JA3 Fingerprints

You can find further information about the JA3 fingerprint 1d095e68489d3c535297cd8dffb06cb9, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1d095e68489d3c535297cd8dffb06cb9
First seen:2017-08-12 19:56:28 UTC
Last seen:2020-10-28 11:06:23 UTC
Status:Blacklisted
Malware samples:87
Destination IPs:97
Malware:Tofsee -
Listing date:2018-11-14 12:52:51

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-10-28 11:06:23f237af35f4b97b41054712350b36afe8n/a216.58.215.238:443
2020-10-28 11:06:23f237af35f4b97b41054712350b36afe8n/a216.58.215.238:443
2020-10-28 11:06:22f237af35f4b97b41054712350b36afe8n/a74.125.71.139:443
2020-10-28 11:06:22f237af35f4b97b41054712350b36afe8n/a74.125.71.139:443
2020-10-28 01:54:01a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 74.125.71.101:443
2020-10-28 01:54:01a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 216.58.215.238:443
2020-10-28 01:54:01a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 74.125.71.101:443
2020-10-28 01:54:01a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 216.58.215.238:443
2020-10-28 01:54:00a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 172.217.168.14:443
2020-10-28 01:54:00a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 172.217.168.78:443
2020-10-28 01:54:00a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 172.217.168.14:443
2020-10-28 01:54:00a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 108.177.15.138:443
2020-10-28 01:54:00a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 172.217.168.78:443
2020-10-28 01:54:00a810c6df001d2f2e57d90ab8130ede6cVirustotal results 31 / 62 (50.00%) 108.177.15.138:443
2020-10-28 00:25:468a2cae4cad5b075c4ec38fdf6ad1891an/a74.125.206.101:443
2020-10-28 00:25:468a2cae4cad5b075c4ec38fdf6ad1891an/a74.125.206.101:443
2020-10-28 00:25:458a2cae4cad5b075c4ec38fdf6ad1891an/a172.217.168.14:443
2020-10-28 00:25:458a2cae4cad5b075c4ec38fdf6ad1891an/a172.217.168.46:443
2020-10-28 00:25:458a2cae4cad5b075c4ec38fdf6ad1891an/a172.217.168.46:443
2020-10-28 00:25:458a2cae4cad5b075c4ec38fdf6ad1891an/a172.217.168.14:443
2020-10-27 20:59:5948d751e7891e00b24cec060a77da80can/a172.217.168.238:443
2020-10-27 20:59:5948d751e7891e00b24cec060a77da80can/a108.177.126.100:443
2020-10-27 20:59:5948d751e7891e00b24cec060a77da80can/a108.177.126.100:443
2020-10-27 20:59:5948d751e7891e00b24cec060a77da80can/a172.217.19.206:443
2020-10-27 20:59:5948d751e7891e00b24cec060a77da80can/a172.217.168.238:443
2020-10-27 20:59:5948d751e7891e00b24cec060a77da80can/a172.217.19.206:443
2020-10-27 20:04:37303e2505602722f42f7962d159919af5Virustotal results 20 / 61 (32.79%) 172.217.168.238:443
2020-10-27 20:04:37303e2505602722f42f7962d159919af5Virustotal results 20 / 61 (32.79%) 172.217.17.78:443
2020-10-27 20:04:37303e2505602722f42f7962d159919af5Virustotal results 20 / 61 (32.79%) 172.217.168.238:443
2020-10-27 20:04:37303e2505602722f42f7962d159919af5Virustotal results 20 / 61 (32.79%) 173.194.79.100:443
2020-10-27 20:04:37303e2505602722f42f7962d159919af5Virustotal results 20 / 61 (32.79%) 173.194.79.100:443
2020-10-27 20:04:37303e2505602722f42f7962d159919af5Virustotal results 20 / 61 (32.79%) 172.217.17.78:443
