JA3 Fingerprints

You can find further information about the JA3 fingerprint decfb48a53789ebe081b88aabb58ee34, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:decfb48a53789ebe081b88aabb58ee34
First seen:2018-12-21 09:06:16 UTC
Last seen:2020-07-07 22:25:48 UTC
Status:Blacklisted
Malware samples:369
Destination IPs:202
Malware:Adwind
Listing date:2018-12-31 07:25:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-07-07 22:25:4886b16cf87873c6eabfbdced70d210000n/a185.140.53.175:20804
2020-07-07 09:42:18fd50183db6b1d898c6c03fb37addd1d4n/a185.140.53.175:20804
2020-07-07 09:13:407b5063e05d789c177bc24c844da2a4a1n/a79.134.225.111:1501
2020-07-07 08:32:461d5620ec8f5dc6de6d0c98c53efc9e5bVirustotal results 8 / 62 (12.90%) 185.140.53.161:7266
2020-07-06 06:40:17392f8a09e199faaf327e6f3da21f34a8n/a103.89.91.6:20197
2020-07-05 21:50:30f1a7e2b0063319a6bd666e13a910e81eVirustotal results 7 / 60 (11.67%) 103.147.185.105:9242
2020-06-28 09:46:53352376dda4584a11bfd4556bf4c68f03n/a103.89.91.6:20197
2020-06-27 12:34:089d19d098468b5254b0b8581c890e0d13n/a185.205.210.87:4848
2020-06-24 15:10:2290e671a9d6318bd0b6c84f4d9a8405f7n/a82.53.78.66:7777
2020-06-23 15:47:05346b28c60e857c96745125c5cb571b3cn/a185.19.85.161:3109
2020-06-23 07:26:2422ac4f9644a0a2fde0fd574f29c6c983n/a89.35.29.51:443
2020-06-18 10:06:43deae36c4a6bea3944a0039986bd6470fn/a79.134.225.111:1501
2020-06-18 08:55:484091d37327eaf4dc499201099d263383n/a185.118.164.231:443
2020-06-18 01:00:314ae037b99d6b4588d532362adbcecf51n/a54.38.72.27:443
2020-06-17 19:25:51e45fce8108829ba9e8b7860c70e54926n/a198.50.252.31:443
2020-06-17 17:42:23dfe5761320c7fbf0b16312f44aa474e2n/a185.140.53.219:1010
2020-06-17 16:41:35ddf1ae4da803b6eb2764ee8d142dabc3n/a185.118.164.231:443
2020-06-17 14:54:5757b1718887ede4988dcc831c233effa0n/a185.118.164.231:443
2020-06-17 05:44:1994bd3ad7841d709aac300fc6e08a0ac7n/a54.38.72.27:443
2020-06-17 05:34:3372c1434af9a9e7b9a72e774b40b73738n/a79.134.225.111:1507
2020-06-17 02:56:191eab96c7fa0174927a848928d12abcafVirustotal results 5 / 62 (8.06%) 172.245.24.109:443
2020-06-17 01:17:407bd0be7c6d850ac49d301a710e3f924an/a51.254.178.24:443
2020-06-16 23:53:081174904344de77c4eeca6112f8146555n/a198.50.252.31:443
2020-06-16 05:50:50b3a5600de7960d3ae9705da5b0e30f10n/a185.140.53.161:7266
2020-06-15 17:32:434b09b61cb73dbcb937514f862d31775dVirustotal results 17 / 60 (28.33%) 185.140.53.219:1010
2020-06-13 12:23:062f713e90fc09e8f26c5a277d3089b5afn/a185.140.53.219:1010
2020-06-13 07:07:3892d618b9f7836f084533fbabd61e470fn/a198.27.105.164:443
2020-06-12 12:42:13698184d68063df30d63b33155b63852eVirustotal results 11 / 62 (17.74%) 212.114.52.236:9932
2020-06-10 14:40:58c45853691b2f23405af34f956f57ba38n/a198.50.252.31:443
2020-06-10 00:37:054d2235e93c9605f7e113c8d2e25ca0bdn/a198.50.252.31:443
2020-06-09 22:49:501310514a897c12b7be092a1683d4ed90Virustotal results 9 / 60 (15.00%) 103.147.185.105:9242
