JA3 Fingerprints

You can find further information about the JA3 fingerprint 17fd49722f8d11f3d76dce84f8e099a7, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:17fd49722f8d11f3d76dce84f8e099a7
First seen:2018-03-19 23:02:27 UTC
Last seen:2020-01-19 18:05:19 UTC
Status:Blacklisted
Malware samples:1'459
Destination IPs:587
Malware:Tofsee -
Listing date:2018-11-14 12:35:06

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-01-19 18:05:19b2a328e8578efde7d0ca5c84fa1ac4e0Virustotal results 43 / 72 (59.72%) 54.193.41.29:443
2020-01-19 18:05:19b2a328e8578efde7d0ca5c84fa1ac4e0Virustotal results 43 / 72 (59.72%) 3.210.226.77:443
2020-01-18 13:48:393df8d316815a3db82a63d877b51c1be6n/a104.36.197.214:443
2020-01-18 11:17:565b6ca53d38751b7b533bbf7b3404043dn/a104.36.197.214:443
2020-01-13 10:08:16d72a71cc651da159d6e1717c251929e2Virustotal results 52 / 71 (73.24%) 35.227.224.91:443
2020-01-13 10:08:16d72a71cc651da159d6e1717c251929e2Virustotal results 52 / 71 (73.24%) 35.201.81.34:443
2020-01-13 09:55:447e89fb39e31840ae0ea64f6ecf5df1bfn/a35.201.81.34:443
2020-01-13 09:55:437e89fb39e31840ae0ea64f6ecf5df1bfn/a35.227.224.91:443
2020-01-13 09:46:50490d4e170de875310f46b596a8c63899Virustotal results 40 / 71 (56.34%) 35.227.224.91:443
2020-01-13 09:31:31bc293f0db61c41a6881a74d8af572e32Virustotal results 52 / 71 (73.24%) 35.227.224.91:443
2020-01-13 09:31:30bc293f0db61c41a6881a74d8af572e32Virustotal results 52 / 71 (73.24%) 35.201.81.34:443
2020-01-13 09:16:11747607e64fd8e14473ae6b1ff458fbb0n/a35.227.224.91:443
2020-01-13 09:16:11747607e64fd8e14473ae6b1ff458fbb0n/a35.201.81.34:443
2020-01-13 08:49:40d8132df033a2b470e0013972a42da105n/a35.201.81.34:443
2020-01-13 08:49:40d8132df033a2b470e0013972a42da105n/a35.227.224.91:443
2020-01-12 17:50:03633ef6a38ac1478f017e2ce432d2a30en/a35.227.224.91:443
2020-01-12 17:19:03c12772934cd5e6ffcb0a6b527c723feeVirustotal results 55 / 73 (75.34%) 35.201.81.34:443
2020-01-12 11:54:10243019cfe23fd1dc4a337a724e1f6084n/a35.201.81.34:443
2020-01-12 11:54:10243019cfe23fd1dc4a337a724e1f6084n/a35.227.224.91:443
2020-01-11 22:42:43be1d6dcc7ae176ecd3446fe50b38a1f9n/a35.201.81.34:443
2020-01-11 16:40:17fde2cd285b8c0ad5cb609b447ec65698n/a17.32.220.168:443
2020-01-11 16:40:16fde2cd285b8c0ad5cb609b447ec65698n/a17.151.143.190:443
2020-01-11 16:40:15fde2cd285b8c0ad5cb609b447ec65698n/a17.32.220.182:443
2020-01-11 16:40:15fde2cd285b8c0ad5cb609b447ec65698n/a17.32.194.7:443
2020-01-11 16:40:15fde2cd285b8c0ad5cb609b447ec65698n/a104.111.215.87:443
2020-01-08 07:26:49d2d9b5fec0a1836d83f8faaa0e4dea44n/a35.227.224.91:443
2020-01-07 20:14:20a14c64a3fa84555ccbf50511be1b5ecdVirustotal results 48 / 70 (68.57%) 35.201.81.34:443
2020-01-07 20:14:09a14c64a3fa84555ccbf50511be1b5ecdVirustotal results 48 / 70 (68.57%) 35.227.224.91:443
2020-01-07 03:52:23a4c82860e96910d9ba9fea34c652aea3n/a3.221.225.6:443
2020-01-07 02:26:08a49869dff1d93f0f5db1856195674ddcn/a3.221.225.6:443
2020-01-07 00:07:32a0bfac3acc568ccef33df1b71e2fa987Virustotal results 52 / 71 (73.24%) 34.224.145.47:443
2020-01-06 09:25:51abbec4fd51260b9d8308a4c865a02481Virustotal results 56 / 73 (76.71%) 18.211.245.175:443
2020-01-02 05:46:012e87df2d6de0dc91b89e0c8abfb27d3an/a35.201.81.34:443
