JA3 Fingerprints

You can find further information about the JA3 fingerprint 96eba628dcb2b47607192ba74a3b55ba, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:96eba628dcb2b47607192ba74a3b55ba
First seen:2017-07-19 18:53:48 UTC
Last seen:2019-08-19 20:20:03 UTC
Status:Blacklisted
Malware samples:1'279
Destination IPs:88
Malware:Tofsee -
Listing date:2018-11-14 11:49:02

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-08-19 20:20:0352845c27b0cb7d20c3aee72f763abe84Virustotal results 32 / 70 (45.71%) 104.16.147.241:443
2019-08-19 15:26:410f0391e3eac6425f47080a0957ae2e3dn/a194.106.198.130:443
2019-08-19 15:26:410f0391e3eac6425f47080a0957ae2e3dn/a104.24.30.83:443
2019-08-19 10:47:041358f12230aeddafbc44042d0a37b21an/a194.106.198.130:443
2019-08-16 19:15:3655db27847dbc47a66f45374be00e106dn/a194.106.198.130:443
2019-08-16 19:15:3555db27847dbc47a66f45374be00e106dn/a104.24.30.83:443
2019-08-16 11:24:173c69aa0d71edd50df4a214583b7be972n/a104.24.30.83:443
2019-08-16 10:15:33232520be3f938c539235add82d49537en/a194.106.198.130:443
2019-08-16 10:15:33232520be3f938c539235add82d49537en/a104.24.31.83:443
2019-08-16 06:50:3108c5b3b82914838f5a422dc61df20fb6n/a194.106.198.130:443
2019-08-16 06:50:3108c5b3b82914838f5a422dc61df20fb6n/a104.24.30.83:443
2019-08-15 15:50:376092cac9d0ccb2b1d37fe20fe078284cn/a104.24.31.83:443
2019-08-15 13:53:13c5a728ae5b14f9e0ec34023e157fcca0n/a194.106.198.130:443
2019-08-15 13:53:13c5a728ae5b14f9e0ec34023e157fcca0n/a104.24.30.83:443
2019-08-15 10:31:122cbd2c8f71ecdac760689efc92e77702n/a194.106.198.130:443
2019-08-15 10:01:0761d60290662972e8e7044b88a91815ffn/a194.106.198.130:443
2019-08-15 10:01:0761d60290662972e8e7044b88a91815ffn/a104.24.30.83:443
2019-08-15 09:27:414e03dbbb93d33781185546f86318369fn/a194.106.198.130:443
2019-08-15 09:27:414e03dbbb93d33781185546f86318369fn/a104.24.30.83:443
2019-08-15 07:54:397c785c0450bd7ad483b5b50075ac0fa0n/a104.24.30.83:443
2019-08-14 19:13:379594685c61409b56b0e162482b53ecdbn/a194.106.198.130:443
2019-08-14 19:13:369594685c61409b56b0e162482b53ecdbn/a104.24.31.83:443
2019-08-14 17:44:41a826166eb9287bfb328e95822f544311n/a194.106.198.130:443
2019-08-14 15:08:1881a23aa3c187c45744536028730e64f5n/a104.24.31.83:443
2019-08-14 13:48:04c65a66f4387131c419dba53a9044a006n/a104.24.31.83:443
2019-08-14 13:32:3588151302e603541c8bf35f8b16de72b2n/a194.106.198.130:443
2019-08-14 13:14:590e928ec4f6bd0eaab9c5e0277a51dbf5n/a104.24.30.83:443
2019-08-14 13:14:590e928ec4f6bd0eaab9c5e0277a51dbf5n/a194.106.198.130:443
2019-08-14 13:13:576141f95ae454d687968c492f49b50252n/a194.106.198.130:443
