JA3 Fingerprints

You can find further information about the JA3 fingerprint d6f04b5a910115f4b50ecec09d40a1df, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:d6f04b5a910115f4b50ecec09d40a1df
First seen:2017-07-15 19:42:24 UTC
Last seen:2018-10-14 08:12:51 UTC
Status:Blacklisted
Malware samples:446
Destination IPs:43
Malware:Dridex -
Listing date:2018-11-14 11:59:04

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2018-10-14 08:12:5153fe4cc17641748020da764c4479d06dn/a5.196.15.119:443
2018-10-12 04:47:201a1f0d6d8d6ac88ae442de82865330c8Virustotal results 40/67 (59.70%) 5.196.15.119:443
2018-10-12 00:13:029766f67bf0b76be5458ece6acfb34acbVirustotal results 41/67 (61.19%) 5.196.15.119:443
2018-10-10 17:27:2908ed91a94aa726a0162b45c8f14ed244Virustotal results 25/69 (36.23%) 5.196.15.119:443
2018-10-10 07:40:20644dda5991639b456c11d43d2b835547Virustotal results 41/67 (61.19%) 5.196.15.119:443
2018-10-09 20:19:54800b056b734396c993846429ce4764f0Virustotal results 42/67 (62.69%) 5.196.15.119:443
2018-10-09 08:29:38b598592ee091657c4f1acab627801e31Virustotal results 39/68 (57.35%) 5.196.15.119:443
2018-09-19 08:49:59e1d91da869be3d0f5aa1be47d2cad568Virustotal results 11/67 (16.42%) 185.16.41.64:443
2018-09-17 18:55:540716b2fa2249f8f2fc77aacd47bc34e3Virustotal results 53/67 (79.10%) 77.48.30.156:443
2018-09-15 19:14:10aef8b35674edc6d3a6c73b0454ed3ef4Virustotal results 52/68 (76.47%) 77.48.30.156:443
2018-09-12 16:11:220576af37903d5f5cfbeca98652d838cdVirustotal results 53/67 (79.10%) 77.48.30.156:443
2018-09-11 11:24:04b18b6d6de9f7ef1dcf95d79759ebca84n/a77.48.30.156:443
2018-09-11 07:47:00ab3635101223bba3061cdc3a5509c15dVirustotal results 50/68 (73.53%) 64.111.42.64:443
2018-09-09 15:29:11d86ea85d6bbca9e4701cb7583ef377abVirustotal results 48/68 (70.59%) 77.48.30.156:443
2018-09-08 13:24:538e8275fbb275816c12cf0ea631f8fe8bn/a77.48.30.156:443
2018-09-07 15:33:36f33537c40a8afeaa621a59a7f618e6a5n/a77.48.30.156:443
2018-09-07 07:31:29a282522bf29e5f438e729fcd1d3a5d9dVirustotal results 59/68 (86.76%) 37.57.144.177:443
2018-09-05 04:17:528c908eaa835a903485ceee80a3560b17n/a77.48.30.156:443
2018-09-03 09:19:201861d5d77198b3468a0a60495f0bdd19Virustotal results 52/68 (76.47%) 77.48.30.156:443
2018-09-01 23:45:0541bbc2eca6cc2ca5dadfbb3145e13691Virustotal results 18/67 (26.87%) 37.252.8.97:443
2018-09-01 14:35:4042952ba62ccc536af3226578f338a5a0n/a77.48.30.156:443
2018-09-01 00:26:3729fd63e956f96d5318891a0662152519n/a77.48.30.156:443
2018-09-01 00:14:38a23c4e116f9852a0b6897773e04f0388Virustotal results 51/68 (75.00%) 77.48.30.156:443
2018-08-31 18:27:514c21418604072d31f2867f10c4ba73d6n/a77.48.30.156:443
2018-08-31 15:40:01aa9e3bcf3add5d905ebfd3f62b6a0f3eVirustotal results 60/67 (89.55%) 77.48.30.156:443
2018-08-30 22:04:303e635815daaf3f4332170f777f26904cVirustotal results 46/67 (68.66%) 64.111.42.64:443
2018-08-30 19:01:227f329c708ca3ae517c3d25424b911bffn/a77.48.30.156:443
2018-08-30 17:41:333f250738e4727d52ce3bbfee3f76dc37Virustotal results 48/67 (71.64%) 37.57.144.177:443
2018-08-30 15:08:422e061ddeec48be98ae4959c8395ab870Virustotal results 51/68 (75.00%) 37.57.144.177:443
2018-08-30 13:25:5306eef99bb40f79e2cfa78f53ff355cb6Virustotal results 47/68 (69.12%) 77.48.30.156:443
2018-08-30 10:24:4241be0f91d7204de78aac06febc466983Virustotal results 48/68 (70.59%) 64.111.42.64:443
