JA3 Fingerprints

You can find further information about the JA3 fingerprint d2935c58fe676744fecc8614ee5356c7, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:d2935c58fe676744fecc8614ee5356c7
First seen:2018-08-14 21:48:41 UTC
Last seen:2021-08-11 11:54:42 UTC
Status:Blacklisted
Malware samples:3'956
Destination IPs:3'433
Malware:Adwind
Listing date:2019-02-14 13:25:15

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-02-07 04:02:14c7b0633dd0db084edd9264e1bece25f1Virustotal results 1 / 60 (1.67%) 140.82.121.3:443
2023-02-07 04:02:14c7b0633dd0db084edd9264e1bece25f1Virustotal results 1 / 60 (1.67%) 151.101.36.209:443
2023-02-07 04:02:14c7b0633dd0db084edd9264e1bece25f1Virustotal results 1 / 60 (1.67%) 185.199.110.133:443
2023-02-06 15:40:224a92f09932198e54639ff177c8c9ceedn/a208.100.26.245:443
2023-02-05 17:49:02aa29fb624cd98464a99985562f7e9fean/a208.100.26.245:443
2023-02-05 14:48:39561fed55c1609c7263971fe89e84bf52n/a74.114.154.22:443
2023-02-05 14:48:39561fed55c1609c7263971fe89e84bf52n/a192.0.77.3:443
2023-02-05 14:48:39561fed55c1609c7263971fe89e84bf52n/a192.0.77.40:443
2023-02-05 13:59:44405a6cc2eaf7ad6234d3eb6f3e5b172bVirustotal results 21 / 60 (35.00%) 208.100.26.245:443
2023-02-04 21:57:16663fee14133dc83ace3cb836d41168d5n/a208.100.26.245:443
2023-02-04 21:47:5662ff2736f9d67f1e6a1bcad541abd419n/a208.100.26.245:443
2023-02-02 06:17:412e66758be40b235dda864c135d31eaeeVirustotal results 9 / 63 (14.29%) 140.82.121.3:443
2023-02-02 06:17:412e66758be40b235dda864c135d31eaeeVirustotal results 9 / 63 (14.29%) 199.232.196.209:443
2023-02-02 06:17:412e66758be40b235dda864c135d31eaeeVirustotal results 9 / 63 (14.29%) 185.199.109.133:443
2023-02-01 15:51:2638390f5375d63b75040c1b4c2614e6b5Virustotal results 27 / 70 (38.57%) 104.20.234.70:443
2023-02-01 10:16:5619751470db646b91b717dc2bee124ae3Virustotal results 42 / 70 (60.00%) 52.216.176.37:443
2023-01-31 03:16:44c7bae23aab724c08f28534cb92861fc3n/a104.20.234.70:443
2023-01-31 03:16:44c7bae23aab724c08f28534cb92861fc3n/a104.20.235.70:443
2023-01-28 18:47:396dea6abb723b364ea77af534ed2968e2n/a208.100.26.245:443
2023-01-28 18:44:106af2a2bdd2313e70daea56c836c17cd8n/a103.224.182.238:443
2023-01-27 23:19:45e93886848cd318717334b854e7c863ccn/a162.125.66.18:443
2023-01-27 23:19:45e93886848cd318717334b854e7c863ccn/a162.125.66.15:443
2023-01-25 21:06:285013932166c0b3bbb10a0d446e2988d0Virustotal results 21 / 66 (31.82%) 34.231.87.196:443
2023-01-25 06:23:05ff30db91e7b487c5facac03e57b49ff0n/a142.250.68.110:443
2023-01-23 14:55:2077c241e40d2ac49d4cb135d7825dc3e3n/a146.75.116.209:443
2023-01-23 14:55:2077c241e40d2ac49d4cb135d7825dc3e3n/a185.199.110.133:443
2023-01-23 14:55:2077c241e40d2ac49d4cb135d7825dc3e3n/a140.82.121.3:443
2023-01-20 19:03:5888f329e37aaf9a90d2ad59ecf78b9a57n/a104.26.13.138:443
2023-01-18 15:59:51273a1e07a773fc99ce1ae7618e052904Virustotal results 60 / 71 (84.51%) 104.20.234.70:443