2020-01-01 05:02:51104d99c37763e32a2205dde44965904dn/a52.4.248.161:443
2020-01-01 05:02:51104d99c37763e32a2205dde44965904dn/a52.205.11.95:443
2019-12-31 19:08:58776577f4bb6388114da48a3d50eab56aVirustotal results 48 / 72 (66.67%) 54.152.250.93:443
2019-12-31 19:08:58776577f4bb6388114da48a3d50eab56aVirustotal results 48 / 72 (66.67%) 52.21.71.203:443
2019-12-31 19:08:58776577f4bb6388114da48a3d50eab56aVirustotal results 48 / 72 (66.67%) 34.231.104.104:443
2019-12-31 19:08:58776577f4bb6388114da48a3d50eab56aVirustotal results 48 / 72 (66.67%) 34.237.229.215:443
2019-12-30 15:47:25d6e47c6cd4c535db99b89593f8c4f9b1Virustotal results 44 / 73 (60.27%) 184.87.184.93:443
2019-12-29 12:50:01d974e7a62ea0f979f77235078d77fe30n/a3.222.111.160:443
2019-12-29 12:50:00d974e7a62ea0f979f77235078d77fe30n/a52.3.175.4:443
2019-12-29 12:50:00d974e7a62ea0f979f77235078d77fe30n/a3.229.16.54:443
2019-12-29 12:49:59d974e7a62ea0f979f77235078d77fe30n/a54.84.168.59:443
2019-12-29 12:49:59d974e7a62ea0f979f77235078d77fe30n/a54.86.7.234:443
2019-12-29 12:49:58d974e7a62ea0f979f77235078d77fe30n/a34.225.6.169:443
2019-12-29 12:49:58d974e7a62ea0f979f77235078d77fe30n/a3.225.52.92:443
2019-12-25 18:06:58a34de123dd987fc8e11269e97798fab6n/a35.201.81.34:443
2019-12-25 18:06:58a34de123dd987fc8e11269e97798fab6n/a35.227.224.91:443
2019-12-25 13:10:14a58be18de6ec8f955e4b2b63df1aa5ffn/a35.227.224.91:443
2019-12-24 09:43:15563e3e0778adda84f65072cdf639c63cn/a35.227.224.91:443
2019-12-24 02:22:59a2df9fc77d5818c2367ca54ba390ad73Virustotal results 36 / 73 (49.32%) 35.227.224.91:443
2019-12-23 00:22:12a0caa87a47ff826e5b864cbfca4517a4Virustotal results 52 / 72 (72.22%) 54.86.7.234:443
2019-12-23 00:22:12a0caa87a47ff826e5b864cbfca4517a4Virustotal results 52 / 72 (72.22%) 52.3.175.4:443
2019-12-22 13:00:339734cc77055041a0f985cda2bc3c3217Virustotal results 43 / 71 (60.56%) 151.101.113.146:443
2019-12-22 13:00:339734cc77055041a0f985cda2bc3c3217Virustotal results 43 / 71 (60.56%) 52.5.236.102:443
2019-12-22 13:00:339734cc77055041a0f985cda2bc3c3217Virustotal results 43 / 71 (60.56%) 18.211.77.223:443
2019-12-22 13:00:339734cc77055041a0f985cda2bc3c3217Virustotal results 43 / 71 (60.56%) 3.229.186.250:443
2019-12-22 13:00:339734cc77055041a0f985cda2bc3c3217Virustotal results 43 / 71 (60.56%) 35.175.74.243:443
2019-12-22 13:00:339734cc77055041a0f985cda2bc3c3217Virustotal results 43 / 71 (60.56%) 54.183.56.235:443
2019-12-22 13:00:339734cc77055041a0f985cda2bc3c3217Virustotal results 43 / 71 (60.56%) 95.100.189.48:443
2019-12-22 13:00:339734cc77055041a0f985cda2bc3c3217Virustotal results 43 / 71 (60.56%) 52.22.147.178:443
2019-12-18 19:49:05a235f61536bec83372093d918590c86bVirustotal results 30 / 72 (41.67%) 52.1.252.182:443
2019-12-18 19:49:05a235f61536bec83372093d918590c86bVirustotal results 30 / 72 (41.67%) 54.210.211.151:443
2019-12-18 19:49:05a235f61536bec83372093d918590c86bVirustotal results 30 / 72 (41.67%) 3.220.90.150:443
2019-12-18 19:49:05a235f61536bec83372093d918590c86bVirustotal results 30 / 72 (41.67%) 107.23.106.108:443
2019-12-18 19:49:04a235f61536bec83372093d918590c86bVirustotal results 30 / 72 (41.67%) 34.197.178.189:443
