JA3 Fingerprints

You can find further information about the JA3 fingerprint d2935c58fe676744fecc8614ee5356c7, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:d2935c58fe676744fecc8614ee5356c7
First seen:2018-08-14 21:48:41 UTC
Last seen:2019-03-19 06:01:44 UTC
Status:Blacklisted
Malware samples:247
Destination IPs:178
Malware:Adwind
Listing date:2019-02-14 13:25:15

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-03-19 06:01:4458a56c7b84a3e6970801d33defa10ef0n/a194.5.98.58:4435
2019-03-19 03:04:46cc4d9e18ed94d58dc425b009ad8bf6a2n/a95.213.251.165:5954
2019-03-19 01:28:38a2d67c474d63466635dc83dc2db64229Virustotal results 7/56 (12.50%) 91.192.100.44:2888
2019-03-18 14:14:10b018b6617a771a687d750d9931a3eff0Virustotal results 6/56 (10.71%) 185.165.153.119:6868
2019-03-18 14:07:39350b8d769392ae94c216bb92c42c1a81Virustotal results 23/59 (38.98%) 52.218.225.56:443
2019-03-18 14:04:47be635bfc3a5bcbee34201ef30f013f5bVirustotal results 19/54 (35.19%) 52.218.244.176:443
2019-03-18 14:04:089289ff2dbc238eeb6b72ac142343fc8dVirustotal results 15/59 (25.42%) 52.219.100.58:443
2019-03-18 14:03:24adfcf3819f25f2857c82b8ff9a4c02e5Virustotal results 20/60 (33.33%) 52.218.233.112:443
2019-03-18 05:48:4580197c7d1de17fe8f2520e5cf3c990ecn/a95.213.251.165:5954
2019-03-18 05:10:4060b881c7a6b87ea0eac04aba99fffdc9n/a194.5.98.58:4435
2019-03-17 09:35:59cc17db9c30f255d49ce8f36eaa308ab1Virustotal results 21/58 (36.21%) 104.27.182.176:443
2019-03-17 08:28:59c49aafba7297233b83a5853fb0782653Virustotal results 2/56 (3.57%) 185.244.29.52:8511
2019-03-15 11:48:34252d2f9f53f98ac0940c45ab9e1be64an/a194.5.97.210:3012
2019-03-15 10:23:108cd8975501bcd07fcec671fd9a4f12ddn/a194.5.98.16:5551
2019-03-14 13:56:57a84170da87d98e011a3cbf2bf4f9e13bVirustotal results 20/59 (33.90%) 52.218.224.160:443
2019-03-14 12:11:53974523bd32cd4d19d003b31fef7d1607Virustotal results 18/59 (30.51%) 54.252.227.252:443
2019-03-14 12:11:53974523bd32cd4d19d003b31fef7d1607Virustotal results 18/59 (30.51%) 54.37.240.237:7777
2019-03-14 11:13:50cdd967c67b986c6a82bdbd6b55977ddbVirustotal results 0/57 (0.00%) 172.217.22.46:443
2019-03-14 11:13:50cdd967c67b986c6a82bdbd6b55977ddbVirustotal results 0/57 (0.00%) 37.44.212.123:443
2019-03-14 11:13:50cdd967c67b986c6a82bdbd6b55977ddbVirustotal results 0/57 (0.00%) 216.58.205.225:443
2019-03-14 11:10:0056e925b651a59cadc2355d5bbb5d31fdVirustotal results 17/56 (30.36%) 52.95.171.1:443
2019-03-14 08:22:2788000617dae13229bbd634b4aa1a7634n/a84.38.129.48:3021
2019-03-14 05:56:1334387a99e80c51906ff0693ecc656ff4Virustotal results 2/58 (3.45%) 194.5.97.5:8484
2019-03-14 05:29:57e1a65b2a79616657fb51ac1869079059n/a194.5.98.58:4435
2019-03-14 01:34:32502954a20f262dd33e9c120850708f1aVirustotal results 21/55 (38.18%) 52.218.144.52:443
2019-03-13 19:37:0704c8c72b774cebb626519bdcf8e840fbVirustotal results 4/55 (7.27%) 178.239.21.242:5050
2019-03-13 16:42:4604235cfcb6d7825844a6efb51750a788n/a194.5.98.58:7075
2019-03-13 05:26:02b63fc6fa288db41523ac1672c345c35bn/a173.46.85.19:9298
2019-03-13 01:18:2491bbb8be1a3451996cb92f990e3061bbn/a194.5.98.58:7075
2019-03-12 07:41:25ff124c8d4237295951e40d0265c32589n/a194.5.97.215:8074
