JA3 Fingerprints

You can find further information about the JA3 fingerprint 96eba628dcb2b47607192ba74a3b55ba, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:96eba628dcb2b47607192ba74a3b55ba
First seen:2017-07-19 18:53:48 UTC
Last seen:2019-12-05 08:57:47 UTC
Status:Blacklisted
Malware samples:1'293
Destination IPs:90
Malware:Tofsee -
Listing date:2018-11-14 11:49:02

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-12-05 08:57:4847b2201a5bd70bcb96151432dcf1a289n/a104.18.91.31:443
2019-12-05 01:27:4138a1f66a9d2dea25e3fbb42ba9a8d7dan/a104.18.90.31:443
2019-12-05 01:27:3538a1f66a9d2dea25e3fbb42ba9a8d7dan/a104.18.91.31:443
2019-12-04 13:03:33fff59129d507fe509247a1003f79cc15n/a104.18.90.31:443
2019-12-04 13:03:33fff59129d507fe509247a1003f79cc15n/a104.18.91.31:443
2019-12-03 10:49:32d1bc52aaf9e4410988ef68f1289028b9Virustotal results 25 / 70 (35.71%) 104.18.90.31:443
2019-11-21 07:00:344f62f297fdeb4f3fb32a81929ebdda11n/a104.18.91.31:443
2019-11-06 09:20:089501ebd1284fb771286514230965120fn/a104.18.90.31:443
2019-11-06 08:38:023ef3cf7f4d3183d763312feddcecf745n/a104.18.91.31:443
2019-11-06 08:34:255c208dda395ef16244576bc7d2db012en/a104.18.90.31:443
2019-11-06 08:26:51193e39d3190204c30a44ae1ebad48af3n/a104.18.90.31:443
2019-10-23 17:31:49faff0fc97f4f2501d3ad0161b47b7cfen/a104.18.91.31:443
2019-10-18 10:58:53cf5da654b44384d47095e7aa13dca2fen/a104.18.91.31:443
2019-10-18 10:58:52cf5da654b44384d47095e7aa13dca2fen/a104.18.90.31:443
2019-10-18 10:45:56b755e5b216abb65f35c0dae92023ca24n/a104.18.90.31:443
2019-10-18 10:30:462f5e53ea1ff16c8091040e60318d53den/a104.18.91.31:443
2019-09-28 02:56:357ec51583156f33d9f0c2b5eadb9b2c1en/a104.16.146.241:443
2019-08-19 20:20:0352845c27b0cb7d20c3aee72f763abe84Virustotal results 32 / 70 (45.71%) 104.16.147.241:443
2019-08-19 15:26:410f0391e3eac6425f47080a0957ae2e3dn/a194.106.198.130:443
2019-08-19 15:26:410f0391e3eac6425f47080a0957ae2e3dn/a104.24.30.83:443
2019-08-19 10:47:041358f12230aeddafbc44042d0a37b21an/a194.106.198.130:443
2019-08-16 19:15:3655db27847dbc47a66f45374be00e106dn/a194.106.198.130:443
2019-08-16 19:15:3555db27847dbc47a66f45374be00e106dn/a104.24.30.83:443
2019-08-16 11:24:173c69aa0d71edd50df4a214583b7be972n/a104.24.30.83:443
2019-08-16 10:15:33232520be3f938c539235add82d49537en/a194.106.198.130:443
2019-08-16 10:15:33232520be3f938c539235add82d49537en/a104.24.31.83:443
2019-08-16 06:50:3108c5b3b82914838f5a422dc61df20fb6n/a194.106.198.130:443
2019-08-16 06:50:3108c5b3b82914838f5a422dc61df20fb6n/a104.24.30.83:443
2019-08-15 15:50:376092cac9d0ccb2b1d37fe20fe078284cn/a104.24.31.83:443
