JA3 Fingerprints

You can find further information about the JA3 fingerprint e3b2ab1f9a56f2fb4c9248f2f41631fa, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:e3b2ab1f9a56f2fb4c9248f2f41631fa
First seen:2018-03-15 01:06:34 UTC
Last seen:2019-09-16 10:07:00 UTC
Status:Blacklisted
Malware samples:376
Destination IPs:73
Malware:Tofsee -
Listing date:2018-11-14 12:13:52

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-09-16 10:07:00ca36325bc80663daf2c6c0c010437e0an/a157.240.2.35:443
2019-09-15 13:51:50deed9a0451e1f740f9f51a58e02b0df5Virustotal results 34 / 68 (50.00%) 157.240.2.35:443
2019-09-14 22:57:1168b82d92ee67e987162c6de81661e4e8n/a157.240.2.35:443
2019-09-14 22:44:267619214e7994d853b35d1a832d510ed4n/a157.240.2.35:443
2019-09-14 22:41:0968814c61a4a72a5f730019a5a74ecddbn/a157.240.2.35:443
2019-09-12 11:16:27adb282c8ef95afc16851af867927fe25Virustotal results 26 / 68 (38.24%) 64.233.177.95:443
2019-09-12 11:16:26adb282c8ef95afc16851af867927fe25Virustotal results 26 / 68 (38.24%) 216.239.32.21:443
2019-09-10 08:39:236f4f34a9d67d8c089b65092c7d51cbd7n/a31.13.93.35:443
2019-09-09 07:39:0509fcadb8c289b544413edfd9063bc4f7n/a31.13.80.36:443
2019-09-08 16:56:276d05b50e477bd58afa2ce411fc8ed2e8n/a152.199.24.192:443
2019-09-08 09:10:40c8a80a2ce661a71acaaa18bccbdc6deen/a31.13.80.36:443
2019-09-08 02:30:4378174d7d966f4afd91cef7d6b847973cVirustotal results 24 / 65 (36.92%) 216.239.36.21:443
2019-09-08 02:30:4078174d7d966f4afd91cef7d6b847973cVirustotal results 24 / 65 (36.92%) 74.125.21.95:443
2019-09-07 21:10:00dc3059ced965472d6ef8cc2306c76f08Virustotal results 24 / 68 (35.29%) 216.239.36.21:443
2019-09-07 19:36:3415b93e2e48f6bf995a796e87e3b46899n/a152.199.24.192:443
2019-09-07 19:21:57db2ffd5607ea8228bc8dd69efba20ab1Virustotal results 28 / 70 (40.00%) 74.125.21.95:443
2019-09-07 19:21:55db2ffd5607ea8228bc8dd69efba20ab1Virustotal results 28 / 70 (40.00%) 216.239.36.21:443
2019-09-07 04:14:4244c3ab9fa8dbcef633692adcfd2773b4Virustotal results 34 / 70 (48.57%) 152.199.24.192:443
2019-09-06 16:00:2817d776a21be0501d2d86276aaa113780n/a157.240.14.35:443
2019-09-06 09:51:268566aa83f3d01243fea43a91433a25a2n/a74.125.136.95:443
2019-09-06 09:51:258566aa83f3d01243fea43a91433a25a2n/a216.239.36.21:443
2019-09-06 09:51:258566aa83f3d01243fea43a91433a25a2n/a213.180.204.221:443
2019-09-06 05:12:355eac9fb1b1eea1b6287a1d68a265246en/a216.239.34.21:443
2019-09-05 08:31:02e4f5fb14e20baeb987ce2d458690e72dn/a157.240.14.35:443
2019-09-05 07:51:3411bcd4327258f52459afe5fa71aaadd4n/a157.240.14.35:443
2019-09-05 07:44:538ffa763cd6ad387dbe3cfb9443149e53n/a216.239.32.21:443
2019-09-05 06:15:414d58e92783e9b372de034960cc2aacd8n/a216.239.38.21:443
2019-09-05 06:15:414d58e92783e9b372de034960cc2aacd8n/a64.233.185.95:443
2019-09-05 05:36:14d4f91073203f7f7a60f8a9f03237f7den/a157.240.14.35:443
