destination IPs:567
Malware:Adware
Listing date:2018-11-14 11:52:11

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-06-17 06:51:102b55e6fd8defb15062584f6db8dfff70n/a216.58.215.238:443
2024-06-17 06:51:102b55e6fd8defb15062584f6db8dfff70n/a43.154.240.9:443
2024-06-17 06:51:092b55e6fd8defb15062584f6db8dfff70n/a172.217.168.46:443
2024-06-17 03:05:17225a234969eb43475b173c63a5b2ccaen/a172.217.168.46:443
2024-06-17 03:05:14225a234969eb43475b173c63a5b2ccaen/a43.154.240.9:443
2024-06-17 01:53:112466a87939ac08d86e957a8ccdb1979cn/a43.154.240.9:443
2024-06-17 01:53:092466a87939ac08d86e957a8ccdb1979cn/a172.217.168.78:443
2024-06-17 01:53:082466a87939ac08d86e957a8ccdb1979cn/a142.250.203.110:443
2024-06-16 21:17:1723111c9da2e332dc3b696a074964517dn/a43.154.240.9:443
2024-06-16 21:17:1723111c9da2e332dc3b696a074964517dn/a142.251.36.14:443
2024-06-16 20:34:3710e98808ecd18802a44f3de30e7d391cn/a43.154.240.9:443
2024-06-16 20:34:3510e98808ecd18802a44f3de30e7d391cn/a172.217.168.46:443
2024-05-09 21:21:424aea4ed0d7e1c9a07e21b008674b9cc5n/a213.180.193.234:443
2024-05-09 21:21:424aea4ed0d7e1c9a07e21b008674b9cc5n/a87.250.251.66:443
2024-04-30 20:22:55498cf91905e892ae18420f40181e2f92n/a43.154.240.9:443
2024-04-30 20:22:55498cf91905e892ae18420f40181e2f92n/a216.58.215.227:443
2024-04-30 20:22:55498cf91905e892ae18420f40181e2f92n/a163.171.128.148:443
2024-04-30 20:22:55498cf91905e892ae18420f40181e2f92n/a216.58.215.238:443
2024-04-30 20:22:55498cf91905e892ae18420f40181e2f92n/a43.129.255.211:443
2024-04-30 20:22:55498cf91905e892ae18420f40181e2f92n/a142.250.203.110:443
2024-04-30 20:22:54498cf91905e892ae18420f40181e2f92n/a47.246.165.152:443
2024-04-30 20:22:54498cf91905e892ae18420f40181e2f92n/a43.154.240.84:443
2024-04-30 20:22:54498cf91905e892ae18420f40181e2f92n/a43.135.106.244:443
2024-04-15 23:18:5529d00d80eb6bacf57cc012065243bb98Virustotal results 49 / 70 (70.00%) 142.250.203.110:443
2024-04-15 23:18:5429d00d80eb6bacf57cc012065243bb98Virustotal results 49 / 70 (70.00%) 43.154.240.9:443
2024-01-09 18:33:14224b41ddd63ab206a8f4b65406378fe7Virustotal results 24 / 71 (33.80%) 142.250.203.106:443
2024-01-09 18:33:14224b41ddd63ab206a8f4b65406378fe7Virustotal results 24 / 71 (33.80%) 172.217.168.67:443
2024-01-09 18:33:14224b41ddd63ab206a8f4b65406378fe7Virustotal results 24 / 71 (33.80%) 172.217.168.78:443
2024-01-09 18:33:14224b41ddd63ab206a8f4b65406378fe7Virustotal results 24 / 71 (33.80%) 142.250.203.110:443
2024-01-09 18:33:13224b41ddd63ab206a8f4b65406378fe7Virustotal results 24 / 71 (33.80%) 216.58.215.238:443
2022-12-20 23:38:10a97bbc275bbd2c60a2c186e5b4edfd9bn/a185.10.104.115:443
2022-12-20 23:38:09a97bbc275bbd2c60a2c186e5b4edfd9bn/a142.251.36.14:443
2022-12-20 23:38:08a97bbc275bbd2c60a2c186e5b4edfd9bn/a36.110.192.156:443
2022-12-20 23:38:08a97bbc275bbd2c60a2c186e5b4edfd9bn/a182.61.200.129:443
2022-10-01 21:53:511c87bfe427fc82c77a38bfa18dacb95dVirustotal results 50 / 69 (72.46%) 142.250.68.4:443
2022-10-01 21:53:501c87bfe427fc82c77a38bfa18dacb95dVirustotal results 50 / 69 (72.46%) 204.155.149.27:443
2022-10-01 21:53:501c87bfe427fc82c77a38bfa18dacb95dVirustotal results 50 / 69 (72.46%) 216.245.214.81:443
2022-10-01 21:53:501c87bfe427fc82c77a38bfa18dacb95dVirustotal results 50 / 69 (72.46%) 142.250.72.138:443
2022-10-01 21:53:501c87bfe427fc82c77a38bfa18dacb95dVirustotal results 50 / 69 (72.46%) 157.240.11.22:443
2022-10-01 21:53:501c87bfe427fc82c77a38bfa18dacb95dVirustotal results 50 / 69 (72.46%) 142.250.188.238:443
2021-08-16 06:32:51feffe598aae2d6a0d688e1ce1e678869n/a203.205.253.183:443
2021-08-16 06:32:51feffe598aae2d6a0d688e1ce1e678869n/a216.58.215.238:443
2021-07-25 08:33:18aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 216.58.214.14:443
2021-07-25 08:33:18aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 142.250.179.131:443
2021-07-25 08:33:18aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 216.58.214.14:443
2021-07-25 08:33:18aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 142.250.179.131:443
2021-07-25 08:33:17aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 203.205.253.183:443
2021-07-25 08:33:17aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 142.251.36.14:443
2021-07-25 08:33:17aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 163.171.143.15:443
2021-07-25 08:33:17aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 203.205.253.183:443
2021-07-25 08:33:17aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 142.251.36.14:443
