JA3 Fingerprints

You can find further information about the JA3 fingerprint cb98a24ee4b9134448ffb5714fd870ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:cb98a24ee4b9134448ffb5714fd870ac
First seen:2017-07-14 19:48:28 UTC
Last seen:2019-01-21 08:13:41 UTC
Status:Blacklisted
Malware samples:4'903
Destination IPs:774
Malware:Dridex -
Listing date:2018-12-08 09:42:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-01-21 08:13:41b1a1fd1a9fd164c707cfec3021483d03Virustotal results 50/59 (84.75%) 77.48.30.156:443
2019-01-21 08:11:5049318d30f5f6ad69c84ff1250ddd45ecn/a77.48.30.156:443
2019-01-21 08:10:28a518c577f819b9e2a663b87627322a83n/a77.48.30.156:443
2019-01-21 07:49:17ce739f4424ba2fc06815201d86f0a40dn/a77.48.30.156:443
2019-01-20 20:19:45db6dee173b711de3724838af80c5b16bn/a77.48.30.156:443
2019-01-20 20:05:4035f29ef8909095e10c1b62535569c663n/a77.48.30.156:443
2019-01-20 16:48:3017aee298d220f06bcd0152e3c9954177Virustotal results 46/71 (64.79%) 162.243.158.154:443
2019-01-20 13:59:05d1cdbf9be6f6749c8d90769c403b058bn/a77.48.30.156:443
2019-01-19 00:18:03023d6f96a415cd116b67a8a892903655n/a192.241.220.183:3389
2019-01-19 00:18:03023d6f96a415cd116b67a8a892903655n/a64.87.26.16:443
2019-01-18 21:57:5993d391e2d7db5b6f34c938f16a4c6cabVirustotal results 46/71 (64.79%) 51.255.50.164:1801
2019-01-18 21:57:5993d391e2d7db5b6f34c938f16a4c6cabVirustotal results 46/71 (64.79%) 162.243.158.154:443
2019-01-18 18:34:59a8beaa70ed9e3a5036ccc128b26c87d7Virustotal results 59/67 (88.06%) 77.48.30.156:443
2019-01-18 17:14:135259143d7d4aa6352a7516966596f834n/a64.87.26.16:443
2019-01-18 03:16:2309edafc3ad14cb78d323c92b546ff61an/a192.241.220.183:3389
2019-01-18 03:16:2309edafc3ad14cb78d323c92b546ff61an/a64.87.26.16:443
2019-01-18 01:15:14aa656af8376c58ece0253d17f36ed503n/a64.87.26.16:443
2019-01-18 01:15:13aa656af8376c58ece0253d17f36ed503n/a192.241.220.183:3389
2019-01-17 16:22:20a4c37dbfb5371e731c3d591a54f62545n/a185.94.252.27:443
2019-01-17 16:22:20a4c37dbfb5371e731c3d591a54f62545n/a192.241.220.183:3389
2019-01-17 11:33:0509e01256fa8e8d08181160a633af44e9n/a192.241.220.183:3389
2019-01-17 11:33:0509e01256fa8e8d08181160a633af44e9n/a64.87.26.16:443
2019-01-17 10:26:243c77e44e22bdf2d4a034d9affd6fdaacVirustotal results 56/69 (81.16%) 77.48.30.156:443
2019-01-17 05:10:17b319ad4fd94b8fa3436d3c532a2d89ean/a64.87.26.16:443
2019-01-17 05:10:17b319ad4fd94b8fa3436d3c532a2d89ean/a192.241.220.183:3389
2019-01-16 23:10:489364bf03036f0c9351976694455bd5een/a192.241.220.183:3389
2019-01-16 23:10:489364bf03036f0c9351976694455bd5een/a64.87.26.16:443
2019-01-15 02:29:0599e35bf967803eb09cfc2c1f10648a38n/a162.243.158.154:443
2019-01-15 00:16:0942fbee64c36447eea2c96f87794dfaf5n/a162.243.158.154:443
2019-01-15 00:16:0942fbee64c36447eea2c96f87794dfaf5n/a51.255.50.164:1801
2019-01-14 22:48:35a354972411edc0cb13e0e91dbc74764dn/a77.48.30.156:443
2019-01-14 16:37:114704c91220c3329b0f15751308784a43n/a64.87.26.16:443