2019-03-11 12:40:05c085baeaa787a126bcf6d74a60b75908Virustotal results 19/55 (34.55%) 185.165.153.93:76
2019-03-11 11:45:54bd2054cefbe5db100fb1cb711a6577cbn/a104.27.133.83:443
2019-03-11 10:19:46bc0272851bd056fd1f9e0deed044521bVirustotal results 5/59 (8.47%) 178.239.21.167:92
2019-03-11 07:35:0305f3a971248655ef5b48e3d36e793856n/a192.152.0.71:3021
2019-03-11 02:19:54c60e9f539fcdbd5bce1042b9c4e153d6n/a91.192.100.28:7766
2019-03-11 01:49:54ee7eb8ddc74c11c4d1cb7ff3b164d17dn/a178.239.21.118:4675
2019-03-11 01:35:54083b2e383e2f7125a734dc37f8afa471n/a185.165.153.199:18
2019-03-11 00:23:122ec2340a58a8049f0c86520541aa9835Virustotal results 7/56 (12.50%) 91.192.100.39:7272
2019-03-10 22:19:03bd7371fceff3f3766fd9762dc7467904n/a192.152.0.71:3021
2019-03-09 15:47:007b99a9090459f4ede4725e0e7229927eVirustotal results 0/53 (0.00%) 192.30.253.112:443
2019-03-09 15:47:007b99a9090459f4ede4725e0e7229927eVirustotal results 0/53 (0.00%) 192.30.253.116:443
2019-03-09 15:47:007b99a9090459f4ede4725e0e7229927eVirustotal results 0/53 (0.00%) 52.216.130.91:443
2019-03-08 06:09:05b07c34189a8f419d07300f7ef3187954n/a178.239.21.118:4675
2019-03-07 10:13:530c825282daedd6228dd50255dd17df48n/a192.152.0.87:7799
2019-03-06 09:16:538d82c55aead7daa67f8aaef4a8a2972dn/a31.171.152.101:4548
2019-03-06 09:00:303569553900e5ad6378c3cbc2de89fa32n/a31.171.152.107:1071
2019-03-06 06:55:36bd507dad5ed632cd950522d4099a502dn/a178.239.21.163:6190
2019-03-06 01:23:47d98d588beeb76f7e52fef2666d0874f5n/a185.165.153.199:18
2019-03-04 16:58:13c69b993069408da14bd12a1da3c9845cVirustotal results 15/56 (26.79%) 185.165.153.34:7210
2019-02-28 10:42:03a080e2f21380d3c6a56050d61247fe10Virustotal results 20/59 (33.90%) 52.95.146.18:443
2019-02-28 08:30:24125a25f19d45785d44933fb1b0b232f5n/a173.46.85.168:4545
2019-02-27 04:46:23fd37b2b90ed5588fada88f9cd8bbef88Virustotal results 8/55 (14.55%) 178.239.21.196:2021
2019-02-25 19:32:230b3f8d8ba96be3ae3d2b824a2a5ca0f6Virustotal results 18/57 (31.58%) 52.95.147.22:443
2019-02-25 18:31:076cd66f99422d70c9db3fdeba45274a72Virustotal results 15/56 (26.79%) 173.46.85.71:4379
2019-02-25 17:26:02ff9786e35060a7470c0584ed07962880Virustotal results 15/57 (26.32%) 52.95.147.6:443
2019-02-25 11:10:43ea53032acdd0f0ded689c95c17916a63Virustotal results 7/55 (12.73%) 173.46.85.168:4545
2019-02-25 10:43:152eef242d556e8422041d4c032ae72185Virustotal results 6/54 (11.11%) 185.165.153.199:18
2019-02-25 09:59:02380b7d7a15cec04a49bb0832c34ca353n/a173.46.85.234:7578
2019-02-25 09:56:09a645ef72d75eb903e8c2389785c81468Virustotal results 7/54 (12.96%) 185.165.153.34:7210
2019-02-25 00:58:542780d880280f6991e2a4dc29ad3c8978Virustotal results 5/53 (9.43%) 178.239.21.122:2525
2019-02-24 15:47:24ef8cde64aea7c46bfaa533548e7dfc15Virustotal results 18/58 (31.03%) 52.95.170.9:443
2019-02-24 12:39:52a05c4a86219613a0a6d039ecdff34b44Virustotal results 14/59 (23.73%) 52.95.146.10:443
2019-02-22 07:02:1343077ad3a87a457012edd1b9875b8666Virustotal results 16/57 (28.07%) 173.46.85.207:7134
2019-02-22 06:20:18063d439092a3693bb3ca1fb50cb66483Virustotal results 10/58 (17.24%) 173.46.85.126:5954
