JA3 Fingerprints

You can find further information about the JA3 fingerprint 1fe4c7a3544eb27afec2adfb3a3dbf60, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1fe4c7a3544eb27afec2adfb3a3dbf60
First seen:2018-03-11 19:23:08 UTC
Last seen:2021-08-09 11:42:58 UTC
Status:Blacklisted
Malware samples:6'405
Destination IPs:1'624
Malware:Tofsee -
Listing date:2020-01-09 14:18:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-10-20 21:48:415338ccf8d240aa8a8f80ccc2c193c2a6n/a111.48.118.157:443
2024-09-17 17:03:012d34e965258aad29df332fe5aabca764n/a124.237.225.21:443
2024-09-15 22:54:421494c15342faa5ad9cb3e271fb9d1f89n/a111.48.118.157:443
2024-09-10 20:38:39ed7b291690697998f701b6df1a5cd228n/a54.74.102.83:443
2024-09-10 20:38:39ed7b291690697998f701b6df1a5cd228n/a185.40.155.13:443
2024-09-10 20:38:38ed7b291690697998f701b6df1a5cd228n/a188.42.61.240:443
2024-09-10 20:38:38ed7b291690697998f701b6df1a5cd228n/a13.224.89.61:443
2024-09-10 20:38:38ed7b291690697998f701b6df1a5cd228n/a104.20.83.98:443
2024-08-31 22:36:189cd500aa233c6ae7e5b5ed8755a6083bn/a54.230.112.14:443
2024-08-31 22:36:189cd500aa233c6ae7e5b5ed8755a6083bn/a18.197.209.74:443
2024-08-31 22:36:189cd500aa233c6ae7e5b5ed8755a6083bn/a54.230.112.14:443
2024-08-31 22:36:189cd500aa233c6ae7e5b5ed8755a6083bn/a18.197.209.74:443
2024-08-21 00:54:301741c520b871645bae5e8cbb0eb4b46bn/a182.242.219.7:443
2024-08-19 11:41:533cab3072e0a7fb51e8b91493eb3cdfe1n/a203.205.254.103:443
2024-08-12 11:26:14232b19bab5c20230638216f4e524dc3dn/a116.211.202.129:443
2024-08-12 11:26:14232b19bab5c20230638216f4e524dc3dn/a111.63.147.168:443
2024-08-10 03:51:283750a4ae3f2cfa2b2eeaca9f8a7fe8f9n/a203.205.136.80:443
2024-07-29 20:04:004a36906f3a27415a871489c34f7a9bb9n/a203.205.254.103:443
2024-07-29 03:24:034819202712b012e8393b510be55fcb40n/a203.205.254.103:443
2024-07-28 15:00:581fc6fc1fbe0ffd493564ba3df065b028n/a220.181.125.24:443
2024-07-28 15:00:571fc6fc1fbe0ffd493564ba3df065b028n/a123.126.131.45:443
2024-06-30 01:06:54153943dc28cfb68ffd6f4e9ba5878e0dn/a123.129.219.81:443
2024-06-28 09:54:403c8214e73da12907f82e098803e46cb2n/a18.165.183.21:443
2024-06-28 09:54:403c8214e73da12907f82e098803e46cb2n/a18.197.209.74:443
2024-06-28 09:54:393c8214e73da12907f82e098803e46cb2n/a3.68.255.101:443
2024-06-19 10:12:51070ffb3516e7e3671a71db5ae9388eden/a18.184.83.209:443
2024-06-19 10:12:50070ffb3516e7e3671a71db5ae9388eden/a18.239.94.70:443
2024-06-19 10:12:50070ffb3516e7e3671a71db5ae9388eden/a18.197.209.74:443
2024-06-17 07:35:030b32d1e4c2c1480638fbfd9453c78399n/a124.237.225.21:443
2024-06-17 06:51:112b55e6fd8defb15062584f6db8dfff70n/a111.48.118.157:443
2024-06-17 06:33:46271dc1437767888b1cb60079afb60a52n/a124.237.225.21:443
2024-06-17 03:05:15225a234969eb43475b173c63a5b2ccaen/a111.48.118.157:443
2024-06-17 01:53:092466a87939ac08d86e957a8ccdb1979cn/a124.237.225.21:443
2024-06-16 21:17:1723111c9da2e332dc3b696a074964517dn/a111.48.118.157:443
2024-06-16 20:34:3710e98808ecd18802a44f3de30e7d391cn/a124.237.225.21:443
2024-06-09 14:04:39309fe4e1372328d1f3016bbce517a0ebn/a18.245.199.88:443
2024-06-09 14:04:39309fe4e1372328d1f3016bbce517a0ebn/a3.124.203.143:443
2024-06-09 14:04:39309fe4e1372328d1f3016bbce517a0ebn/a18.197.209.74:443
2024-06-07 20:38:284c29e1d00c00730dfbcf9ddb33e01c72n/a157.255.245.97:443
2024-06-07 20:38:284c29e1d00c00730dfbcf9ddb33e01c72n/a218.60.10.29:443
2024-06-07 20:38:284c29e1d00c00730dfbcf9ddb33e01c72n/a157.255.219.174:443
2024-06-07 20:38:284c29e1d00c00730dfbcf9ddb33e01c72n/a157.255.220.252:443
2024-05-05 08:00:3739ea0759c82b362674f28affd14893fan/a64.15.159.202:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a188.42.61.240:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a54.216.196.198:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a3.161.79.145:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a172.67.14.1:443
2024-04-15 23:18:5529d00d80eb6bacf57cc012065243bb98Virustotal results 49 / 70 (70.00%) 124.237.225.21:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 193.246.48.163:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 123.125.84.228:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 193.246.48.179:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 118.26.32.95:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 122.190.65.153:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 118.26.32.29:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 110.242.72.74:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 95.100.232.223:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 116.211.202.129:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 123.126.131.45:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 123.151.108.7:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 111.63.147.168:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 23.52.60.129:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 111.48.118.157:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 124.237.225.134:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 118.26.120.1:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a123.151.108.7:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a124.237.225.134:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a124.237.225.21:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a111.13.235.63:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a111.48.118.157:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a104.77.23.161:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a104.77.38.204:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a114.119.175.88:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a122.190.65.153:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a125.39.121.6:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a118.26.120.3:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a110.242.72.5:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a118.26.32.29:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a118.26.34.93:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a118.26.32.95:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a193.246.48.179:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a110.242.72.74:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a193.247.41.9:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a193.246.48.163:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a123.125.84.228:443
2024-02-28 20:31:31a4fdb1ca636f9a87033c5596aff571efn/a123.125.84.228:443
2024-02-28 20:31:31a4fdb1ca636f9a87033c5596aff571efn/a124.237.225.134:443
2024-02-28 20:31:31a4fdb1ca636f9a87033c5596aff571efn/a193.246.48.163:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a124.237.225.7:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a118.26.34.91:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a193.246.48.179:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a104.77.23.161:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a114.119.175.88:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a118.26.32.95:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a111.48.118.157:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a110.242.72.74:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a111.48.136.169:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a193.247.41.9:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a111.13.235.63:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a122.190.65.153:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a123.151.108.7:443

# of entries: 100 (max: 100)