JA3 Fingerprints

You can find further information about the JA3 fingerprint decfb48a53789ebe081b88aabb58ee34, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:decfb48a53789ebe081b88aabb58ee34
First seen:2018-12-21 09:06:16 UTC
Last seen:2019-11-13 13:50:58 UTC
Status:Blacklisted
Malware samples:183
Destination IPs:120
Malware:Adwind
Listing date:2018-12-31 07:25:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-11-13 13:50:58061684ee9be7db788b04ad8185960cedn/a103.125.191.152:7777
2019-11-12 08:13:361e5cf5e34881b4cdd6f64c88bc709cd7n/a79.134.225.75:1313
2019-11-12 05:27:19cfc2b7a5b69cf30d21f991b6704d18d6n/a193.37.212.205:1010
2019-11-11 14:13:23eea02c2e171b358c11d897c650f97d5cn/a172.94.88.81:1780
2019-11-10 02:37:37b80f34cc498c68b891811ab50ac3b6d8n/a212.7.208.72:5567
2019-11-06 07:48:48283cfc0a814d3982df0fab4ea5ac9178n/a79.134.225.75:1313
2019-11-05 08:32:25a5cd94dcb13ae62f2dd00910d982ef9dn/a79.134.225.75:1313
2019-10-29 12:50:146eed710557f08e107b660510843d0ef4n/a103.125.191.106:7777
2019-10-28 14:57:3022573b79318460d14717901b2d7c1b73Virustotal results 7 / 58 (12.07%) 103.125.191.106:7777
2019-10-16 06:12:38783f396f6aff8a94cdb3288a03fb2006Virustotal results 5 / 59 (8.47%) 79.134.225.83:7272
2019-10-14 09:50:141d57a86b6f00c1b5c2a1d24be08e8963n/a103.125.191.152:7777
2019-10-08 21:07:22c0765e0dab2ed532b3a54dc1ce479d71Virustotal results 1 / 58 (1.72%) 185.203.118.111:1010
2019-10-08 21:04:32aa003fdcf195bc5790436843518bb6deVirustotal results 1 / 60 (1.67%) 185.177.59.229:1010
2019-10-08 21:03:42abfb72f0676b5140f6183bee85b0aeb3n/a185.177.59.229:1010
2019-10-07 18:39:57902adc744043ee4721179818722d7723n/a185.227.82.51:4070
2019-10-02 17:47:30f4d30136b2dc64e062953b25dc95011bVirustotal results 4 / 57 (7.02%) 85.217.171.167:1010
2019-10-02 17:47:30f4d30136b2dc64e062953b25dc95011bVirustotal results 4 / 57 (7.02%) 85.217.171.167:1020
2019-10-01 12:49:433625be81435bf38fc9565e7ef19c193cVirustotal results 3 / 58 (5.17%) 172.94.88.81:1780
2019-09-25 00:53:351ca2c0d0a305df30bf1bcc738af621bfn/a79.134.225.96:5665
2019-09-24 23:41:11de4408a805ceed29f1db2c6c30b6ba6fn/a89.249.65.168:2025
2019-09-24 21:25:034e471f03501c48ed9f4d12fef234828bVirustotal results 6 / 58 (10.34%) 85.217.171.52:1010
2019-09-23 09:59:19f51e2cf6953b3c8a72f37cf76d29a6c4n/a89.249.65.210:4050
2019-09-19 09:21:53db04d8120a754eaf0595820ebbe9064an/a103.125.191.152:7777
2019-09-18 10:55:1364a25fcd713c0707ac0d0da709d14e76n/a79.134.225.96:5665
2019-09-17 23:21:5638da95ea296612a1e557dd7a205c0f1cn/a195.206.106.220:1899
2019-09-17 01:38:59895e900c953efd9dec81ba2e14e8462bVirustotal results 2 / 57 (3.51%) 185.203.116.78:1010
2019-09-09 08:14:10b68c249a7f935c033586e0eec999043dn/a79.134.225.71:7390
2019-09-07 21:29:19622fe88027cada8cd0875b53a30e1c9eVirustotal results 10 / 58 (17.24%) 185.205.210.48:1010
2019-08-22 10:07:376f29b735c9d7cb55e4376690ce669699Virustotal results 5 / 58 (8.62%) 79.134.225.75:1313
2019-08-21 11:36:08a8e08d2a5975f9aa43b76f95def22032Virustotal results 1 / 57 (1.75%) 193.37.213.33:1010
2019-08-21 03:34:5673993aa38391f83c1c699aab6672c440n/a185.94.191.37:5201
