JA3 Fingerprints

You can find further information about the JA3 fingerprint decfb48a53789ebe081b88aabb58ee34, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:decfb48a53789ebe081b88aabb58ee34
First seen:2018-12-21 09:06:16 UTC
Last seen:2020-10-08 10:41:00 UTC
Status:Blacklisted
Malware samples:418
Destination IPs:217
Malware:Adwind
Listing date:2018-12-31 07:25:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-10-08 10:41:0064aae610524b88ebaba6f98e7f663f22Virustotal results 18 / 61 (29.51%) 79.134.225.5:1221
2020-10-05 10:42:10c27eb6277a0859f128447cfd772123ecn/a205.185.113.54:7777
2020-10-02 10:06:2675d8d0866bccf1ad35df5e0c0a590265Virustotal results 19 / 61 (31.15%) 205.185.113.54:7777
2020-09-30 12:39:39fc832d952d62c8f45f6d5b932bd3f6b7Virustotal results 10 / 63 (15.87%) 205.185.113.54:7777
2020-09-18 03:03:466c9a6e8f9c7d11d523dda57fe1254230n/a161.97.84.54:3306
2020-09-08 10:11:4807c17a04f336cbe3e5494ae7252704aen/a91.193.75.18:1313
2020-09-08 00:36:53bf20d52ca47fb1731c30b7e5a115f23bn/a79.134.225.16:8891
2020-09-07 23:50:274009190982ec260fce9a41b145956c30n/a79.134.225.16:8891
2020-09-07 21:13:493bab0d35ddb9fed597012299c4f1b492Virustotal results 16 / 61 (26.23%) 94.156.35.109:1010
2020-09-05 15:07:25e080f6a91cb2d9baf290a7e89c362691n/a91.193.75.225:1010
2020-09-04 04:57:2336e2c6298e221f0f2be1d60927dec1f9Virustotal results 18 / 61 (29.51%) 91.193.75.225:1010
2020-09-01 18:49:50283fb701e53e69b5f3250c10ba2053f4n/a91.193.75.171:1010
2020-09-01 05:03:539dc60b370a7113b2b9b4f2e1f15c6b32n/a185.140.53.138:1382
2020-08-31 01:17:387e5b34776de19e8b482564a11d3fb699n/a91.193.75.171:1010
2020-08-29 06:34:0003bdde0d47b8c25a13f53f6fbba8b08bn/a91.193.75.171:1010
2020-08-17 20:33:3533fce33b9a18852d93e3e877213fba16n/a185.140.53.219:1010
2020-08-16 23:17:38a1da1adea4080258c96da1e17e4e6347n/a185.140.53.219:1010
2020-08-16 22:34:2202045ec0eae15e266f981232abbe518dn/a185.140.53.219:1010
2020-08-16 19:32:537244091d4cb627e008f4ef224f1056b7n/a103.89.91.6:20902
2020-08-16 09:03:34cabd650b8d5379b8c836aafba07060d5n/a79.134.225.111:1501
2020-08-16 09:03:34cabd650b8d5379b8c836aafba07060d5n/a79.134.225.111:1010
2020-08-15 23:18:46707db3ab89c68bcc7d853c528414faf3n/a185.140.53.219:1010
2020-08-15 17:06:48501660b281ae893d8d89e3f1ca0e1153n/a79.134.225.111:1506
2020-08-10 09:32:58aa8ba892632d7fd6b8ff4f1f63f34272n/a185.140.53.7:2786
2020-08-08 08:29:56712081e0e7bcb17955be9bc039b6dd98n/a192.119.80.53:4576
2020-08-06 21:01:174729249ae9e83d90093ca318c2f84f32n/a103.89.91.6:20902
2020-08-06 20:19:59e2dfb35d5a8a7c7f0d90c903a6fa507cn/a185.140.53.7:2786
2020-08-06 11:41:205d210bb09456f666626cf9ba5f7e7e31n/a103.89.91.6:20902
2020-07-31 22:14:186223989c46e9ad36f68ff686ec3a38e0n/a185.140.53.219:1010
2020-07-27 09:39:16bdcd91f022bcd489a357a6dc72446217n/a172.111.200.225:5842
2020-07-27 01:08:22d019bddadd05b4e3775854b518f74d47n/a172.111.200.225:5842
