JA3 Fingerprints

You can find further information about the JA3 fingerprint e3b2ab1f9a56f2fb4c9248f2f41631fa, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:e3b2ab1f9a56f2fb4c9248f2f41631fa
First seen:2018-03-15 01:06:34 UTC
Last seen:2021-07-02 21:51:49 UTC
Status:Blacklisted
Malware samples:8'817
Destination IPs:400
Malware:Tofsee -
Listing date:2018-11-14 12:13:52

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-08-25 13:01:59996102b00b87491ed55e711d00a6269cn/a34.117.59.81:443
2023-08-25 09:42:356483ccf9b3baf8b2df66480cc22dd9c7n/a34.117.59.81:443
2023-08-25 07:33:41bf4a8e19c3753f18a667e5090460f02an/a34.117.59.81:443
2023-08-25 06:35:23c075147c2b49cfbbe7ce50a0c0fee559n/a34.117.59.81:443
2023-08-25 03:00:302c30ffa12d1c0c96d3740a00a27640e0n/a34.117.59.81:443
2023-08-25 01:39:4737c55fc5b503856cc1eba28eb6b69fedn/a34.117.59.81:443
2023-08-24 23:36:16757ca4272bb47ec381f5401118678398n/a34.117.59.81:443
2023-08-24 13:27:34b6bdd876f393ffd3417909fd0aa8e79dVirustotal results 29 / 66 (43.94%) 34.117.59.81:443
2023-08-24 13:08:36270d07268270324d4c8ede7c3f4e9999Virustotal results 49 / 67 (73.13%) 34.117.59.81:443
2023-08-24 04:40:5678d2e2e7a47fd16928532f799d5381c0n/a34.117.59.81:443
2023-08-24 04:40:5678d2e2e7a47fd16928532f799d5381c0n/a31.13.65.1:443
2023-08-24 02:02:53f5563d38fd39b4f03d68ee5266986aa3Virustotal results 32 / 71 (45.07%) 34.117.59.81:443
2023-08-24 02:02:51f5563d38fd39b4f03d68ee5266986aa3Virustotal results 32 / 71 (45.07%) 31.13.65.1:443
2023-08-23 08:45:14350da2c11d3b4f56944bbc3c886c5e04n/a34.117.59.81:443
2023-08-23 08:45:13350da2c11d3b4f56944bbc3c886c5e04n/a31.13.93.19:443
2023-08-23 08:08:4748b659577e9341408782b42856e520fcn/a34.117.59.81:443
2023-08-23 00:59:19a74826acd63de8c94d5fb11f2b4f171fVirustotal results 27 / 67 (40.30%) 31.13.93.19:443
2023-08-23 00:59:19a74826acd63de8c94d5fb11f2b4f171fVirustotal results 27 / 67 (40.30%) 34.117.59.81:443
2023-08-22 12:59:250e2a163057a64fd8aa4ab7b36d902989n/a34.117.59.81:443
2023-08-20 13:31:031c5420b9bac5cb2479f5a3b04fbd4e98n/a31.13.71.1:443
2023-08-20 13:31:031c5420b9bac5cb2479f5a3b04fbd4e98n/a34.117.59.81:443
2023-08-19 06:52:5301a6f47ba06057c901b2ff46e627eb76Virustotal results 52 / 71 (73.24%) 34.117.59.81:443
2023-08-18 06:16:241c621872b028fe5df62717468223cfccn/a34.117.59.81:443
2023-08-15 01:44:272d129bcd946b023b3053566875691afcn/a31.13.65.1:443
2023-08-15 01:44:262d129bcd946b023b3053566875691afcn/a199.127.61.113:443
2023-08-15 01:44:242d129bcd946b023b3053566875691afcn/a34.117.59.81:443
2023-08-15 01:38:48390a9bbeb8a243173259d59cd8830a82n/a199.127.61.113:443
2023-08-15 01:30:2726692882992e5304865c33adfe6ec249Virustotal results 59 / 71 (83.10%) 199.127.61.113:443
2023-08-14 15:47:33343ee92aa9680bc8c1e2028d5ac59fbaVirustotal results 26 / 71 (36.62%) 104.16.124.96:443
2023-08-14 15:47:32343ee92aa9680bc8c1e2028d5ac59fbaVirustotal results 26 / 71 (36.62%) 34.117.59.81:443
2023-08-14 15:47:32343ee92aa9680bc8c1e2028d5ac59fbaVirustotal results 26 / 71 (36.62%) 31.13.65.1:443
