JA3 Fingerprints

You can find further information about the JA3 fingerprint 0cc1e84568e471aa1d62ad4158ade6b5, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:0cc1e84568e471aa1d62ad4158ade6b5
First seen:2018-06-24 10:50:47 UTC
Last seen:2021-06-21 02:35:57 UTC
Status:Blacklisted
Malware samples:253
Destination IPs:168
Malware:Tofsee -
Listing date:2018-11-14 12:52:01

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-12-06 00:00:0711b1ba039039eac7710dc96b06c01e89Virustotal results 14 / 70 (20.00%) 104.99.233.107:443
2023-12-06 00:00:0611b1ba039039eac7710dc96b06c01e89Virustotal results 14 / 70 (20.00%) 15.197.228.107:443
2023-12-05 09:11:30a1f70d300d2b55c87eb9e810e5e586d9n/a3.33.231.75:443
2023-12-05 09:11:30a1f70d300d2b55c87eb9e810e5e586d9n/a23.214.205.201:443
2023-11-30 08:51:45a840aaf44ce6a385ba3a0f9b23ba657dn/a3.33.231.75:443
2023-11-30 08:51:45a840aaf44ce6a385ba3a0f9b23ba657dn/a23.36.225.100:443
2023-11-29 16:25:01af99e2dbbbc7585907f9a280e9639ed9n/a95.100.49.56:443
2023-11-29 16:25:01af99e2dbbbc7585907f9a280e9639ed9n/a15.197.228.107:443
2023-11-29 14:59:17a5beb1751cfa03f572bf2b5522b56070n/a20.190.151.134:443
2023-11-29 14:59:17a5beb1751cfa03f572bf2b5522b56070n/a52.96.165.98:443
2023-11-29 14:59:16a5beb1751cfa03f572bf2b5522b56070n/a13.107.246.71:443
2023-11-29 14:59:15a5beb1751cfa03f572bf2b5522b56070n/a52.96.190.194:443
2023-11-29 14:59:14a5beb1751cfa03f572bf2b5522b56070n/a52.96.44.162:443
2023-11-29 14:59:13a5beb1751cfa03f572bf2b5522b56070n/a13.107.42.22:443
2023-11-29 04:56:0120205265b84efb39bfbd5d616ac20180Virustotal results 54 / 68 (79.41%) 52.96.36.82:443
2023-11-28 17:05:40d8bb7b0c8fef217cb7331fef598af2f0n/a52.96.226.130:443
2023-11-28 17:05:40d8bb7b0c8fef217cb7331fef598af2f0n/a13.107.42.22:443
2023-11-28 17:05:40d8bb7b0c8fef217cb7331fef598af2f0n/a52.96.109.178:443
2023-11-28 17:05:39d8bb7b0c8fef217cb7331fef598af2f0n/a20.190.190.131:443
2023-11-28 17:05:39d8bb7b0c8fef217cb7331fef598af2f0n/a13.107.246.71:443
2023-11-28 07:17:270d4f6d35fa82f7d29105672c7d80f41bVirustotal results 59 / 72 (81.94%) 40.97.222.194:443
2023-11-28 07:17:270d4f6d35fa82f7d29105672c7d80f41bVirustotal results 59 / 72 (81.94%) 20.190.151.8:443
2023-11-28 07:17:260d4f6d35fa82f7d29105672c7d80f41bVirustotal results 59 / 72 (81.94%) 52.96.64.226:443
2023-11-28 07:17:250d4f6d35fa82f7d29105672c7d80f41bVirustotal results 59 / 72 (81.94%) 52.96.166.162:443
2023-11-28 07:17:240d4f6d35fa82f7d29105672c7d80f41bVirustotal results 59 / 72 (81.94%) 13.107.246.71:443
2023-11-28 07:17:240d4f6d35fa82f7d29105672c7d80f41bVirustotal results 59 / 72 (81.94%) 13.107.42.22:443
2023-11-28 07:17:240d4f6d35fa82f7d29105672c7d80f41bVirustotal results 59 / 72 (81.94%) 20.190.155.1:443
2023-11-27 21:24:167b28688ac56b2ff49df79f92867f68c7n/a15.197.228.107:443