2019-08-19 13:28:4170e3114c3988452e5644eee544aed372Virustotal results 1 / 59 (1.69%) 184.164.139.213:1010
2019-08-16 16:16:4557d678b8ae932613e82ad00e6a47b513Virustotal results 9 / 39 (23.08%) 91.92.128.188:1010
2019-08-15 14:49:52519169c6d701e3f1cd5874347e5e814bVirustotal results 12 / 55 (21.82%) 185.205.210.163:1010
2019-08-15 13:57:4445878adf7c7732f8761a3c4213b2ddc3Virustotal results 6 / 55 (10.91%) 185.205.210.163:1010
2019-08-10 12:16:49aca597117d1eeed454903c5e9a013cc8Virustotal results 4 / 57 (7.02%) 85.217.171.237:1010
2019-08-08 12:42:17c07df225ddfc09d9909d34bcc1d3cd73n/a66.154.102.118:9412
2019-08-03 20:50:4401033939f32832497fff3aba134d0199Virustotal results 4 / 60 (6.67%) 185.203.117.118:1020
2019-08-03 20:50:4401033939f32832497fff3aba134d0199Virustotal results 4 / 60 (6.67%) 185.203.117.118:1010
2019-07-30 18:48:1789fdbaf07cd4c31c97d68abec84cbf50Virustotal results 0 / 59 (0.00%) 94.156.35.241:1010
2019-07-30 18:41:5787d2f2146fb7cb0d2d64e5a49a0040eeVirustotal results 0 / 59 (0.00%) 104.168.197.211:1010
2019-07-26 12:42:0903b4c7e08e8ed4ced15945ed2a286b8fVirustotal results 9 / 59 (15.25%) 185.203.118.180:1010
2019-07-23 00:12:07bd5fe838526c526fee3031d5bce6ff59Virustotal results 3/59 (5.08%) 192.99.135.121:7777
2019-07-20 07:57:315e4a24bef6293474479d42e18b0f3696Virustotal results 5/58 (8.62%) 91.132.139.145:5020
2019-07-18 15:46:17c3e56a2bc72af4679fd6ae7e9e068e4cn/a161.129.67.135:6722
2019-07-17 13:35:322fe1eb29d0c17f84f9fb961139858fd1n/a78.138.107.12:7779
2019-07-16 07:14:06955aecdfa98d678566d1217212a6a2a0n/a185.247.228.24:1010
2019-07-15 13:43:424b5c654e749c7f53f974f241ede31f6fn/a185.247.228.31:1313
2019-07-13 05:11:577b3907cd9f79b8b898120bc28175c8dbVirustotal results 20/58 (34.48%) 185.205.209.96:1040
2019-07-11 09:34:13543f9044228000a5a1ca8601c4fa651fVirustotal results 4/55 (7.27%) 193.56.28.172:1944
2019-07-11 08:52:54de6236d1438189e8f3017d6928899631Virustotal results 5/57 (8.77%) 51.75.154.197:7777
2019-07-11 08:12:268c7101ef8eb444bd8516d8288256db98n/a185.247.228.31:1313
2019-07-09 06:53:33b80fa6b3314b33f97c71c6817ab86af8Virustotal results 4/60 (6.67%) 178.239.21.5:1313
2019-07-02 15:24:24fb3b05d2a727cbdd94d1236c16156862n/a185.247.228.31:1313
2019-07-01 09:19:190c7266d7696353c84125d2f77c762a96n/a94.158.245.4:1780
2019-07-01 08:29:383ce6ff9b3d8fb67de2f2591435ba4defn/a185.247.228.31:1313
2019-06-27 06:47:240a88a9b78dc322f420e04b26f8e9fc85n/a185.247.228.31:1313
2019-06-26 11:03:434ec90830971879b20fbdf34c8dbe2f0cn/a185.247.228.31:1313
2019-06-25 12:57:16a4b414ee0cb9592583d166e65f289b54Virustotal results 6/59 (10.17%) 185.247.228.31:1313
2019-06-16 20:26:504c6a61cc031264767324a364ba570efeVirustotal results 7/57 (12.28%) 185.205.209.2:1010
2019-06-16 20:26:504c6a61cc031264767324a364ba570efeVirustotal results 7/57 (12.28%) 185.205.209.2:1020
2019-06-15 11:34:4676d99f985abf2181e10e11b1965823b8Virustotal results 8/58 (13.79%) 185.205.209.2:1010
2019-06-08 02:40:08dcd4b7ded36dd128e988345b6b438a22Virustotal results 20/61 (32.79%) 185.203.117.3:1010
2019-06-06 02:25:5866fafe6c70b89438f9fbb57b5efd3ae9Virustotal results 3/60 (5.00%) 185.244.31.72:6565
