JA3 Fingerprints

You can find further information about the JA3 fingerprint b2b61db7b9490a60d270ccb20b462826, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:b2b61db7b9490a60d270ccb20b462826
First seen:2017-11-14 20:12:03 UTC
Last seen:2021-06-06 20:27:10 UTC
Status:Blacklisted
Malware samples:378
Destination IPs:676
Malware:Adware
Listing date:2018-11-14 12:06:56

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-03-05 07:59:031d9e05738511ef401a5f5a432681f18an/a61.241.56.116:443
2024-03-05 07:59:031d9e05738511ef401a5f5a432681f18an/a119.167.180.162:443
2024-03-05 07:59:031d9e05738511ef401a5f5a432681f18an/a211.152.149.37:443
2024-03-05 07:59:031d9e05738511ef401a5f5a432681f18an/a203.205.136.80:443
2024-03-05 07:59:031d9e05738511ef401a5f5a432681f18an/a157.255.220.69:443
2024-03-05 07:59:031d9e05738511ef401a5f5a432681f18an/a157.255.219.163:443
2024-03-05 07:59:031d9e05738511ef401a5f5a432681f18an/a157.255.245.97:443
2024-03-05 07:59:021d9e05738511ef401a5f5a432681f18an/a61.243.13.108:443
2024-02-18 10:51:400adeba02ea0deb9410ba2b7cd7630b43n/a18.205.36.100:443
2024-02-18 10:51:400adeba02ea0deb9410ba2b7cd7630b43n/a172.67.152.144:443
2023-12-22 23:22:50a98704d1abbb7b11b1c487ce0a423486Virustotal results 6 / 72 (8.33%) 82.145.216.15:443
2023-12-22 23:22:50a98704d1abbb7b11b1c487ce0a423486Virustotal results 6 / 72 (8.33%) 185.26.182.109:443
2023-12-19 03:45:551c789594ea158c18e9b4d9f583785625Virustotal results 0 / 69 (0.00%) 157.255.245.97:443
2023-12-19 03:45:541c789594ea158c18e9b4d9f583785625Virustotal results 0 / 69 (0.00%) 36.249.64.201:443
2023-12-19 03:45:541c789594ea158c18e9b4d9f583785625Virustotal results 0 / 69 (0.00%) 211.152.149.37:443
2023-12-19 03:45:541c789594ea158c18e9b4d9f583785625Virustotal results 0 / 69 (0.00%) 157.255.220.69:443
2023-12-19 03:45:541c789594ea158c18e9b4d9f583785625Virustotal results 0 / 69 (0.00%) 203.205.136.80:443
2023-11-23 13:54:16a9b6d796ac3dee0771d148182ffd7123n/a52.58.92.77:443
2023-11-23 13:54:16a9b6d796ac3dee0771d148182ffd7123n/a202.233.84.1:443
2023-11-23 13:54:16a9b6d796ac3dee0771d148182ffd7123n/a165.254.203.172:443
2023-11-23 13:54:16a9b6d796ac3dee0771d148182ffd7123n/a91.228.74.166:443
2023-11-23 13:54:15a9b6d796ac3dee0771d148182ffd7123n/a3.122.66.171:443
2023-11-23 13:54:15a9b6d796ac3dee0771d148182ffd7123n/a172.217.168.34:443
2023-11-23 13:54:15a9b6d796ac3dee0771d148182ffd7123n/a46.228.164.11:443
2023-11-23 13:54:15a9b6d796ac3dee0771d148182ffd7123n/a54.93.168.0:443
2023-11-23 13:54:14a9b6d796ac3dee0771d148182ffd7123n/a104.77.36.107:443
2023-11-23 13:54:14a9b6d796ac3dee0771d148182ffd7123n/a174.137.133.49:443
2023-11-23 13:54:14a9b6d796ac3dee0771d148182ffd7123n/a136.243.177.171:443
2023-11-23 13:54:14a9b6d796ac3dee0771d148182ffd7123n/a151.101.2.49:443
2023-09-19 20:57:180038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 104.192.108.23:443
2023-09-19 20:57:180038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 18.165.183.23:443
2023-09-19 20:57:180038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 101.198.2.134:443
2023-09-19 20:57:180038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 18.165.183.15:443
2023-09-19 20:57:180038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 36.110.236.177:443
2023-09-19 20:57:180038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 112.65.69.51:443
2023-09-19 20:57:170038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 18.165.183.118:443
2023-09-19 20:57:170038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 13.224.103.37:443
2023-09-19 20:57:170038b589a7872596229cc098c309e42fVirustotal results 5 / 70 (7.14%) 104.192.110.226:443
2023-08-25 07:53:2242640d5233d4eb4268b76a49531f22f4n/a157.255.220.69:443
2023-08-25 07:53:2242640d5233d4eb4268b76a49531f22f4n/a203.205.136.80:443
2023-08-25 07:53:2242640d5233d4eb4268b76a49531f22f4n/a157.255.219.163:443
2023-08-25 07:53:2142640d5233d4eb4268b76a49531f22f4n/a61.241.56.116:443
2023-08-25 07:53:2142640d5233d4eb4268b76a49531f22f4n/a36.249.86.7:443
2023-08-25 07:53:2142640d5233d4eb4268b76a49531f22f4n/a49.51.224.111:443
2023-08-25 07:53:2142640d5233d4eb4268b76a49531f22f4n/a157.255.245.97:443
2023-08-04 23:09:46407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 108.138.246.56:443
2023-08-04 23:09:46407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 108.138.246.39:443
2023-08-04 23:09:45407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 101.198.192.8:443