2023-11-27 21:24:167b28688ac56b2ff49df79f92867f68c7n/a104.99.233.107:443
2023-11-27 12:24:17aeb1a624aebfa0e25989103fc938fd65n/a23.35.228.223:443
2023-11-27 12:24:17aeb1a624aebfa0e25989103fc938fd65n/a15.197.228.107:443
2023-11-26 05:53:29150b60138bf11e0a1c2afb87bb47c692n/a184.86.80.163:443
2023-11-26 05:53:28150b60138bf11e0a1c2afb87bb47c692n/a3.33.231.75:443
2023-11-26 03:17:1100e42aa337c7d6b7ab3fb2fa6b6d5028n/a193.246.8.224:443
2023-11-26 03:17:1000e42aa337c7d6b7ab3fb2fa6b6d5028n/a3.33.231.75:443
2023-11-24 12:00:4753f8657d7bf1532f24e91b1edf788850n/a15.197.228.107:443
2023-11-24 12:00:4653f8657d7bf1532f24e91b1edf788850n/a2.23.221.99:443
2023-11-22 04:08:331a3b446bbc635de45ea1e0af3448107an/a3.33.231.75:443
2023-11-22 04:08:321a3b446bbc635de45ea1e0af3448107an/a104.123.44.196:443
2023-11-21 21:55:22b7a05b11d524985088dfe533abaab960n/a3.33.231.75:443
2023-11-21 21:55:22b7a05b11d524985088dfe533abaab960n/a193.246.8.224:443
2023-11-21 20:38:48a72bed17ee0e06d6944bf405636b23b7n/a193.246.8.224:443
2023-11-21 20:38:47a72bed17ee0e06d6944bf405636b23b7n/a15.197.228.107:443
2023-11-21 03:13:354ae92c9bf6026ed44b0af84ad268626en/a2.16.13.139:443
2023-11-21 03:13:354ae92c9bf6026ed44b0af84ad268626en/a3.33.231.75:443
2023-11-20 21:32:530260e514332826d9816d0c89dc7b194bn/a2.16.13.139:443
2023-11-20 21:32:530260e514332826d9816d0c89dc7b194bn/a3.33.231.75:443
2023-11-17 06:50:59240ba260847f22bfd00c7a3d2a9f6425n/a15.197.228.107:443
2023-11-17 06:50:58240ba260847f22bfd00c7a3d2a9f6425n/a95.100.49.56:443
2023-11-13 01:06:3068cf78167cbb91a20f8a72264278eb11Virustotal results 55 / 72 (76.39%) 20.190.155.2:443
2023-11-13 01:06:3068cf78167cbb91a20f8a72264278eb11Virustotal results 55 / 72 (76.39%) 52.96.79.18:443
2023-11-11 13:28:25adbe169e20e0dbadd2bd03a3ac6e595bn/a15.197.228.107:443
2023-11-11 13:28:25adbe169e20e0dbadd2bd03a3ac6e595bn/a2.20.93.176:443
2023-11-10 20:36:10b6ecf81a16fe3360a74a9af0409f505dn/a193.246.8.224:443
2023-11-10 20:36:10b6ecf81a16fe3360a74a9af0409f505dn/a15.197.228.107:443
2023-11-10 20:36:10b6ecf81a16fe3360a74a9af0409f505dn/a193.246.8.224:443
2023-11-10 20:36:10b6ecf81a16fe3360a74a9af0409f505dn/a15.197.228.107:443
2023-11-09 09:20:51a248ebd8b8c2d0640a3b1539fa729809n/a13.248.190.80:443
2023-11-08 13:13:14a74b043f4880139d235e7fffeebed212n/a152.199.23.214:443
2023-11-08 10:30:31a07564e9e4ee87ed9572b4d10ac5b69fn/a3.33.231.75:443
2023-11-08 10:30:31a07564e9e4ee87ed9572b4d10ac5b69fn/a193.246.8.224:443
2023-10-31 14:33:34a9b000e72a0a40a7b082c6927663186bn/a3.33.231.75:443
2023-10-29 05:32:172b04581398ea6ea86d234120dfd4657dn/a104.123.44.196:443
2023-10-29 05:32:162b04581398ea6ea86d234120dfd4657dn/a3.33.231.75:443
2023-10-24 15:03:14c99b0c227ed5d1e38d8d7a1ead87bb7dn/a13.107.42.22:443
2023-10-24 15:03:14c99b0c227ed5d1e38d8d7a1ead87bb7dn/a52.96.79.66:443