2023-08-14 15:01:0032af4ec206843c0a06cb98a2b74b3c62Virustotal results 56 / 71 (78.87%) 104.16.123.96:443
2023-08-13 20:33:1247091e38499776c01973949b6d4e9435Virustotal results 52 / 70 (74.29%) 31.13.65.1:443
2023-08-13 20:33:1147091e38499776c01973949b6d4e9435Virustotal results 52 / 70 (74.29%) 34.117.59.81:443
2023-08-13 13:41:445a6fe92ace7eec082e783d08db10f6a8n/a34.117.59.81:443
2023-08-13 13:29:115a7319cd7a7b0195351e8b3b25384a37Virustotal results 53 / 71 (74.65%) 31.13.65.1:443
2023-08-13 13:29:095a7319cd7a7b0195351e8b3b25384a37Virustotal results 53 / 71 (74.65%) 34.117.59.81:443
2023-08-12 07:47:04a09173b31369a355c7075b5b1535b89en/a34.117.59.81:443
2023-08-12 06:48:1639d5eb69bf72ee97d0d43fbca4b041b1n/a34.117.59.81:443
2023-08-11 18:02:290e82718fc5e7827c4ba35f056b79ce4dVirustotal results 50 / 70 (71.43%) 34.117.59.81:443
2023-08-11 16:26:321ccc3392367d9d89dd8ca093da5a1d8eVirustotal results 54 / 71 (76.06%) 34.117.59.81:443
2023-08-11 12:07:19ad3136ff82e37af9702002b8bb544326n/a34.117.59.81:443
2023-08-11 03:35:0713bffaa1597d854d8f09d7ec07ff7e89n/a34.117.59.81:443
2023-08-10 18:13:13139dc9f4df204cefe1b855923b4d9962Virustotal results 42 / 71 (59.15%) 34.117.59.81:443
2023-08-10 16:39:185b0b1dafc0b3e583a94c83c4d85a8097n/a34.117.59.81:443
2023-08-10 16:07:2380c1a30b95c430213ce5ae5b4b2387c4n/a34.117.59.81:443
2023-08-10 11:16:241fc96ae74c0fd64311392fe46f153aacVirustotal results 38 / 71 (53.52%) 34.117.59.81:443
2023-08-10 08:34:345712fece4bc8e3ce3f1971ccc73a88e0n/a34.117.59.81:443
2023-08-10 06:10:0207329f062daa9f4723d9f244703a3df8Virustotal results 31 / 67 (46.27%) 34.117.59.81:443
2023-08-10 01:17:161dfda2e7d424c84e0a91e418add4302cVirustotal results 48 / 71 (67.61%) 31.13.65.1:443
2023-08-10 01:17:151dfda2e7d424c84e0a91e418add4302cVirustotal results 48 / 71 (67.61%) 34.117.59.81:443
2023-08-10 01:16:29b8985515a77766953d4ca2beac757c1an/a34.117.59.81:443
2023-08-10 00:58:232076151010d1a39cd4e0f2fd1d918bf1Virustotal results 41 / 70 (58.57%) 34.117.59.81:443
2023-08-09 19:58:442829c1b0b18e550956c60fb4fc2b3140Virustotal results 55 / 71 (77.46%) 34.117.59.81:443
2023-08-09 16:05:2543a2b7af6527a42f54fb297f4b3bb4a7n/a34.117.59.81:443
2023-08-09 14:37:08a85367af3d5500fc3aaf9bedb13e05can/a34.117.59.81:443
2023-08-09 10:39:191da6683c942be143550c91e89ce246b9n/a34.117.59.81:443
2023-08-09 08:36:03ab4eec14eac5e81b6b87f321f759216cn/a34.117.59.81:443
2023-08-09 03:50:30aa4b82a8b4d1f969729ce10329e44c7cn/a34.117.59.81:443
2023-08-09 02:36:20070d01f59974e63baf0ccd77226da049n/a34.117.59.81:443
2023-08-09 00:21:000ce5c6cba3ddb4a67711ad53709baeb8Virustotal results 28 / 71 (39.44%) 34.117.59.81:443
2023-08-09 00:21:000ce5c6cba3ddb4a67711ad53709baeb8Virustotal results 28 / 71 (39.44%) 31.13.65.1:443
2023-08-08 23:30:37a99be2701daa6099ab7512ba78df27d0n/a34.117.59.81:443
2023-08-08 17:57:01d73df70fe2615db913959e1fe00af53cVirustotal results 26 / 71 (36.62%) 34.117.59.81:443
2023-08-08 08:16:22a0ecbfe212ffa774972c1dc7aa0647can/a34.117.59.81:443
2023-08-08 08:16:21a0ecbfe212ffa774972c1dc7aa0647can/a31.13.66.4:443