2019-08-15 13:53:13c5a728ae5b14f9e0ec34023e157fcca0n/a194.106.198.130:443
2019-08-15 13:53:13c5a728ae5b14f9e0ec34023e157fcca0n/a104.24.30.83:443
2019-08-15 10:31:122cbd2c8f71ecdac760689efc92e77702n/a194.106.198.130:443
2019-08-15 10:01:0761d60290662972e8e7044b88a91815ffn/a194.106.198.130:443
2019-08-15 10:01:0761d60290662972e8e7044b88a91815ffn/a104.24.30.83:443
2019-08-15 09:27:414e03dbbb93d33781185546f86318369fn/a194.106.198.130:443
2019-08-15 09:27:414e03dbbb93d33781185546f86318369fn/a104.24.30.83:443
2019-08-15 07:54:397c785c0450bd7ad483b5b50075ac0fa0n/a104.24.30.83:443
2019-08-14 19:13:379594685c61409b56b0e162482b53ecdbn/a194.106.198.130:443
2019-08-14 19:13:369594685c61409b56b0e162482b53ecdbn/a104.24.31.83:443
2019-08-14 17:44:41a826166eb9287bfb328e95822f544311n/a194.106.198.130:443
2019-08-14 15:08:1881a23aa3c187c45744536028730e64f5n/a104.24.31.83:443
2019-08-14 13:48:04c65a66f4387131c419dba53a9044a006n/a104.24.31.83:443
2019-08-14 13:32:3588151302e603541c8bf35f8b16de72b2n/a194.106.198.130:443
2019-08-14 13:14:590e928ec4f6bd0eaab9c5e0277a51dbf5n/a104.24.30.83:443
2019-08-14 13:14:590e928ec4f6bd0eaab9c5e0277a51dbf5n/a194.106.198.130:443
2019-08-14 13:13:576141f95ae454d687968c492f49b50252n/a194.106.198.130:443
2019-08-14 12:38:13976331f328c075727ace1240b6c294c3n/a194.106.198.130:443
2019-08-14 11:53:215fa3dc6aa44c5bd338c804f278319495n/a194.106.198.130:443
2019-08-14 11:53:215fa3dc6aa44c5bd338c804f278319495n/a104.24.30.83:443
2019-08-11 11:41:111e6b3ebe29c0fca73e8b6b17037b95c4n/a104.16.146.241:443
2019-07-28 11:17:284ca7f7340ed760d4584a5ef01200b40dn/a104.16.146.241:443
2019-07-28 11:16:451119683c845b56c9fcecc26a7b6e85c9n/a104.16.146.241:443
2019-07-28 11:15:317ca5232e18c5646dc06ae4b0cdbc6a0an/a104.16.146.241:443
2019-07-28 11:10:33e64a1c882364770720d7dff1ddba0e66Virustotal results 52 / 70 (74.29%) 104.16.147.241:443
2019-07-28 11:10:01f515a1a42b9b96df3aee8d29680ea149n/a104.16.146.241:443
2019-07-28 11:08:474188f578b1bfb8eedafafdb3bdd3fe0en/a104.16.147.241:443
2019-07-28 11:03:21c0f5d27a62c6653154db6c73800e6ee7n/a104.16.146.241:443
2019-07-28 11:01:1632ffb0ec0717371f526f822b7c2d1498n/a104.16.146.241:443
2019-07-28 11:00:4175403e11733c8ed9e2bdece5d1fbfc92n/a104.16.147.241:443
2019-07-28 10:58:477d1f494553f8d40615e2d5db8df109d2n/a104.16.146.241:443
2019-07-28 10:58:433657469c91e8bcf96a3d1a36807817dcn/a104.16.147.241:443
2019-07-28 10:57:02be831120882c0532e5d2080b051a99a2n/a104.16.147.241:443
2019-03-06 01:00:498fcf7c7fb54e170222d0756b92872dddVirustotal results 34/63 (53.97%) 104.16.147.241:443
2018-12-19 15:31:39367ea3ab79c86c8e88524526b0f61af4n/a91.183.194.49:443
