JA3 Fingerprints

You can find further information about the JA3 fingerprint decfb48a53789ebe081b88aabb58ee34, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:decfb48a53789ebe081b88aabb58ee34
First seen:2018-12-21 09:06:16 UTC
Last seen:2021-06-14 05:27:16 UTC
Status:Blacklisted
Malware samples:475
Destination IPs:252
Malware:Adwind
Listing date:2018-12-31 07:25:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-03-19 23:31:52b045ca0f5a3654f97af8876b34908ccdVirustotal results 24 / 63 (38.10%) 46.183.222.88:22288
2024-03-05 12:49:186b016c4d183540d41a238965f7968c31n/a204.44.127.146:20188
2024-03-01 13:35:35105f8a6a8ca49ac4e80c44c8d8233d76Virustotal results 20 / 63 (31.75%) 155.94.211.9:42119
2024-02-28 13:41:34efd645a5c1c5a8ebfee8f1cb2a139920Virustotal results 22 / 61 (36.07%) 46.183.223.64:22364
2024-02-28 09:01:401a7c54ffa7a7fd450e1e8b6d6d847bf0Virustotal results 24 / 60 (40.00%) 204.44.127.146:20188
2024-02-28 02:51:11f3eec7b15fef099b3edc95f3c02050a3Virustotal results 21 / 61 (34.43%) 155.94.211.9:42119
2024-02-26 17:21:3744279f72e3af7e1e9489fe86bf688de8n/a204.44.127.146:20188
2022-12-19 07:11:37ef7060fe19f235609456617c5db29960Virustotal results 12 / 64 (18.75%) 194.180.48.197:8123
2022-12-16 06:46:43a610242a0b3b54cab36a82c544194359n/a194.180.48.197:8123
2022-12-05 06:58:04de6fd9ced22c55b224fd7fe67c13a07an/a194.180.48.197:8123
2022-12-04 18:23:19f73655137d31b28ca9e1ec01d2b54e54n/a194.180.48.197:8123
2022-11-09 11:20:180615a57d8258d087eff7efce8c772f34n/a185.222.58.110:1780
2022-09-02 13:13:48fa482963b0514b28e0c9898357cf7d9cn/a79.134.225.10:2022
2022-08-31 10:33:505c74f1f1ad688318216890b9aa1ad5bbn/a85.217.145.55:7777
2022-08-09 14:45:45b42012601023ac829ab3b568d2d99102Virustotal results 47 / 71 (66.20%) 191.101.30.16:2323
2022-05-31 06:10:03b9063463d12fd078586a5b7d3c33b014n/a185.29.8.13:7777
2022-03-02 17:19:4026cac515c5f1cf464dee1f2fe286159en/a185.19.85.175:7412
2022-02-10 10:48:53da3173d6b74761f8f4cce46a4d62a9dfn/a172.111.141.63:5888
2022-02-02 08:06:3018dd8b71476772457cc50274910f3d47n/a139.28.37.109:5200
2022-01-21 11:45:04c56aa5a3cc0a1083d10aa92073202c77n/a194.5.98.15:5545
2021-12-21 10:55:490ef7ba9fec3933df8fb5148e8815a68bn/a185.19.85.160:9641
2021-12-16 08:15:479c1a2f41fe43a30d20283faf269a3631n/a185.19.85.160:9641
2021-12-10 11:00:27df587d6cc0436686657c92c81e471a65n/a194.5.98.52:1407
2021-11-27 00:13:078dedd8df75f6659cd2f63d4015ab0e2fn/a35.226.211.201:4000
2021-10-28 09:55:560e57ecb247c41299c273dda0ab6a6ec4n/a104.21.40.54:443
2021-09-09 10:18:28d745f7c6cadca808db3a62280026190bn/a178.170.138.163:1983
2021-09-09 06:24:0475a420483c188e462ddf040e172a6cabVirustotal results 19 / 60 (31.67%) 185.222.57.204:8787
2021-09-08 09:25:0123ce8225643a4bb9502bd2a792917edan/a45.137.22.104:1190
2021-09-07 09:45:46886a5e139319a5dc454fce5ef9a2ba5an/a45.137.22.104:1190
2021-09-07 06:01:28780064ec8832f9f052964fef3a881417Virustotal results 18 / 60 (30.00%) 45.137.22.104:1190
