JA3 Fingerprints

You can find further information about the JA3 fingerprint 17fd49722f8d11f3d76dce84f8e099a7, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:17fd49722f8d11f3d76dce84f8e099a7
First seen:2018-03-19 23:02:27 UTC
Last seen:2019-11-13 21:11:31 UTC
Status:Blacklisted
Malware samples:1'332
Destination IPs:522
Malware:Tofsee -
Listing date:2018-11-14 12:35:06

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-11-13 21:11:31ad673b1b0f2a535c7dab1019946f5639n/a54.83.174.68:443
2019-11-13 21:11:31ad673b1b0f2a535c7dab1019946f5639n/a54.84.168.59:443
2019-11-12 10:51:508f3cb58e5c4844ba85f4427841972422n/a52.34.249.83:443
2019-11-12 10:51:508f3cb58e5c4844ba85f4427841972422n/a92.122.109.224:443
2019-11-12 10:47:55c73c3944ced1061095d27380ef103bc3n/a35.162.34.220:443
2019-11-12 10:42:122d3b83c68c84691d5cb39574a5b4a31bn/a92.122.109.224:443
2019-11-12 10:42:122d3b83c68c84691d5cb39574a5b4a31bn/a52.34.249.83:443
2019-11-12 10:42:102d3b83c68c84691d5cb39574a5b4a31bn/a52.25.231.130:443
2019-11-12 10:42:082d3b83c68c84691d5cb39574a5b4a31bn/a151.101.86.167:443
2019-11-12 10:42:082d3b83c68c84691d5cb39574a5b4a31bn/a35.162.34.220:443
2019-11-12 10:28:1493561518138f7493799dab6cb97bbd18n/a92.122.109.224:443
2019-11-12 10:28:1493561518138f7493799dab6cb97bbd18n/a54.149.30.150:443
2019-11-12 10:25:056c7a3b42ffc9d81e72e82bf3f9be385bVirustotal results 33 / 66 (50.00%) 3.91.127.16:443
2019-11-12 10:25:046c7a3b42ffc9d81e72e82bf3f9be385bVirustotal results 33 / 66 (50.00%) 54.85.27.129:443
2019-11-12 10:19:0082dab3c57a761832a33fc1a43d8968a8n/a95.100.190.29:443
2019-11-12 10:10:051209ac4b347d1d5085f809b9a94c3d1bn/a52.34.249.83:443
2019-11-12 10:02:47d054e92b4a7c5d295e3d537caea6918dn/a35.162.34.220:443
2019-11-12 10:02:47d054e92b4a7c5d295e3d537caea6918dn/a52.34.249.83:443
2019-11-12 10:00:488f133675346f55e345c67559289604fcn/a92.122.109.224:443
2019-11-12 09:58:06f0a78c809e57a6f8767af1bb05427561n/a52.25.231.130:443
2019-11-12 09:58:05f0a78c809e57a6f8767af1bb05427561n/a35.162.34.220:443
2019-11-12 09:58:05f0a78c809e57a6f8767af1bb05427561n/a151.101.86.167:443
2019-11-12 09:58:05f0a78c809e57a6f8767af1bb05427561n/a95.100.190.29:443
2019-11-12 09:58:05f0a78c809e57a6f8767af1bb05427561n/a151.101.86.214:443
2019-11-12 09:58:05f0a78c809e57a6f8767af1bb05427561n/a52.34.249.83:443
2019-11-12 09:56:100f17c767122d0554d25ada487a699096n/a35.162.34.220:443
2019-11-12 09:56:100f17c767122d0554d25ada487a699096n/a52.34.249.83:443
2019-11-12 09:56:06ce9eed351b36d041ec3cb4e44a8e93fdn/a52.34.249.83:443
2019-11-12 09:56:05ce9eed351b36d041ec3cb4e44a8e93fdn/a52.25.231.130:443
2019-11-12 09:48:20cd1ff55caa481d7bc0529be30c4eeccen/a92.122.109.224:443
2019-11-12 09:39:58db4896ada9e30f65ac22ac05638c9638n/a92.122.109.224:443
2019-11-12 09:35:5610c8d1145089b68294ab18c7710c1af5n/a52.25.231.130:443
2019-11-12 09:35:5410c8d1145089b68294ab18c7710c1af5n/a52.34.249.83:443
2019-11-12 09:35:5410c8d1145089b68294ab18c7710c1af5n/a35.162.34.220:443