2023-01-18 15:59:51273a1e07a773fc99ce1ae7618e052904Virustotal results 60 / 71 (84.51%) 104.20.235.70:443
2023-01-18 12:08:40bb609789108363e7d91d834223e9e42dn/a151.101.36.209:443
2023-01-18 12:08:40bb609789108363e7d91d834223e9e42dn/a140.82.121.3:443
2023-01-18 12:08:40bb609789108363e7d91d834223e9e42dn/a185.199.108.133:443
2023-01-18 12:07:06e5f45744127ae35b08e83457705e828dn/a74.114.154.18:443
2023-01-18 12:07:06e5f45744127ae35b08e83457705e828dn/a192.0.77.3:443
2023-01-18 12:07:06e5f45744127ae35b08e83457705e828dn/a192.0.77.40:443
2023-01-16 22:11:055d1435b554955261d25f58ac25d5092fn/a104.20.234.70:443
2023-01-16 02:58:02dc314d7b5d8c7c24330ce8f5fdf5bd3bn/a104.20.234.70:443
2023-01-15 15:43:596ed82e841b1636d3fad07f27ae73f7d8n/a104.20.23.46:443
2023-01-15 14:23:534b419892eaaeea6b9a23fb33f0719e7cVirustotal results 0 / 61 (0.00%) 80.57.119.22:443
2023-01-15 11:16:46066728d418420951e44c7f01d7a0c89cVirustotal results 18 / 60 (30.00%) 151.101.36.209:443
2023-01-15 11:16:45066728d418420951e44c7f01d7a0c89cVirustotal results 18 / 60 (30.00%) 185.199.109.133:443
2023-01-15 11:16:45066728d418420951e44c7f01d7a0c89cVirustotal results 18 / 60 (30.00%) 140.82.121.3:443
2023-01-14 08:06:2902a92fd9eb285ae0708be32d6b0fc3d3n/a140.82.121.5:443
2023-01-13 23:18:36bba72df34f91e8acbb3d861c9eb1d8acn/a104.21.0.107:443
2023-01-13 23:18:36bba72df34f91e8acbb3d861c9eb1d8acn/a1.117.239.163:443
2023-01-11 17:37:593139885053f644f660798f54c9bfe409n/a142.250.203.110:443
2023-01-11 09:25:43cde68ba153189fe8e1bd941f99203004n/a185.199.109.133:443
2023-01-11 09:25:42cde68ba153189fe8e1bd941f99203004n/a140.82.121.3:443
2023-01-11 09:25:42cde68ba153189fe8e1bd941f99203004n/a151.101.36.209:443
2023-01-11 09:14:38dae984f86c5d2572303849bf7d4c3458n/a146.75.121.91:443
2023-01-11 07:25:43c8158a1372d1e765bcacbaed4e5224a5n/a208.100.26.245:443
2023-01-10 20:15:59a51987989016a9b7d6b012aca0769cd3n/a208.100.26.245:443
2023-01-10 10:01:557951949a3647761556c6cbcd180e2cecn/a199.232.192.209:443
2023-01-10 10:01:557951949a3647761556c6cbcd180e2cecn/a185.199.108.133:443
2023-01-10 10:01:557951949a3647761556c6cbcd180e2cecn/a192.30.255.113:443
2023-01-09 20:59:07b78037c8ff83d948f3150d1f37918870n/a1.117.239.163:443
2023-01-09 18:02:3342a522b6bfbb56f6a0c17020c0bf7060n/a208.100.26.245:443
2023-01-09 16:57:3545b6825e8f7b66d7a2d2f62f2d87aef9Virustotal results 4 / 61 (6.56%) 208.100.26.245:443
2023-01-09 07:42:0596045527afdb3b2b7d77391d06476610n/a140.82.121.3:443
2023-01-09 07:42:0596045527afdb3b2b7d77391d06476610n/a199.232.196.209:443
2023-01-09 07:42:0596045527afdb3b2b7d77391d06476610n/a185.199.108.133:443
2023-01-09 07:36:57f7c41869e943007afdc4f200a314ff3bn/a140.82.121.4:443
2023-01-09 07:36:57f7c41869e943007afdc4f200a314ff3bn/a151.101.36.209:443
2023-01-09 07:36:57f7c41869e943007afdc4f200a314ff3bn/a185.199.108.133:443