2021-09-06 13:51:1060bb5c076ca1ddd382213c4439a31735n/a109.248.144.177:1947
2021-09-05 23:40:18d92e4d601fad56e8750ea73e8b0e53d9n/a66.154.111.3:1993
2021-08-31 11:21:05c67d02c567461d6fad607a89ac1084b8n/a172.93.187.66:19844
2021-08-31 03:02:240126915165dfe99d836f02f8ab80243fVirustotal results 20 / 58 (34.48%) 45.137.22.104:1190
2021-08-30 14:32:3063507ef5bc127d200bd48e477a5f8ab2n/a172.93.187.66:19844
2021-08-30 01:11:58681105abdc5d0c0343775b60daf355f0Virustotal results 18 / 60 (30.00%) 45.137.22.104:1190
2021-06-14 05:27:16044ebc1e227be0f2f49d8f8aa11d2780n/a185.244.26.223:7551
2021-06-14 05:27:16044ebc1e227be0f2f49d8f8aa11d2780n/a185.244.26.223:7551
2021-06-10 12:06:05d704a9cd787438c15a241bddd441eaccVirustotal results 8 / 61 (13.11%) 185.244.26.223:7551
2021-06-10 12:06:05d704a9cd787438c15a241bddd441eaccVirustotal results 8 / 61 (13.11%) 185.244.26.223:7551
2021-06-08 22:29:200e7ea3528c19b7d6ffb4e3223c63872an/a79.134.225.69:7551
2021-06-08 22:29:200e7ea3528c19b7d6ffb4e3223c63872an/a79.134.225.69:7551
2021-05-11 10:27:2410b169afa784377b3665a075da9626e0n/a198.102.14.18:5050
2021-05-11 10:27:2410b169afa784377b3665a075da9626e0n/a198.102.14.18:5050
2021-04-21 08:16:432292ed191b66e4746ac4d930aa413143n/a107.175.101.209:7865
2021-04-21 08:16:432292ed191b66e4746ac4d930aa413143n/a107.175.101.209:7865
2021-04-21 05:42:397f3faae92130ad129f91d894ed567031n/a107.175.101.209:7865
2021-04-21 05:42:397f3faae92130ad129f91d894ed567031n/a107.175.101.209:7865
2021-04-20 08:48:40085dc6e275b50f45fc1e7973d44af68en/a107.175.101.209:7865
2021-04-20 08:48:40085dc6e275b50f45fc1e7973d44af68en/a107.175.101.209:7865
2021-04-19 21:12:06903b63e35bf8738809eab0f187027dafn/a107.175.101.209:7865
2021-04-19 21:12:06903b63e35bf8738809eab0f187027dafn/a107.175.101.209:7865
2021-03-29 01:44:0988a3e4f6f889778ab15c2e69546773ddn/a185.222.57.238:7788
2021-03-29 01:44:0988a3e4f6f889778ab15c2e69546773ddn/a185.222.57.238:7788
2021-03-26 11:01:58c9f048b2c71d51eda32f7cc8abb4485fn/a185.222.57.238:7788
2021-03-26 11:01:58c9f048b2c71d51eda32f7cc8abb4485fn/a185.222.57.238:7788
2021-02-16 12:28:53e224228aa17642c244a4dba807d120daVirustotal results 2 / 61 (3.28%) 79.134.225.126:3000
2021-02-16 12:28:53e224228aa17642c244a4dba807d120daVirustotal results 2 / 61 (3.28%) 79.134.225.126:3000
2021-02-15 12:32:2808568e2934e4821a4bb2914481701a90n/a193.218.118.85:1781
2021-02-15 12:32:2808568e2934e4821a4bb2914481701a90n/a193.218.118.85:1781
2021-01-29 15:00:197770ea400b1a6b5c049922b35bd27f3bn/a185.140.53.224:9845
2021-01-29 15:00:197770ea400b1a6b5c049922b35bd27f3bn/a185.140.53.224:9845
2021-01-29 10:45:056822c5a7e742be8eba1a4b6266cd2f8fn/a103.114.107.184:7180
2021-01-29 10:45:056822c5a7e742be8eba1a4b6266cd2f8fn/a103.114.107.184:7180
2021-01-26 08:21:38492561892f69505631f979461c58f168n/a103.114.107.184:7180
2021-01-26 08:21:38492561892f69505631f979461c58f168n/a103.114.107.184:7180
2020-12-18 05:15:510bbc6017126cd69f31e5bbd1336e9172n/a180.214.236.99:7788
