JA3 Fingerprints

You can find further information about the JA3 fingerprint d2935c58fe676744fecc8614ee5356c7, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:d2935c58fe676744fecc8614ee5356c7
First seen:2018-08-14 21:48:41 UTC
Last seen:2020-07-10 08:39:28 UTC
Status:Blacklisted
Malware samples:1'336
Destination IPs:779
Malware:Adwind
Listing date:2019-02-14 13:25:15

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-07-10 08:39:28f07dad71877ffd9cd173b94a93cd3e32Virustotal results 38 / 73 (52.05%) 162.125.69.15:443
2020-07-10 08:39:28f07dad71877ffd9cd173b94a93cd3e32Virustotal results 38 / 73 (52.05%) 52.216.248.142:443
2020-07-10 06:50:2169ef667c7532f2270c7fce0248204de8n/a104.20.22.46:443
2020-07-10 06:50:2069ef667c7532f2270c7fce0248204de8n/a37.49.224.150:443
2020-07-10 06:05:01e2b3649c55b440a06fbfbcd88eaf2718Virustotal results 51 / 73 (69.86%) 52.216.170.93:443
2020-07-10 04:56:57cb8141e15254e814cfdacd98a6945e2bVirustotal results 3 / 62 (4.84%) 104.20.22.46:443
2020-07-10 04:56:57cb8141e15254e814cfdacd98a6945e2bVirustotal results 3 / 62 (4.84%) 151.106.19.145:443
2020-07-08 02:30:21dcad2e4f706f0ecd5685b954e4f6a6acn/a104.20.22.46:443
2020-07-08 02:30:21dcad2e4f706f0ecd5685b954e4f6a6acn/a37.49.230.217:443
2020-07-07 18:25:21dea82e5fa24ff713864dab39309766abn/a104.20.23.46:443
2020-07-07 18:25:21dea82e5fa24ff713864dab39309766abn/a192.186.183.150:443
2020-07-07 17:55:246b2bffb955ed0df1fd3d239fcbbcbf3dn/a194.5.97.24:6669
2020-07-07 13:50:490d51946686b3fdd55b878c7b42b2c741n/a185.136.165.173:443
2020-07-07 13:50:490d51946686b3fdd55b878c7b42b2c741n/a104.20.23.46:443
2020-07-07 11:47:475995a60cb5da5d0581926fc154ced6ebn/a104.20.22.46:443
2020-07-07 11:47:475995a60cb5da5d0581926fc154ced6ebn/a140.82.118.4:443
2020-07-07 11:47:475995a60cb5da5d0581926fc154ced6ebn/a151.101.120.209:443
2020-07-07 11:47:475995a60cb5da5d0581926fc154ced6ebn/a52.216.25.212:443
2020-07-07 11:47:475995a60cb5da5d0581926fc154ced6ebn/a37.49.224.15:443
2020-07-07 08:12:559cd8fa4c2380f05141eb60d4909ce276Virustotal results 1 / 61 (1.64%) 104.20.22.46:443
2020-07-07 08:01:42c0f75e92112c654930809ee53974d110n/a104.20.23.46:443
2020-07-07 08:01:42c0f75e92112c654930809ee53974d110n/a192.186.183.150:443
2020-07-07 07:12:06f5f8a528c5825a1fa032327e128c5320n/a37.49.230.114:443
2020-07-07 07:12:06f5f8a528c5825a1fa032327e128c5320n/a104.20.23.46:443
2020-07-07 07:05:33d0aa888b7a99b52c02f00a5739bef82an/a104.20.23.46:443
2020-07-07 07:04:04a606c29fff75cdd6d6d9731712a47d72n/a192.186.183.150:443
2020-07-07 07:04:04a606c29fff75cdd6d6d9731712a47d72n/a104.20.22.46:443
2020-07-06 18:53:287032fdf67e1aea9ebd2d52cd1e4e9176Virustotal results 10 / 59 (16.95%) 172.67.221.147:443
2020-07-06 14:18:124a197d7ea8c7f372013f61a80fac0581Virustotal results 2 / 60 (3.33%) 104.20.23.46:443
2020-07-06 14:18:124a197d7ea8c7f372013f61a80fac0581Virustotal results 2 / 60 (3.33%) 192.169.69.25:443