2019-11-12 07:57:020f4b50c8c441f76d66adeebe9644621dn/a35.162.34.220:443
2019-11-12 07:57:020f4b50c8c441f76d66adeebe9644621dn/a52.34.249.83:443
2019-11-12 07:57:020f4b50c8c441f76d66adeebe9644621dn/a52.25.231.130:443
2019-11-10 12:22:585b9e6ed5334e7cdd296822be4bfd65f5Virustotal results 35 / 72 (48.61%) 52.34.249.83:443
2019-11-10 12:22:585b9e6ed5334e7cdd296822be4bfd65f5Virustotal results 35 / 72 (48.61%) 35.162.34.220:443
2019-11-08 17:40:50c6d0b57a35970df2a386e27459fd3b35Virustotal results 53 / 70 (75.71%) 34.197.232.232:443
2019-11-08 17:40:49c6d0b57a35970df2a386e27459fd3b35Virustotal results 53 / 70 (75.71%) 18.204.62.235:443
2019-11-08 17:40:49c6d0b57a35970df2a386e27459fd3b35Virustotal results 53 / 70 (75.71%) 52.201.105.192:443
2019-11-08 17:40:49c6d0b57a35970df2a386e27459fd3b35Virustotal results 53 / 70 (75.71%) 35.162.34.220:443
2019-11-08 00:39:26c8eeb2e2458c9ebb67015a72cb1e73a0Virustotal results 36 / 70 (51.43%) 159.53.85.195:443
2019-11-08 00:39:26c8eeb2e2458c9ebb67015a72cb1e73a0Virustotal results 36 / 70 (51.43%) 184.86.52.142:443
2019-11-08 00:39:26c8eeb2e2458c9ebb67015a72cb1e73a0Virustotal results 36 / 70 (51.43%) 159.53.42.91:443
2019-11-07 21:40:596350624b66131e9d765a49d767e90c85Virustotal results 29 / 70 (41.43%) 159.53.44.91:443
2019-11-07 21:40:586350624b66131e9d765a49d767e90c85Virustotal results 29 / 70 (41.43%) 159.53.85.195:443
2019-11-07 21:40:586350624b66131e9d765a49d767e90c85Virustotal results 29 / 70 (41.43%) 159.53.42.91:443
2019-11-07 21:40:576350624b66131e9d765a49d767e90c85Virustotal results 29 / 70 (41.43%) 159.53.74.122:443
2019-11-07 20:05:48aa1134e88d0118a445ea5871eabf01d7Virustotal results 37 / 71 (52.11%) 18.204.62.235:443
2019-11-07 20:05:48aa1134e88d0118a445ea5871eabf01d7Virustotal results 37 / 71 (52.11%) 34.197.232.232:443
2019-11-07 20:05:47aa1134e88d0118a445ea5871eabf01d7Virustotal results 37 / 71 (52.11%) 52.7.70.230:443
2019-11-07 12:46:14ad6fa5556d2eda02385d4ae6fc4f860cn/a35.162.34.220:443
2019-11-07 12:46:12ad6fa5556d2eda02385d4ae6fc4f860cn/a52.25.231.130:443
2019-11-07 12:33:26ae2d5347e696874b384f8654d6266f8an/a54.84.168.59:443
2019-11-07 12:33:24ae2d5347e696874b384f8654d6266f8an/a3.225.52.92:443
2019-11-07 12:33:24ae2d5347e696874b384f8654d6266f8an/a52.34.249.83:443
2019-11-07 12:33:22ae2d5347e696874b384f8654d6266f8an/a3.91.127.16:443
2019-11-07 12:24:506025587b3c53525e44e0380d84e53aa7n/a35.162.34.220:443
2019-11-07 12:04:164c014910d73b76c54dd5293e061b9048n/a52.5.242.147:443
2019-11-07 12:04:164c014910d73b76c54dd5293e061b9048n/a3.91.127.16:443
2019-11-07 12:04:164c014910d73b76c54dd5293e061b9048n/a52.34.249.83:443
2019-11-07 12:04:164c014910d73b76c54dd5293e061b9048n/a3.222.111.160:443
2019-11-07 12:04:154c014910d73b76c54dd5293e061b9048n/a52.203.26.225:443
2019-11-07 11:58:4392f7135ce083900d69685821b0888591n/a35.162.34.220:443
2019-11-07 06:27:02f048bb9072ef1736dcfc47e771699d2aVirustotal results 51 / 71 (71.83%) 54.85.27.129:443
