JA3 Fingerprints

You can find further information about the JA3 fingerprint decfb48a53789ebe081b88aabb58ee34, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:decfb48a53789ebe081b88aabb58ee34
First seen:2018-12-21 09:06:16 UTC
Last seen:2019-09-09 08:14:10 UTC
Status:Blacklisted
Malware samples:158
Destination IPs:104
Malware:Adwind
Listing date:2018-12-31 07:25:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-09-09 08:14:10b68c249a7f935c033586e0eec999043dn/a79.134.225.71:7390
2019-09-07 21:29:19622fe88027cada8cd0875b53a30e1c9eVirustotal results 10 / 58 (17.24%) 185.205.210.48:1010
2019-08-22 10:07:376f29b735c9d7cb55e4376690ce669699Virustotal results 5 / 58 (8.62%) 79.134.225.75:1313
2019-08-21 11:36:08a8e08d2a5975f9aa43b76f95def22032Virustotal results 1 / 57 (1.75%) 193.37.213.33:1010
2019-08-21 03:34:5673993aa38391f83c1c699aab6672c440n/a185.94.191.37:5201
2019-08-19 13:28:4170e3114c3988452e5644eee544aed372Virustotal results 1 / 59 (1.69%) 184.164.139.213:1010
2019-08-16 16:16:4557d678b8ae932613e82ad00e6a47b513Virustotal results 9 / 39 (23.08%) 91.92.128.188:1010
2019-08-15 14:49:52519169c6d701e3f1cd5874347e5e814bVirustotal results 12 / 55 (21.82%) 185.205.210.163:1010
2019-08-15 13:57:4445878adf7c7732f8761a3c4213b2ddc3Virustotal results 6 / 55 (10.91%) 185.205.210.163:1010
2019-08-10 12:16:49aca597117d1eeed454903c5e9a013cc8Virustotal results 4 / 57 (7.02%) 85.217.171.237:1010
2019-08-08 12:42:17c07df225ddfc09d9909d34bcc1d3cd73n/a66.154.102.118:9412
2019-08-03 20:50:4401033939f32832497fff3aba134d0199Virustotal results 4 / 60 (6.67%) 185.203.117.118:1020
2019-08-03 20:50:4401033939f32832497fff3aba134d0199Virustotal results 4 / 60 (6.67%) 185.203.117.118:1010
2019-07-30 18:48:1789fdbaf07cd4c31c97d68abec84cbf50Virustotal results 0 / 59 (0.00%) 94.156.35.241:1010
2019-07-30 18:41:5787d2f2146fb7cb0d2d64e5a49a0040eeVirustotal results 0 / 59 (0.00%) 104.168.197.211:1010
2019-07-26 12:42:0903b4c7e08e8ed4ced15945ed2a286b8fVirustotal results 9 / 59 (15.25%) 185.203.118.180:1010
2019-07-23 00:12:07bd5fe838526c526fee3031d5bce6ff59Virustotal results 3/59 (5.08%) 192.99.135.121:7777
2019-07-20 07:57:315e4a24bef6293474479d42e18b0f3696Virustotal results 5/58 (8.62%) 91.132.139.145:5020
2019-07-18 15:46:17c3e56a2bc72af4679fd6ae7e9e068e4cn/a161.129.67.135:6722
2019-07-17 13:35:322fe1eb29d0c17f84f9fb961139858fd1n/a78.138.107.12:7779
2019-07-16 07:14:06955aecdfa98d678566d1217212a6a2a0n/a185.247.228.24:1010
2019-07-15 13:43:424b5c654e749c7f53f974f241ede31f6fn/a185.247.228.31:1313
2019-07-13 05:11:577b3907cd9f79b8b898120bc28175c8dbVirustotal results 20/58 (34.48%) 185.205.209.96:1040
2019-07-11 09:34:13543f9044228000a5a1ca8601c4fa651fVirustotal results 4/55 (7.27%) 193.56.28.172:1944
2019-07-11 08:52:54de6236d1438189e8f3017d6928899631Virustotal results 5/57 (8.77%) 51.75.154.197:7777
2019-07-11 08:12:268c7101ef8eb444bd8516d8288256db98n/a185.247.228.31:1313
2019-07-09 06:53:33b80fa6b3314b33f97c71c6817ab86af8Virustotal results 4/60 (6.67%) 178.239.21.5:1313
2019-07-02 15:24:24fb3b05d2a727cbdd94d1236c16156862n/a185.247.228.31:1313