2020-07-22 04:39:06e657d5892e25adf220e4ec852020051bn/a194.5.97.120:20986
2020-07-21 21:52:2421460da7b30c981b3d3766700856ede4n/a194.5.97.120:20986
2020-07-21 11:43:28f990609f628a03c4a340c0942b2e683en/a194.5.97.58:20923
2020-07-21 07:28:3995ad6945ec230b9e638314219de3779an/a185.140.53.175:20804
2020-07-20 18:53:4350f7d05ded7e464ad77e5b1361f8aa84n/a194.5.97.120:20986
2020-07-20 06:13:3472a9396029a8e6ebfdca30a73c3a80beVirustotal results 15 / 61 (24.59%) 185.140.53.161:7266
2020-07-18 16:09:577532c851d7dd320ce486be04a00e9734Virustotal results 15 / 61 (24.59%) 191.101.130.42:9931
2020-07-17 07:32:18bd1ca88aa9f771b823ec2c0c8eb3b643n/a185.140.53.161:7266
2020-07-16 21:20:00d4dd0e71556f381f67347d6e0d5de8c8Virustotal results 17 / 62 (27.42%) 178.238.8.65:5055
2020-07-14 17:24:419da39db01eae046daa121dfd2f596b50Virustotal results 23 / 60 (38.33%) 185.140.53.175:20804
2020-07-14 07:39:05a250167907c998b5650105aaa7ea9c31n/a185.140.53.175:20804
2020-07-14 06:37:464f686b58dfcfbe3262b3cd8ca006a471n/a185.140.53.161:7266
2020-07-13 10:14:218dc8eb190a8a606a623d5b72805db836n/a91.193.75.93:20987
2020-07-13 00:28:36ebd06502ce342277b68df53cadb463f6n/a91.193.75.93:20987
2020-07-12 21:21:48a6f6acd9307c87bf055f39ec4700d392n/a91.193.75.93:20987
2020-07-12 07:47:130a79ac74d72bd78b14f2620336eb8154n/a194.5.97.120:20986
2020-07-10 09:02:20817352b92f56c7e138392367aafb957cn/a91.193.75.93:20987
2020-07-10 07:11:19b0a88a803f35ab00b35171aaf61e6f17Virustotal results 12 / 61 (19.67%) 185.140.53.219:8891
2020-07-09 12:01:2241b697071796cd939294fab1fb9a40e2n/a191.101.130.42:9931
2020-07-07 22:25:4886b16cf87873c6eabfbdced70d210000n/a185.140.53.175:20804
2020-07-07 09:42:18fd50183db6b1d898c6c03fb37addd1d4n/a185.140.53.175:20804
2020-07-07 09:13:407b5063e05d789c177bc24c844da2a4a1n/a79.134.225.111:1501
2020-07-07 08:32:461d5620ec8f5dc6de6d0c98c53efc9e5bVirustotal results 8 / 62 (12.90%) 185.140.53.161:7266
2020-07-06 06:40:17392f8a09e199faaf327e6f3da21f34a8n/a103.89.91.6:20197
2020-07-05 21:50:30f1a7e2b0063319a6bd666e13a910e81eVirustotal results 7 / 60 (11.67%) 103.147.185.105:9242
2020-06-28 09:46:53352376dda4584a11bfd4556bf4c68f03n/a103.89.91.6:20197
2020-06-27 12:34:089d19d098468b5254b0b8581c890e0d13n/a185.205.210.87:4848
2020-06-24 15:10:2290e671a9d6318bd0b6c84f4d9a8405f7n/a82.53.78.66:7777
2020-06-23 15:47:05346b28c60e857c96745125c5cb571b3cn/a185.19.85.161:3109
2020-06-23 07:26:2422ac4f9644a0a2fde0fd574f29c6c983n/a89.35.29.51:443
2020-06-18 10:06:43deae36c4a6bea3944a0039986bd6470fn/a79.134.225.111:1501
2020-06-18 08:55:484091d37327eaf4dc499201099d263383n/a185.118.164.231:443
2020-06-18 01:00:314ae037b99d6b4588d532362adbcecf51n/a54.38.72.27:443
2020-06-17 19:25:51e45fce8108829ba9e8b7860c70e54926n/a198.50.252.31:443
2020-06-17 17:42:23dfe5761320c7fbf0b16312f44aa474e2n/a185.140.53.219:1010