2019-12-18 19:49:04a235f61536bec83372093d918590c86bVirustotal results 30 / 72 (41.67%) 54.85.73.38:443
2019-12-18 07:02:05c287e9b9d095b2e144e4fb28fc827bb9n/a34.197.178.189:443
2019-12-18 07:02:04c287e9b9d095b2e144e4fb28fc827bb9n/a107.23.106.108:443
2019-12-18 07:02:04c287e9b9d095b2e144e4fb28fc827bb9n/a5.226.176.13:443
2019-12-17 18:51:53a233f53bc6793f73806000bec5cd89fbVirustotal results 52 / 71 (73.24%) 52.3.175.4:443
2019-12-17 18:51:53a233f53bc6793f73806000bec5cd89fbVirustotal results 52 / 71 (73.24%) 34.232.245.28:443
2019-12-17 18:51:53a233f53bc6793f73806000bec5cd89fbVirustotal results 52 / 71 (73.24%) 3.222.111.160:443
2019-12-17 18:51:50a233f53bc6793f73806000bec5cd89fbVirustotal results 52 / 71 (73.24%) 3.229.16.54:443
2019-12-17 18:51:38a233f53bc6793f73806000bec5cd89fbVirustotal results 52 / 71 (73.24%) 52.4.248.161:443
2019-12-10 01:11:44891fcf4f8410fde2638e6a60487193d5Virustotal results 58 / 72 (80.56%) 151.101.86.167:443
2019-12-10 01:11:44891fcf4f8410fde2638e6a60487193d5Virustotal results 58 / 72 (80.56%) 185.30.21.21:443
2019-12-10 01:11:44891fcf4f8410fde2638e6a60487193d5Virustotal results 58 / 72 (80.56%) 52.25.231.130:443
2019-12-10 01:11:44891fcf4f8410fde2638e6a60487193d5Virustotal results 58 / 72 (80.56%) 151.101.86.214:443
2019-12-09 14:39:59df552f5ab35fc67edbf3ceac34dff027Virustotal results 34 / 71 (47.89%) 34.235.219.151:443
2019-12-09 14:39:59df552f5ab35fc67edbf3ceac34dff027Virustotal results 34 / 71 (47.89%) 3.222.111.160:443
2019-12-09 14:39:59df552f5ab35fc67edbf3ceac34dff027Virustotal results 34 / 71 (47.89%) 52.5.242.147:443
2019-12-09 14:39:59df552f5ab35fc67edbf3ceac34dff027Virustotal results 34 / 71 (47.89%) 18.205.100.99:443
2019-12-09 14:39:59df552f5ab35fc67edbf3ceac34dff027Virustotal results 34 / 71 (47.89%) 34.225.49.107:443
2019-12-09 14:39:59df552f5ab35fc67edbf3ceac34dff027Virustotal results 34 / 71 (47.89%) 3.221.225.6:443
2019-12-09 11:37:498a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 3.229.11.196:443
2019-12-09 11:37:488a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 54.84.168.59:443
2019-12-09 11:37:488a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 3.221.225.6:443
2019-12-09 11:37:358a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 52.5.242.147:443
2019-12-09 11:37:288a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 52.203.26.225:443
2019-12-09 11:37:278a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 18.205.100.99:443
2019-12-09 11:37:278a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 34.224.145.47:443
2019-12-09 11:37:198a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 52.20.126.230:443
2019-12-09 11:37:168a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 3.225.52.92:443
2019-12-09 11:37:168a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 3.222.111.160:443
2019-12-09 11:37:158a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 52.7.70.230:443
2019-12-09 11:37:158a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 54.210.211.151:443
2019-12-09 03:46:040e460fc7ef8cd48cfb31e9f3ec541915n/a34.225.49.107:443
2019-12-09 03:46:040e460fc7ef8cd48cfb31e9f3ec541915n/a3.225.52.92:443

# of entries: 100 (max: 100)