2019-01-14 16:37:114704c91220c3329b0f15751308784a43n/a192.241.220.183:3389
2019-01-14 16:36:293ab7e4bdb7a0350b96eb44e20ed8dc54n/a192.241.220.183:3389
2019-01-14 16:36:293ab7e4bdb7a0350b96eb44e20ed8dc54n/a64.87.26.16:443
2019-01-14 16:32:05e9a35d9a7c8829c6d1b60008f57faa3aVirustotal results 14/69 (20.29%) 192.241.220.183:3389
2019-01-14 16:32:05e9a35d9a7c8829c6d1b60008f57faa3aVirustotal results 14/69 (20.29%) 64.87.26.16:443
2019-01-14 15:49:0066ec138d751010bfa2767a2a92a73d96n/a51.255.50.164:1801
2019-01-14 15:49:0066ec138d751010bfa2767a2a92a73d96n/a162.243.158.154:443
2019-01-14 11:21:11c1aca5d70555df4ea41d66a09c163f6an/a162.243.158.154:443
2019-01-14 11:21:11c1aca5d70555df4ea41d66a09c163f6an/a51.255.50.164:1801
2019-01-14 07:03:3167176acda4b28aaebf2f922c3940ef12n/a51.255.50.164:1801
2019-01-14 07:03:3167176acda4b28aaebf2f922c3940ef12n/a162.243.158.154:443
2019-01-14 03:43:57ae39ac71e0f5c13b1ef8939bca944a16n/a51.255.50.164:1801
2019-01-12 07:46:143f4e2379789820e58e61357151ef2925n/a77.48.30.156:443
2019-01-12 07:45:53098a64df02622fb44b20d2ab86d3084dn/a77.48.30.156:443
2019-01-11 15:24:02b9cbf35e56395cc106da16ab404a0ff7n/a64.87.26.16:443
2019-01-11 15:24:02b9cbf35e56395cc106da16ab404a0ff7n/a192.241.220.183:3389
2019-01-11 15:22:4680bc906bd00872622e79d706f713bd68Virustotal results 12/70 (17.14%) 192.241.220.183:3389
2019-01-11 15:22:4680bc906bd00872622e79d706f713bd68Virustotal results 12/70 (17.14%) 64.87.26.16:443
2019-01-11 10:25:050dd16e7f13612b1c0b6bdb1d9d3c40dan/a77.48.30.156:443
2019-01-09 23:45:519b3d715c5b11f6dcfa8bb722b0df5c5bn/a107.170.220.167:4431
2019-01-09 23:45:519b3d715c5b11f6dcfa8bb722b0df5c5bn/a188.240.231.15:3889
2019-01-09 22:08:568c279c417d8af9208448d33f0bcade1en/a77.48.30.156:443
2019-01-09 21:32:12320ac8e38f3027c21a65770a496c26b9n/a192.241.241.198:443
2019-01-09 09:37:126075a3f7cccabfae25ad8af0b1d04537Virustotal results 45/56 (80.36%) 31.202.128.203:443
2019-01-08 16:45:50b88cc16b5b651b95cb099cb74b34708fVirustotal results 14/64 (21.88%) 204.236.166.86:443
2019-01-08 16:45:49b88cc16b5b651b95cb099cb74b34708fVirustotal results 14/64 (21.88%) 23.54.166.180:443
2019-01-08 05:25:274fc41ce2899296590030bcd8066a8e91Virustotal results 34/70 (48.57%) 51.255.50.164:1801
2019-01-08 05:25:274fc41ce2899296590030bcd8066a8e91Virustotal results 34/70 (48.57%) 162.243.158.154:443
2019-01-07 20:52:20419f29c64577ced8b119986c0a72552fVirustotal results 20/68 (29.41%) 45.33.55.54:443
2019-01-07 09:59:49e999b992a67dec97c5c0f05435ed2fafVirustotal results 36/70 (51.43%) 162.243.158.154:443
2019-01-07 09:59:49e999b992a67dec97c5c0f05435ed2fafVirustotal results 36/70 (51.43%) 51.255.50.164:1801
2019-01-07 03:54:0626ecd89547d53b52fd42e1925cb86177n/a51.255.50.164:1801
2019-01-07 03:54:0626ecd89547d53b52fd42e1925cb86177n/a162.243.158.154:443
2019-01-06 16:05:06b6ed6ba84f51ff287ad328c705a2af6bVirustotal results 56/72 (77.78%) 77.48.30.156:443
2019-01-06 14:08:35b37d74b9256406174e0e044461261113Virustotal results 35/70 (50.00%) 162.243.158.154:443
