JA3 Fingerprints

You can find further information about the JA3 fingerprint decfb48a53789ebe081b88aabb58ee34, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:decfb48a53789ebe081b88aabb58ee34
First seen:2018-12-21 09:06:16 UTC
Last seen:2019-01-21 09:18:41 UTC
Status:Blacklisted
Malware samples:18
Destination IPs:15
Malware:Adwind
Listing date:2018-12-31 07:25:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-01-21 09:18:41917bc68584fb2905ab7f2931254538a5n/a194.5.99.250:683
2019-01-21 09:08:19509837fb8b59228fc837527f6de47239n/a194.5.99.97:683
2019-01-21 07:38:10ab8ef4331edd4dd15e40763e0a4e2acfn/a31.171.152.105:2888
2019-01-21 07:35:193fea51c0db1709c7e459f7c9ff16d890n/a194.5.99.175:2112
2019-01-21 07:22:57d5cd7c3715cc211d1b6422382c746b67Virustotal results 4/58 (6.90%) 194.5.99.175:2112
2019-01-21 01:24:12c1a77fc9c9d2cb540432f36709524604n/a185.125.205.78:8088
2019-01-20 17:59:08c254a8737cef5fb2a3975b25f792b559n/a212.47.194.15:8898
2019-01-20 09:30:1237e2675feb16122a086bfdd37f2240fdVirustotal results 14/60 (23.33%) 195.123.212.149:4000
2019-01-19 19:33:15bc9787320c03d20f442cd8a03aac00dan/a173.254.223.115:3333
2019-01-16 09:12:55384abb38727a716c96914360b2883161Virustotal results 6/60 (10.00%) 31.171.152.106:1313
2019-01-15 22:20:16dc7121d7b2f979e7280710f3bc27c433n/a194.5.99.63:2556
2019-01-12 14:02:041fbfdefbdc0bd63eadd14b472fa9e667Virustotal results 6/58 (10.34%) 51.38.133.245:7777
2019-01-07 14:15:14d603a2e22566e434fbfe5b01e120ca8fVirustotal results 15/61 (24.59%) 181.215.247.224:9620
2019-01-04 07:27:10494eeb95f2894b4a477b4d38e56cee3eVirustotal results 23/59 (38.98%) 31.171.152.106:2522
2019-01-02 17:24:37422b85db857ea8bb41286273ef58d547n/a94.156.189.60:1010
2019-01-02 17:24:37422b85db857ea8bb41286273ef58d547n/a94.156.189.60:1020
2018-12-26 11:11:0464a229ddc5e01626b42c0327bd7a100eVirustotal results 10/59 (16.95%) 147.135.165.107:7777
2018-12-21 12:25:36abd43554b9b9e6dbc12e14dba7679f0bn/a188.215.229.26:3388
2018-12-21 09:06:1617dc7f3bac83c0f7673f26a2d81b726cn/a194.5.99.175:2112

# of entries: 19 (max: 100)