JA3 Fingerprints

You can find further information about the JA3 fingerprint 1fe4c7a3544eb27afec2adfb3a3dbf60, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1fe4c7a3544eb27afec2adfb3a3dbf60
First seen:2018-03-11 19:23:08 UTC
Last seen:2021-08-09 11:42:58 UTC
Status:Blacklisted
Malware samples:6'293
Destination IPs:1'046
Malware:Tofsee -
Listing date:2020-01-09 14:18:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2022-06-24 19:53:110e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 104.18.23.19:443
2022-06-24 19:53:110e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 23.227.38.32:443
2022-06-24 19:53:110e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 192.124.249.108:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 158.101.42.104:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 172.217.168.68:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 104.26.15.15:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 128.30.52.100:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 172.217.168.42:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 216.58.215.226:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 72.29.124.158:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 172.217.168.40:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 3.3.9.1:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 34.117.168.233:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 34.236.226.133:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 87.98.229.251:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 184.86.103.150:443
2022-06-24 19:53:100e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 131.113.131.113:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 172.67.74.86:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 160.153.136.3:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 13.224.92.76:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 91.198.174.192:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 104.26.14.15:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 3.3.8.1:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 107.178.246.49:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 104.16.51.111:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 184.86.103.147:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 23.211.4.163:443
2022-06-24 19:53:090e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 13.224.90.151:443
2022-06-24 19:53:080e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 72.29.124.152:443
2022-06-24 19:53:080e46155f4eace1c6ddca1d13dee05dceVirustotal results 39 / 70 (55.71%) 104.16.44.99:443
2022-06-23 18:01:4217f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 151.101.1.193:443
2022-06-23 18:01:4217f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 2.19.69.77:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 52.22.220.15:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.16.54.16:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 151.101.193.111:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 151.101.194.133:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.16.55.16:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 139.162.226.100:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 193.52.26.77:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 142.250.203.99:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 131.202.38.15:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 91.198.174.192:443
2022-06-23 18:01:4117f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 65.156.1.95:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 82.208.18.172:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 151.101.2.98:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 52.142.30.187:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.16.208.8:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.16.55.52:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.22.16.90:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 172.217.168.78:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.18.4.108:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 162.209.96.185:443
2022-06-23 18:01:4017f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 184.86.83.215:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 212.71.254.175:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 23.185.0.3:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 172.64.149.35:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.18.32.105:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.16.80.24:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 130.117.76.11:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 20.54.132.109:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.17.147.61:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.196.104.56:443
2022-06-23 18:01:3917f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 151.101.0.81:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 54.242.177.159:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 23.111.128.195:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 207.241.224.2:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.17.112.188:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 2.20.218.104:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 216.58.215.238:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.16.177.226:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 151.101.129.193:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 104.17.148.61:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 93.113.11.101:443
2022-06-23 18:01:3817f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 78.153.200.113:443
2022-06-23 18:01:3717f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 69.163.235.207:443
2022-06-23 18:01:3717f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 23.205.184.121:443
2022-06-23 18:01:3717f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 151.101.65.193:443
2022-06-23 18:01:3717f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 151.101.193.193:443
2022-06-23 18:01:3717f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 193.247.43.193:443
2022-06-23 18:01:3717f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 132.174.0.31:443
2022-06-23 18:01:3717f04ed553aa22652599c9994a3a5f75Virustotal results 18 / 70 (25.71%) 172.105.75.74:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a143.204.89.7:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a143.204.89.36:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a67.202.44.235:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a172.67.68.80:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a143.204.89.26:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a143.204.89.18:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a23.185.0.1:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a162.159.135.42:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a104.244.42.129:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a104.244.42.70:443
2022-06-14 00:18:115678b6f1bb6736868b14ad447cca4d0en/a104.18.3.122:443
2022-06-14 00:18:105678b6f1bb6736868b14ad447cca4d0en/a151.101.113.164:443
2022-06-14 00:18:105678b6f1bb6736868b14ad447cca4d0en/a34.193.127.3:443
2022-06-14 00:18:105678b6f1bb6736868b14ad447cca4d0en/a23.79.130.154:443
2022-06-14 00:18:105678b6f1bb6736868b14ad447cca4d0en/a143.204.89.128:443
2022-06-14 00:18:105678b6f1bb6736868b14ad447cca4d0en/a143.204.89.106:443
2022-06-14 00:18:105678b6f1bb6736868b14ad447cca4d0en/a199.60.103.254:443
2022-06-14 00:18:105678b6f1bb6736868b14ad447cca4d0en/a92.123.225.25:443
2022-06-14 00:18:105678b6f1bb6736868b14ad447cca4d0en/a143.204.89.53:443

# of entries: 100 (max: 100)