JA3 Fingerprints

You can find further information about the JA3 fingerprint d2935c58fe676744fecc8614ee5356c7, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:d2935c58fe676744fecc8614ee5356c7
First seen:2018-08-14 21:48:41 UTC
Last seen:2021-08-11 11:54:42 UTC
Status:Blacklisted
Malware samples:2'968
Destination IPs:3'125
Malware:Adwind
Listing date:2019-02-14 13:25:15

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2022-01-16 13:08:5399fb34a90ea03dc22b330b31cbd88c76Virustotal results 0 / 65 (0.00%) 104.21.81.252:443
2022-01-16 13:04:15c92b2d5a2ea88919ea1627fa1059d7d8Virustotal results 2 / 68 (2.94%) 172.67.150.35:443
2022-01-16 13:02:275eb10a63ed5ce072aff0c9e83cfb952eVirustotal results 2 / 68 (2.94%) 172.67.150.35:443
2022-01-16 13:02:074f0f2387593cf0f1de6a97596fdcdd9cVirustotal results 0 / 67 (0.00%) 104.21.81.252:443
2022-01-14 20:21:47c0d2063f20caa9114c1c848c5f1c5537n/a162.159.130.234:443
2022-01-11 22:25:18837e13bc629739a82bb83b1f337d08d3n/a74.114.154.22:443
2022-01-11 22:25:18837e13bc629739a82bb83b1f337d08d3n/a52.217.37.30:443
2022-01-11 22:25:18837e13bc629739a82bb83b1f337d08d3n/a192.0.77.40:443
2022-01-11 22:25:18837e13bc629739a82bb83b1f337d08d3n/a192.0.77.3:443
2022-01-11 21:39:49e7ba2c338d0dd6cbe54b036d69a9bc73n/a173.194.79.108:465
2022-01-09 17:00:110f98daa05436891e19872c3826f617ceVirustotal results 1 / 59 (1.69%) 162.125.8.15:443
2022-01-09 17:00:110f98daa05436891e19872c3826f617ceVirustotal results 1 / 59 (1.69%) 162.125.8.18:443
2022-01-08 17:57:5776050da3ff4efb386e1856d8b97f8cc9n/a162.159.136.234:443
2022-01-08 07:00:20c5008652669cbe82683758c64d8017c3n/a162.125.69.18:443
2022-01-08 07:00:19c5008652669cbe82683758c64d8017c3n/a162.125.69.15:443
2022-01-03 19:35:220f2a9ba02d410c840a8ef537402c9f12n/a172.67.150.35:443
2022-01-02 19:18:265ece631cfdbf8b7f412519862e0ec638n/a142.251.36.46:443
2021-12-30 18:46:27f32a4c7296b665baae742b5693c729e6n/a104.20.235.70:443
2021-12-28 20:46:04a8ab274daf50dc39a33f705f8c09a54bn/a185.199.108.133:443
2021-12-28 20:46:04a8ab274daf50dc39a33f705f8c09a54bn/a140.82.121.3:443
2021-12-28 20:46:04a8ab274daf50dc39a33f705f8c09a54bn/a151.101.36.209:443
2021-12-28 20:20:159f6e1602330ceaa5daab3779385023e2n/a3.232.242.170:443
2021-12-27 16:12:30cc7ce4ff739f66431efd3533c18f0f5an/a172.67.150.35:443
2021-12-25 04:29:181135f7ca89411a0ebce55a44b3997980Virustotal results 1 / 68 (1.47%) 104.21.81.252:443
2021-12-24 22:17:03f62a2088e1c533ecee2f5a739faed65cn/a162.125.72.15:443
2021-12-24 22:17:03f62a2088e1c533ecee2f5a739faed65cn/a162.125.72.18:443
2021-12-24 20:22:40eac93ff0215bc7376614e81751ba5179n/a162.159.136.234:443
2021-12-24 17:21:59d97957b6792f0c31dac32385da08f53an/a104.21.81.252:443
2021-12-21 13:22:44c1ddfaaba8b0dcbb47a91aa105e1d920n/a172.67.150.35:443
2021-12-19 20:10:055b291561d32263269af83c3ad2a4abffn/a140.82.112.4:443