2020-10-27 19:44:551bd8b82099bace4be751bbd136de8ac2n/a216.58.215.238:443
2020-10-27 19:44:551bd8b82099bace4be751bbd136de8ac2n/a216.58.215.238:443
2020-10-27 15:55:37ea6b89d8141c4a35d2dd80c3dbf4d908n/a173.194.79.100:443
2020-10-27 15:55:37ea6b89d8141c4a35d2dd80c3dbf4d908n/a173.194.79.100:443
2020-10-27 15:55:36ea6b89d8141c4a35d2dd80c3dbf4d908n/a216.58.214.14:443
2020-10-27 15:55:36ea6b89d8141c4a35d2dd80c3dbf4d908n/a216.58.214.14:443
2020-10-27 15:55:35ea6b89d8141c4a35d2dd80c3dbf4d908n/a172.217.168.238:443
2020-10-27 15:55:35ea6b89d8141c4a35d2dd80c3dbf4d908n/a172.217.168.238:443
2020-10-27 04:38:54674ebf9e9d1b0e42587bf7e9c8facc66Virustotal results 46 / 70 (65.71%) 173.194.79.102:443
2020-10-27 04:38:54674ebf9e9d1b0e42587bf7e9c8facc66Virustotal results 46 / 70 (65.71%) 172.217.168.238:443
2020-10-27 04:38:54674ebf9e9d1b0e42587bf7e9c8facc66Virustotal results 46 / 70 (65.71%) 173.194.79.102:443
2020-10-27 04:38:54674ebf9e9d1b0e42587bf7e9c8facc66Virustotal results 46 / 70 (65.71%) 172.217.168.238:443
2020-10-27 04:38:53674ebf9e9d1b0e42587bf7e9c8facc66Virustotal results 46 / 70 (65.71%) 172.217.20.78:443
2020-10-27 04:38:53674ebf9e9d1b0e42587bf7e9c8facc66Virustotal results 46 / 70 (65.71%) 172.217.20.78:443
2020-10-27 02:48:111ed8997f80835b88f6069fb440a41af1n/a172.217.17.78:443
2020-10-27 02:48:111ed8997f80835b88f6069fb440a41af1n/a172.217.17.78:443
2020-10-26 15:20:36e1c2c7b75ba8d99981ef414ccd40fa2eVirustotal results 50 / 70 (71.43%) 74.125.133.138:443
2020-10-26 15:20:36e1c2c7b75ba8d99981ef414ccd40fa2eVirustotal results 50 / 70 (71.43%) 74.125.133.138:443
2020-10-26 15:20:35e1c2c7b75ba8d99981ef414ccd40fa2eVirustotal results 50 / 70 (71.43%) 172.217.168.78:443
2020-10-26 15:20:35e1c2c7b75ba8d99981ef414ccd40fa2eVirustotal results 50 / 70 (71.43%) 172.217.168.14:443
2020-10-26 15:20:35e1c2c7b75ba8d99981ef414ccd40fa2eVirustotal results 50 / 70 (71.43%) 172.217.168.78:443
2020-10-26 15:20:35e1c2c7b75ba8d99981ef414ccd40fa2eVirustotal results 50 / 70 (71.43%) 172.217.168.14:443
2020-10-26 11:02:20c15f716c4cdf02e4d069d82acbe40b73Virustotal results 51 / 71 (71.83%) 172.217.168.14:443
2020-10-26 11:02:20c15f716c4cdf02e4d069d82acbe40b73Virustotal results 51 / 71 (71.83%) 216.58.215.238:443
2020-10-26 11:02:20c15f716c4cdf02e4d069d82acbe40b73Virustotal results 51 / 71 (71.83%) 216.58.215.238:443
2020-10-26 11:02:20c15f716c4cdf02e4d069d82acbe40b73Virustotal results 51 / 71 (71.83%) 172.217.168.14:443
2020-10-26 02:39:18b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 172.217.168.14:443
2020-10-26 02:39:18b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 216.58.215.238:443
2020-10-26 02:39:18b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 172.217.168.14:443
2020-10-26 02:39:18b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 216.58.215.238:443
2020-10-26 02:39:17b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 74.125.143.138:443
2020-10-26 02:39:17b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 172.217.168.78:443
2020-10-26 02:39:17b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 172.217.168.46:443
2020-10-26 02:39:17b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 172.217.168.78:443
2020-10-26 02:39:17b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 74.125.143.138:443