2019-09-05 00:36:4076f8d06791f5119050e85ad404741275Virustotal results 38 / 71 (53.52%) 31.13.93.35:443
2019-09-04 20:11:178ed947a088e883d75fb784eefda6a699n/a216.239.36.21:443
2019-09-04 20:11:158ed947a088e883d75fb784eefda6a699n/a172.217.215.95:443
2019-09-04 19:01:0875e9b3ce4e3d4ad25658c54040780811Virustotal results 54 / 70 (77.14%) 157.240.14.35:443
2019-09-04 18:41:42e0f936b7cb5998e79ca1e3802c38ced8Virustotal results 52 / 71 (73.24%) 157.240.14.35:443
2019-08-31 08:18:54d633ae58f93e8755ffa0273871302f8dn/a216.239.38.21:443
2019-08-31 08:18:54d633ae58f93e8755ffa0273871302f8dn/a216.58.193.170:443
2019-08-31 07:11:3458120dd8f5d91d3ad3074ef805ff3f80n/a157.240.14.35:443
2019-08-29 03:31:56cdff886327b19fe640322edaaf384700Virustotal results 36 / 70 (51.43%) 157.240.14.35:443
2019-08-29 02:12:5359758484d66fb973bd488b4246c55b2dVirustotal results 20 / 66 (30.30%) 157.240.14.35:443
2019-08-29 00:12:55ecfe25d5c1e5318dafb935d01e625c7cn/a216.239.34.21:443
2019-08-28 23:24:597225229102e388a1e4d6d401093cdd7eVirustotal results 33 / 70 (47.14%) 216.239.36.21:443
2019-08-28 23:13:33044cb8f2a9c76e1ceac6e16bc5f7c4d4n/a216.239.32.21:443
2019-08-28 23:13:33044cb8f2a9c76e1ceac6e16bc5f7c4d4n/a64.233.185.95:443
2019-08-28 20:49:49d21d0dd42d70a973a37d9cbe5287fc38n/a157.240.14.35:443
2019-08-28 20:14:37feac6cca5f406ed8b7a29cc677b4cb21n/a216.239.34.21:443
2019-08-28 19:26:3481be3b72b3e7a121730aaf8341acd870n/a104.24.105.116:443
2019-08-28 18:55:15db6927832f2222fb660b439a513d9d94n/a216.239.32.21:443
2019-08-28 18:37:090aaee4ac7aeae520759970136baba3b8n/a216.239.34.21:443
2019-08-28 18:18:1483b627411bc88577470688b52ebb2954n/a216.239.32.21:443
2019-08-28 18:09:4693916a9e7df37f883fd653d76311c4f4n/a216.239.32.21:443
2019-08-28 18:09:4493916a9e7df37f883fd653d76311c4f4n/a216.58.193.170:443
2019-08-28 17:40:5079bba380f743b0add5e0fc01aa606504n/a157.240.14.35:443
2019-08-28 16:09:4032c099929313fec3b736d287145a3815n/a216.239.34.21:443
2019-08-28 16:09:3432c099929313fec3b736d287145a3815n/a172.217.12.106:443
2019-08-27 14:02:20919053b6a2842d1e2bef5aa61cd59bc2n/a216.239.34.21:443
2019-08-27 06:57:4083a7437dd2e27c66c50c85a4fb31a046Virustotal results 51 / 70 (72.86%) 157.240.14.35:443
2019-08-26 18:01:160771047826e1fe827d2bf5fe22aa7e7cn/a216.239.38.21:443
2019-08-26 18:01:130771047826e1fe827d2bf5fe22aa7e7cn/a152.199.24.192:443
2019-08-26 16:22:4011d649094ae8879d4a08d12891812d6dn/a216.239.36.21:443
2019-08-26 14:29:5093cfe4afe1f111088ede67707106ac1an/a31.13.93.35:443
2019-08-26 07:02:28962512f6453b50ec74cd37dd5ba9581cVirustotal results 53/69 (76.81%) 74.125.21.95:443
2019-08-26 07:02:28962512f6453b50ec74cd37dd5ba9581cVirustotal results 53/69 (76.81%) 216.239.38.21:443
2019-08-26 06:38:38bd0ac6088b3d592aac40a27ef519aecfn/a216.239.34.21:443
2019-08-26 03:07:20279dfd72246eb32e414d0327c370151fn/a31.13.93.35:443