2021-12-19 20:10:055b291561d32263269af83c3ad2a4abffn/a185.199.108.133:443
2021-12-19 20:10:055b291561d32263269af83c3ad2a4abffn/a199.232.192.209:443
2021-12-19 14:54:161ae71ea29362c568eda95273274661adVirustotal results 9 / 68 (13.24%) 104.21.3.95:443
2021-12-18 11:36:03a7f0ff6d7bd8d8c9c1969984eb298254n/a104.21.81.252:443
2021-12-17 22:29:4477d4bcccacb039ee04eae3dff985214an/a104.21.81.252:443
2021-12-17 22:19:3772a6ff992da165cbafcf1cece9c3887dn/a104.21.81.252:443
2021-12-17 20:47:3012517a7fcc8eadc532cf1fb5afc3d0een/a172.67.150.35:443
2021-12-17 19:21:0113ef06dd1cf22b69c728cdb2d7270737Virustotal results 1 / 63 (1.59%) 172.67.150.35:443
2021-12-17 07:12:5794c7b2d865bde2640f25675a1c4f6505n/a140.82.121.3:443
2021-12-17 07:12:5794c7b2d865bde2640f25675a1c4f6505n/a185.199.109.133:443
2021-12-17 07:12:5794c7b2d865bde2640f25675a1c4f6505n/a151.101.36.209:443
2021-12-17 05:30:55b3ac793493587f97b6b6183345aeb843Virustotal results 22 / 66 (33.33%) 172.67.150.35:443
2021-12-17 03:12:24b4b9929cdee39e18d0caf92fdbf4b33dn/a172.217.168.46:443
2021-12-16 13:02:14aeaa5fe335d841d32fb7c72de162d145n/a114.80.187.103:443
2021-12-16 05:34:24a54a6eda32d8f78586b3a92c156816ecn/a104.21.81.252:443
2021-12-15 07:17:265eaa5af5395fa6f3c827fc0e47aa1777n/a185.199.110.133:443
2021-12-15 07:17:265eaa5af5395fa6f3c827fc0e47aa1777n/a140.82.121.3:443
2021-12-15 07:17:255eaa5af5395fa6f3c827fc0e47aa1777n/a199.232.196.209:443
2021-12-14 18:31:25825d3677536983e6e53e59c1a4cc594bn/a172.67.139.74:443
2021-12-14 18:31:25825d3677536983e6e53e59c1a4cc594bn/a104.16.18.94:443
2021-12-14 08:56:071884f1dd8bc296512bc4cc4fa0d1731fn/a185.199.108.133:443
2021-12-14 08:56:071884f1dd8bc296512bc4cc4fa0d1731fn/a199.232.192.209:443
2021-12-14 08:56:071884f1dd8bc296512bc4cc4fa0d1731fn/a140.82.113.4:443
2021-12-13 20:27:4744cef5db978798261a07e3c806ae4b1an/a172.67.171.205:443
2021-12-13 14:07:21d48058d6b16faba86bc5f9fbbcea0638n/a74.125.143.108:465
2021-12-13 13:51:1587abfdba2290a31df0d97e91cc4b1195n/a185.199.111.133:443
2021-12-13 13:51:1587abfdba2290a31df0d97e91cc4b1195n/a151.101.12.209:443
2021-12-13 13:51:1587abfdba2290a31df0d97e91cc4b1195n/a140.82.121.4:443
2021-12-13 12:08:544d50a1df28610ffdb925d4a5b7bc6c0an/a140.82.121.3:443
2021-12-13 12:08:544d50a1df28610ffdb925d4a5b7bc6c0an/a185.199.109.133:443
2021-12-13 12:08:544d50a1df28610ffdb925d4a5b7bc6c0an/a151.101.36.209:443
2021-12-13 11:30:25b005d4facc0f96b0f83ea3e9c82d1135n/a172.67.150.35:443
2021-12-13 03:58:07b1467334c88785074a65f4a908a98852Virustotal results 23 / 60 (38.33%) 199.232.196.209:443
2021-12-13 03:58:07b1467334c88785074a65f4a908a98852Virustotal results 23 / 60 (38.33%) 185.199.108.133:443
2021-12-13 03:58:07b1467334c88785074a65f4a908a98852Virustotal results 23 / 60 (38.33%) 140.82.121.3:443