2019-05-31 20:00:504e0ab5ff9fa81d25e51838c1bafcc868Virustotal results 13/59 (22.03%) 185.136.168.134:7776
2019-05-29 20:23:4968ca2ed7341ac5937cbedbf2cab83633Virustotal results 7/60 (11.67%) 185.244.29.19:22209
2019-05-20 02:03:11331d2ec71454270d74b4807f0f02fe1an/a91.192.100.47:7795
2019-05-14 12:24:12b90792b364fc80017aa05e241a150feen/a185.236.203.170:4020
2019-05-10 05:39:276ae4d77df4140463c5134e99e63b1e90n/a185.163.45.48:3290
2019-05-09 20:41:3935f36629aa276aee1f85f243461ee51en/a91.193.75.110:4125
2019-05-09 04:54:104a0a0e5be2464fd7a274fabe6b986c60Virustotal results 8/62 (12.90%) 185.163.45.48:7795
2019-05-06 10:26:05efc896271dec854a8a6437e3d3b8f436n/a185.165.153.184:2019
2019-04-30 15:09:15bd41d33cabcbdd9b8092d86801557632Virustotal results 14/58 (24.14%) 178.239.21.27:3242
2019-04-30 14:28:279181b629cc6edc9764c15db67ee6da2fn/a178.239.21.27:3242
2019-04-27 09:32:36b2687e14d7682041a5570caf98f63636Virustotal results 12/59 (20.34%) 185.206.146.146:1030
2019-04-27 03:59:4682147e3b08a1701f9ff32e1b7763f9b6n/a41.231.120.132:4125
2019-04-24 06:05:505d550000e4128c6f44f53a4136872007n/a185.165.153.22:22112
2019-04-22 15:50:1864d0aa52ee101dc03ab6137558aa40e7n/a91.192.100.39:3522
2019-04-18 14:18:35fa859eea78a03b0b5516e4ea4125fec1Virustotal results 16/60 (26.67%) 91.192.100.39:1921
2019-04-18 09:45:33bc4e6166c0f5274b50faf402c8b22e13n/a91.192.100.14:1971
2019-04-16 06:49:5198231ceb83e1a41b10ffff9a0999c6bdVirustotal results 9/61 (14.75%) 46.183.223.12:8785
2019-04-15 17:31:236734a8c45e1b894661064a95d04cb7ebVirustotal results 7/60 (11.67%) 91.192.100.47:8332
2019-04-15 09:59:50eb162663f253a95dbb42446ed1cf2ec3Virustotal results 26/58 (44.83%) 185.156.173.122:7777
2019-04-14 20:58:40a16d9087a50e10a8a5e54f622006f2efn/a185.136.168.134:7776
2019-04-11 15:42:235f713a5d6e168be181044c1e7782f697n/a185.244.29.102:2556
2019-04-05 23:14:1632d9968354424c240e6ee32c20bfd21cn/a194.5.97.184:2556
2019-04-05 07:21:35318ca09195e255c5940f782f56fd5361n/a91.192.100.14:1971
2019-04-03 23:03:15b5f1c59d87caaaabcd7640f65b226ab3n/a46.183.220.12:7777
2019-04-03 10:00:36ab61cbd725ac752e4db365f0d87fd0edVirustotal results 4/57 (7.02%) 185.4.29.236:9221
2019-04-03 07:23:4703562f06a4492f103496e5a838fa135fn/a185.206.146.146:1010
2019-04-03 07:23:4703562f06a4492f103496e5a838fa135fn/a185.206.146.146:1020
2019-04-03 07:20:386cbb88c5d410c9f39d35dc7e70759842Virustotal results 19/58 (32.76%) 185.206.146.146:1010
2019-04-03 07:18:17990213f59355ed497dda0356b2460a98Virustotal results 21/60 (35.00%) 185.206.146.146:1010
2019-04-03 07:18:04d4e65995239b7b5a8f71b76b4d6f300eVirustotal results 13/61 (21.31%) 185.206.146.146:1010
2019-03-28 12:09:48ca21c2c51e9142f817669e3ed9837304n/a194.5.98.180:6565
2019-03-26 00:10:355f9eaec5ccdeb781b20530e93230ede1n/a185.244.29.9:3478
2019-03-25 18:13:16556328c385e7c59bdf9329d59f2bff3cn/a144.217.89.128:7777
2019-03-25 11:09:35d9acb4030e2551ac9f86ff22f9be725fn/a185.244.29.31:1880
2019-03-21 13:17:45e70f134a0ef0853102b0ced7bafe00d1n/a192.3.24.248:3478
2019-03-21 11:21:209cc9ea9cc174d0ac3bfec904bfc1ef8en/a31.171.152.105:3602

# of entries: 100 (max: 100)