2018-08-29 19:09:16d93d8a46a65b039e4ac325e625b72e7fVirustotal results 49/68 (72.06%) 77.48.30.156:443
2018-08-28 17:11:26e8684f8eae36a7e93a87627351159d1cVirustotal results 50/68 (73.53%) 37.57.144.177:443
2018-08-28 08:48:43645a54f0f32f77014154ed13b8fb59b3Virustotal results 48/68 (70.59%) 77.48.30.156:443
2018-08-27 21:54:280a6d5fa1eb87dda68b2137d1b2c57a91Virustotal results 54/68 (79.41%) 64.111.42.64:443
2018-08-27 03:00:3543bd4984ee28498842db1f3f964d8196Virustotal results 50/68 (73.53%) 77.48.30.156:443
2018-08-26 21:04:25a393af470ea655a88bfd8444f488b118Virustotal results 45/67 (67.16%) 64.111.42.64:443
2018-08-26 12:05:223e91223303ea166ca63cae1d101f644fVirustotal results 51/68 (75.00%) 77.48.30.156:443
2018-08-26 07:35:246faa2ee323562d3dabeaf63e70e41193Virustotal results 47/68 (69.12%) 64.111.42.64:443
2018-08-26 06:28:49a06b4634070b5be72715efef579a15feVirustotal results 50/68 (73.53%) 77.48.30.156:443
2018-08-25 22:36:371cd97719868d883ff2b029c28c529b6bn/a77.48.30.156:443
2018-08-24 22:58:45e693ec63df9cf74785b338215fd8ede2Virustotal results 49/67 (73.13%) 77.48.30.156:443
2018-08-23 15:26:131a1e1c1b35f93ff1027ce2b5bb932570Virustotal results 47/68 (69.12%) 64.111.42.64:443
2018-08-22 21:51:4644adbf06e3025a0a61285eff6da6c8b5n/a77.48.30.156:443
2018-08-22 06:55:258f084484aeb2d35ae70c14ed608a8829n/a77.48.30.156:443
2018-08-21 23:03:2553846913aacb2db0645167380fc3d04fVirustotal results 51/68 (75.00%) 77.48.30.156:443
2018-08-21 20:22:1593fbb31fb01041bb02dcf9e30724ff64n/a77.48.30.156:443
2018-08-21 15:26:2597c3f3dfd8071a5b69d4d9b01f9f065dn/a77.48.30.156:443
2018-08-19 22:46:39b7d620496600929fed2faa377ce65860Virustotal results 50/68 (73.53%) 77.48.30.156:443
2018-08-19 10:21:45744d7875e9a8f6e28bd285efa03441e7n/a37.57.144.177:443
2018-08-19 06:27:36379eec88b730816b8bde9bff14e37607n/a77.48.30.156:443
2018-08-18 23:36:39cf46ff74599f82bbb6fdc129c2e8d4baVirustotal results 49/69 (71.01%) 37.57.144.177:443
2018-08-18 22:41:226399e1a5c9598d9f9dd63f25ef765992n/a77.48.30.156:443
2018-08-18 14:33:58063299dac885d7ddb15112a4d0f307e7Virustotal results 49/68 (72.06%) 77.48.30.156:443
2018-08-18 14:33:58063299dac885d7ddb15112a4d0f307e7Virustotal results 49/68 (72.06%) 37.57.144.177:443
2018-08-17 14:42:51077cf908007136e9ec7aed04b2bbc6faVirustotal results 43/68 (63.24%) 64.111.42.64:443
2018-08-17 13:50:5709df4e56c3537ccf39c84e4d317e170dVirustotal results 49/67 (73.13%) 77.48.30.156:443
2018-08-17 11:27:224f4c18ec2514e8f933c55a7549d2ce69Virustotal results 49/68 (72.06%) 77.48.30.156:443
2018-08-17 06:01:3253f4f080e01a4c8f70c149b81a8b6c1fVirustotal results 50/68 (73.53%) 77.48.30.156:443
2018-08-16 14:32:01024dc145dc980d9dc8ffa7c381e73fd6Virustotal results 53/68 (77.94%) 77.48.30.156:443
2018-08-16 07:48:408a3d34a21bb5fb1e68e057bf98039c5eVirustotal results 60/68 (88.24%) 77.48.30.156:443
2018-08-15 12:49:03b40a9a93940b04960f711b036aec8bb9Virustotal results 47/68 (69.12%) 64.111.42.64:443
2018-08-14 03:25:04f6cca9da587053a77d4e5df930e251d4Virustotal results 50/68 (73.53%) 77.48.30.156:443
2018-08-14 03:03:47a9ae907cf808c3a7e6ce2c25eec411deVirustotal results 49/55 (89.09%) 77.48.30.156:443
2018-08-13 06:50:32ddc9791046c5b2401d4f1992fac46b0aVirustotal results 48/68 (70.59%) 37.57.144.177:443