2019-11-06 14:00:2661d807a4cede6eacdd4e713188cd6ae3Virustotal results 53 / 70 (75.71%) 52.201.105.192:443
2019-11-06 09:18:46a587c4521dc2056c4a4d8ab009247d66n/a3.211.79.125:443
2019-11-06 09:18:45a587c4521dc2056c4a4d8ab009247d66n/a52.203.26.225:443
2019-11-06 09:06:524e1f01d117e57f721576f6554344c4c3n/a52.202.24.175:443
2019-11-05 21:15:1727c57a82a0e759721f48aae98754e171Virustotal results 31 / 63 (49.21%) 52.25.231.130:443
2019-11-05 21:15:1527c57a82a0e759721f48aae98754e171Virustotal results 31 / 63 (49.21%) 52.34.249.83:443
2019-11-04 16:26:131e796bb4e1a1cee438e3771e9bc5bca2Virustotal results 33 / 69 (47.83%) 54.174.231.240:443
2019-11-04 12:47:58dd09a3d8e7f1d24231f4b0ea69168084n/a216.98.48.226:443
2019-11-04 12:47:4659dcc7c0ade4097c1311a59b424a2822n/a216.98.48.226:443
2019-11-04 04:06:271ea872b960829db349e27cef3c366f11Virustotal results 24 / 69 (34.78%) 52.34.249.83:443
2019-11-04 01:32:496aa006a4bb272ad1ff73a4fe700d6322n/a35.162.34.220:443
2019-11-04 00:25:016b640f0359620b6fd2e1502afa891ddaVirustotal results 24 / 70 (34.29%) 52.25.231.130:443
2019-11-04 00:25:016b640f0359620b6fd2e1502afa891ddaVirustotal results 24 / 70 (34.29%) 35.162.34.220:443
2019-11-04 00:25:016b640f0359620b6fd2e1502afa891ddaVirustotal results 24 / 70 (34.29%) 52.34.249.83:443
2019-11-03 21:13:2042de00e7372eab50e9f1f7b4feed2ad4Virustotal results 25 / 69 (36.23%) 52.34.249.83:443
2019-11-03 21:13:2042de00e7372eab50e9f1f7b4feed2ad4Virustotal results 25 / 69 (36.23%) 35.162.34.220:443
2019-11-03 21:13:1842de00e7372eab50e9f1f7b4feed2ad4Virustotal results 25 / 69 (36.23%) 52.25.231.130:443
2019-11-03 13:34:39061504a98d4497199e8d49071eb0b712Virustotal results 25 / 70 (35.71%) 52.7.70.230:443
2019-11-03 01:13:12a397c4ff7e1eeb88a8bb0f2e7bac08f5Virustotal results 28 / 71 (39.44%) 52.25.231.130:443
2019-11-03 01:13:11a397c4ff7e1eeb88a8bb0f2e7bac08f5Virustotal results 28 / 71 (39.44%) 52.34.249.83:443
2019-11-02 22:20:44c925f3fd01cfae6eb6bb618b47c4e04fVirustotal results 24 / 70 (34.29%) 35.162.34.220:443
2019-11-02 20:42:5371b2071f7e41ee68b228a460b50d4909Virustotal results 39 / 71 (54.93%) 52.5.242.147:443
2019-11-02 18:34:5805f7a164b90ab970a3434c4b43986e8aVirustotal results 36 / 67 (53.73%) 18.214.135.210:443
2019-11-02 15:37:5203e542e9be9fc85cd55d23eecfe44f89n/a104.16.120.50:443
2019-11-02 11:47:26275441605b370cf594db56c65f4f0ed0Virustotal results 26 / 69 (37.68%) 52.203.26.225:443
2019-11-02 11:41:447e5f6f89a196e816402a5504ac4efa1an/a52.72.78.165:443
2019-11-02 11:41:447e5f6f89a196e816402a5504ac4efa1an/a34.235.219.151:443
2019-11-02 11:41:447e5f6f89a196e816402a5504ac4efa1an/a104.16.119.50:443
2019-11-02 11:41:447e5f6f89a196e816402a5504ac4efa1an/a18.213.144.131:443
2019-11-02 11:41:447e5f6f89a196e816402a5504ac4efa1an/a3.222.111.160:443
2019-11-02 11:36:238a5736f188ec39971e2381d25db8b835n/a52.201.105.192:443
2019-11-02 11:36:238a5736f188ec39971e2381d25db8b835n/a34.224.145.47:443
2019-11-02 11:36:238a5736f188ec39971e2381d25db8b835n/a18.213.144.131:443

# of entries: 100 (max: 100)