JA3 Fingerprints

You can find further information about the JA3 fingerprint 1aee0238942d453d679fc1e37a303387, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1aee0238942d453d679fc1e37a303387
First seen:2018-05-13 01:59:49 UTC
Last seen:2020-02-12 16:12:05 UTC
Status:Blacklisted
Malware samples:385
Destination IPs:161
Malware:Tofsee -
Listing date:2020-01-09 14:24:31

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-02-12 16:12:05fa35cb9171b132f7615596b623e8d57bn/a172.217.168.196:443
2020-02-12 16:12:05fa35cb9171b132f7615596b623e8d57bn/a172.217.17.99:443
2020-02-07 12:43:11c214687053efb522e66ec5fb8eac5b1en/a172.217.16.132:443
2020-02-07 12:43:11c214687053efb522e66ec5fb8eac5b1en/a216.58.210.3:443
2020-02-07 09:50:28bdcf0b98628fbd22d5a9f9c16e449d78Virustotal results 37 / 71 (52.11%) 172.217.168.228:443
2020-02-07 09:50:27bdcf0b98628fbd22d5a9f9c16e449d78Virustotal results 37 / 71 (52.11%) 172.217.17.35:443
2020-02-07 09:50:27bdcf0b98628fbd22d5a9f9c16e449d78Virustotal results 37 / 71 (52.11%) 172.217.20.98:443
2020-02-07 08:38:123e1e565bb7c0956b775dffd30c804144n/a216.58.215.227:443
2020-02-07 08:38:123e1e565bb7c0956b775dffd30c804144n/a216.58.215.228:443
2020-02-02 15:18:49a7f12b9a22f7e78160790ee40d3e56deVirustotal results 35 / 72 (48.61%) 172.217.17.99:443
2020-02-02 15:18:48a7f12b9a22f7e78160790ee40d3e56deVirustotal results 35 / 72 (48.61%) 172.217.168.196:443
2020-01-05 21:09:433fc5fadb9f5a4ef0431690c1f304f451n/a172.217.13.195:443
2020-01-05 21:09:433fc5fadb9f5a4ef0431690c1f304f451n/a172.217.13.132:443
2020-01-05 16:38:55724fd37c4975d110c6ba882b29efefdbn/a172.217.168.67:443
2020-01-05 16:38:55724fd37c4975d110c6ba882b29efefdbn/a216.58.215.228:443
2020-01-04 21:32:001640c7824f875d32ac6532f41a7b4780n/a172.217.13.99:443
2019-12-30 11:24:10a442ee8ba843d117a0bdeb13f72a7161n/a216.58.215.227:443
2019-12-30 06:39:023f0d420de0b9ef2a628c6626acf14f68n/a172.217.168.67:443
2019-12-29 13:20:1658b7613b172d19cb366a8cf8bfe7f0a4n/a172.217.18.195:443
2019-12-29 12:27:4371361ac1a45b262d0e9a7b9aa99bec50Virustotal results 51 / 70 (72.86%) 216.58.215.227:443
2019-12-24 08:44:52560c80c7168a03ac9e43319c40042a5cn/a172.217.17.67:443
2019-12-21 12:41:23fe32b5fa183032462804206f917b134dn/a172.217.168.3:443
2019-12-03 13:12:11191d237c653eaf713c8208e9525a3329n/a172.217.168.227:443
2019-12-03 10:49:33d1bc52aaf9e4410988ef68f1289028b9Virustotal results 25 / 70 (35.71%) 172.217.17.36:443
2019-12-03 10:49:32d1bc52aaf9e4410988ef68f1289028b9Virustotal results 25 / 70 (35.71%) 172.217.19.195:443
2019-12-03 10:34:30cade7816a4b3987d5db66b5a1b274c1fn/a172.217.168.67:443
2019-12-03 10:34:30cade7816a4b3987d5db66b5a1b274c1fn/a216.58.215.228:443
2019-11-30 06:50:444b7423f7d0c2a9fd8c581e2c8708748an/a216.58.215.228:443
2019-11-30 06:50:434b7423f7d0c2a9fd8c581e2c8708748an/a172.217.168.68:443
