JA3 Fingerprints

You can find further information about the JA3 fingerprint decfb48a53789ebe081b88aabb58ee34, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:decfb48a53789ebe081b88aabb58ee34
First seen:2018-12-21 09:06:16 UTC
Last seen:2021-06-14 05:27:16 UTC
Status:Blacklisted
Malware samples:450
Destination IPs:234
Malware:Adwind
Listing date:2018-12-31 07:25:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-09-09 10:18:28d745f7c6cadca808db3a62280026190bn/a178.170.138.163:1983
2021-09-09 06:24:0475a420483c188e462ddf040e172a6cabVirustotal results 19 / 60 (31.67%) 185.222.57.204:8787
2021-09-08 09:25:0123ce8225643a4bb9502bd2a792917edan/a45.137.22.104:1190
2021-09-07 09:45:46886a5e139319a5dc454fce5ef9a2ba5an/a45.137.22.104:1190
2021-09-07 06:01:28780064ec8832f9f052964fef3a881417Virustotal results 18 / 60 (30.00%) 45.137.22.104:1190
2021-09-06 13:51:1060bb5c076ca1ddd382213c4439a31735n/a109.248.144.177:1947
2021-09-05 23:40:18d92e4d601fad56e8750ea73e8b0e53d9n/a66.154.111.3:1993
2021-08-31 11:21:05c67d02c567461d6fad607a89ac1084b8n/a172.93.187.66:19844
2021-08-31 03:02:240126915165dfe99d836f02f8ab80243fVirustotal results 20 / 58 (34.48%) 45.137.22.104:1190
2021-08-30 14:32:3063507ef5bc127d200bd48e477a5f8ab2n/a172.93.187.66:19844
2021-08-30 01:11:58681105abdc5d0c0343775b60daf355f0Virustotal results 18 / 60 (30.00%) 45.137.22.104:1190
2021-06-14 05:27:16044ebc1e227be0f2f49d8f8aa11d2780n/a185.244.26.223:7551
2021-06-14 05:27:16044ebc1e227be0f2f49d8f8aa11d2780n/a185.244.26.223:7551
2021-06-10 12:06:05d704a9cd787438c15a241bddd441eaccVirustotal results 8 / 61 (13.11%) 185.244.26.223:7551
2021-06-10 12:06:05d704a9cd787438c15a241bddd441eaccVirustotal results 8 / 61 (13.11%) 185.244.26.223:7551
2021-06-08 22:29:200e7ea3528c19b7d6ffb4e3223c63872an/a79.134.225.69:7551
2021-06-08 22:29:200e7ea3528c19b7d6ffb4e3223c63872an/a79.134.225.69:7551
2021-05-11 10:27:2410b169afa784377b3665a075da9626e0n/a198.102.14.18:5050
2021-05-11 10:27:2410b169afa784377b3665a075da9626e0n/a198.102.14.18:5050
2021-04-21 08:16:432292ed191b66e4746ac4d930aa413143n/a107.175.101.209:7865
2021-04-21 08:16:432292ed191b66e4746ac4d930aa413143n/a107.175.101.209:7865
2021-04-21 05:42:397f3faae92130ad129f91d894ed567031n/a107.175.101.209:7865
2021-04-21 05:42:397f3faae92130ad129f91d894ed567031n/a107.175.101.209:7865
2021-04-20 08:48:40085dc6e275b50f45fc1e7973d44af68en/a107.175.101.209:7865
2021-04-20 08:48:40085dc6e275b50f45fc1e7973d44af68en/a107.175.101.209:7865
2021-04-19 21:12:06903b63e35bf8738809eab0f187027dafn/a107.175.101.209:7865
2021-04-19 21:12:06903b63e35bf8738809eab0f187027dafn/a107.175.101.209:7865
2021-03-29 01:44:0988a3e4f6f889778ab15c2e69546773ddn/a185.222.57.238:7788
2021-03-29 01:44:0988a3e4f6f889778ab15c2e69546773ddn/a185.222.57.238:7788
2021-03-26 11:01:58c9f048b2c71d51eda32f7cc8abb4485fn/a185.222.57.238:7788