2021-12-13 03:55:1591f2de012a840b47d9d11d1507ca14beVirustotal results 23 / 60 (38.33%) 185.199.108.133:443
2021-12-13 03:55:1591f2de012a840b47d9d11d1507ca14beVirustotal results 23 / 60 (38.33%) 151.101.36.209:443
2021-12-13 03:55:1591f2de012a840b47d9d11d1507ca14beVirustotal results 23 / 60 (38.33%) 140.82.121.3:443
2021-12-12 20:14:1801da31c6a1b4b7cd0ffaefae2681f447Virustotal results 23 / 68 (33.82%) 172.67.150.35:443
2021-12-12 11:37:47cb5adc60b1267929677745d1865b91f0n/a46.4.112.226:443
2021-12-12 03:19:2422bf5f0cb00924f56f5b2c6501f769dcVirustotal results 39 / 65 (60.00%) 142.250.102.108:465
2021-12-11 17:48:32d6f525e490921eccda1582eb38f4b41fn/a142.250.186.42:443
2021-12-11 17:48:32d6f525e490921eccda1582eb38f4b41fn/a104.16.88.20:443
2021-12-11 02:41:18b19c8bba3139cab35d48fa381187580fn/a104.21.81.252:443
2021-12-11 02:32:59acb272d7a5ad4d145795a13434bee9c5Virustotal results 25 / 67 (37.31%) 104.21.81.252:443
2021-12-10 15:03:09f3a36dcf1a0bb1809350df37d2d3d700Virustotal results 16 / 59 (27.12%) 194.5.98.25:3389
2021-12-10 09:31:07c4e3f0e8297e3e941f40861d2196e21fn/a172.67.179.133:443
2021-12-10 00:17:1100f2b85cea0f5cbcf221e9598de777e8Virustotal results 28 / 65 (43.08%) 162.159.135.232:443
2021-12-09 10:04:27eebde117fa1644f9b176dd62ef22cd12n/a151.101.36.209:443
2021-12-09 10:04:27eebde117fa1644f9b176dd62ef22cd12n/a185.199.111.133:443
2021-12-09 10:04:27eebde117fa1644f9b176dd62ef22cd12n/a140.82.114.3:443
2021-12-09 08:16:27d86eb37fb515a419f7d154c0e0e915e5n/a185.199.109.133:443
2021-12-09 08:16:27d86eb37fb515a419f7d154c0e0e915e5n/a151.101.36.209:443
2021-12-09 08:16:27d86eb37fb515a419f7d154c0e0e915e5n/a140.82.121.4:443
2021-12-09 06:58:0403680721f96cb6a96f91dd2d749a2c8cn/a151.101.36.209:443
2021-12-09 06:58:0403680721f96cb6a96f91dd2d749a2c8cn/a185.199.110.133:443
2021-12-09 06:58:0403680721f96cb6a96f91dd2d749a2c8cn/a140.82.121.4:443
2021-12-08 09:05:3853224a118f98dd0112c8f15909a4ae70n/a140.82.121.3:443
2021-12-08 09:05:3853224a118f98dd0112c8f15909a4ae70n/a185.199.108.133:443
2021-12-08 09:05:3853224a118f98dd0112c8f15909a4ae70n/a199.232.196.209:443
2021-12-07 14:01:56cf4ec0d22c787775c9f46dd0fe19da33n/a185.199.108.133:443
2021-12-07 14:01:56cf4ec0d22c787775c9f46dd0fe19da33n/a140.82.121.3:443
2021-12-07 14:01:56cf4ec0d22c787775c9f46dd0fe19da33n/a199.232.196.209:443
2021-12-07 11:37:02651a47b5e2e3638430e6148e79a7e23bn/a140.82.121.3:443
2021-12-07 11:37:02651a47b5e2e3638430e6148e79a7e23bn/a199.232.196.209:443
2021-12-07 11:37:02651a47b5e2e3638430e6148e79a7e23bn/a185.199.109.133:443
2021-12-07 06:58:41ae01985a56a9be56e0bc86006973ca2bn/a185.199.111.133:443
2021-12-07 06:58:41ae01985a56a9be56e0bc86006973ca2bn/a151.101.36.209:443
2021-12-07 06:58:41ae01985a56a9be56e0bc86006973ca2bn/a140.82.121.4:443
2021-12-06 18:36:1143c0ff21a8b2d00eadab55db62d918c7n/a185.199.110.133:443

# of entries: 100 (max: 100)