2019-11-28 15:11:18f96c0b900008f61eacfc72a91afd2f6bn/a172.217.168.36:443
2019-11-28 15:11:17f96c0b900008f61eacfc72a91afd2f6bn/a172.217.168.34:443
2019-11-28 15:11:17f96c0b900008f61eacfc72a91afd2f6bn/a216.58.215.227:443
2019-11-27 19:03:219f538e51daafe07a917e700f179cbf8an/a172.217.168.195:443
2019-11-27 16:58:32328d08e49c2fb776b9a2b4cc5b1f2549n/a172.217.22.131:443
2019-11-27 16:58:32328d08e49c2fb776b9a2b4cc5b1f2549n/a172.217.18.194:443
2019-11-24 14:55:13a8fc52351fff07bb94f718c8c33f079cn/a172.217.22.131:443
2019-11-24 14:52:19ed88260088ccea7f3ddaef1c6d2ed77aVirustotal results 52 / 70 (74.29%) 172.217.17.67:443
2019-11-23 15:55:20fe1f468abfc5b7a41352f721d5cdb12en/a172.217.17.35:443
2019-11-23 15:55:20fe1f468abfc5b7a41352f721d5cdb12en/a172.217.168.226:443
2019-11-23 15:54:18dbb306c48c9e402252e8dda6213c38cdn/a172.217.168.35:443
2019-11-23 15:47:029003572d6108fabdd86d671836f449f0n/a74.125.21.94:443
2019-11-23 15:26:51267d51b6bf9b8d076f5768e9756b7d5bn/a172.217.168.3:443
2019-11-23 15:09:439f7234ef47e34559212d755c66eaad0bn/a172.217.168.3:443
2019-11-23 15:05:1977abf9943fe584b65041bf8dee8470e1n/a216.58.204.99:443
2019-11-23 15:03:1556899a0da04d272b83b5e19317c3cf30n/a172.217.168.35:443
2019-11-23 13:09:28570d8cbb9243a3df26794c182a525b3dn/a172.217.17.35:443
2019-11-23 12:09:37dacf16c055d23b8309b07a5611c51000Virustotal results 51 / 71 (71.83%) 172.217.168.67:443
2019-11-22 14:51:30955da2afdb9cd4b2990f2019225f3bdcVirustotal results 36 / 67 (53.73%) 172.217.17.35:443
2019-11-21 07:00:324f62f297fdeb4f3fb32a81929ebdda11n/a216.58.211.99:443
2019-11-20 08:49:27cc9c04bf811b7cfb6dd250ddd192160dVirustotal results 17 / 69 (24.64%) 172.217.168.67:443
2019-11-19 11:37:15b0f81f70d42047358662180576a49e47n/a172.217.168.67:443
2019-11-18 15:24:115814361d7b39272c31aafdd818a560aen/a172.217.21.195:443
2019-11-18 15:24:095814361d7b39272c31aafdd818a560aen/a172.217.23.164:443
2019-11-16 11:31:34823c3aa13255a6f9dc29fc0d52af935cVirustotal results 21 / 70 (30.00%) 172.217.20.67:443
2019-11-16 11:31:32823c3aa13255a6f9dc29fc0d52af935cVirustotal results 21 / 70 (30.00%) 172.217.168.228:443
2019-11-12 10:47:56c73c3944ced1061095d27380ef103bc3n/a216.58.208.99:443
2019-11-12 10:31:327d7e7add0172726bdd4f4ee8716adafdn/a172.217.23.164:443
2019-11-12 10:31:307d7e7add0172726bdd4f4ee8716adafdn/a216.58.207.35:443
2019-11-12 10:02:47d054e92b4a7c5d295e3d537caea6918dn/a216.58.215.228:443
2019-11-12 10:02:47d054e92b4a7c5d295e3d537caea6918dn/a172.217.168.3:443
2019-11-12 09:58:06f0a78c809e57a6f8767af1bb05427561n/a172.217.168.3:443
2019-11-12 09:56:090f17c767122d0554d25ada487a699096n/a172.217.168.35:443
2019-11-12 09:55:5742f4260b3342c1e95d1969f8156117ffVirustotal results 48 / 70 (68.57%) 172.217.21.196:443
2019-11-12 09:55:5742f4260b3342c1e95d1969f8156117ffVirustotal results 48 / 70 (68.57%) 216.58.206.3:443