2020-12-18 05:15:510bbc6017126cd69f31e5bbd1336e9172n/a180.214.236.99:7788
2020-12-16 22:08:4800f124e3ca10605f359baaf71eea2b33n/a180.214.236.99:7788
2020-12-16 22:08:4800f124e3ca10605f359baaf71eea2b33n/a180.214.236.99:7788
2020-12-16 08:01:3675b8e1c3ae8870ed28a553b7e19eb144n/a180.214.236.99:7788
2020-12-16 08:01:3675b8e1c3ae8870ed28a553b7e19eb144n/a180.214.236.99:7788
2020-12-15 21:06:425aa01965ed31d7ba03fbaf80b2d4723eVirustotal results 3 / 63 (4.76%) 54.39.49.150:7777
2020-12-15 21:06:425aa01965ed31d7ba03fbaf80b2d4723eVirustotal results 3 / 63 (4.76%) 54.39.49.150:7777
2020-12-15 14:06:36bae7e2cff7a4b98c8aa6f8aa48c19387n/a180.214.236.99:7788
2020-12-15 14:06:36bae7e2cff7a4b98c8aa6f8aa48c19387n/a180.214.236.99:7788
2020-12-11 09:58:43560d51b8d1c89b341d542958f36f6c06n/a180.214.236.99:7788
2020-12-11 09:58:43560d51b8d1c89b341d542958f36f6c06n/a180.214.236.99:7788
2020-10-08 10:41:0064aae610524b88ebaba6f98e7f663f22Virustotal results 18 / 61 (29.51%) 79.134.225.5:1221
2020-10-08 10:41:0064aae610524b88ebaba6f98e7f663f22Virustotal results 18 / 61 (29.51%) 79.134.225.5:1221
2020-10-05 10:42:10c27eb6277a0859f128447cfd772123ecn/a205.185.113.54:7777
2020-10-05 10:42:10c27eb6277a0859f128447cfd772123ecn/a205.185.113.54:7777
2020-10-02 10:06:2675d8d0866bccf1ad35df5e0c0a590265Virustotal results 19 / 61 (31.15%) 205.185.113.54:7777
2020-10-02 10:06:2675d8d0866bccf1ad35df5e0c0a590265Virustotal results 19 / 61 (31.15%) 205.185.113.54:7777
2020-09-30 12:39:39fc832d952d62c8f45f6d5b932bd3f6b7Virustotal results 10 / 63 (15.87%) 205.185.113.54:7777
2020-09-30 12:39:39fc832d952d62c8f45f6d5b932bd3f6b7Virustotal results 10 / 63 (15.87%) 205.185.113.54:7777
2020-09-18 03:03:466c9a6e8f9c7d11d523dda57fe1254230Virustotal results 2 / 61 (3.28%) 161.97.84.54:3306
2020-09-18 03:03:466c9a6e8f9c7d11d523dda57fe1254230Virustotal results 2 / 61 (3.28%) 161.97.84.54:3306
2020-09-08 10:11:4807c17a04f336cbe3e5494ae7252704aen/a91.193.75.18:1313
2020-09-08 10:11:4807c17a04f336cbe3e5494ae7252704aen/a91.193.75.18:1313
2020-09-08 00:36:53bf20d52ca47fb1731c30b7e5a115f23bn/a79.134.225.16:8891
2020-09-08 00:36:53bf20d52ca47fb1731c30b7e5a115f23bn/a79.134.225.16:8891
2020-09-07 23:50:274009190982ec260fce9a41b145956c30n/a79.134.225.16:8891
2020-09-07 23:50:274009190982ec260fce9a41b145956c30n/a79.134.225.16:8891
2020-09-07 21:13:493bab0d35ddb9fed597012299c4f1b492Virustotal results 16 / 61 (26.23%) 94.156.35.109:1010
2020-09-07 21:13:493bab0d35ddb9fed597012299c4f1b492Virustotal results 16 / 61 (26.23%) 94.156.35.109:1010
2020-09-05 15:07:25e080f6a91cb2d9baf290a7e89c362691n/a91.193.75.225:1010
2020-09-05 15:07:25e080f6a91cb2d9baf290a7e89c362691n/a91.193.75.225:1010
2020-09-04 04:57:2336e2c6298e221f0f2be1d60927dec1f9Virustotal results 18 / 61 (29.51%) 91.193.75.225:1010
2020-09-04 04:57:2336e2c6298e221f0f2be1d60927dec1f9Virustotal results 18 / 61 (29.51%) 91.193.75.225:1010

# of entries: 100 (max: 100)