2021-03-26 11:01:58c9f048b2c71d51eda32f7cc8abb4485fn/a185.222.57.238:7788
2021-02-16 12:28:53e224228aa17642c244a4dba807d120daVirustotal results 2 / 61 (3.28%) 79.134.225.126:3000
2021-02-16 12:28:53e224228aa17642c244a4dba807d120daVirustotal results 2 / 61 (3.28%) 79.134.225.126:3000
2021-02-15 12:32:2808568e2934e4821a4bb2914481701a90n/a193.218.118.85:1781
2021-02-15 12:32:2808568e2934e4821a4bb2914481701a90n/a193.218.118.85:1781
2021-01-29 15:00:197770ea400b1a6b5c049922b35bd27f3bn/a185.140.53.224:9845
2021-01-29 15:00:197770ea400b1a6b5c049922b35bd27f3bn/a185.140.53.224:9845
2021-01-29 10:45:056822c5a7e742be8eba1a4b6266cd2f8fn/a103.114.107.184:7180
2021-01-29 10:45:056822c5a7e742be8eba1a4b6266cd2f8fn/a103.114.107.184:7180
2021-01-26 08:21:38492561892f69505631f979461c58f168n/a103.114.107.184:7180
2021-01-26 08:21:38492561892f69505631f979461c58f168n/a103.114.107.184:7180
2020-12-18 05:15:510bbc6017126cd69f31e5bbd1336e9172n/a180.214.236.99:7788
2020-12-18 05:15:510bbc6017126cd69f31e5bbd1336e9172n/a180.214.236.99:7788
2020-12-16 22:08:4800f124e3ca10605f359baaf71eea2b33n/a180.214.236.99:7788
2020-12-16 22:08:4800f124e3ca10605f359baaf71eea2b33n/a180.214.236.99:7788
2020-12-16 08:01:3675b8e1c3ae8870ed28a553b7e19eb144n/a180.214.236.99:7788
2020-12-16 08:01:3675b8e1c3ae8870ed28a553b7e19eb144n/a180.214.236.99:7788
2020-12-15 21:06:425aa01965ed31d7ba03fbaf80b2d4723eVirustotal results 3 / 63 (4.76%) 54.39.49.150:7777
2020-12-15 21:06:425aa01965ed31d7ba03fbaf80b2d4723eVirustotal results 3 / 63 (4.76%) 54.39.49.150:7777
2020-12-15 14:06:36bae7e2cff7a4b98c8aa6f8aa48c19387n/a180.214.236.99:7788
2020-12-15 14:06:36bae7e2cff7a4b98c8aa6f8aa48c19387n/a180.214.236.99:7788
2020-12-11 09:58:43560d51b8d1c89b341d542958f36f6c06n/a180.214.236.99:7788
2020-12-11 09:58:43560d51b8d1c89b341d542958f36f6c06n/a180.214.236.99:7788
2020-10-08 10:41:0064aae610524b88ebaba6f98e7f663f22Virustotal results 18 / 61 (29.51%) 79.134.225.5:1221
2020-10-08 10:41:0064aae610524b88ebaba6f98e7f663f22Virustotal results 18 / 61 (29.51%) 79.134.225.5:1221
2020-10-05 10:42:10c27eb6277a0859f128447cfd772123ecn/a205.185.113.54:7777
2020-10-05 10:42:10c27eb6277a0859f128447cfd772123ecn/a205.185.113.54:7777
2020-10-02 10:06:2675d8d0866bccf1ad35df5e0c0a590265Virustotal results 19 / 61 (31.15%) 205.185.113.54:7777
2020-10-02 10:06:2675d8d0866bccf1ad35df5e0c0a590265Virustotal results 19 / 61 (31.15%) 205.185.113.54:7777
2020-09-30 12:39:39fc832d952d62c8f45f6d5b932bd3f6b7Virustotal results 10 / 63 (15.87%) 205.185.113.54:7777
2020-09-30 12:39:39fc832d952d62c8f45f6d5b932bd3f6b7Virustotal results 10 / 63 (15.87%) 205.185.113.54:7777
2020-09-18 03:03:466c9a6e8f9c7d11d523dda57fe1254230Virustotal results 2 / 61 (3.28%) 161.97.84.54:3306
2020-09-18 03:03:466c9a6e8f9c7d11d523dda57fe1254230Virustotal results 2 / 61 (3.28%) 161.97.84.54:3306