2023-08-08 05:56:52c5612383b2778960ece7f39c71707ac4Virustotal results 32 / 71 (45.07%) 34.117.59.81:443
2023-08-07 16:15:4370089acd5cf77f1df9377de46be84b51n/a34.117.59.81:443
2023-08-07 15:50:3228dd21fe22ccd6f3e662d5f519b16777n/a34.117.59.81:443
2023-08-07 13:16:51887a7d2f5ac08c40c764b3902e2ccccen/a34.117.59.81:443
2023-08-07 10:02:56318adc037750445f6303a2ddbf347d6bn/a34.117.59.81:443
2023-08-07 07:44:1104bd69514cd5f6eceb7657c960a629f7n/a34.117.59.81:443
2023-08-07 07:44:1004bd69514cd5f6eceb7657c960a629f7n/a31.13.65.1:443
2023-08-07 07:32:087a5516acf160121582c038420e0bf01fVirustotal results 34 / 71 (47.89%) 34.117.59.81:443
2023-08-07 07:18:54046ca0cee23915bf236e53d0aa03b66fVirustotal results 7 / 71 (9.86%) 34.117.59.81:443
2023-08-07 07:18:42046ca0cee23915bf236e53d0aa03b66fVirustotal results 7 / 71 (9.86%) 31.13.65.1:443
2023-08-07 00:15:082632361a364ea874d2f8b43718164441n/a34.117.59.81:443
2023-08-06 22:11:11e4f6273b9485bcc92958aeebae874db5Virustotal results 32 / 71 (45.07%) 34.117.59.81:443
2023-08-06 18:53:321dbb3e1e62476c3a1e33cdfc5e655980n/a34.117.59.81:443
2023-08-06 18:53:311dbb3e1e62476c3a1e33cdfc5e655980n/a31.13.65.1:443
2023-08-06 14:55:531226c2bdbf4201fa4859496159409577n/a31.13.66.4:443
2023-08-06 14:55:531226c2bdbf4201fa4859496159409577n/a34.117.59.81:443
2023-08-06 09:59:272e552f0035ea81fb89d32ad7c8693728n/a34.117.59.81:443
2023-08-06 09:29:594885123cfca49055d84cb7a72ec9a0e7n/a34.117.59.81:443
2023-08-06 08:20:155580739c4dba6ef4b695646bd5195ca7Virustotal results 27 / 71 (38.03%) 34.117.59.81:443
2023-08-06 01:59:06e496ca8a96b805b1a0eabdd5aebbd961Virustotal results 28 / 71 (39.44%) 34.117.59.81:443
2023-08-05 04:35:391b7b13aa62a57b0116dfa39140c3cc9fVirustotal results 38 / 70 (54.29%) 34.117.59.81:443
2023-08-05 03:23:430c3a7027b781d086d2cf16ca6d676c77Virustotal results 33 / 71 (46.48%) 34.117.59.81:443
2023-08-05 02:04:2942551cf8c4cc370e4988a0023a1beb77Virustotal results 35 / 69 (50.72%) 31.13.65.1:443
2023-08-05 02:04:2842551cf8c4cc370e4988a0023a1beb77Virustotal results 35 / 69 (50.72%) 34.117.59.81:443
2023-08-05 02:00:322e16b1f1fe9a190df871ad643d54ef82Virustotal results 51 / 68 (75.00%) 34.117.59.81:443
2023-08-04 23:36:3213d4fd215f1d78355e79f51d30e50bfdVirustotal results 59 / 71 (83.10%) 34.117.59.81:443
2023-08-04 19:11:15246443d086ce661f391fbc6f00b26b1dVirustotal results 55 / 70 (78.57%) 31.13.65.1:443
2023-08-04 19:11:14246443d086ce661f391fbc6f00b26b1dVirustotal results 55 / 70 (78.57%) 34.117.59.81:443
2023-08-04 18:14:55b1a9da59f749d1214f9a40ac038b4c63Virustotal results 29 / 71 (40.85%) 34.117.59.81:443
2023-08-04 18:14:54b1a9da59f749d1214f9a40ac038b4c63Virustotal results 29 / 71 (40.85%) 31.13.65.1:443
2023-08-04 14:45:54c63a1bf9ed87fcf7a082704bfc045b68n/a34.117.59.81:443
2023-08-04 10:25:24551bfdbc5e88ea99b1034bad04cdbbefn/a34.117.59.81:443
2023-08-04 08:13:3984511fe40f93b11987e83e3310b18863n/a34.117.59.81:443
2023-08-04 08:08:00eacc99caa4524c06c0c74bb1d41598fcn/a34.117.59.81:443

# of entries: 100 (max: 100)