2020-06-09 21:46:39ef069825430189c12dbb1eb13ed0539cn/a45.138.172.187:443
2020-06-09 07:23:050e8662e57dc5130dacbb715cfd847c18n/a103.151.125.141:7777
2020-06-08 19:11:39b7ff6e2db50150722f1e966fd231beacn/a103.151.125.141:7777
2020-06-08 10:32:32f5f3f43ef7add04a2f601c7ab0e950a1n/a89.35.29.51:443
2020-06-05 11:40:4283e18a92800f5862b38267c921e99436n/a37.48.85.242:443
2020-06-05 08:29:24404ee8bd511be7245301754fd33e13f2Virustotal results 4 / 61 (6.56%) 89.35.29.51:443
2020-06-04 12:37:574e0112e031cffc82457c59fd9d7a6d53n/a198.50.252.31:443
2020-06-04 12:34:190788cb98af7adedd3fc3107495f187ddn/a37.48.85.242:443
2020-06-04 08:09:04e1b0b28ce242aea38929a5d53c8ea58bn/a37.48.85.242:443
2020-06-04 00:07:23a4edba2fdcb84bcb760917c9f9400d1cn/a89.35.29.51:443
2020-06-03 20:20:244437b057cd8179d50e66b503905b5773Virustotal results 15 / 62 (24.19%) 93.190.93.152:4242
2020-06-03 02:47:51a5de32a0b6ea7303ffd6ddb27895737cVirustotal results 0 / 62 (0.00%) 79.134.225.111:1501
2020-06-02 23:46:12c99f5a96bbee81951abc7f22a2d6c930n/a118.172.181.147:34388
2020-06-02 15:37:467e4045465580a4d353330e49125409b5Virustotal results 6 / 62 (9.68%) 37.221.113.68:7777
2020-06-02 11:41:378a7022bb08774471c3ef46f4eca5c75bn/a204.16.247.190:443
2020-06-02 11:19:0232fb1941ea4dc4d97c2f43c4f6bf9ae1n/a89.35.29.51:443
2020-05-31 03:46:35fd0dfa331e8c3281995f36125e3980a9n/a167.86.118.236:1604
2020-05-30 01:23:004e8bd4377f494e8e405b9ca04d32a7e8Virustotal results 2 / 60 (3.33%) 23.227.207.253:443
2020-05-28 20:18:5721c97ab92744e0a7437ef115ba369949Virustotal results 4 / 61 (6.56%) 185.189.112.150:443
2020-05-28 11:01:108f429306f907c81ac4ffc7729dab8cc1n/a37.221.114.90:443
2020-05-27 11:25:057944d676dae87a22acedf20542d7ad4aVirustotal results 1 / 60 (1.67%) 37.49.230.4:443
2020-05-27 09:39:286228d843be957bdd2cb78235157e6970n/a37.221.114.90:443
2020-05-27 02:53:55cbea8cbb7d9312569353dbcbd4fa18ccn/a185.140.53.175:20804
2020-05-26 08:28:328824aacd77b9694967d7d548c8708712Virustotal results 6 / 60 (10.00%) 193.56.28.11:7870
2020-05-26 07:23:321437f85b3d8b0eaae099990ca52fa8baVirustotal results 2 / 62 (3.23%) 45.147.231.197:443
2020-05-25 17:34:52db52fe2ca6e3397b0d43061b1c67a951n/a37.221.114.90:443
2020-05-25 13:09:26b4ec8b5e7644046bcace458881c030a9n/a23.227.207.253:443
2020-05-25 11:13:2189788a1b3699a6c92c162884d08d424fVirustotal results 24 / 60 (40.00%) 185.140.53.161:20982
2020-05-25 01:06:26ee9631b646e783da5a1773161e5993f4n/a172.241.27.12:1020
2020-05-23 16:33:4475eea2d45cb595fb6ef5b58c577ae7fdVirustotal results 6 / 61 (9.84%) 23.82.128.132:443
2020-05-22 07:25:3000748af5627651d5b06aded50fe2744fn/a23.82.128.132:443
2020-05-22 06:19:10e1455933a83262bed3afcfeb10e02c1eVirustotal results 15 / 61 (24.59%) 185.140.53.175:20804
2020-05-21 19:26:55b11b03433f9e584a5b81f671a6fc9a8en/a185.140.53.175:20804
2020-05-21 19:25:149bff0560db8d34a8fac57dc1062c7307n/a185.140.53.175:20804