2023-10-24 15:03:13c99b0c227ed5d1e38d8d7a1ead87bb7dn/a20.190.155.65:443
2023-10-23 03:13:14150ba3e844404574de185c1631e9908fVirustotal results 14 / 71 (19.72%) 23.35.228.223:443
2023-10-23 03:13:14150ba3e844404574de185c1631e9908fVirustotal results 14 / 71 (19.72%) 3.33.231.75:443
2023-10-19 18:09:33b8cd801b020af9b681c2bb7b21d7fcb3n/a20.190.151.68:443
2023-10-19 18:09:32b8cd801b020af9b681c2bb7b21d7fcb3n/a13.107.42.22:443
2023-10-19 18:09:32b8cd801b020af9b681c2bb7b21d7fcb3n/a13.107.253.71:443
2023-10-19 18:09:31b8cd801b020af9b681c2bb7b21d7fcb3n/a52.96.201.114:443
2023-10-19 15:08:48a92295d0720c381c3aaf3b2eb258e4b4n/a193.246.8.224:443
2023-10-19 15:08:48a92295d0720c381c3aaf3b2eb258e4b4n/a15.197.228.107:443
2023-10-19 13:41:37abaf4845c5e339c4d3e8580b5746465bn/a23.54.112.231:443
2023-10-19 13:41:36abaf4845c5e339c4d3e8580b5746465bn/a15.197.228.107:443
2023-10-18 14:49:42ab9a4a71a62b0ec0eab1a4b3d95692e9n/a3.33.231.75:443
2023-10-18 14:49:42ab9a4a71a62b0ec0eab1a4b3d95692e9n/a193.246.8.224:443
2023-10-14 10:39:290945ee1783068290b06c483868964c49n/a15.197.228.107:443
2023-10-14 10:39:290945ee1783068290b06c483868964c49n/a23.54.112.231:443
2023-10-14 06:47:3714ac0df2c1d3823f331e3979d1fc8c9bVirustotal results 12 / 70 (17.14%) 3.33.231.75:443
2023-10-14 06:47:3714ac0df2c1d3823f331e3979d1fc8c9bVirustotal results 12 / 70 (17.14%) 23.54.112.231:443
2023-10-07 13:22:37b0f4b26dd16d398b506b72cef270abfan/a15.197.228.107:443
2023-10-07 13:22:36b0f4b26dd16d398b506b72cef270abfan/a193.246.8.224:443
2023-10-07 03:11:061c50d3d2e177c9a36629d375f360050dn/a3.33.231.75:443
2023-10-07 03:11:061c50d3d2e177c9a36629d375f360050dn/a193.246.8.224:443
2023-10-03 03:00:061a589d173940a53cf562ea7693fa55c3n/a15.197.228.107:443
2023-10-03 03:00:051a589d173940a53cf562ea7693fa55c3n/a23.35.228.223:443
2023-10-01 05:28:48272b09730e5e07d65ce2bc734efe35dan/a104.123.44.196:443
2023-10-01 05:28:48272b09730e5e07d65ce2bc734efe35dan/a15.197.228.107:443
2023-09-30 22:53:4504ead5197615885c60249f607c5956dbVirustotal results 14 / 70 (20.00%) 15.197.228.107:443
2023-09-30 22:53:4504ead5197615885c60249f607c5956dbVirustotal results 14 / 70 (20.00%) 104.123.44.196:443
2023-09-30 20:46:45018c033e120dbff74a5396afa653e5c9Virustotal results 16 / 71 (22.54%) 3.33.231.75:443
2023-09-30 20:46:45018c033e120dbff74a5396afa653e5c9Virustotal results 16 / 71 (22.54%) 193.246.8.224:443
2023-09-30 13:30:38c6ba16b411dbc6cd79ffd603d73f9affn/a15.197.228.107:443
2023-09-29 01:23:360e36edcf7cec798c7f1f9a49ee0de5e6Virustotal results 15 / 71 (21.13%) 3.33.231.75:443
2023-09-29 01:23:350e36edcf7cec798c7f1f9a49ee0de5e6Virustotal results 15 / 71 (21.13%) 104.123.44.196:443
2023-09-26 16:26:03a7044e73ba7916dd1ada629115938153n/a193.246.8.224:443
2023-09-26 16:26:03a7044e73ba7916dd1ada629115938153n/a15.197.228.107:443

# of entries: 100 (max: 100)