2023-01-07 14:05:44f457e93feedaa4ad4e9380ccf275a037n/a208.100.26.245:443
2023-01-07 02:07:11c18c8483e4ec43e7e41ab6fb32b7126cVirustotal results 0 / 72 (0.00%) 128.65.195.127:443
2023-01-06 15:43:43bbef0eeeb8598590c736484cca13260en/a104.20.234.70:443
2023-01-05 17:14:4047ba89152d8c36dce9b1489e985dbdben/a104.20.235.70:443
2023-01-05 17:14:4047ba89152d8c36dce9b1489e985dbdben/a104.20.234.70:443
2023-01-05 12:40:5008be5e4b0b9a8e8e5269727246705d35n/a188.114.96.7:443
2023-01-04 20:09:164846fa63f6e712a21030962934f98e7fVirustotal results 24 / 58 (41.38%) 208.100.26.245:443
2022-12-31 08:15:14ac0761c2f8628c9290ffc0232835544an/a185.199.109.133:443
2022-12-31 08:15:14ac0761c2f8628c9290ffc0232835544an/a140.82.121.4:443
2022-12-29 12:12:13d873a838e5b0163b23dfd6f1c34fd96bn/a172.217.168.14:443
2022-12-29 04:21:33c03ba29a94c38e33044973fc56e1f3cdn/a172.67.187.188:443
2022-12-27 07:24:32aa2241d94bf3b0392521671018a81b40n/a185.199.108.133:443
2022-12-27 07:24:32aa2241d94bf3b0392521671018a81b40n/a140.82.121.4:443
2022-12-27 07:24:32aa2241d94bf3b0392521671018a81b40n/a151.101.36.209:443
2022-12-26 18:00:439c7cd8a28789b603160e2eb7bb831448n/a142.250.27.109:465
2022-12-26 17:26:462443195057f473d55ccaf5004f405bbbVirustotal results 7 / 71 (9.86%) 1.117.239.163:443
2022-12-26 17:26:462443195057f473d55ccaf5004f405bbbVirustotal results 7 / 71 (9.86%) 104.21.0.107:443
2022-12-24 20:53:32adbc8c17385f0a5ba9cf210dc9edbb4fVirustotal results 25 / 65 (38.46%) 5.35.170.40:443
2022-12-23 09:56:51b22a5e5dbd8dba1bfb4389d9742a79c2n/a185.199.108.133:443
2022-12-23 09:56:51b22a5e5dbd8dba1bfb4389d9742a79c2n/a140.82.121.3:443
2022-12-23 09:56:51b22a5e5dbd8dba1bfb4389d9742a79c2n/a199.232.196.209:443
2022-12-22 13:54:09a54a87d74b41280727e48533462a9a00n/a142.250.179.174:443
2022-12-22 11:07:286a01ac43c57edf3fe9c34e16ea3723b2n/a192.30.255.113:443
2022-12-22 11:07:286a01ac43c57edf3fe9c34e16ea3723b2n/a199.232.192.209:443
2022-12-22 11:07:286a01ac43c57edf3fe9c34e16ea3723b2n/a185.199.108.133:443
2022-12-18 10:46:11b06d74f5d602af3b3850c6f01e282697n/a142.250.179.174:443
2022-12-18 03:38:20acd364c212c9a7f1c136997184a3eb77n/a216.58.215.238:443
2022-12-18 00:42:24ac06be337d6947df402aabb7919630den/a216.239.38.178:443
2022-12-17 08:05:47c642cd645cce5ae2ca8edf526a6197e2n/a185.199.108.133:443
2022-12-17 08:05:47c642cd645cce5ae2ca8edf526a6197e2n/a151.101.36.209:443
2022-12-17 08:05:47c642cd645cce5ae2ca8edf526a6197e2n/a140.82.121.4:443
2022-12-15 13:12:29288b1a959ba424e940597afd1d495159Virustotal results 45 / 69 (65.22%) 31.186.239.245:8080
2022-12-15 13:12:29288b1a959ba424e940597afd1d495159Virustotal results 45 / 69 (65.22%) 105.244.27.162:8080
2022-12-15 13:12:29288b1a959ba424e940597afd1d495159Virustotal results 45 / 69 (65.22%) 176.192.70.58:8018
2022-12-15 13:12:29288b1a959ba424e940597afd1d495159Virustotal results 45 / 69 (65.22%) 109.194.101.128:3128

# of entries: 100 (max: 100)