JA3 Fingerprints

You can find further information about the JA3 fingerprint 1543a7c46633acf71e8401baccbd0568, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1543a7c46633acf71e8401baccbd0568
First seen:2017-08-08 21:32:28 UTC
Last seen:2020-06-21 12:17:29 UTC
Status:Blacklisted
Malware samples:437
Destination IPs:124
Malware:Tofsee -
Listing date:2018-11-14 12:01:39

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-06-21 12:17:290d568d44161c10aed6109b04e8ffc691Virustotal results 50 / 74 (67.57%) 3.221.245.228:443
2020-03-21 06:04:16a4bf21a69fb30c57ec8688cbd7e3cf89Virustotal results 54 / 73 (73.97%) 52.96.31.2:993
2020-03-13 15:51:1687ddb4a46f4099cf156c9107e4bd3feaVirustotal results 19 / 72 (26.39%) 47.43.26.4:993
2020-03-13 15:51:1287ddb4a46f4099cf156c9107e4bd3feaVirustotal results 19 / 72 (26.39%) 77.238.185.51:993
2020-03-13 15:51:1087ddb4a46f4099cf156c9107e4bd3feaVirustotal results 19 / 72 (26.39%) 217.146.190.234:993
2020-03-13 15:51:0887ddb4a46f4099cf156c9107e4bd3feaVirustotal results 19 / 72 (26.39%) 52.97.133.210:993
2020-03-13 15:51:0887ddb4a46f4099cf156c9107e4bd3feaVirustotal results 19 / 72 (26.39%) 52.97.129.226:993
2020-03-13 15:51:0887ddb4a46f4099cf156c9107e4bd3feaVirustotal results 19 / 72 (26.39%) 188.125.73.109:993
2020-03-13 09:49:43c868debc819139e60a7623828e393bcdVirustotal results 19 / 73 (26.03%) 94.100.180.60:443
2020-03-13 04:41:552e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 172.217.16.211:443
2020-03-13 04:41:362e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 23.92.25.244:443
2020-03-08 12:12:419bcd8aa537fc641cad31f9fdd996f973n/a96.118.129.21:993
2020-03-08 12:12:419bcd8aa537fc641cad31f9fdd996f973n/a96.118.19.5:993
2020-03-08 12:12:419bcd8aa537fc641cad31f9fdd996f973n/a77.238.185.51:993
2020-03-08 12:12:419bcd8aa537fc641cad31f9fdd996f973n/a96.117.82.37:993
2020-03-08 12:12:409bcd8aa537fc641cad31f9fdd996f973n/a146.20.147.247:993
2020-03-08 12:12:409bcd8aa537fc641cad31f9fdd996f973n/a96.117.82.17:993
2020-03-08 12:12:409bcd8aa537fc641cad31f9fdd996f973n/a96.118.130.18:993
2020-03-08 12:12:409bcd8aa537fc641cad31f9fdd996f973n/a96.117.3.128:993
2020-03-08 12:12:409bcd8aa537fc641cad31f9fdd996f973n/a47.43.18.12:993
2020-03-06 19:46:0646c564d7bf821027725ac57fe9038526Virustotal results 34 / 72 (47.22%) 54.163.211.139:443
2020-03-06 19:46:0546c564d7bf821027725ac57fe9038526Virustotal results 34 / 72 (47.22%) 54.145.254.16:443
2020-03-06 10:03:32b8d8d116b02e2cd83a6904d0b77f5400Virustotal results 38 / 73 (52.05%) 67.195.33.121:993
2020-03-06 10:03:32b8d8d116b02e2cd83a6904d0b77f5400Virustotal results 38 / 73 (52.05%) 96.116.224.180:993
2020-03-06 10:03:32b8d8d116b02e2cd83a6904d0b77f5400Virustotal results 38 / 73 (52.05%) 167.206.5.250:993
2020-03-06 10:03:31b8d8d116b02e2cd83a6904d0b77f5400Virustotal results 38 / 73 (52.05%) 96.116.224.178:993
2020-01-25 01:54:31c224da006da02f446249ff5646f3baa4n/a172.217.13.147:443
2019-12-05 08:53:00fbf13b757be560670428923282ce840aVirustotal results 51 / 68 (75.00%) 23.201.245.84:443
2019-12-03 11:11:00c1bdc2da4ad0f87bf472e9491ade8514n/a23.201.245.84:443
2019-12-02 12:42:347e40ead2fe395cfd2ee51f5d195a5c81n/a23.201.245.84:443
2019-11-25 05:48:461df7a6066d592c5464350c803ab113ddVirustotal results 24 / 68 (35.29%) 94.100.180.64:443
2019-11-25 05:48:461df7a6066d592c5464350c803ab113ddVirustotal results 24 / 68 (35.29%) 81.19.78.88:443
