JA3 Fingerprints

You can find further information about the JA3 fingerprint d2935c58fe676744fecc8614ee5356c7, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:d2935c58fe676744fecc8614ee5356c7
First seen:2018-08-14 21:48:41 UTC
Last seen:2020-03-28 20:39:18 UTC
Status:Blacklisted
Malware samples:799
Destination IPs:532
Malware:Adwind
Listing date:2019-02-14 13:25:15

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-03-28 20:39:186c5c3d871cceafcbd34d635c15348434Virustotal results 17 / 63 (26.98%) 77.48.28.231:2424
2020-03-27 12:48:4370396c57355c2f806a5f84f72d55f228n/a45.147.229.106:8720
2020-03-27 01:08:04a20803cfc16d168b2bff3d1a5cd7c35dVirustotal results 0 / 68 (0.00%) 116.62.78.168:443
2020-03-26 02:04:19ea9229d9d28093c125aa30bb3077bab8n/a192.169.69.25:7562
2020-03-25 17:12:50870f05469fb555bba7d34592c2df0110n/a60.51.99.42:4424
2020-03-25 07:42:23f97982823c05c15f538025420b77e0cfn/a185.140.53.235:3030
2020-03-24 17:16:092af0bb8265c24b804602edb8d20e3925Virustotal results 3 / 73 (4.11%) 34.197.12.81:443
2020-03-24 17:16:092af0bb8265c24b804602edb8d20e3925Virustotal results 3 / 73 (4.11%) 13.224.102.119:443
2020-03-24 16:47:43b0a1160d76c113db7cb0faa3cc1f8824n/a60.51.99.42:4424
2020-03-24 07:15:09a8cd7a4ca6e8c039072d74af660230e7n/a185.140.53.175:20804
2020-03-24 07:05:4328b4272738e1f97e46cb3e31810abbe0n/a93.190.93.212:8890
2020-03-24 06:30:1407d75ec7a39e3fc82b0649901f9be072n/a79.134.225.5:1369
2020-03-23 19:13:470178631a94683dc7543f2e5f75548b8cn/a185.140.53.175:20804
2020-03-23 14:40:04227f2c48bc17a305bbefc23d2325e6den/a79.134.225.5:1369
2020-03-23 09:44:481a8819cc492b0aadcf6f9c2461b9b580n/a79.134.225.5:1369
2020-03-23 08:49:01a77c2d9529ea209bd803857fbd84b378n/a151.101.112.209:443
2020-03-23 08:49:01a77c2d9529ea209bd803857fbd84b378n/a167.172.164.197:8443
2020-03-22 06:48:59e609029a8cd7372b6586d0e314c1fb21n/a192.169.69.25:3030
2020-03-20 16:07:4985dde2a92dd29bef63e8904fefc0e68cVirustotal results 4 / 62 (6.45%) 91.193.75.143:2128
2020-03-20 13:17:276dca12a98805ac8df3efe5e572bbd72an/a167.172.164.197:8443
2020-03-20 13:17:276dca12a98805ac8df3efe5e572bbd72an/a151.101.36.209:443
2020-03-20 08:40:1183ebcd863957ee488b339b6f74b45d97n/a185.244.30.17:1199
2020-03-20 08:12:50417583afe1211cdd166e36a97baf84f6n/a79.134.225.97:2016
2020-03-20 07:40:23106d1d275d7eb0b85d6ea2ed22ac61f2n/a60.51.99.42:4424
2020-03-20 07:39:523ca181b27798b73ee50ee6d612ef1fbbn/a185.244.30.137:3030
2020-03-20 01:23:049d9652cc0b57ffc0dcbb2333c737ad1dn/a60.51.99.42:4424
2020-03-19 21:25:46a990bfa906c958fd3e735278ef046e41Virustotal results 54 / 73 (73.97%) 104.19.237.56:443
2020-03-19 15:22:408c0d85639141b790d51b8f5ac6663d99n/a79.134.225.97:2016
2020-03-19 15:20:386d0a4b42a891143ef6832ba8058a955fn/a79.134.225.97:2016
2020-03-19 06:59:51190c2f3f62c89393e12fa73f8d27f467n/a185.244.30.137:3030
2020-03-19 03:22:2547552bc44e6dd7ff10dfe3ad06601e5bn/a185.244.30.193:6065