2019-02-22 01:44:24425e6d8fc3198fa70e2b6e88d179ecbfVirustotal results 14/54 (25.93%) 185.244.29.70:1989
2019-02-21 17:04:15db10a081a2896b13fead360b14c888f8Virustotal results 16/55 (29.09%) 52.95.169.9:443
2019-02-21 14:14:442c185861991c014398f044138536ad10Virustotal results 15/58 (25.86%) 52.95.170.13:443
2019-02-21 01:00:494c2df15060d3efa7d47675565c475a96Virustotal results 41/59 (69.49%) 91.192.100.27:7219
2019-02-20 17:42:29d4689e3f9598d522fc5d50949f396bc9n/a91.192.100.39:8511
2019-02-20 06:48:51cc785351503fe0c83c3a3f0f15efe764n/a185.165.153.34:7210
2019-02-19 10:25:4175bbe1378bbc1206546efadbf7b45278n/a178.239.21.163:6190
2019-02-18 19:29:201f625d5457810e5f081d5630310a191en/a173.46.85.234:7578
2019-02-18 17:31:03ddf14a50e2ac6dc8d6f6c487e31f4f68n/a91.192.100.57:5656
2019-02-18 09:44:30b8d0df17c74f7dba95a56f2695074cc9Virustotal results 7/57 (12.28%) 31.171.152.99:4040
2019-02-18 00:49:40bd3b9e254f3e1fcdac897ff79ff80e84n/a185.165.153.34:7210
2019-02-17 20:32:39e8d6c47cf2ed0f47d7ab67e145fec2aeVirustotal results 3/58 (5.17%) 178.239.21.106:8899
2019-02-16 16:23:14b1f9a536f6464b661adcebc850381f3eVirustotal results 8/57 (14.04%) 52.95.171.17:443
2019-02-16 07:01:23023ab6cad2996f5f24d6f902089c07can/a185.244.30.113:6649
2019-02-15 06:33:22e87a0f1b46e2148811aebb26c4766749n/a5.2.64.188:5299
2019-02-14 07:39:44cc9c06417752cd00bada04ddbd195a29Virustotal results 4/60 (6.67%) 54.38.146.43:8888
2019-02-14 05:28:4418fe67da1c172b87b2228400ef24a3e9n/a5.2.64.188:5299
2019-02-13 10:09:04cba129e02f849c34cff09c053a8e906bn/a5.2.67.66:5299
2019-02-13 09:13:167ea9f3f71987bc7fd4011eb6afd48e19n/a194.5.98.193:8008
2019-02-13 07:07:17b5bb249a0af8d93561071cb274b18e6bVirustotal results 11/56 (19.64%) 5.2.67.66:5299
2019-02-12 17:29:362448b56df5ece4f80d7d8e01dd9bb56en/a95.213.251.165:1900
2019-02-12 11:31:308f8997bb8c00640c80071cb3847ff5aaVirustotal results 5/59 (8.47%) 173.46.85.68:2016
2019-02-12 10:50:490297be4747afaca7c5c0006425f8ac38n/a194.5.98.56:5532
2019-02-12 10:14:42c861bf21eab822604bd6375fc99d1ff5n/a194.5.99.158:7210
2019-02-12 06:32:251c0b3ca656839b743d7b5860edbdbc08Virustotal results 27/59 (45.76%) 216.58.204.142:443
2019-02-12 01:03:476064a5ade6d9db70b65c94305e3a19f5Virustotal results 14/59 (23.73%) 52.95.170.9:443
2019-02-11 23:10:49ddac7cfdc840d89a9c9e42fbf0a933e4Virustotal results 5/59 (8.47%) 173.46.85.234:7578
2019-02-11 06:24:21b8073b42c93686b9c61339ed3e358433n/a194.5.99.136:6229
2019-02-11 03:25:096c14d4d309b8d9d2be7e3f47e9f5405bn/a52.219.80.27:443
2019-02-11 02:09:3646a5ffc07484a80dcf8a06beb7241b25Virustotal results 18/60 (30.00%) 52.218.200.200:443
2019-02-11 01:22:02762d5aea2ae1f7c89d7941e1722d890cn/a181.215.247.164:1973
2019-02-11 00:37:24ab8c6656b340305e74d4590f0a305b3bVirustotal results 17/60 (28.33%) 185.205.210.139:1010
2019-02-10 23:54:55455601273dbdd3ff017db1d42d0b459fVirustotal results 18/59 (30.51%) 185.205.210.139:1010
2019-02-08 13:27:001a96939d2826a68f0f657e93904dfd8aVirustotal results 6/59 (10.17%) 194.5.98.194:5090
2019-02-08 11:43:56252d485846806298f2976320490a0e8bVirustotal results 12/59 (20.34%) 173.46.85.205:8074
2019-02-08 11:24:56df651f953928469f805390c16c694f1dn/a173.46.85.161:3040

# of entries: 100 (max: 100)