JA3 Fingerprints

You can find further information about the JA3 fingerprint decfb48a53789ebe081b88aabb58ee34, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:decfb48a53789ebe081b88aabb58ee34
First seen:2018-12-21 09:06:16 UTC
Last seen:2020-03-26 08:28:52 UTC
Status:Blacklisted
Malware samples:232
Destination IPs:147
Malware:Adwind
Listing date:2018-12-31 07:25:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-03-26 08:28:52b75a84f20355803e40e8b098f2d1e303Virustotal results 29 / 60 (48.33%) 184.164.139.226:2020
2020-03-23 07:40:36af699658ee43be51b27f2c64a6043f32n/a43.226.229.110:8088
2020-03-22 19:15:203bca20b35403cce51b425520af150bccn/a185.205.209.141:1501
2020-03-19 07:04:369ad92df01126418a70df02eddc2062a7Virustotal results 23 / 63 (36.51%) 43.226.229.110:8088
2020-03-19 02:34:176904fbcbd2a54630420a98f1ea621176n/a185.244.30.14:1313
2020-03-18 23:54:366a1651d16d67cc58ca5fac4d75db406fn/a43.226.229.83:8088
2020-03-18 20:42:05e24c2cefe389718bd2d76a651b3b5648n/a43.226.229.83:8088
2020-03-17 08:12:4020cd9f2b21941c4f9ffb85cb7edd0579n/a43.226.229.83:8088
2020-03-17 00:35:4689376556db85fabd7014a1f55baed233n/a43.226.229.82:5288
2020-03-17 00:06:5287fe8604cc40a477f450ce00294405c4Virustotal results 12 / 60 (20.00%) 62.108.37.6:5252
2020-03-16 23:25:15250e661a8e95f99fb85889833722673fn/a185.244.30.14:1313
2020-03-16 09:21:559e4ba852733bbfd962060b16cf6bb510n/a43.226.229.83:8088
2020-03-14 08:27:147114ea8ac9d0c2eedaec85600e71dbbeVirustotal results 13 / 63 (20.63%) 88.150.189.98:1903
2020-03-14 08:26:278439e165d048d1d6fc81e0c035881af5Virustotal results 13 / 63 (20.63%) 88.150.189.98:9956
2020-03-13 14:42:266bf9d6b51d32581197293657c66c6f7fn/a43.226.229.110:8088
2020-03-13 08:16:11458036b177c8389ffe0950e33469e571n/a43.226.229.83:8088
2020-03-12 07:40:32d90942cfaf63803a0a51738c3c48dd29n/a43.226.229.110:8088
2020-03-11 17:00:550cc1c44a5b73e41adde5e26fa7b7f464n/a84.38.133.132:3202
2020-03-11 16:43:599453234d6f8a6416bd2e26dd7269d384Virustotal results 17 / 63 (26.98%) 84.38.133.132:3202
2020-03-11 09:10:436b36bb526fc001dba007af004cd59247n/a185.244.30.239:2091
2020-03-11 08:12:30591f08497eb9bcb7552519466ff131afn/a172.94.100.10:8088
2020-03-04 04:12:424d7a06d4144dccf15eab52475e5f0afeVirustotal results 25 / 63 (39.68%) 185.205.209.223:1020
2020-03-03 13:44:080980f23605539e76ae89d510dc424894n/a95.213.195.71:1788
2020-03-03 07:31:2322ff7d7d304360fe4212cce2d985b2daVirustotal results 21 / 60 (35.00%) 37.72.175.233:8080
2020-03-02 19:47:1824eed7dd7b54271b4b320edb5f1fbed6n/a91.92.136.97:8080
2020-02-26 17:37:38f7a20dfe788cb0d5e6dca17e5671dc83n/a192.3.2.150:5050
2020-02-25 02:38:22a9ed293e4d87a7b8832e70d3666e5313n/a95.213.195.71:17171
2020-02-25 01:39:3468018977f66d534a0e8439a1fc5b17cen/a91.189.180.195:7618
2020-02-24 15:01:36241b01ad6ad95a6bb323e101994883bfVirustotal results 27 / 61 (44.26%) 185.203.118.180:1010
2020-02-24 07:02:2983192d13dea30b2ab2a3f1c4b4fb377cVirustotal results 15 / 62 (24.19%) 91.189.180.195:7618
2020-02-23 12:57:40b3498953d00f5898a6a61c5e884d1cdfVirustotal results 25 / 59 (42.37%) 46.21.144.10:8080
2020-02-23 12:56:30de9813023a220622c741f123984bd01eVirustotal results 25 / 61 (40.98%) 193.37.213.56:2020