2019-11-25 05:48:461df7a6066d592c5464350c803ab113ddVirustotal results 24 / 68 (35.29%) 94.100.180.60:443
2019-11-25 05:48:461df7a6066d592c5464350c803ab113ddVirustotal results 24 / 68 (35.29%) 217.69.139.64:443
2019-11-25 05:48:451df7a6066d592c5464350c803ab113ddVirustotal results 24 / 68 (35.29%) 217.69.139.60:443
2019-08-25 13:48:26e1bb76b153cf117d4d8458d943767458Virustotal results 26 / 69 (37.68%) 200.147.3.221:993
2019-06-24 15:05:139c1f806d943252b0a4f5c0b615b5fd14n/a31.13.86.36:443
2019-06-24 15:05:109c1f806d943252b0a4f5c0b615b5fd14n/a31.13.86.40:443
2019-06-24 12:03:31c934eac36e129d140cbcdfeef5d79bb6n/a31.13.70.40:443
2019-05-08 19:03:22370aa4d58cde78ba7ff63674d7f3a68en/a23.201.248.208:443
2018-07-18 03:24:379a0304da8ba3096123c863a8f6da072dVirustotal results 44/67 (65.67%) 208.83.240.49:443
2018-07-16 19:55:255a090506422531ad0e82901fb9ed381fVirustotal results 40/64 (62.50%) 208.83.240.49:443
2018-07-16 19:55:255a090506422531ad0e82901fb9ed381fVirustotal results 40/64 (62.50%) 199.182.216.166:443
2018-06-28 00:12:39735300e6d74aee8cd4645a72a8310e63Virustotal results 15/69 (21.74%) 2.23.143.113:443
2018-06-28 00:12:39735300e6d74aee8cd4645a72a8310e63Virustotal results 15/69 (21.74%) 2.23.131.93:443
2018-06-24 19:33:05b615ff689101509b760415b534294205Virustotal results 13/68 (19.12%) 104.24.13.102:443
2018-06-24 19:33:05b615ff689101509b760415b534294205Virustotal results 13/68 (19.12%) 208.83.240.49:443
2018-06-24 19:33:05b615ff689101509b760415b534294205Virustotal results 13/68 (19.12%) 62.23.26.24:443
2018-06-24 19:33:05b615ff689101509b760415b534294205Virustotal results 13/68 (19.12%) 62.23.30.26:443
2018-06-24 19:33:05b615ff689101509b760415b534294205Virustotal results 13/68 (19.12%) 208.83.242.62:443
2018-06-24 10:50:47dfc2c1eb453fe2eed4597512fc07d307Virustotal results 43/64 (67.19%) 208.83.240.62:443
2018-06-24 10:50:47dfc2c1eb453fe2eed4597512fc07d307Virustotal results 43/64 (67.19%) 104.24.13.102:443
2018-06-23 11:07:58d50bbfc31a6d843b60130fdbecaf66d1Virustotal results 45/67 (67.16%) 208.83.242.63:443
2018-06-21 18:13:42e3edc355f600ad7431bfc4e2bf656f06Virustotal results 36/68 (52.94%) 208.83.242.63:443
2018-06-20 14:55:50b179524b99b575e5f77cee6207521f13Virustotal results 43/68 (63.24%) 208.83.240.61:443
2018-06-20 13:45:460d95faff19b2d25384a420a5a2963b64Virustotal results 15/65 (23.08%) 208.83.242.49:443
2018-06-19 15:38:4202398e948d5eaee6e5cb09280f665222Virustotal results 44/66 (66.67%) 62.23.26.24:443
2018-06-19 15:38:4202398e948d5eaee6e5cb09280f665222Virustotal results 44/66 (66.67%) 62.23.30.26:443
2018-06-17 07:35:14c8f7f953da091bcf2774a4d69ebabc03Virustotal results 19/68 (27.94%) 2.19.77.81:443
2018-06-17 07:35:14c8f7f953da091bcf2774a4d69ebabc03Virustotal results 19/68 (27.94%) 23.201.250.90:443
2018-06-17 07:35:14c8f7f953da091bcf2774a4d69ebabc03Virustotal results 19/68 (27.94%) 2.19.70.124:443
2018-06-17 07:34:52fb643c69e77e8088cfd258e1592bea1bVirustotal results 48/68 (70.59%) 2.17.227.183:443
2018-06-17 07:34:52fb643c69e77e8088cfd258e1592bea1bVirustotal results 48/68 (70.59%) 88.221.187.62:443
2018-06-17 07:34:52fb643c69e77e8088cfd258e1592bea1bVirustotal results 48/68 (70.59%) 23.45.73.193:443
2018-06-14 18:02:35fd8c4416713a745d1ba166accf24489aVirustotal results 48/68 (70.59%) 208.83.242.61:443
2018-06-14 18:02:35fd8c4416713a745d1ba166accf24489aVirustotal results 48/68 (70.59%) 208.83.240.62:443
2018-06-14 18:02:35fd8c4416713a745d1ba166accf24489aVirustotal results 48/68 (70.59%) 199.182.216.166:443