2020-09-08 10:11:4807c17a04f336cbe3e5494ae7252704aen/a91.193.75.18:1313
2020-09-08 10:11:4807c17a04f336cbe3e5494ae7252704aen/a91.193.75.18:1313
2020-09-08 00:36:53bf20d52ca47fb1731c30b7e5a115f23bn/a79.134.225.16:8891
2020-09-08 00:36:53bf20d52ca47fb1731c30b7e5a115f23bn/a79.134.225.16:8891
2020-09-07 23:50:274009190982ec260fce9a41b145956c30n/a79.134.225.16:8891
2020-09-07 23:50:274009190982ec260fce9a41b145956c30n/a79.134.225.16:8891
2020-09-07 21:13:493bab0d35ddb9fed597012299c4f1b492Virustotal results 16 / 61 (26.23%) 94.156.35.109:1010
2020-09-07 21:13:493bab0d35ddb9fed597012299c4f1b492Virustotal results 16 / 61 (26.23%) 94.156.35.109:1010
2020-09-05 15:07:25e080f6a91cb2d9baf290a7e89c362691n/a91.193.75.225:1010
2020-09-05 15:07:25e080f6a91cb2d9baf290a7e89c362691n/a91.193.75.225:1010
2020-09-04 04:57:2336e2c6298e221f0f2be1d60927dec1f9Virustotal results 18 / 61 (29.51%) 91.193.75.225:1010
2020-09-04 04:57:2336e2c6298e221f0f2be1d60927dec1f9Virustotal results 18 / 61 (29.51%) 91.193.75.225:1010
2020-09-01 18:49:50283fb701e53e69b5f3250c10ba2053f4n/a91.193.75.171:1010
2020-09-01 18:49:50283fb701e53e69b5f3250c10ba2053f4n/a91.193.75.171:1010
2020-09-01 05:03:539dc60b370a7113b2b9b4f2e1f15c6b32n/a185.140.53.138:1382
2020-09-01 05:03:539dc60b370a7113b2b9b4f2e1f15c6b32n/a185.140.53.138:1382
2020-08-31 01:17:387e5b34776de19e8b482564a11d3fb699n/a91.193.75.171:1010
2020-08-31 01:17:387e5b34776de19e8b482564a11d3fb699n/a91.193.75.171:1010
2020-08-29 06:34:0003bdde0d47b8c25a13f53f6fbba8b08bn/a91.193.75.171:1010
2020-08-29 06:34:0003bdde0d47b8c25a13f53f6fbba8b08bn/a91.193.75.171:1010
2020-08-17 20:33:3533fce33b9a18852d93e3e877213fba16n/a185.140.53.219:1010
2020-08-17 20:33:3533fce33b9a18852d93e3e877213fba16n/a185.140.53.219:1010
2020-08-16 23:17:38a1da1adea4080258c96da1e17e4e6347n/a185.140.53.219:1010
2020-08-16 23:17:38a1da1adea4080258c96da1e17e4e6347n/a185.140.53.219:1010
2020-08-16 22:34:2202045ec0eae15e266f981232abbe518dn/a185.140.53.219:1010
2020-08-16 22:34:2202045ec0eae15e266f981232abbe518dn/a185.140.53.219:1010
2020-08-16 19:32:537244091d4cb627e008f4ef224f1056b7n/a103.89.91.6:20902
2020-08-16 19:32:537244091d4cb627e008f4ef224f1056b7n/a103.89.91.6:20902
2020-08-16 09:03:34cabd650b8d5379b8c836aafba07060d5n/a79.134.225.111:1501
2020-08-16 09:03:34cabd650b8d5379b8c836aafba07060d5n/a79.134.225.111:1010
2020-08-16 09:03:34cabd650b8d5379b8c836aafba07060d5n/a79.134.225.111:1501
2020-08-16 09:03:34cabd650b8d5379b8c836aafba07060d5n/a79.134.225.111:1010
2020-08-15 23:18:46707db3ab89c68bcc7d853c528414faf3n/a185.140.53.219:1010
2020-08-15 23:18:46707db3ab89c68bcc7d853c528414faf3n/a185.140.53.219:1010
2020-08-15 17:06:48501660b281ae893d8d89e3f1ca0e1153n/a79.134.225.111:1506
2020-08-15 17:06:48501660b281ae893d8d89e3f1ca0e1153n/a79.134.225.111:1506
2020-08-10 09:32:58aa8ba892632d7fd6b8ff4f1f63f34272n/a185.140.53.7:2786

# of entries: 100 (max: 100)