2019-07-01 09:19:190c7266d7696353c84125d2f77c762a96n/a94.158.245.4:1780
2019-07-01 08:29:383ce6ff9b3d8fb67de2f2591435ba4defn/a185.247.228.31:1313
2019-06-27 06:47:240a88a9b78dc322f420e04b26f8e9fc85n/a185.247.228.31:1313
2019-06-26 11:03:434ec90830971879b20fbdf34c8dbe2f0cn/a185.247.228.31:1313
2019-06-25 12:57:16a4b414ee0cb9592583d166e65f289b54Virustotal results 6/59 (10.17%) 185.247.228.31:1313
2019-06-16 20:26:504c6a61cc031264767324a364ba570efeVirustotal results 7/57 (12.28%) 185.205.209.2:1010
2019-06-16 20:26:504c6a61cc031264767324a364ba570efeVirustotal results 7/57 (12.28%) 185.205.209.2:1020
2019-06-15 11:34:4676d99f985abf2181e10e11b1965823b8Virustotal results 8/58 (13.79%) 185.205.209.2:1010
2019-06-08 02:40:08dcd4b7ded36dd128e988345b6b438a22Virustotal results 20/61 (32.79%) 185.203.117.3:1010
2019-06-06 02:25:5866fafe6c70b89438f9fbb57b5efd3ae9Virustotal results 3/60 (5.00%) 185.244.31.72:6565
2019-05-31 20:00:504e0ab5ff9fa81d25e51838c1bafcc868Virustotal results 13/59 (22.03%) 185.136.168.134:7776
2019-05-29 20:23:4968ca2ed7341ac5937cbedbf2cab83633Virustotal results 7/60 (11.67%) 185.244.29.19:22209
2019-05-20 02:03:11331d2ec71454270d74b4807f0f02fe1an/a91.192.100.47:7795
2019-05-14 12:24:12b90792b364fc80017aa05e241a150feen/a185.236.203.170:4020
2019-05-10 05:39:276ae4d77df4140463c5134e99e63b1e90n/a185.163.45.48:3290
2019-05-09 20:41:3935f36629aa276aee1f85f243461ee51en/a91.193.75.110:4125
2019-05-09 04:54:104a0a0e5be2464fd7a274fabe6b986c60Virustotal results 8/62 (12.90%) 185.163.45.48:7795
2019-05-06 10:26:05efc896271dec854a8a6437e3d3b8f436n/a185.165.153.184:2019
2019-04-30 15:09:15bd41d33cabcbdd9b8092d86801557632Virustotal results 14/58 (24.14%) 178.239.21.27:3242
2019-04-30 14:28:279181b629cc6edc9764c15db67ee6da2fn/a178.239.21.27:3242
2019-04-27 09:32:36b2687e14d7682041a5570caf98f63636Virustotal results 12/59 (20.34%) 185.206.146.146:1030
2019-04-27 03:59:4682147e3b08a1701f9ff32e1b7763f9b6n/a41.231.120.132:4125
2019-04-24 06:05:505d550000e4128c6f44f53a4136872007n/a185.165.153.22:22112
2019-04-22 15:50:1864d0aa52ee101dc03ab6137558aa40e7n/a91.192.100.39:3522
2019-04-18 14:18:35fa859eea78a03b0b5516e4ea4125fec1Virustotal results 16/60 (26.67%) 91.192.100.39:1921
2019-04-18 09:45:33bc4e6166c0f5274b50faf402c8b22e13n/a91.192.100.14:1971
2019-04-16 06:49:5198231ceb83e1a41b10ffff9a0999c6bdVirustotal results 9/61 (14.75%) 46.183.223.12:8785
2019-04-15 17:31:236734a8c45e1b894661064a95d04cb7ebVirustotal results 7/60 (11.67%) 91.192.100.47:8332
2019-04-15 09:59:50eb162663f253a95dbb42446ed1cf2ec3Virustotal results 26/58 (44.83%) 185.156.173.122:7777
2019-04-14 20:58:40a16d9087a50e10a8a5e54f622006f2efn/a185.136.168.134:7776
2019-04-11 15:42:235f713a5d6e168be181044c1e7782f697n/a185.244.29.102:2556
2019-04-05 23:14:1632d9968354424c240e6ee32c20bfd21cn/a194.5.97.184:2556
2019-04-05 07:21:35318ca09195e255c5940f782f56fd5361n/a91.192.100.14:1971
2019-04-03 23:03:15b5f1c59d87caaaabcd7640f65b226ab3n/a46.183.220.12:7777
2019-04-03 10:00:36ab61cbd725ac752e4db365f0d87fd0edVirustotal results 4/57 (7.02%) 185.4.29.236:9221