2020-07-06 13:59:43ee95ee519fe949060728f47219dccf35Virustotal results 7 / 60 (11.67%) 52.216.160.187:443
2020-07-06 13:59:43ee95ee519fe949060728f47219dccf35Virustotal results 7 / 60 (11.67%) 151.101.36.209:443
2020-07-06 13:59:43ee95ee519fe949060728f47219dccf35Virustotal results 7 / 60 (11.67%) 140.82.118.3:443
2020-07-06 13:52:494c91d1c7e9cdbdeaa6248393734aa803n/a45.143.222.153:443
2020-07-06 13:52:494c91d1c7e9cdbdeaa6248393734aa803n/a104.20.22.46:443
2020-07-06 13:29:2499dcdadfeed1b6271637cd158eddc785n/a37.49.230.211:443
2020-07-06 13:29:2499dcdadfeed1b6271637cd158eddc785n/a104.20.23.46:443
2020-07-06 11:22:584f006a3a90714b6f8495bd2a5d714cfbn/a194.5.97.24:6669
2020-07-06 07:58:167e6062a983446a25e88372d8ceee197cVirustotal results 25 / 73 (34.25%) 185.199.109.153:443
2020-07-05 23:14:0845b5f4f2ae04a915f5b360ce5a03b337n/a140.82.118.4:443
2020-07-05 23:14:0845b5f4f2ae04a915f5b360ce5a03b337n/a151.101.120.209:443
2020-07-05 23:14:0845b5f4f2ae04a915f5b360ce5a03b337n/a52.216.84.123:443
2020-07-05 21:51:26ef54da69d0ee164a0bb43cace7a8e961n/a192.186.183.150:443
2020-07-05 21:51:26ef54da69d0ee164a0bb43cace7a8e961n/a104.20.22.46:443
2020-07-05 17:37:530187882fd5c0b80c0cc1e784d8e40731Virustotal results 46 / 73 (63.01%) 172.217.218.137:443
2020-07-05 17:37:530187882fd5c0b80c0cc1e784d8e40731Virustotal results 46 / 73 (63.01%) 172.217.168.14:443
2020-07-04 21:08:560116bbe99adfdb7f0e2c6e1fefe10642n/a104.20.22.46:443
2020-07-04 21:08:560116bbe99adfdb7f0e2c6e1fefe10642n/a45.143.222.115:443
2020-07-02 15:27:4312d8527421ed9d8e2c02d7ef11840a38n/a104.20.23.46:443
2020-07-02 04:09:59c1dae1cfd76817255cb7836927d6c85bVirustotal results 2 / 61 (3.28%) 37.49.230.86:443
2020-07-02 04:09:59c1dae1cfd76817255cb7836927d6c85bVirustotal results 2 / 61 (3.28%) 104.20.23.46:443
2020-07-01 22:22:4514c60d7c9ed65affcf0565ff94633a39Virustotal results 4 / 60 (6.67%) 51.15.21.149:8080
2020-07-01 22:21:54070253aecc9cd3441285bd1a5710b62en/a104.20.22.46:443
2020-07-01 22:21:54070253aecc9cd3441285bd1a5710b62en/a37.49.230.254:443
2020-07-01 20:52:0213e30cbe6ba605ddbdf8bd39aabba7acn/a151.101.12.209:443
2020-07-01 20:52:0213e30cbe6ba605ddbdf8bd39aabba7acn/a140.82.118.4:443
2020-07-01 20:52:0213e30cbe6ba605ddbdf8bd39aabba7acn/a52.217.15.148:443
2020-07-01 11:50:230e3e5224a3953f054d5f025885b07399Virustotal results 0 / 60 (0.00%) 104.20.23.46:443
2020-07-01 11:50:220e3e5224a3953f054d5f025885b07399Virustotal results 0 / 60 (0.00%) 104.168.173.141:443
2020-07-01 06:41:23095b8e8a04f2cc754e918516c5821319Virustotal results 11 / 71 (15.49%) 13.224.94.128:443
2020-07-01 05:27:23ccb90d201c176bf13432d00de49b7294n/a37.49.230.86:443
2020-07-01 05:27:23ccb90d201c176bf13432d00de49b7294n/a104.20.22.46:443
2020-07-01 03:45:5715626e699e634f1d6a97f71292ea4fc3Virustotal results 2 / 61 (3.28%) 104.20.23.46:443
2020-07-01 03:45:5715626e699e634f1d6a97f71292ea4fc3Virustotal results 2 / 61 (3.28%) 37.49.230.86:443