2019-08-14 12:38:13976331f328c075727ace1240b6c294c3n/a194.106.198.130:443
2019-08-14 11:53:215fa3dc6aa44c5bd338c804f278319495n/a194.106.198.130:443
2019-08-14 11:53:215fa3dc6aa44c5bd338c804f278319495n/a104.24.30.83:443
2019-08-11 11:41:111e6b3ebe29c0fca73e8b6b17037b95c4n/a104.16.146.241:443
2019-07-28 11:17:284ca7f7340ed760d4584a5ef01200b40dn/a104.16.146.241:443
2019-07-28 11:16:451119683c845b56c9fcecc26a7b6e85c9n/a104.16.146.241:443
2019-07-28 11:15:317ca5232e18c5646dc06ae4b0cdbc6a0an/a104.16.146.241:443
2019-07-28 11:10:33e64a1c882364770720d7dff1ddba0e66Virustotal results 52 / 70 (74.29%) 104.16.147.241:443
2019-07-28 11:10:01f515a1a42b9b96df3aee8d29680ea149n/a104.16.146.241:443
2019-07-28 11:08:474188f578b1bfb8eedafafdb3bdd3fe0en/a104.16.147.241:443
2019-07-28 11:03:21c0f5d27a62c6653154db6c73800e6ee7n/a104.16.146.241:443
2019-07-28 11:01:1632ffb0ec0717371f526f822b7c2d1498n/a104.16.146.241:443
2019-07-28 11:00:4175403e11733c8ed9e2bdece5d1fbfc92n/a104.16.147.241:443
2019-07-28 10:58:477d1f494553f8d40615e2d5db8df109d2n/a104.16.146.241:443
2019-07-28 10:58:433657469c91e8bcf96a3d1a36807817dcn/a104.16.147.241:443
2019-07-28 10:57:02be831120882c0532e5d2080b051a99a2n/a104.16.147.241:443
2019-03-06 01:00:498fcf7c7fb54e170222d0756b92872dddVirustotal results 34/63 (53.97%) 104.16.147.241:443
2018-12-19 15:31:39367ea3ab79c86c8e88524526b0f61af4n/a91.183.194.49:443
2018-12-19 14:54:0851d2a43152825e78c9de1bda2f148139n/a91.183.194.49:443
2018-12-19 14:32:43954fdfcf4640301337280a43670f9567n/a91.183.194.49:443
2018-12-19 14:17:13a7dd48b8987f66d0cfd39f59901cd4d4n/a91.183.194.49:443
2018-12-19 13:40:378b45bb3326ded194403b7e44ec062e9cn/a91.183.194.49:443
2018-12-19 12:31:202673666ba4ff714d6e234298cc17dd94n/a91.183.194.49:443
2018-12-19 11:40:38edd7c0340ff8089a89c6f639d561d22en/a91.183.194.49:443
2018-12-19 11:04:495ec9675f790e325d6973029aa2ae74c0n/a91.183.194.49:443
2018-12-19 10:59:49a1cab44d989d42cc6e2507a89c8edeb7n/a91.183.194.49:443
2018-12-19 10:37:3312b0d7d22fc647dcdb0e644973dee972n/a91.183.194.49:443
2018-12-19 10:33:469eeb45aaaa6aa467f7f6e84f752531c4n/a91.183.194.49:443
2018-12-19 10:21:11e2d8bad4dcda15b7f392db224efc3695n/a91.183.194.49:443
2018-12-19 10:15:14f6ad01aa027906bad769002697972bb7n/a91.183.194.49:443
2018-12-19 09:44:137a2940d0d320a333fe6a0f439ea32a23n/a91.183.194.49:443
2018-12-19 09:41:306b47019dc16b0472c2ffd364410d88ben/a91.183.194.49:443
2018-12-19 09:34:33ddf6bd30dbfd114f9ccb6a08a6342919n/a91.183.194.49:443
2018-12-19 08:59:1397bcbfdf0762bcb1ee32755f4bf3b6edn/a91.183.194.49:443
2018-12-19 08:27:2976327f5c39a8d6104ce85ce4cd0b226cn/a91.183.194.49:443