2018-06-14 18:02:35fd8c4416713a745d1ba166accf24489aVirustotal results 48/68 (70.59%) 208.83.242.62:443
2018-06-14 18:02:35fd8c4416713a745d1ba166accf24489aVirustotal results 48/68 (70.59%) 208.83.240.63:443
2018-06-13 19:21:58af8a502936c9f97991b32989f4ae58d3Virustotal results 48/67 (71.64%) 104.20.64.4:443
2018-06-13 07:32:34b2ff3c3152615f2ebb1b04f4f1912e3dVirustotal results 18/67 (26.87%) 208.83.242.62:443
2018-06-13 07:32:34b2ff3c3152615f2ebb1b04f4f1912e3dVirustotal results 18/67 (26.87%) 199.182.216.166:443
2018-06-13 07:32:34b2ff3c3152615f2ebb1b04f4f1912e3dVirustotal results 18/67 (26.87%) 208.83.240.49:443
2018-06-12 17:19:43bcd473e359b0dce9b3d838603f108ad9n/a208.83.242.49:443
2018-06-11 11:38:38107115c7c2f959b701a6d592a8329953n/a104.20.65.4:443
2018-06-09 18:58:45f8703397b566b99db6f633672e4aa238Virustotal results 49/68 (72.06%) 208.83.242.61:443
2018-06-09 18:58:45f8703397b566b99db6f633672e4aa238Virustotal results 49/68 (72.06%) 23.205.188.162:443
2018-06-09 11:40:0408b5bce1b4510fd3c94d5a5ee1a7716bVirustotal results 36/68 (52.94%) 208.83.240.49:443
2018-06-08 11:30:19a9816735d21b7e5c7cbcd8703d59a28fVirustotal results 20/67 (29.85%) 2.17.227.183:443
2018-06-08 11:30:19a9816735d21b7e5c7cbcd8703d59a28fVirustotal results 20/67 (29.85%) 23.52.56.202:443
2018-06-08 11:30:19a9816735d21b7e5c7cbcd8703d59a28fVirustotal results 20/67 (29.85%) 23.45.73.193:443
2018-06-07 17:43:4921fb84d07afe99eb0811ac15cea76274Virustotal results 41/68 (60.29%) 199.182.216.166:443
2018-06-07 17:43:4921fb84d07afe99eb0811ac15cea76274Virustotal results 41/68 (60.29%) 208.83.240.61:443
2018-06-07 17:43:4921fb84d07afe99eb0811ac15cea76274Virustotal results 41/68 (60.29%) 208.83.240.62:443
2018-06-03 16:30:095b922aaac0ee75c06fb8ec3c7498296bVirustotal results 13/65 (20.00%) 184.31.93.183:443
2018-06-03 16:30:095b922aaac0ee75c06fb8ec3c7498296bVirustotal results 13/65 (20.00%) 208.83.242.49:443
2018-06-03 16:30:095b922aaac0ee75c06fb8ec3c7498296bVirustotal results 13/65 (20.00%) 199.182.216.166:443
2018-06-03 16:30:095b922aaac0ee75c06fb8ec3c7498296bVirustotal results 13/65 (20.00%) 208.83.242.61:443
2018-06-03 09:46:18d6651dfa3f02270bc93cc3c1f6918d17Virustotal results 18/66 (27.27%) 23.43.118.83:443
2018-06-03 09:46:18d6651dfa3f02270bc93cc3c1f6918d17Virustotal results 18/66 (27.27%) 23.43.120.11:443
2018-06-03 09:46:18d6651dfa3f02270bc93cc3c1f6918d17Virustotal results 18/66 (27.27%) 184.31.84.50:443
2018-06-03 02:18:070a6d5427970d2a9ac51dcace66cb56a2Virustotal results 22/66 (33.33%) 208.83.242.49:443
2018-06-03 02:18:070a6d5427970d2a9ac51dcace66cb56a2Virustotal results 22/66 (33.33%) 208.83.240.49:443
2018-06-01 20:03:007ec3ad772c87bd04c113459469c75f6fVirustotal results 45/67 (67.16%) 208.83.242.49:443
2018-06-01 20:03:007ec3ad772c87bd04c113459469c75f6fVirustotal results 45/67 (67.16%) 208.83.240.62:443
2018-06-01 19:58:5215c221c4946177a2944b995061453549Virustotal results 50/66 (75.76%) 208.83.242.62:443
2018-06-01 19:58:5215c221c4946177a2944b995061453549Virustotal results 50/66 (75.76%) 104.20.64.4:443
2018-05-31 18:58:0432f604cabdb91ecd3c9994ae31a3921bVirustotal results 49/68 (72.06%) 104.20.65.4:443
2018-05-31 18:58:0432f604cabdb91ecd3c9994ae31a3921bVirustotal results 49/68 (72.06%) 208.83.242.49:443
2018-05-31 16:16:574419de9cd68502b91acb38214ea4e411Virustotal results 35/66 (53.03%) 208.83.242.61:443

# of entries: 100 (max: 100)