2023-08-04 23:09:45407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 104.192.108.23:443
2023-08-04 23:09:45407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 108.138.246.34:443
2023-08-04 23:09:45407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 18.155.202.41:443
2023-08-04 23:09:45407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 101.198.191.55:443
2023-08-04 23:09:45407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 36.110.236.177:443
2023-08-04 23:09:45407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 101.198.2.134:443
2023-08-04 23:09:45407d544f1c417f5f4af0966e676e00f2Virustotal results 17 / 71 (23.94%) 112.65.69.51:443
2023-05-30 12:46:227abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 62.217.160.2:443
2023-05-30 12:46:227abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 87.250.250.104:443
2023-05-30 12:46:227abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 213.180.193.234:443
2023-05-30 12:46:227abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 87.250.250.119:443
2023-05-30 12:46:227abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 142.251.39.98:443
2023-05-30 12:46:227abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 142.251.36.2:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 213.180.193.232:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 96.16.53.213:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 77.88.55.242:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 87.250.254.116:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 213.180.204.24:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 142.250.179.163:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 5.45.205.244:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 142.251.39.100:443
2023-05-30 12:46:217abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 93.158.134.121:443
2023-05-30 12:46:207abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 104.109.143.76:443
2023-05-30 12:46:207abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 77.88.55.88:443
2023-05-30 12:46:207abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 77.88.21.36:443
2023-05-30 12:46:207abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 213.180.204.158:443
2023-05-30 12:46:207abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 178.154.131.217:443
2023-05-30 12:46:207abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 87.250.250.41:443
2023-05-30 12:46:207abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 87.250.251.66:443
2023-05-30 12:46:197abafe12eb9ba9eafcfd538a12d19005Virustotal results 0 / 64 (0.00%) 104.109.143.86:443
2023-05-08 14:28:3378db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 77.88.55.242:443
2023-05-08 14:28:3378db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 213.180.193.234:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 172.217.168.67:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 23.10.249.41:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 87.250.254.116:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 178.154.131.217:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 87.250.250.104:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 5.45.205.244:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 87.250.251.119:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 62.217.160.2:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 142.250.203.98:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 173.194.69.156:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 213.180.204.158:443
2023-05-08 14:28:3278db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 87.250.251.66:443
2023-05-08 14:28:3178db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 87.250.250.41:443
2023-05-08 14:28:3178db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 213.180.204.36:443
2023-05-08 14:28:3178db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 5.255.255.70:443
2023-05-08 14:28:3178db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 213.180.193.232:443
2023-05-08 14:28:3178db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 142.250.203.100:443
2023-05-08 14:28:3178db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 23.0.174.81:443
2023-05-08 14:28:3178db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 93.158.134.121:443
2023-05-08 14:28:3178db74e103fb99ac515497b462ac6425Virustotal results 0 / 62 (0.00%) 213.180.204.24:443

# of entries: 100 (max: 100)