JA3 Fingerprints

You can find further information about the JA3 fingerprint 17fd49722f8d11f3d76dce84f8e099a7, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:17fd49722f8d11f3d76dce84f8e099a7
First seen:2018-03-19 23:02:27 UTC
Last seen:2019-03-17 23:53:39 UTC
Status:Blacklisted
Malware samples:80
Destination IPs:163
Malware:Tofsee -
Listing date:2018-11-14 12:35:06

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-03-17 23:53:398d1026fe8bbf09734ae70a3d4c5360ben/a54.85.31.80:443
2019-03-17 23:53:398d1026fe8bbf09734ae70a3d4c5360ben/a35.174.188.152:443
2019-03-17 23:53:398d1026fe8bbf09734ae70a3d4c5360ben/a54.81.191.177:443
2019-03-17 23:53:398d1026fe8bbf09734ae70a3d4c5360ben/a54.83.253.86:443
2019-03-17 23:53:398d1026fe8bbf09734ae70a3d4c5360ben/a52.206.66.49:443
2019-03-17 23:53:388d1026fe8bbf09734ae70a3d4c5360ben/a34.196.28.215:443
2019-03-16 03:10:380aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 52.200.85.171:443
2019-03-16 03:10:380aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 18.204.191.73:443
2019-03-16 03:10:380aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 34.192.189.74:443
2019-03-16 03:10:380aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 52.0.66.225:443
2019-03-16 03:10:370aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 52.5.180.176:443
2019-03-16 03:10:370aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 52.201.25.80:443
2019-03-16 03:10:370aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 54.172.225.203:443
2019-03-16 03:10:360aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 107.23.220.24:443
2019-03-16 03:10:330aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 54.152.43.222:443
2019-03-16 03:10:320aedc25d5844a065d1de9f2769daee5eVirustotal results 32/65 (49.23%) 34.197.172.233:443
2019-03-14 01:49:44331d5ac244795e202b869668c5836b2bVirustotal results 37/65 (56.92%) 34.195.182.26:443
2019-03-12 13:08:25e0f76b90905ec73d159f3b0054a681a5n/a54.210.189.207:443
2019-03-12 13:08:24e0f76b90905ec73d159f3b0054a681a5n/a34.194.201.68:443
2019-03-12 13:08:23e0f76b90905ec73d159f3b0054a681a5n/a54.236.147.34:443
2019-03-11 06:37:48981df55faa0e084bd409023725db0b0bn/a54.208.85.89:443
2019-03-11 06:37:48981df55faa0e084bd409023725db0b0bn/a54.88.235.13:443
2019-03-09 03:57:02975d534270cfc6de07931f378ddee2ddn/a54.85.139.108:443
2019-03-09 03:57:02975d534270cfc6de07931f378ddee2ddn/a52.202.16.165:443
2019-03-09 03:57:02975d534270cfc6de07931f378ddee2ddn/a35.169.152.249:443
2019-03-09 03:57:01975d534270cfc6de07931f378ddee2ddn/a52.20.233.92:443
2019-03-09 03:57:00975d534270cfc6de07931f378ddee2ddn/a34.197.172.233:443
2019-03-09 03:57:00975d534270cfc6de07931f378ddee2ddn/a18.208.66.69:443
2019-03-09 03:56:59975d534270cfc6de07931f378ddee2ddn/a54.152.43.222:443
2019-03-09 03:56:59975d534270cfc6de07931f378ddee2ddn/a3.90.90.201:443
2019-03-09 03:56:59975d534270cfc6de07931f378ddee2ddn/a34.236.49.91:443
2019-03-09 03:56:59975d534270cfc6de07931f378ddee2ddn/a54.80.218.7:443
2019-03-09 03:56:59975d534270cfc6de07931f378ddee2ddn/a52.206.66.49:443
2019-03-09 03:56:59975d534270cfc6de07931f378ddee2ddn/a54.210.189.207:443
2019-03-09 03:56:59975d534270cfc6de07931f378ddee2ddn/a52.71.114.175:443
2019-03-09 03:56:58975d534270cfc6de07931f378ddee2ddn/a52.5.11.92:443
2019-03-09 03:56:58975d534270cfc6de07931f378ddee2ddn/a54.81.179.254:443
2019-03-09 03:56:57975d534270cfc6de07931f378ddee2ddn/a54.236.199.217:443
2019-03-09 03:56:57975d534270cfc6de07931f378ddee2ddn/a54.80.38.185:443
2019-03-09 03:56:56975d534270cfc6de07931f378ddee2ddn/a52.86.66.66:443
2019-03-09 03:56:56975d534270cfc6de07931f378ddee2ddn/a54.88.30.140:443
2019-03-09 03:56:56975d534270cfc6de07931f378ddee2ddn/a34.193.152.151:443
2019-03-08 21:49:4687e5309e699bb04ab984f4e16b69180dn/a107.23.212.226:443
2019-03-08 21:49:4587e5309e699bb04ab984f4e16b69180dn/a52.0.6.118:443
2019-03-08 21:49:4487e5309e699bb04ab984f4e16b69180dn/a54.210.203.204:443
2019-03-08 21:49:4287e5309e699bb04ab984f4e16b69180dn/a52.202.16.165:443
2019-03-08 06:37:2620be7e156e0bcb7b2242200f536b49e7n/a34.192.189.74:443
2019-03-07 23:44:06ec6e009230ebe72eb57d2a43d9a316beVirustotal results 31/63 (49.21%) 54.152.118.246:443
2019-03-07 23:44:06ec6e009230ebe72eb57d2a43d9a316beVirustotal results 31/63 (49.21%) 54.152.43.222:443
2019-03-04 01:40:402a180c02d426d57a79de067f6131e74en/a192.230.96.254:443
2019-02-28 19:02:16a470a522cba5594e96437cac02e7e1a5Virustotal results 37/70 (52.86%) 192.230.96.254:443