2019-01-06 09:45:52cf9613135ffa39517049ffac460ee3d7Virustotal results 32/69 (46.38%) 54.180.98.118:1081
2019-01-06 08:16:388d0091cf368e896521785b9e201d89c2n/a51.255.50.164:1801
2019-01-06 08:16:388d0091cf368e896521785b9e201d89c2n/a162.243.158.154:443
2019-01-06 03:37:41191209b0703129aa46ea3894d00c6d6aVirustotal results 32/70 (45.71%) 51.255.50.164:1801
2019-01-06 03:37:41191209b0703129aa46ea3894d00c6d6aVirustotal results 32/70 (45.71%) 162.243.158.154:443
2019-01-05 14:44:387bc00c3bfca80b78508e4caea0097538Virustotal results 34/70 (48.57%) 162.243.158.154:443
2019-01-05 14:44:387bc00c3bfca80b78508e4caea0097538Virustotal results 34/70 (48.57%) 51.255.50.164:1801
2019-01-05 08:24:46fca3cbe3f10bfca9c162a66f099c101aVirustotal results 36/71 (50.70%) 51.255.50.164:1801
2019-01-05 08:24:46fca3cbe3f10bfca9c162a66f099c101aVirustotal results 36/71 (50.70%) 162.243.158.154:443
2019-01-04 08:07:006209eabbf22b8cc32d14eda970daeb61n/a77.48.30.156:443
2018-12-31 12:55:3800177d210675e6f29787cc00ff33c565Virustotal results 54/71 (76.06%) 77.48.30.156:443
2018-12-30 10:33:148a4a55821298b073fa3951dfd409df95n/a77.48.30.156:443
2018-12-30 09:08:36317ca910c25a38e93ed7b4a276a6c6fan/a77.48.30.156:443
2018-12-30 08:39:53e5a30a5fac4f93bf62126ebfb492457cn/a77.48.30.156:443
2018-12-30 08:17:5869844acd72ef97f13bdde31f5fde8ca1n/a77.48.30.156:443
2018-12-27 11:07:40bc70357b0a26a814f3fff1086db57b4dVirustotal results 35/70 (50.00%) 51.255.50.164:1801
2018-12-27 11:07:40bc70357b0a26a814f3fff1086db57b4dVirustotal results 35/70 (50.00%) 162.243.158.154:443
2018-12-27 11:06:545767da828fdf881f0a833c4a221e8a67n/a162.243.158.154:443
2018-12-27 11:06:545767da828fdf881f0a833c4a221e8a67n/a51.255.50.164:1801
2018-12-26 15:17:283e906b06ea4ee4955063b15647e80991n/a162.243.158.154:443
2018-12-26 10:16:10df370c70e20cf009a99223b201aa9987n/a77.48.30.156:443
2018-12-26 08:43:1650569f98483b6ec2124ccf2a43e4bccbn/a77.48.30.156:443
2018-12-26 00:31:33d7386280d43a5aceb2b66fb203574743Virustotal results 53/69 (76.81%) 62.251.50.232:443
2018-12-25 14:01:309581d8c5082b5e98e708ba02afa10b91Virustotal results 44/70 (62.86%) 77.48.30.156:443
2018-12-24 09:44:4626a601b09e8c2dfda7cd9dc7073b90d4n/a77.48.30.156:443
2018-12-23 22:15:371fbc405164cc02f1654af6dab0e91b38Virustotal results 47/71 (66.20%) 64.111.42.64:443
2018-12-23 20:01:4534f99dd841bea22f4c8182609453127bVirustotal results 17/70 (24.29%) 185.130.104.188:443
2018-12-17 20:19:447aa9728361e2e703a8c99a6f41752978Virustotal results 10/68 (14.71%) 71.79.237.50:443
2018-12-17 20:19:447aa9728361e2e703a8c99a6f41752978Virustotal results 10/68 (14.71%) 194.76.224.121:443
2018-12-14 16:51:51442f5d92400467bc18a053cb51637442n/a77.48.30.156:443
2018-12-14 16:45:386d87f1444d589dc92bcef87957d8aa20n/a77.48.30.156:443
2018-12-14 16:42:004e79581a00b281ee1801f56c015ad76cn/a77.48.30.156:443
2018-12-14 13:38:36b85b43b389dea45cc591e477d6eeb689Virustotal results 50/57 (87.72%) 77.48.30.156:443

# of entries: 100 (max: 100)