2020-10-26 02:39:17b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 172.217.168.46:443
2020-10-26 02:39:16b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 172.217.218.100:443
2020-10-26 02:39:16b4866ca61dd42d1a7969078f6f91eaddVirustotal results 55 / 71 (77.46%) 172.217.218.100:443
2020-10-25 22:20:57859d7f3b36bba74f209c6452518572cdn/a172.217.17.142:443
2020-10-25 22:20:57859d7f3b36bba74f209c6452518572cdn/a173.194.79.138:443
2020-10-25 22:20:57859d7f3b36bba74f209c6452518572cdn/a173.194.79.138:443
2020-10-25 22:20:57859d7f3b36bba74f209c6452518572cdn/a172.217.17.142:443
2020-10-25 22:20:56859d7f3b36bba74f209c6452518572cdn/a216.58.214.14:443
2020-10-25 22:20:56859d7f3b36bba74f209c6452518572cdn/a216.58.214.14:443
2020-10-25 10:09:34a7c99d92e12def0d6ae55135a66400cbVirustotal results 47 / 60 (78.33%) 172.217.168.238:443
2020-10-25 10:09:34a7c99d92e12def0d6ae55135a66400cbVirustotal results 47 / 60 (78.33%) 108.177.127.102:443
2020-10-25 10:09:34a7c99d92e12def0d6ae55135a66400cbVirustotal results 47 / 60 (78.33%) 108.177.127.102:443
2020-10-25 10:09:34a7c99d92e12def0d6ae55135a66400cbVirustotal results 47 / 60 (78.33%) 172.217.168.238:443
2020-10-25 10:09:33a7c99d92e12def0d6ae55135a66400cbVirustotal results 47 / 60 (78.33%) 172.217.20.78:443
2020-10-25 10:09:33a7c99d92e12def0d6ae55135a66400cbVirustotal results 47 / 60 (78.33%) 172.217.20.78:443
2020-10-25 05:51:03aa19cee7accf71b84d648259ea4d333cVirustotal results 53 / 70 (75.71%) 216.58.214.14:443
2020-10-25 05:51:03aa19cee7accf71b84d648259ea4d333cVirustotal results 53 / 70 (75.71%) 216.58.214.14:443
2020-10-24 23:44:49876ef9acfd7ae32cdf0c2bdaedf64428Virustotal results 40 / 62 (64.52%) 172.217.168.46:443
2020-10-24 23:44:49876ef9acfd7ae32cdf0c2bdaedf64428Virustotal results 40 / 62 (64.52%) 172.217.168.46:443
2020-10-24 23:44:48876ef9acfd7ae32cdf0c2bdaedf64428Virustotal results 40 / 62 (64.52%) 108.177.15.102:443
2020-10-24 23:44:48876ef9acfd7ae32cdf0c2bdaedf64428Virustotal results 40 / 62 (64.52%) 216.58.215.238:443
2020-10-24 23:44:48876ef9acfd7ae32cdf0c2bdaedf64428Virustotal results 40 / 62 (64.52%) 108.177.15.102:443
2020-10-24 23:44:48876ef9acfd7ae32cdf0c2bdaedf64428Virustotal results 40 / 62 (64.52%) 216.58.215.238:443
2020-10-24 19:48:512dae1502cd919dad14dd7933fe836922n/a216.58.215.238:443
2020-10-24 19:48:512dae1502cd919dad14dd7933fe836922n/a216.58.215.238:443
2020-10-24 19:48:502dae1502cd919dad14dd7933fe836922n/a172.217.168.14:443
2020-10-24 19:48:502dae1502cd919dad14dd7933fe836922n/a172.217.168.14:443
2020-10-24 19:19:2712edde5e15cea1bed41baa1359f94dcfVirustotal results 57 / 69 (82.61%) 172.217.168.238:443
2020-10-24 19:19:2712edde5e15cea1bed41baa1359f94dcfVirustotal results 57 / 69 (82.61%) 172.217.168.238:443
2020-10-24 18:47:3313e1b627144ef9ff42030886058edaceVirustotal results 41 / 62 (66.13%) 172.217.168.78:443
2020-10-24 18:47:3313e1b627144ef9ff42030886058edaceVirustotal results 41 / 62 (66.13%) 172.217.168.78:443
2020-10-24 18:47:3213e1b627144ef9ff42030886058edaceVirustotal results 41 / 62 (66.13%) 216.58.215.238:443
2020-10-24 18:47:3213e1b627144ef9ff42030886058edaceVirustotal results 41 / 62 (66.13%) 172.217.168.46:443

# of entries: 100 (max: 100)