2019-02-24 07:28:41ec891376676c12aa33cf617aa7512aebVirustotal results 41/65 (63.08%) 192.230.96.254:443
2019-02-22 09:25:283f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 52.87.95.105:443
2019-02-22 09:25:283f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.88.30.140:443
2019-02-22 09:25:283f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 34.194.86.182:443
2019-02-22 09:25:283f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 52.70.81.61:443
2019-02-22 09:25:283f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.80.218.7:443
2019-02-22 09:25:263f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 23.20.97.88:443
2019-02-22 09:25:263f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 3.90.90.201:443
2019-02-22 09:25:253f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 52.203.139.169:443
2019-02-22 09:25:253f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.152.118.246:443
2019-02-22 09:25:243f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.236.199.217:443
2019-02-22 09:25:243f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 52.0.66.225:443
2019-02-22 09:25:243f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 34.196.202.237:443
2019-02-22 09:25:243f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 34.197.172.233:443
2019-02-22 09:25:223f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 35.174.188.152:443
2019-02-22 09:25:223f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 34.238.180.30:443
2019-02-22 09:25:223f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 34.234.134.139:443
2019-02-22 09:25:213f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 34.192.189.74:443
2019-02-22 09:25:213f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 18.208.66.69:443
2019-02-22 09:25:213f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 52.32.19.83:443
2019-02-22 09:25:193f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 52.5.11.92:443
2019-02-22 09:25:193f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.82.220.75:443
2019-02-22 09:25:183f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.152.17.251:443
2019-02-22 09:25:173f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.236.147.34:443
2019-02-22 09:25:163f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 52.200.174.184:443
2019-02-22 09:25:163f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.81.179.254:443
2019-02-22 09:25:163f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.84.180.162:443
2019-02-22 09:25:163f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.69.167.77:443
2019-02-22 09:25:153f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 52.6.31.207:443
2019-02-22 09:25:153f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.175.194.108:443
2019-02-22 09:25:143f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 54.152.43.222:443
2019-02-22 09:25:143f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 34.233.92.140:443
2019-02-19 01:33:175e13731b8f2acbcaedea0a9c6529c255Virustotal results 33/69 (47.83%) 35.168.66.53:443
2019-02-15 21:24:36ac08737d4b88cd5df916448da941fae8Virustotal results 41/69 (59.42%) 104.20.3.155:443
2019-02-15 21:24:36ac08737d4b88cd5df916448da941fae8Virustotal results 41/69 (59.42%) 104.20.4.155:443
2019-02-12 01:34:476ec711bccc0ecc02197d3f8534bc445bVirustotal results 46/70 (65.71%) 51.68.50.89:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 54.81.21.118:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 18.211.179.4:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 18.211.164.229:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 18.233.41.236:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 18.232.197.117:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 34.194.130.0:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 54.84.71.186:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 52.202.141.221:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 52.55.218.154:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 3.83.181.41:443
2019-02-11 20:25:189522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 34.206.178.205:443
2019-02-11 20:25:179522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 52.0.66.225:443
2019-02-11 20:25:179522cfc9679a92a5556a4b7de5c7fc7dVirustotal results 36/68 (52.94%) 54.236.147.34:443

# of entries: 100 (max: 100)