2020-03-19 02:12:11c28e10b866e237c76c27e55a61fe0f90n/a185.244.30.21:3232
2020-03-18 17:46:2281e26bb2aa4d06cbf5f5711dba062c26Virustotal results 28 / 73 (38.36%) 104.17.65.4:443
2020-03-18 17:46:2181e26bb2aa4d06cbf5f5711dba062c26Virustotal results 28 / 73 (38.36%) 95.183.13.182:443
2020-03-18 12:20:26e0bd24ff06f43da71ff0ddb2beccf534n/a216.38.8.168:3856
2020-03-18 10:41:343c048d8340025cc2d9b9854f32f7cf46n/a79.134.225.5:1369
2020-03-18 08:20:171dfab0d14102c3627d678eaa61dad588Virustotal results 1 / 70 (1.43%) 216.58.207.78:443
2020-03-18 06:15:04414c430d15e59947daecf32d109f2180n/a93.190.93.6:5934
2020-03-18 05:57:1209e4c579dabf7385330a9799169b7f9fVirustotal results 1 / 72 (1.39%) 172.217.22.110:443
2020-03-18 05:11:572cda6734b9dd16dd97a261e6da69dcb2n/a185.244.30.137:3030
2020-03-18 04:56:47c1347d621640282981c27a233e7653f7Virustotal results 1 / 72 (1.39%) 172.217.168.46:443
2020-03-17 20:39:38905f80d9b47fbf9284a7b5fc2af31897Virustotal results 18 / 63 (28.57%) 194.33.45.146:1010
2020-03-17 20:05:1043ca9c7768a3102c74f91d74b3914438n/a79.134.225.71:3232
2020-03-17 17:44:19a98858dfd16adb4f099dbbbaa8a64f5cn/a60.51.99.42:4424
2020-03-17 13:23:35d797a76d2a3e9463f35aca99838329f3n/a185.244.30.137:3030
2020-03-17 05:50:391d2856ceafd94fc55ea55e73bbcb147an/a185.244.30.17:1199
2020-03-16 17:32:53b6cf4c64381b0cc778ab4a001d368399n/a79.134.225.111:20804
2020-03-16 15:28:14c3a27e9df759ab6205bd46f90f847c6fVirustotal results 7 / 63 (11.11%) 103.75.190.80:443
2020-03-16 06:47:07342446248c18cd9e1cf57cad6c413495n/a185.244.30.137:9996
2020-03-16 00:48:12615d755fc0c77283f5a5f41fe559f9a0n/a185.244.30.17:1199
2020-03-15 23:42:04d13411fce9124fe00b7fb45976bd1253n/a185.244.30.14:1313
2020-03-15 22:22:45689568710a8ab5c54dcba95acd2e3b53Virustotal results 0 / 69 (0.00%) 52.216.161.117:443
2020-03-15 22:22:45689568710a8ab5c54dcba95acd2e3b53Virustotal results 0 / 69 (0.00%) 162.125.69.6:443
2020-03-15 14:51:357a11e9b0eff4ef7afed8b6a371c95d74Virustotal results 2 / 63 (3.17%) 185.205.210.71:2020
2020-03-15 06:24:40046a78d20889a0b96b84646b2e59729fVirustotal results 5 / 71 (7.04%) 52.216.236.229:443
2020-03-15 06:24:40046a78d20889a0b96b84646b2e59729fVirustotal results 5 / 71 (7.04%) 162.125.69.6:443
2020-03-14 15:10:071cbe2d14151b5b4d29d107ba29f91486Virustotal results 34 / 73 (46.58%) 64.233.166.108:465
2020-03-14 15:10:071cbe2d14151b5b4d29d107ba29f91486Virustotal results 34 / 73 (46.58%) 64.233.184.108:465
2020-03-14 15:10:051cbe2d14151b5b4d29d107ba29f91486Virustotal results 34 / 73 (46.58%) 108.177.15.108:465
2020-03-14 14:28:3508c978342a4d6eff1748b7420a2c4542Virustotal results 1 / 72 (1.39%) 74.125.195.139:443
2020-03-13 16:43:5989d1c1e6b5d838e206f9e4e01798996bn/a185.244.30.17:1199
2020-03-13 12:46:21b867a6b24c290b681fd01ad85e94ff04n/a194.127.179.53:1010
2020-03-13 11:52:4475d52491d28eadf5d3d3ad60f0a8c16an/a185.244.30.14:1313
2020-03-13 10:40:45a353f4a420c4a8d557bc40bf1a7ed7a4n/a37.48.92.195:4028