2018-12-19 14:54:0851d2a43152825e78c9de1bda2f148139n/a91.183.194.49:443
2018-12-19 14:32:43954fdfcf4640301337280a43670f9567n/a91.183.194.49:443
2018-12-19 14:17:13a7dd48b8987f66d0cfd39f59901cd4d4n/a91.183.194.49:443
2018-12-19 13:40:378b45bb3326ded194403b7e44ec062e9cn/a91.183.194.49:443
2018-12-19 12:31:202673666ba4ff714d6e234298cc17dd94n/a91.183.194.49:443
2018-12-19 11:40:38edd7c0340ff8089a89c6f639d561d22en/a91.183.194.49:443
2018-12-19 11:04:495ec9675f790e325d6973029aa2ae74c0n/a91.183.194.49:443
2018-12-19 10:59:49a1cab44d989d42cc6e2507a89c8edeb7n/a91.183.194.49:443
2018-12-19 10:37:3312b0d7d22fc647dcdb0e644973dee972n/a91.183.194.49:443
2018-12-19 10:33:469eeb45aaaa6aa467f7f6e84f752531c4n/a91.183.194.49:443
2018-12-19 10:21:11e2d8bad4dcda15b7f392db224efc3695n/a91.183.194.49:443
2018-12-19 10:15:14f6ad01aa027906bad769002697972bb7n/a91.183.194.49:443
2018-12-19 09:44:137a2940d0d320a333fe6a0f439ea32a23n/a91.183.194.49:443
2018-12-19 09:41:306b47019dc16b0472c2ffd364410d88ben/a91.183.194.49:443
2018-12-19 09:34:33ddf6bd30dbfd114f9ccb6a08a6342919n/a91.183.194.49:443
2018-12-19 08:59:1397bcbfdf0762bcb1ee32755f4bf3b6edn/a91.183.194.49:443
2018-12-19 08:27:2976327f5c39a8d6104ce85ce4cd0b226cn/a91.183.194.49:443
2018-12-19 08:21:54556cc318d43f939e7488b5be1eea9081n/a91.183.194.49:443
2018-12-19 08:21:30e83b3053a357e00064e8a04cfc9739e6n/a91.183.194.49:443
2018-12-19 08:18:5415f431ff6e22c82d3690fba8f44a743bn/a91.183.194.49:443
2018-12-19 08:12:520d47f83507a05564b6287a19d1bfee58n/a91.183.194.49:443
2018-12-19 07:54:57c8d548400fa96fecef488c18ef36171cn/a91.183.194.49:443
2018-12-19 07:52:52d565f9a5e7075ef3a994bb78067bb84dn/a91.183.194.49:443
2018-12-19 07:45:26438860c7cf5abe4d7e0b5b6e0698c540n/a91.183.194.49:443
2018-12-19 07:14:59679d24982a0982b73d93fdd06b1a1be2n/a91.183.194.49:443
2018-12-18 14:57:531d455ff7025dbafcaf12bc830b30273dn/a91.183.194.49:443
2018-12-18 14:24:133de31906dbd25a58902fead7b888fce6n/a91.183.194.49:443
2018-12-18 14:23:2647333453ec35e3447d8701975851ce75n/a91.183.194.49:443
2018-12-18 14:03:3047c2f82dcc3e2b011b8613a8e0c9dc69n/a91.183.194.49:443
2018-12-18 13:47:12006b7d4b33c2c617a804cac15c78747en/a91.183.194.49:443
2018-12-18 13:34:21a7a679081bcdb624f75cf58cc48b4276n/a91.183.194.49:443
2018-12-18 13:17:34f25215c86fc89aa61d74ac676723c7b1n/a91.183.194.49:443
2018-12-18 13:14:5827aa17db60cbc2b4d9623d30ea2b8d77n/a91.183.194.49:443
2018-12-18 13:01:5708aeab545a4f38edd0aace701e7973f7n/a91.183.194.49:443
2018-12-18 12:59:515fb2ff55aa5ce2ea70884175d1e066ddn/a91.183.194.49:443
2018-12-18 12:50:343c4533f57e5f16b8c133225df737595dn/a91.183.194.49:443

# of entries: 100 (max: 100)