2018-08-12 05:59:17324de0dbc4cb0ab30a7b730e2f01556bVirustotal results 49/67 (73.13%) 77.48.30.156:443
2018-08-12 01:00:19382a6ff91f36137df33ae1702e3c6d8bn/a77.48.30.156:443
2018-08-10 08:15:03b1ac27999006e364f1f6fc02d1cc5fdfVirustotal results 60/68 (88.24%) 37.57.144.177:443
2018-08-10 07:15:09025975f3dfaf2d1fbe038b3aa4e8c78dVirustotal results 55/67 (82.09%) 77.48.30.156:443
2018-08-10 06:25:22056d70f0e0f0e15b95eab97a4b34bf91Virustotal results 51/68 (75.00%) 77.48.30.156:443
2018-08-09 20:21:04431a7c7623698189d7b898087755f2c2Virustotal results 49/68 (72.06%) 77.48.30.156:443
2018-08-09 07:11:13b6f40ed286063d76dd776f7396ca7024Virustotal results 51/58 (87.93%) 77.48.30.156:443
2018-08-08 21:50:2207367eb87fe144a16e7b2255052d2c96n/a77.48.30.156:443
2018-08-08 08:59:1151643f6fbc97ca7b37e200f5183e2399n/a77.48.30.156:443
2018-08-08 04:43:04f1f5477cfef2177407c56235fb828951Virustotal results 58/68 (85.29%) 77.48.30.156:443
2018-08-08 03:59:0246e3b6e5d702a94d5d55de58b6db96e1Virustotal results 56/67 (83.58%) 77.48.30.156:443
2018-08-08 01:18:15f6b71eb3e7eaf3bff17b4e8488e519c1Virustotal results 51/68 (75.00%) 64.111.42.64:443
2018-08-07 09:54:511d133a0a0af7a6c8719e75fe39a9121cn/a77.48.30.156:443
2018-08-06 09:07:580fa88d9599414d4d10383302976d25dcn/a77.48.30.156:443
2018-08-04 08:32:5754a9c8e27e4970a2a6f11dcc94961d58Virustotal results 48/68 (70.59%) 37.57.144.177:443
2018-08-03 21:19:519c8468ffe59d0d2b38f409d39293161dn/a77.48.30.156:443
2018-08-02 13:00:17e009791945cee9abfeb71ae190696460Virustotal results 58/68 (85.29%) 77.48.30.156:443
2018-08-02 08:47:4538e0fba25474e07369778dd96fd4640aVirustotal results 47/67 (70.15%) 37.57.144.177:443
2018-08-02 05:23:58cf910f8c22541a66afd7ae7fcaf530d6Virustotal results 48/68 (70.59%) 77.48.30.156:443
2018-08-01 21:13:290cc22a221c16dbf68498b282a3fac264Virustotal results 50/68 (73.53%) 77.48.30.156:443
2018-08-01 14:40:43b40606dfb5494cd8604348ca494729d8Virustotal results 42/68 (61.76%) 77.48.30.156:443
2018-07-31 12:49:27a3ef15836e43a2121c90435ccd693bffVirustotal results 54/68 (79.41%) 64.111.42.64:443
2018-07-31 02:59:4298965ba9d65a3aa02df5aae0bd7d91ben/a77.48.30.156:443
2018-07-30 22:50:43bbd1fc469d743f2c770dbb96a475afb4Virustotal results 49/68 (72.06%) 77.48.30.156:443
2018-07-30 02:11:0874143e79fb0779fbcc81af8e0c9db3eeVirustotal results 49/68 (72.06%) 77.48.30.156:443
2018-07-28 18:17:21991455b33c19df9054e1f837bfca6604n/a77.48.30.156:443
2018-07-28 09:21:210a32ecd8d5ebce3774baecbf41760fb6Virustotal results 56/68 (82.35%) 77.48.30.156:443
2018-07-27 19:54:18a3897aece250a1d08849477600e78fd5Virustotal results 52/68 (76.47%) 64.111.42.64:443
2018-07-26 19:54:409b4cc237cabad0b9461b79946a693512Virustotal results 51/68 (75.00%) 77.48.30.156:443
2018-07-26 17:06:109ac74bdf54ced10cd9ee19717aca42adVirustotal results 49/67 (73.13%) 77.48.30.156:443
2018-07-23 16:31:05c958596341cb046024285a75351ebb30Virustotal results 50/68 (73.53%) 77.48.30.156:443
2018-07-19 21:53:49a855703de75a6595ad5e69c4a40b2566Virustotal results 57/68 (83.82%) 77.48.30.156:443
2018-07-19 21:50:194764a77e09c94b15db45283d58f6853an/a77.48.30.156:443
2018-07-19 03:43:38a63d1cd0d8efd9a1088371d5240bb932Virustotal results 54/68 (79.41%) 64.111.42.64:443
2018-07-18 06:11:403847d20a055979151b2aa0d79683d93aVirustotal results 49/68 (72.06%) 77.48.30.156:443

# of entries: 100 (max: 100)