2020-02-23 12:56:30de9813023a220622c741f123984bd01eVirustotal results 25 / 61 (40.98%) 193.37.213.56:2040
2020-02-21 19:19:34925e42f8ebc9b4519d04241eff21e0acn/a91.189.180.195:7618
2020-02-21 19:19:2393b19f77acb0f940baf377b6c16de181Virustotal results 21 / 59 (35.59%) 193.37.213.56:2030
2020-02-21 17:25:59f87a14aa18ac68aa3833d699a15e75acVirustotal results 48 / 70 (68.57%) 37.120.140.165:1030
2020-02-19 10:26:55ef349e05a41817124d05280c3953568fVirustotal results 9 / 58 (15.52%) 193.37.213.42:1010
2020-02-17 09:11:158195000b7ad8b42783744b3283ff2e68n/a43.226.229.82:5288
2020-02-16 18:12:587cb81d855ee8517922fc7f0a098c2e6bVirustotal results 45 / 71 (63.38%) 23.81.246.113:6059
2020-02-16 16:28:4221fa8d2c2ca768b078067a089970885fVirustotal results 3 / 60 (5.00%) 139.99.122.112:7777
2020-02-11 06:04:401bcef0e43c346700930f8b0629de2266n/a43.226.229.82:5288
2020-02-10 14:46:55b7bdefe28349a815e22e19dc8e6e6a69n/a43.226.229.82:5288
2019-12-28 20:38:3137125d6cbbfa86171686eb344a8abbeeVirustotal results 20 / 63 (31.75%) 185.205.209.194:1010
2019-12-12 04:08:04c3830f5513ca607c27a324b9031922a0Virustotal results 8 / 59 (13.56%) 37.48.94.115:1989
2019-11-27 12:19:2029813fe65ed919d4834c66a79a4f8597n/a198.50.217.185:1988
2019-11-26 20:04:0163373e73105a0405ef80232b8fd190f3Virustotal results 12 / 60 (20.00%) 198.50.217.185:1988
2019-11-26 01:43:41d1856c6d32b7ef48a81e511c35dbb4dbn/a198.50.217.185:1988
2019-11-25 21:26:491dd9fc2444e0355743052c9cc9699d0cVirustotal results 6 / 59 (10.17%) 198.50.217.185:1988
2019-11-22 09:15:531cf8c2775eb1f3b6098ff008957e5205Virustotal results 4 / 60 (6.67%) 198.50.217.185:1988
2019-11-20 18:36:04c752c2e68f6fd68b7df6326c18963b96n/a162.248.92.28:2049
2019-11-13 13:50:58061684ee9be7db788b04ad8185960cedn/a103.125.191.152:7777
2019-11-12 08:13:361e5cf5e34881b4cdd6f64c88bc709cd7n/a79.134.225.75:1313
2019-11-12 05:27:19cfc2b7a5b69cf30d21f991b6704d18d6n/a193.37.212.205:1010
2019-11-11 14:13:23eea02c2e171b358c11d897c650f97d5cn/a172.94.88.81:1780
2019-11-10 02:37:37b80f34cc498c68b891811ab50ac3b6d8n/a212.7.208.72:5567
2019-11-06 07:48:48283cfc0a814d3982df0fab4ea5ac9178n/a79.134.225.75:1313
2019-11-05 08:32:25a5cd94dcb13ae62f2dd00910d982ef9dn/a79.134.225.75:1313
2019-10-29 12:50:146eed710557f08e107b660510843d0ef4n/a103.125.191.106:7777
2019-10-28 14:57:3022573b79318460d14717901b2d7c1b73Virustotal results 7 / 58 (12.07%) 103.125.191.106:7777
2019-10-16 06:12:38783f396f6aff8a94cdb3288a03fb2006Virustotal results 5 / 59 (8.47%) 79.134.225.83:7272
2019-10-14 09:50:141d57a86b6f00c1b5c2a1d24be08e8963n/a103.125.191.152:7777
2019-10-08 21:07:22c0765e0dab2ed532b3a54dc1ce479d71Virustotal results 1 / 58 (1.72%) 185.203.118.111:1010
2019-10-08 21:04:32aa003fdcf195bc5790436843518bb6deVirustotal results 1 / 60 (1.67%) 185.177.59.229:1010
2019-10-08 21:03:42abfb72f0676b5140f6183bee85b0aeb3n/a185.177.59.229:1010
2019-10-07 18:39:57902adc744043ee4721179818722d7723n/a185.227.82.51:4070
2019-10-02 17:47:30f4d30136b2dc64e062953b25dc95011bVirustotal results 4 / 57 (7.02%) 85.217.171.167:1010
2019-10-02 17:47:30f4d30136b2dc64e062953b25dc95011bVirustotal results 4 / 57 (7.02%) 85.217.171.167:1020