2020-05-21 19:24:303caf29bf6ca835cbec9e39be3f404a62n/a185.140.53.175:20804
2020-05-21 19:21:33e06c7b2dd42605dd0f75ef14feab3325n/a185.140.53.175:20804
2020-05-21 07:08:29e71ccc2af6c54f564a34b81286e5340an/a185.140.53.175:20804
2020-05-20 04:39:127674ae2a4bb598c90d3ddf234222bf06n/a185.140.53.175:20804
2020-05-18 16:29:45bccb0d1f0c8471db30d4748fe8401db3n/a79.134.225.86:1818
2020-05-18 08:19:08085979d4c7fde223bcd08de1afc266b6n/a185.140.53.175:20804
2020-05-18 07:26:28a93f255fb499db95632cd8961db33101n/a79.134.225.101:7872
2020-05-17 19:29:308a462cba75b45b6430559cd44be7de19Virustotal results 5 / 62 (8.06%) 185.140.53.175:20804
2020-05-15 05:10:50bf7f1bb10acebc85341df0040b0f5127n/a185.140.53.175:20804
2020-05-14 09:26:41f23dc42a647687d55dc1b905c2a4810cn/a185.140.53.175:20804
2020-05-12 08:10:041e6743454af3a2aa054ffec8a3efec10n/a185.140.53.154:2556
2020-05-11 12:28:18a6bb6f7e2c0722d635861a1940abcb7dn/a185.140.53.154:2556
2020-05-09 08:02:43dd2125e5ed3953b1445903b51920de51Virustotal results 46 / 59 (77.97%) 198.50.252.26:1980
2020-05-08 09:51:3671f5fb497d5446aa91917c20ef9c3e9an/a62.108.37.207:5252
2020-05-06 04:31:590a11c0e1783dfe94e184744c44c373bdn/a185.140.53.175:20804
2020-05-05 22:09:38c407f8b4642eb515beb7f74a8724c824Virustotal results 20 / 60 (33.33%) 212.114.52.236:9932
2020-05-05 21:56:376897a49a3815ffc3b370dc448f462709n/a43.226.229.83:8088
2020-05-05 11:19:45aea06f9924bf29c0b858331a9bfedab6n/a43.226.229.83:8088
2020-05-05 06:21:46cba5ac86a6741fd7614d33b480ef17den/a79.134.225.111:1010
2020-05-05 04:59:122b5cc2b038fa661b599715be4d5be943n/a185.140.53.161:20982
2020-05-05 04:50:42f0b18767a779386e5c6c1ccdde6dbe1an/a194.5.97.120:20986
2020-05-04 19:24:27ba67dabd9f804f9b817d09eebbc202f6n/a193.37.214.127:8891
2020-05-04 11:39:02dc5c5564539274444f3746fbadded25cn/a185.140.53.175:20804
2020-05-04 06:22:568a90e1a5fec64c2e710d1230b85e8572n/a79.134.225.111:1010
2020-05-04 04:15:09cda435b9325684b3b8e8d6097571fef1n/a185.140.53.161:20982
2020-05-04 03:57:3136959eb16898b62f2a61304217834a2en/a194.5.97.120:20986
2020-05-04 03:32:590dc2dda408b463f9c71f71b2a5d2184cVirustotal results 9 / 60 (15.00%) 194.5.97.75:20987
2020-05-02 08:00:08387f5cedb97aff48c3905a0b5a635604n/a194.5.97.120:20986
2020-05-02 06:08:52e95b919d444c230c99ab150c438810f6n/a194.5.97.58:20909
2020-04-30 13:53:0412d9d52ca8be839c3c30d752c17bc2b2n/a212.114.52.236:9932
2020-04-29 20:49:00aa2973220503dfe718d1d7e08491a1a8Virustotal results 20 / 62 (32.26%) 212.114.52.236:9932
2020-04-29 09:29:03b86b247fbf88bce5910b789d10365623Virustotal results 21 / 62 (33.87%) 93.190.93.35:5858
2020-04-27 20:35:10b2cd071ec7638eada37a0cd4f5d3433fVirustotal results 25 / 62 (40.32%) 180.214.236.107:6590
2020-04-27 04:59:36c30f6d41bc4db6d7a9602d323d1674efn/a79.134.225.101:7872
2020-04-24 20:57:50727ca40c55ccfc1b73059fe94692f87fVirustotal results 15 / 62 (24.19%) 212.114.52.236:9932

# of entries: 100 (max: 100)