2018-12-19 08:21:54556cc318d43f939e7488b5be1eea9081n/a91.183.194.49:443
2018-12-19 08:21:30e83b3053a357e00064e8a04cfc9739e6n/a91.183.194.49:443
2018-12-19 08:18:5415f431ff6e22c82d3690fba8f44a743bn/a91.183.194.49:443
2018-12-19 08:12:520d47f83507a05564b6287a19d1bfee58n/a91.183.194.49:443
2018-12-19 07:54:57c8d548400fa96fecef488c18ef36171cn/a91.183.194.49:443
2018-12-19 07:52:52d565f9a5e7075ef3a994bb78067bb84dn/a91.183.194.49:443
2018-12-19 07:45:26438860c7cf5abe4d7e0b5b6e0698c540n/a91.183.194.49:443
2018-12-19 07:14:59679d24982a0982b73d93fdd06b1a1be2n/a91.183.194.49:443
2018-12-18 14:57:531d455ff7025dbafcaf12bc830b30273dn/a91.183.194.49:443
2018-12-18 14:24:133de31906dbd25a58902fead7b888fce6n/a91.183.194.49:443
2018-12-18 14:23:2647333453ec35e3447d8701975851ce75n/a91.183.194.49:443
2018-12-18 14:03:3047c2f82dcc3e2b011b8613a8e0c9dc69n/a91.183.194.49:443
2018-12-18 13:47:12006b7d4b33c2c617a804cac15c78747en/a91.183.194.49:443
2018-12-18 13:34:21a7a679081bcdb624f75cf58cc48b4276n/a91.183.194.49:443
2018-12-18 13:17:34f25215c86fc89aa61d74ac676723c7b1n/a91.183.194.49:443
2018-12-18 13:14:5827aa17db60cbc2b4d9623d30ea2b8d77n/a91.183.194.49:443
2018-12-18 13:01:5708aeab545a4f38edd0aace701e7973f7n/a91.183.194.49:443
2018-12-18 12:59:515fb2ff55aa5ce2ea70884175d1e066ddn/a91.183.194.49:443
2018-12-18 12:50:343c4533f57e5f16b8c133225df737595dn/a91.183.194.49:443
2018-12-18 12:41:07256f2ec7c147efff531a6110f1c77b46n/a91.183.194.49:443
2018-12-18 12:10:59b5d8299b547220d8a0ae4089f61b7aadn/a91.183.194.49:443
2018-12-18 11:47:19327eda76b16137c8e3e435651d5b185an/a91.183.194.49:443
2018-12-18 11:28:0665342784e763c4bc8b3fb5e6b02cf8a6n/a91.183.194.49:443
2018-12-18 11:25:16d9da9d7fd76a7254ce775e94442bb9ddn/a91.183.194.49:443
2018-12-18 11:15:00f828a8494a32285c9b6ac1ed0020d76bn/a91.183.194.49:443
2018-12-18 11:07:18df92ba19681cdf0117683c7244282d2bn/a91.183.194.49:443
2018-12-18 10:31:18149f9ac787985fc1b0e1d9adb8bfec60n/a91.183.194.49:443
2018-12-18 10:30:0044b2fbe17988e3e01fb682f7644f60e0n/a91.183.194.49:443
2018-12-18 10:18:3888bcd661ac7af87ff0ff881aafbc659bn/a91.183.194.49:443
2018-12-18 10:15:203c23e8a2a11ba9238c655e848bfed6cen/a91.183.194.49:443
2018-12-18 09:58:00ff2ae52a090ade824515571cf892d27an/a91.183.194.49:443
2018-12-18 09:53:490cbafde6a85b2ae940f747aba8ece4cdn/a91.183.194.49:443
2018-12-18 09:48:1972e88211281bf8542c4795055f4d5d82n/a91.183.194.49:443
2018-12-18 09:32:074e0c3cd4f513c25001464f7d15185bf1n/a91.183.194.49:443
2018-12-18 09:23:253feb70269491d7e3615c2a9691235f82n/a91.183.194.49:443
2018-12-18 08:28:56308c677d80a1140e5e47e9065c0673adn/a91.183.194.49:443

# of entries: 100 (max: 100)