2019-10-01 12:49:433625be81435bf38fc9565e7ef19c193cVirustotal results 3 / 58 (5.17%) 172.94.88.81:1780
2019-09-25 00:53:351ca2c0d0a305df30bf1bcc738af621bfn/a79.134.225.96:5665
2019-09-24 23:41:11de4408a805ceed29f1db2c6c30b6ba6fn/a89.249.65.168:2025
2019-09-24 21:25:034e471f03501c48ed9f4d12fef234828bVirustotal results 6 / 58 (10.34%) 85.217.171.52:1010
2019-09-23 09:59:19f51e2cf6953b3c8a72f37cf76d29a6c4n/a89.249.65.210:4050
2019-09-19 09:21:53db04d8120a754eaf0595820ebbe9064an/a103.125.191.152:7777
2019-09-18 10:55:1364a25fcd713c0707ac0d0da709d14e76n/a79.134.225.96:5665
2019-09-17 23:21:5638da95ea296612a1e557dd7a205c0f1cn/a195.206.106.220:1899
2019-09-17 01:38:59895e900c953efd9dec81ba2e14e8462bVirustotal results 2 / 57 (3.51%) 185.203.116.78:1010
2019-09-09 08:14:10b68c249a7f935c033586e0eec999043dn/a79.134.225.71:7390
2019-09-07 21:29:19622fe88027cada8cd0875b53a30e1c9eVirustotal results 10 / 58 (17.24%) 185.205.210.48:1010
2019-08-22 10:07:376f29b735c9d7cb55e4376690ce669699Virustotal results 5 / 58 (8.62%) 79.134.225.75:1313
2019-08-21 11:36:08a8e08d2a5975f9aa43b76f95def22032Virustotal results 1 / 57 (1.75%) 193.37.213.33:1010
2019-08-21 03:34:5673993aa38391f83c1c699aab6672c440n/a185.94.191.37:5201
2019-08-19 13:28:4170e3114c3988452e5644eee544aed372Virustotal results 1 / 59 (1.69%) 184.164.139.213:1010
2019-08-16 16:16:4557d678b8ae932613e82ad00e6a47b513Virustotal results 9 / 39 (23.08%) 91.92.128.188:1010
2019-08-15 14:49:52519169c6d701e3f1cd5874347e5e814bVirustotal results 12 / 55 (21.82%) 185.205.210.163:1010
2019-08-15 13:57:4445878adf7c7732f8761a3c4213b2ddc3Virustotal results 6 / 55 (10.91%) 185.205.210.163:1010
2019-08-10 12:16:49aca597117d1eeed454903c5e9a013cc8Virustotal results 4 / 57 (7.02%) 85.217.171.237:1010
2019-08-08 12:42:17c07df225ddfc09d9909d34bcc1d3cd73n/a66.154.102.118:9412
2019-08-03 20:50:4401033939f32832497fff3aba134d0199Virustotal results 4 / 60 (6.67%) 185.203.117.118:1020
2019-08-03 20:50:4401033939f32832497fff3aba134d0199Virustotal results 4 / 60 (6.67%) 185.203.117.118:1010
2019-07-30 18:48:1789fdbaf07cd4c31c97d68abec84cbf50Virustotal results 0 / 59 (0.00%) 94.156.35.241:1010
2019-07-30 18:41:5787d2f2146fb7cb0d2d64e5a49a0040eeVirustotal results 0 / 59 (0.00%) 104.168.197.211:1010
2019-07-26 12:42:0903b4c7e08e8ed4ced15945ed2a286b8fVirustotal results 9 / 59 (15.25%) 185.203.118.180:1010
2019-07-23 00:12:07bd5fe838526c526fee3031d5bce6ff59Virustotal results 3/59 (5.08%) 192.99.135.121:7777
2019-07-20 07:57:315e4a24bef6293474479d42e18b0f3696Virustotal results 5/58 (8.62%) 91.132.139.145:5020
2019-07-18 15:46:17c3e56a2bc72af4679fd6ae7e9e068e4cn/a161.129.67.135:6722
2019-07-17 13:35:322fe1eb29d0c17f84f9fb961139858fd1n/a78.138.107.12:7779
2019-07-16 07:14:06955aecdfa98d678566d1217212a6a2a0n/a185.247.228.24:1010
2019-07-15 13:43:424b5c654e749c7f53f974f241ede31f6fn/a185.247.228.31:1313
2019-07-13 05:11:577b3907cd9f79b8b898120bc28175c8dbVirustotal results 20/58 (34.48%) 185.205.209.96:1040
2019-07-11 09:34:13543f9044228000a5a1ca8601c4fa651fVirustotal results 4/55 (7.27%) 193.56.28.172:1944

# of entries: 100 (max: 100)