2020-06-17 16:41:35ddf1ae4da803b6eb2764ee8d142dabc3n/a185.118.164.231:443
2020-06-17 14:54:5757b1718887ede4988dcc831c233effa0n/a185.118.164.231:443
2020-06-17 05:44:1994bd3ad7841d709aac300fc6e08a0ac7n/a54.38.72.27:443
2020-06-17 05:34:3372c1434af9a9e7b9a72e774b40b73738n/a79.134.225.111:1507
2020-06-17 02:56:191eab96c7fa0174927a848928d12abcafVirustotal results 5 / 62 (8.06%) 172.245.24.109:443
2020-06-17 01:17:407bd0be7c6d850ac49d301a710e3f924an/a51.254.178.24:443
2020-06-16 23:53:081174904344de77c4eeca6112f8146555n/a198.50.252.31:443
2020-06-16 05:50:50b3a5600de7960d3ae9705da5b0e30f10n/a185.140.53.161:7266
2020-06-15 17:32:434b09b61cb73dbcb937514f862d31775dVirustotal results 17 / 60 (28.33%) 185.140.53.219:1010
2020-06-13 12:23:062f713e90fc09e8f26c5a277d3089b5afn/a185.140.53.219:1010
2020-06-13 07:07:3892d618b9f7836f084533fbabd61e470fn/a198.27.105.164:443
2020-06-12 12:42:13698184d68063df30d63b33155b63852eVirustotal results 11 / 62 (17.74%) 212.114.52.236:9932
2020-06-10 14:40:58c45853691b2f23405af34f956f57ba38n/a198.50.252.31:443
2020-06-10 00:37:054d2235e93c9605f7e113c8d2e25ca0bdn/a198.50.252.31:443
2020-06-09 22:49:501310514a897c12b7be092a1683d4ed90Virustotal results 9 / 60 (15.00%) 103.147.185.105:9242
2020-06-09 21:46:39ef069825430189c12dbb1eb13ed0539cn/a45.138.172.187:443
2020-06-09 07:23:050e8662e57dc5130dacbb715cfd847c18n/a103.151.125.141:7777
2020-06-08 19:11:39b7ff6e2db50150722f1e966fd231beacn/a103.151.125.141:7777
2020-06-08 10:32:32f5f3f43ef7add04a2f601c7ab0e950a1n/a89.35.29.51:443
2020-06-05 11:40:4283e18a92800f5862b38267c921e99436n/a37.48.85.242:443
2020-06-05 08:29:24404ee8bd511be7245301754fd33e13f2Virustotal results 4 / 61 (6.56%) 89.35.29.51:443
2020-06-04 12:37:574e0112e031cffc82457c59fd9d7a6d53n/a198.50.252.31:443
2020-06-04 12:34:190788cb98af7adedd3fc3107495f187ddn/a37.48.85.242:443
2020-06-04 08:09:04e1b0b28ce242aea38929a5d53c8ea58bn/a37.48.85.242:443
2020-06-04 00:07:23a4edba2fdcb84bcb760917c9f9400d1cn/a89.35.29.51:443
2020-06-03 20:20:244437b057cd8179d50e66b503905b5773Virustotal results 15 / 62 (24.19%) 93.190.93.152:4242
2020-06-03 02:47:51a5de32a0b6ea7303ffd6ddb27895737cVirustotal results 0 / 62 (0.00%) 79.134.225.111:1501
2020-06-02 23:46:12c99f5a96bbee81951abc7f22a2d6c930n/a118.172.181.147:34388
2020-06-02 15:37:467e4045465580a4d353330e49125409b5Virustotal results 6 / 62 (9.68%) 37.221.113.68:7777
2020-06-02 11:41:378a7022bb08774471c3ef46f4eca5c75bn/a204.16.247.190:443
2020-06-02 11:19:0232fb1941ea4dc4d97c2f43c4f6bf9ae1n/a89.35.29.51:443
2020-05-31 03:46:35fd0dfa331e8c3281995f36125e3980a9n/a167.86.118.236:1604
2020-05-30 01:23:004e8bd4377f494e8e405b9ca04d32a7e8Virustotal results 2 / 60 (3.33%) 23.227.207.253:443
2020-05-28 20:18:5721c97ab92744e0a7437ef115ba369949Virustotal results 4 / 61 (6.56%) 185.189.112.150:443

# of entries: 100 (max: 100)