2020-07-01 02:17:06e7167a49e1096b81d8b305fbedf87836n/a140.82.118.4:443
2020-07-01 02:17:06e7167a49e1096b81d8b305fbedf87836n/a151.101.36.209:443
2020-07-01 02:17:06e7167a49e1096b81d8b305fbedf87836n/a52.217.11.100:443
2020-07-01 01:55:17916a0d26423b1f718a4d7b7a55472b06Virustotal results 0 / 61 (0.00%) 37.49.230.86:443
2020-07-01 01:55:17916a0d26423b1f718a4d7b7a55472b06Virustotal results 0 / 61 (0.00%) 104.20.23.46:443
2020-06-30 20:29:5344dbbb7781f8ed00578149780da33bcdVirustotal results 2 / 62 (3.23%) 99.111.157.61:443
2020-06-30 20:00:313e466b4373418f85c84d14334530408fn/a104.20.22.46:443
2020-06-30 20:00:313e466b4373418f85c84d14334530408fn/a37.49.230.86:443
2020-06-30 19:21:15e018d35a5208b52afd1a946541669443n/a37.49.230.254:443
2020-06-30 19:21:15e018d35a5208b52afd1a946541669443n/a104.20.22.46:443
2020-06-30 12:50:30072a7dde70bb530505d079fa0e58f5b3Virustotal results 3 / 60 (5.00%) 104.20.23.46:443
2020-06-30 12:50:30072a7dde70bb530505d079fa0e58f5b3Virustotal results 3 / 60 (5.00%) 45.153.241.126:443
2020-06-30 11:28:06cca082e8a7c4da3e81a0b203732e4f7fVirustotal results 0 / 61 (0.00%) 37.49.230.14:443
2020-06-30 11:28:06cca082e8a7c4da3e81a0b203732e4f7fVirustotal results 0 / 61 (0.00%) 104.20.23.46:443
2020-06-30 11:10:580006baec6fa6ca7b492c84797dc0f0d0n/a103.138.108.193:443
2020-06-30 11:10:580006baec6fa6ca7b492c84797dc0f0d0n/a104.20.23.46:443
2020-06-30 07:05:07592670141212ce04a94fcd42025cb737n/a62.108.37.200:4242
2020-06-30 06:48:328899cc56f4e52f5497fb7ec8c960dbb9n/a104.20.22.46:443
2020-06-30 06:48:328899cc56f4e52f5497fb7ec8c960dbb9n/a103.151.122.193:443
2020-06-29 17:53:30e2fdebfb3346325ae26240e1c2e0319bn/a79.134.225.19:5812
2020-06-29 12:54:12bcf0b9b0503e076e3fd38b33a0b71af5n/a194.5.97.24:6669
2020-06-29 10:58:30824143309bae2c12125e3f5e6d680446n/a104.20.22.46:443
2020-06-29 10:58:30824143309bae2c12125e3f5e6d680446n/a103.151.122.193:443
2020-06-28 20:21:389f2cac77fb1a9fcb6e735491d2f2c115n/a104.20.22.46:443
2020-06-28 20:21:389f2cac77fb1a9fcb6e735491d2f2c115n/a37.49.230.86:443
2020-06-28 04:29:020fe3ef54474dd707c4382c92a8ae84e1Virustotal results 0 / 73 (0.00%) 74.125.20.100:443
2020-06-27 10:05:5437b2886831a9ae32731e600220efd828Virustotal results 1 / 72 (1.39%) 216.58.208.110:443
2020-06-26 14:55:35849ac004f76921b87bf21035f6b5e14bn/a194.5.97.24:6669
2020-06-26 10:53:054a4cc848c5ee5fef82aba52039224a37n/a104.20.22.46:443
2020-06-25 20:15:198884e6fdb451ba445b40b41d99cfc162n/a37.49.230.134:443
2020-06-25 20:15:198884e6fdb451ba445b40b41d99cfc162n/a104.20.22.46:443
2020-06-25 18:05:510f24b8f48d5f812bea1a174500c618d6Virustotal results 2 / 73 (2.74%) 23.105.247.220:443
2020-06-25 06:38:47e625026927f2d37823914b65eef507d9n/a151.101.240.209:443
2020-06-25 06:38:47e625026927f2d37823914b65eef507d9n/a52.217.41.52:443
2020-06-25 06:38:47e625026927f2d37823914b65eef507d9n/a140.82.118.4:443
2020-06-25 05:43:5960c4953e696f85e0a5a9f08fef13a4f8n/a37.49.230.147:443

# of entries: 100 (max: 100)