2019-04-03 07:23:4703562f06a4492f103496e5a838fa135fn/a185.206.146.146:1010
2019-04-03 07:23:4703562f06a4492f103496e5a838fa135fn/a185.206.146.146:1020
2019-04-03 07:20:386cbb88c5d410c9f39d35dc7e70759842Virustotal results 19/58 (32.76%) 185.206.146.146:1010
2019-04-03 07:18:17990213f59355ed497dda0356b2460a98Virustotal results 21/60 (35.00%) 185.206.146.146:1010
2019-04-03 07:18:04d4e65995239b7b5a8f71b76b4d6f300eVirustotal results 13/61 (21.31%) 185.206.146.146:1010
2019-03-28 12:09:48ca21c2c51e9142f817669e3ed9837304n/a194.5.98.180:6565
2019-03-26 00:10:355f9eaec5ccdeb781b20530e93230ede1n/a185.244.29.9:3478
2019-03-25 18:13:16556328c385e7c59bdf9329d59f2bff3cn/a144.217.89.128:7777
2019-03-25 11:09:35d9acb4030e2551ac9f86ff22f9be725fn/a185.244.29.31:1880
2019-03-21 13:17:45e70f134a0ef0853102b0ced7bafe00d1n/a192.3.24.248:3478
2019-03-21 11:21:209cc9ea9cc174d0ac3bfec904bfc1ef8en/a31.171.152.105:3602
2019-03-20 07:59:435884fcc02258bfd0795b84d0c2d98bd1n/a178.239.21.143:9801
2019-03-19 15:59:28156bc4e68e98c20a0714d5a555e92692n/a178.239.21.105:1955
2019-03-18 02:15:256dd5b03e63bc66d34df1eafe6780ac0dVirustotal results 2/57 (3.51%) 91.192.100.47:8332
2019-03-14 14:23:134f81a1af4dafcd38603614324f5a3fcdVirustotal results 13/57 (22.81%) 91.192.100.6:5050
2019-03-14 05:53:35f99ddbc03352cd00486dc5cb0b3e7ab9Virustotal results 15/57 (26.32%) 91.192.100.6:12201
2019-03-14 00:24:022b8327e704baff259d2ed738b5dc1d2fVirustotal results 3/59 (5.08%) 91.192.100.47:8332
2019-03-13 09:36:433dec8184bc92412a369adeb2489ea2d0n/a173.46.85.73:2556
2019-03-12 14:58:25c88ab40de73641f1b9b5bc6c6fe3cafen/a194.5.98.172:7788
2019-03-12 01:51:02334fa56a11dff73fc372e77d756f488dn/a5.135.43.178:4000
2019-03-11 06:59:1988d354c93a8b10f18dd177b4c4c39636n/a194.5.99.195:5244
2019-03-10 23:44:31f89d541137734b87084684cdfc99c3cfn/a194.5.99.71:5244
2019-03-05 04:08:0809d526fe4829495284a9fd67863f1ca8n/a178.239.21.105:1955
2019-03-03 23:38:4527de63eac9429062981fe858b9b0bfd1n/a31.171.152.106:2522
2019-03-01 10:20:56a3f7263870c0d518a31243e041fe1978Virustotal results 15/53 (28.30%) 185.236.203.181:4040
2019-02-25 02:53:512ed3aa66274af579f704edab87ce63c3n/a185.236.203.60:6767
2019-02-21 14:14:10acce3f9b99e017132d96702152e6d972Virustotal results 14/54 (25.93%) 185.236.203.181:4040
2019-02-21 09:41:3136dab64daaad5d5a2aaea9ed2242bfd0n/a185.165.153.106:5888
2019-02-19 05:32:28751c710b110a044dbfce9c1fc5a5caadn/a185.236.203.142:1717
2019-02-18 12:11:16d97f58aa8612347c4012833a23c27d65n/a91.192.100.14:1130
2019-02-18 07:51:104a433941f27f3c3257360684f98d4e7fn/a31.171.152.107:1966
2019-02-17 07:35:24df1e98a3d8554a1dd76c1f36cc8a4e22Virustotal results 10/59 (16.95%) 108.170.60.189:1010
2019-02-15 19:05:0534d3aa4f6e2bb22a0f2ca97d09c53e9dn/a185.244.30.120:1130
2019-02-15 14:18:51925a02c1f9a075aa1e03e7875becf57eVirustotal results 41/58 (70.69%) 5.206.225.115:5000
2019-02-13 07:59:114bee364cfee34530f32c8a7637542350n/a185.244.30.93:9888
2019-02-12 22:29:44395710e861c8a5426dde4b668cf08b16n/a194.5.99.194:1010
2019-02-12 09:25:32fcb66383a84f75213bd029d65c8c400en/a194.5.99.63:2556

# of entries: 100 (max: 100)