2020-03-13 07:44:393cb8e9af3d09413835e34f3d5eb79c8dn/a37.48.92.195:4028
2020-03-13 07:26:2020e1739f00cd9998769f140693202edan/a178.124.140.145:1960
2020-03-13 07:08:53a49184da042492da972d6ab2d82a6d2cn/a185.244.30.21:2526
2020-03-13 06:54:26ad622bc4d21a705b68aae0b8b3f55e1aVirustotal results 1 / 71 (1.41%) 172.217.168.46:443
2020-03-13 04:41:572e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 2.16.187.32:443
2020-03-13 04:41:392e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 2.16.187.49:443
2020-03-13 04:41:382e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 2.16.187.9:443
2020-03-12 19:08:4035943528e48783e5e162aad9de34197cn/a178.124.140.145:1960
2020-03-12 09:59:12d126086e010b0a62b2bef354f3962e07n/a185.140.53.228:20908
2020-03-12 09:52:527229e73f0a2737c6633bfe343261f2c0n/a37.48.92.195:2034
2020-03-12 08:57:522e00cf075dea2c8224d76487d5932805n/a134.19.179.187:32741
2020-03-12 00:59:00adda0fb794ce9389b9342fc65c110025Virustotal results 1 / 73 (1.37%) 140.82.118.6:443
2020-03-11 20:43:482509b7818243616a3532ab433ce4fc0an/a192.169.69.25:4424
2020-03-11 16:45:4900be96138f879e383dfab2463cac3f44Virustotal results 2 / 62 (3.23%) 84.38.133.132:3202
2020-03-11 13:07:21f7334eb46bd3d6655b216e4e2455ccbfn/a184.75.223.219:32741
2020-03-11 04:33:51bcc477295b49ea9f3a122d31df670581n/a37.48.92.195:2022
2020-03-11 02:05:33cf8a3e7c16a58d1b0d94c96e6117426en/a192.169.69.25:4424
2020-03-11 01:41:474f1fd0e308880bdd53a3aad68a2a2810n/a167.172.164.197:8443
2020-03-10 19:54:491c33e39606262a2da0b94094b5089c2aVirustotal results 1 / 71 (1.41%) 172.217.168.46:443
2020-03-10 17:25:17c9e0b7811bc7b7e6163599302c556cf9n/a167.172.164.197:8443
2020-03-10 17:25:16c9e0b7811bc7b7e6163599302c556cf9n/a151.101.36.209:443
2020-03-10 14:11:29608588408b9b2022b669da612fdec24en/a60.51.99.42:4424
2020-03-10 13:32:41f2134a0dae861a9c01017fb6e8bf662dn/a144.217.211.203:1855
2020-03-10 13:01:571d4ee1aea2a949a490b28c28d3f1cb62n/a167.172.164.197:8443
2020-03-10 13:01:571d4ee1aea2a949a490b28c28d3f1cb62n/a151.101.112.209:443
2020-03-10 08:03:52e673ef810d904bbd0fb351caf4fe3a0an/a185.244.30.13:7250
2020-03-10 04:31:429cb713cccd9e0a4de69091b968d99661n/a79.134.225.5:1369
2020-03-09 22:17:299f4da3551eb25bfe664b947ba6558672n/a185.244.30.17:1199
2020-03-09 12:18:528481b63b19809249aaa497e03aeee718n/a79.134.225.71:5252
2020-03-09 10:02:34cf0d4cdca216475d9818178c6a09f2acn/a79.134.225.99:20901
2020-03-09 09:32:32db8ee5984f7b2713fc17158b983a150an/a79.134.225.99:20901
2020-03-09 09:32:207d55621932933cc82c86473e8d46e11en/a79.134.225.109:4040
2020-03-09 09:24:34e63c89c86dbdb1597ad15e8c8e0f23dbn/a69.65.7.136:1010
2020-03-09 08:43:4674e94bd8877d7306f63c2189232b785en/a79.134.225.101:7872
2020-03-09 07:47:48f92afce0e1b1c8782aa6d7572ab0a1b4Virustotal results 16 / 61 (26.23%) 79.134.225.10:1199
2020-03-09 03:40:181219cf5069d0a6a4b39041eccca63a46n/a79.134.225.99:20901

# of entries: 100 (max: 100)