{
  "generated": "2026-09-15T09:38:11.041Z",
  "source": "https://publicmosaic.com/indicators",
  "tlp": "CLEAR",
  "scope": "template 7022c563de38_7022c563de38_0fc8c171b6ae — https://publicmosaic.com/ja4x/7022c563de38_7022c563de38_0fc8c171b6ae",
  "caveat": "Combine with network scope. A bare JA4X is a certificate template, not an identity: it collides across operators using the same tooling, and a template spanning several families is a library default. `discriminating: false` marks singletons and multi-family templates; JA4X+ entries (template + issuer CN + not_before day) are the finer key.",
  "templates": [
    {
      "ja4x": "7022c563de38_7022c563de38_0fc8c171b6ae",
      "url": "/ja4x/7022c563de38_7022c563de38_0fc8c171b6ae",
      "hosts": 28,
      "listed": 28,
      "families": [
        "pure_rat"
      ],
      "networks": [
        140227,
        135983,
        19318,
        45753,
        401696,
        399486,
        3223,
        400619,
        60117,
        138995,
        209207,
        214961,
        208185,
        399461,
        197769,
        152586,
        215674,
        214940,
        214697
      ],
      "first_seen": "2026-08-23T10:20:48.214Z",
      "last_seen": "2026-09-15T03:53:27.690Z",
      "discriminating": true,
      "plus": [
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-19",
          "hosts": 3,
          "listed": 3
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-21",
          "hosts": 3,
          "listed": 3
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-25",
          "hosts": 3,
          "listed": 3
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-26",
          "hosts": 3,
          "listed": 3
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-27",
          "hosts": 2,
          "listed": 2
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-05-24",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-06-02",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-06-26",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-07-14",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-07-30",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-02",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-03",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-17",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-20",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-23",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-08-28",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-09-02",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-09-05",
          "hosts": 1,
          "listed": 1
        },
        {
          "issuer_cn": "PureRAT Agent",
          "not_before_day": "2026-09-06",
          "hosts": 1,
          "listed": 1
        }
      ]
    }
  ]
}