2021-07-25 08:33:17aa1730073c099f34bcda51f473c9d1dcVirustotal results 31 / 70 (44.29%) 163.171.143.15:443
2021-06-17 11:38:17df2c167eddbfc554aa1bb251ac204591Virustotal results 38 / 70 (54.29%) 203.205.253.140:443
2021-06-17 11:38:17df2c167eddbfc554aa1bb251ac204591Virustotal results 38 / 70 (54.29%) 172.217.168.78:443
2021-06-17 11:38:17df2c167eddbfc554aa1bb251ac204591Virustotal results 38 / 70 (54.29%) 203.205.253.140:443
2021-06-17 11:38:17df2c167eddbfc554aa1bb251ac204591Virustotal results 38 / 70 (54.29%) 172.217.168.78:443
2021-06-10 01:22:08eabcb732ce185e3c687c12eaf90ca5b0Virustotal results 37 / 66 (56.06%) 204.155.149.44:443
2021-06-10 01:22:08eabcb732ce185e3c687c12eaf90ca5b0Virustotal results 37 / 66 (56.06%) 216.58.208.110:443
2021-06-10 01:22:08eabcb732ce185e3c687c12eaf90ca5b0Virustotal results 37 / 66 (56.06%) 204.155.149.44:443
2021-06-10 01:22:08eabcb732ce185e3c687c12eaf90ca5b0Virustotal results 37 / 66 (56.06%) 216.58.208.110:443
2021-06-09 22:28:56dfea5046edf5fdbff8a31344b0ae98d1Virustotal results 4 / 55 (7.27%) 216.58.214.14:443
2021-06-09 22:28:56dfea5046edf5fdbff8a31344b0ae98d1Virustotal results 4 / 55 (7.27%) 216.58.208.110:443
2021-06-09 22:28:56dfea5046edf5fdbff8a31344b0ae98d1Virustotal results 4 / 55 (7.27%) 203.205.253.140:443
2021-06-09 22:28:56dfea5046edf5fdbff8a31344b0ae98d1Virustotal results 4 / 55 (7.27%) 216.58.214.14:443
2021-06-09 22:28:56dfea5046edf5fdbff8a31344b0ae98d1Virustotal results 4 / 55 (7.27%) 216.58.208.110:443
2021-06-09 22:28:56dfea5046edf5fdbff8a31344b0ae98d1Virustotal results 4 / 55 (7.27%) 203.205.253.140:443
2021-05-10 07:45:1628c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 172.217.168.14:443
2021-05-10 07:45:1628c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 204.155.149.44:443
2021-05-10 07:45:1628c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 172.217.168.4:443
2021-05-10 07:45:1628c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 172.217.168.14:443
2021-05-10 07:45:1628c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 204.155.149.44:443
2021-05-10 07:45:1628c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 172.217.168.4:443
2021-05-10 07:45:1528c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 69.171.250.13:443
2021-05-10 07:45:1528c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 172.217.168.42:443
2021-05-10 07:45:1528c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 69.171.250.13:443
2021-05-10 07:45:1528c13711460fdfe47fed8e2256a6738dVirustotal results 36 / 65 (55.38%) 172.217.168.42:443
2021-05-09 10:35:58ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 172.217.168.35:443
2021-05-09 10:35:58ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 172.217.168.42:443
2021-05-09 10:35:58ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 157.240.17.15:443
2021-05-09 10:35:58ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 204.155.149.44:443
2021-05-09 10:35:58ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 172.217.168.35:443
2021-05-09 10:35:58ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 172.217.168.42:443
2021-05-09 10:35:58ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 157.240.17.15:443
2021-05-09 10:35:58ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 204.155.149.44:443
2021-05-09 10:35:57ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 172.217.168.14:443
2021-05-09 10:35:57ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 216.58.215.228:443
2021-05-09 10:35:57ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 172.217.168.14:443
2021-05-09 10:35:57ccc22564ef41f8b0907f719348ac84e4Virustotal results 37 / 68 (54.41%) 216.58.215.228:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 172.217.168.10:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 216.58.215.238:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 172.217.168.4:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 69.171.250.13:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 172.217.168.35:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 172.217.168.14:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 204.155.149.44:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 172.217.168.10:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 216.58.215.238:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 172.217.168.4:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 69.171.250.13:443
2021-04-19 12:47:57cef712eb5f2c13686d6def8da9dcc4a9Virustotal results 32 / 70 (45.71%) 172.217.168.35:443

# of entries: 100 (max: 100)