2019-11-12 09:51:20941faf192f43279fb7a7c16cae11626dn/a172.217.168.68:443
2019-11-12 09:51:19941faf192f43279fb7a7c16cae11626dn/a216.58.215.227:443
2019-11-12 09:48:17cd1ff55caa481d7bc0529be30c4eeccen/a172.217.17.131:443
2019-11-12 09:48:16cd1ff55caa481d7bc0529be30c4eeccen/a172.217.168.228:443
2019-11-12 09:47:5222ecb89ec253d1af9c6a537c8bd556acn/a172.217.168.196:443
2019-11-12 09:47:5122ecb89ec253d1af9c6a537c8bd556acn/a216.58.208.99:443
2019-11-12 09:42:33a1130e0d9a421b9244920f43b0177566Virustotal results 49 / 70 (70.00%) 172.217.12.99:443
2019-11-12 09:42:33a1130e0d9a421b9244920f43b0177566Virustotal results 49 / 70 (70.00%) 216.58.193.164:443
2019-11-12 09:39:59db4896ada9e30f65ac22ac05638c9638n/a172.217.168.67:443
2019-11-12 09:35:5710c8d1145089b68294ab18c7710c1af5n/a216.58.208.99:443
2019-11-12 09:35:5610c8d1145089b68294ab18c7710c1af5n/a172.217.17.36:443
2019-11-11 11:54:1535eabab6521bbe4c073d0b20ccdc91dcn/a216.58.208.99:443
2019-11-11 11:54:1535eabab6521bbe4c073d0b20ccdc91dcn/a172.217.17.36:443
2019-11-11 11:37:22983f49128dc34c9f4210a32904fd4cf8n/a216.58.208.99:443
2019-11-11 11:34:31902dfeb844e9020e25a06f0c34187575n/a172.217.168.3:443
2019-11-11 11:34:31902dfeb844e9020e25a06f0c34187575n/a172.217.168.68:443
2019-11-11 11:34:154f05db642f78433886b3722903216577n/a172.217.17.66:443
2019-11-11 11:34:154f05db642f78433886b3722903216577n/a216.58.208.99:443
2019-11-11 11:32:51fb71f79fefbc5e75418a9abf30c6f6a5n/a172.217.168.68:443
2019-11-11 11:32:51fb71f79fefbc5e75418a9abf30c6f6a5n/a172.217.168.35:443
2019-11-09 10:59:187f126dbdaa0146a5ff51993004ad4584n/a172.217.17.36:443
2019-11-09 10:59:177f126dbdaa0146a5ff51993004ad4584n/a172.217.168.195:443
2019-11-09 06:59:40957cd09454246c76e694676515b54d3cn/a64.233.177.94:443
2019-11-09 06:59:37957cd09454246c76e694676515b54d3cn/a64.233.185.147:443
2019-11-09 06:55:2815fb681e1f248b6f4cb4665085a09168n/a173.194.219.94:443
2019-11-09 06:52:39feb5995b3a0a23a19bb098a17b05ea2fn/a216.58.215.228:443
2019-11-09 06:52:39feb5995b3a0a23a19bb098a17b05ea2fn/a172.217.168.67:443
2019-11-09 06:36:02ddd5b90129798b475c2c8b0cec2e4c0bn/a172.217.168.35:443
2019-11-09 06:36:02ddd5b90129798b475c2c8b0cec2e4c0bn/a216.58.215.228:443
2019-11-07 13:05:33cad9a752a9f82176e5c94857d530fdfen/a216.58.204.99:443
2019-11-07 12:46:08ad6fa5556d2eda02385d4ae6fc4f860cn/a172.217.168.228:443
2019-11-07 12:46:00ad6fa5556d2eda02385d4ae6fc4f860cn/a172.217.17.35:443
2019-11-07 12:33:26ae2d5347e696874b384f8654d6266f8an/a172.217.168.67:443
2019-11-06 14:00:2661d807a4cede6eacdd4e713188cd6ae3Virustotal results 53 / 70 (75.71%) 172.217.168.3:443
2019-11-06 09:24:436ecf7bf73e2ec703990cbe2b2c587d19n/a172.217.168.3:443
2019-11-06 09:20:099501ebd1284fb771286514230965120fn/a172.217.168.36:443

# of entries: 100 (max: 100)