2019-08-26 01:00:2745c8e838c8d5f93633469a469ca27b5an/a152.199.24.192:443
2019-08-26 00:04:303b575ae43b1cb11501549ab2fdc85679n/a216.239.38.21:443
2019-08-25 23:42:5048c046e036adcc3a7fe3ba9fd6d4ac9dn/a152.199.24.192:443
2019-08-25 20:35:07f2cdf19b478c5de457f7bab9f4fc2e1bn/a216.239.38.21:443
2019-08-25 19:09:312e815cdd2dd084b0418a14af9d078a07n/a157.240.14.35:443
2019-08-25 17:45:109e2b6d4f36f25d7a147cf00b183b0955Virustotal results 48/69 (69.57%) 152.199.24.192:443
2019-08-25 16:08:34ca2186cd16e30ec8856d348057861b3dn/a152.199.24.192:443
2019-08-25 15:50:16ab41ca537450414bc8d53aae1caec11bn/a152.199.24.192:443
2019-08-25 15:50:16ab41ca537450414bc8d53aae1caec11bn/a216.239.32.21:443
2019-08-25 15:27:44c8a31fa1242b964660cefde7c8f0f9d3Virustotal results 53/71 (74.65%) 216.239.36.21:443
2019-08-25 14:22:57b66b6a53c42b93ed6f3fff2ad70ea37bn/a216.239.36.21:443
2019-08-25 14:22:57b66b6a53c42b93ed6f3fff2ad70ea37bn/a152.199.24.192:443
2019-08-25 12:26:38de84e6fafe3a999e8e5cbc9e74d6cc40n/a216.239.36.21:443
2019-08-25 08:59:047fb0022a9457af6f9e5a144657ad83c2n/a31.13.93.35:443
2019-08-25 02:01:02b0a013a8b046e32c887c1ca41ddcdc0en/a104.27.148.165:443
2019-08-24 02:51:35b5e4a6453166f0809c11fc16f0899bedn/a64.233.177.95:443
2019-08-24 02:51:30b5e4a6453166f0809c11fc16f0899bedn/a216.239.32.21:443
2019-08-24 00:31:189ecea44c174695b046931b6080a094d0n/a157.240.14.35:443
2019-08-23 07:57:28d28d097583cf396588d68cde3e2e45f4n/a216.239.32.21:443
2019-08-23 07:57:26d28d097583cf396588d68cde3e2e45f4n/a74.125.196.95:443
2019-08-23 06:48:511c18466c95238f340fecfef37d96037eVirustotal results 50 / 70 (71.43%) 162.255.118.194:443
2019-08-23 06:23:35f85db7a5d49469104f468eaa135cffd3n/a172.217.164.74:443
2019-08-23 06:23:28f85db7a5d49469104f468eaa135cffd3n/a216.239.36.21:443
2019-08-22 19:22:2761d8adb61ef374e6299b303e1c16e319n/a216.239.34.21:443
2019-08-22 19:22:2761d8adb61ef374e6299b303e1c16e319n/a64.233.185.95:443
2019-08-22 09:59:2432d0f3c3461455c5ba94523431effa79n/a216.239.38.21:443
2019-08-22 09:59:2232d0f3c3461455c5ba94523431effa79n/a216.239.34.21:443
2019-08-22 09:22:219e8e418c5d9bcaa90725581788b3cc40n/a216.239.32.21:443
2019-08-22 09:19:44fb65905d4c77b2368a7b24b45681b73dn/a216.239.36.21:443
2019-08-22 06:09:008f58f3b6001fe96206414e11693e8b0bn/a77.111.240.82:443
2019-08-22 06:09:008f58f3b6001fe96206414e11693e8b0bn/a46.4.34.229:443
2019-08-21 17:00:19821d9607454708c1f87801615f121189n/a31.13.93.35:443
2019-08-21 14:47:233c64dbca798e752b690d7d1a45fde9bbn/a213.180.204.221:443
2019-08-21 12:23:41dc402f3ce3138e05639efe096ae1988fVirustotal results 27 / 69 (39.13%) 216.239.38.21:443
2019-08-21 12:23:40dc402f3ce3138e05639efe096ae1988fVirustotal results 27 / 69 (39.13%) 172.217.164.74:443
2019-08-21 12:06:5377ec257855f38bea541b5d0490896439n/a216.239.32.21:443

# of entries: 100 (max: 100)