JA3 Fingerprints

You can find further information about the JA3 fingerprint 1fe4c7a3544eb27afec2adfb3a3dbf60, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1fe4c7a3544eb27afec2adfb3a3dbf60
First seen:2018-03-11 19:23:08 UTC
Last seen:2021-08-09 11:42:58 UTC
Status:Blacklisted
Malware samples:5'962
Destination IPs:784
Malware:Tofsee -
Listing date:2020-01-09 14:18:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2022-01-16 08:04:19a7799950c8cf984ecee9126898d2a757n/a172.217.168.35:443
2022-01-16 08:04:19a7799950c8cf984ecee9126898d2a757n/a142.250.203.99:443
2022-01-16 08:04:18a7799950c8cf984ecee9126898d2a757n/a172.217.168.36:443
2022-01-16 07:43:34ce43bbce4d2a07c3e0ca4676b69089ben/a216.58.208.100:443
2022-01-16 07:43:34ce43bbce4d2a07c3e0ca4676b69089ben/a142.251.36.35:443
2022-01-16 07:42:56d0f8d5b1c879d4b98d73f8b584170a03n/a172.217.168.3:443
2022-01-16 07:42:56d0f8d5b1c879d4b98d73f8b584170a03n/a172.217.168.36:443
2022-01-16 07:42:56d0f8d5b1c879d4b98d73f8b584170a03n/a172.217.168.35:443
2022-01-16 07:41:35bea2a3bd3d2d9f3185d1bae41e89acefn/a142.251.36.35:443
2022-01-16 07:41:35bea2a3bd3d2d9f3185d1bae41e89acefn/a216.58.208.100:443
2022-01-16 07:41:34bea2a3bd3d2d9f3185d1bae41e89acefn/a142.251.39.99:443
2022-01-16 07:38:502ef02102394e27bfda910614d878eb8dn/a142.251.39.99:443
2022-01-16 07:38:492ef02102394e27bfda910614d878eb8dn/a216.58.208.100:443
2022-01-16 07:38:492ef02102394e27bfda910614d878eb8dn/a142.251.36.35:443
2022-01-16 07:38:1067c00059ef98f80999abf104f32de848n/a142.251.36.35:443
2022-01-16 07:38:1067c00059ef98f80999abf104f32de848n/a216.58.208.100:443
2022-01-16 07:34:2319e555befb11569fd128fe927ebde249n/a172.217.168.68:443
2022-01-16 07:34:2219e555befb11569fd128fe927ebde249n/a172.217.168.67:443
2022-01-16 07:30:2604edc1a4f38600721597fcba731bc13cVirustotal results 22 / 68 (32.35%) 142.250.72.132:443
2022-01-16 07:30:2604edc1a4f38600721597fcba731bc13cVirustotal results 22 / 68 (32.35%) 142.250.72.227:443
2022-01-16 07:14:10b546198962df7dd79a15d5034b8ac939Virustotal results 43 / 68 (63.24%) 142.250.203.100:443
2022-01-16 07:14:10b546198962df7dd79a15d5034b8ac939Virustotal results 43 / 68 (63.24%) 172.217.168.67:443
2022-01-15 23:19:51a64ce58908a175d314d6f36d8ac9c955Virustotal results 44 / 69 (63.77%) 142.250.72.164:443
2022-01-15 23:19:50a64ce58908a175d314d6f36d8ac9c955Virustotal results 44 / 69 (63.77%) 142.250.68.3:443
2022-01-15 23:08:00a0d4e86ba741384c5cc4ec2600c99a0cVirustotal results 42 / 66 (63.64%) 172.217.168.35:443
2022-01-15 23:07:58a0d4e86ba741384c5cc4ec2600c99a0cVirustotal results 42 / 66 (63.64%) 142.250.203.100:443
2022-01-15 20:38:04059eac08e725f1a2805e6710dc33fb9en/a142.250.203.99:443
2022-01-15 20:38:04059eac08e725f1a2805e6710dc33fb9en/a172.217.168.68:443
2022-01-15 18:39:31395780bd658008430d6acee8d73c7c0bn/a172.217.168.35:443
2022-01-15 18:39:30395780bd658008430d6acee8d73c7c0bn/a172.217.168.36:443
2022-01-15 17:50:14a30843f5237da109808ecb8a5f811d4bVirustotal results 24 / 68 (35.29%) 216.58.208.99:443
2022-01-15 17:50:13a30843f5237da109808ecb8a5f811d4bVirustotal results 24 / 68 (35.29%) 216.58.208.100:443
2022-01-15 17:05:3846a70d5d3e3c0c8ad531b1e0bd9f3dban/a216.58.208.100:443
2022-01-15 17:05:3846a70d5d3e3c0c8ad531b1e0bd9f3dban/a142.250.179.131:443
2022-01-15 16:55:21e08672b54462cbad38ebc4eef207318bn/a142.250.186.99:443
2022-01-15 16:55:21e08672b54462cbad38ebc4eef207318bn/a142.250.186.100:443
2022-01-15 16:55:21e08672b54462cbad38ebc4eef207318bn/a142.250.185.196:443
2022-01-15 02:02:06b0fd43e46f24f83d04adc5fc563e21a2Virustotal results 44 / 68 (64.71%) 142.250.179.131:443
2022-01-15 02:02:06b0fd43e46f24f83d04adc5fc563e21a2Virustotal results 44 / 68 (64.71%) 216.58.208.100:443
2022-01-14 16:28:035ec0c55af962630debef76632458fe3dn/a172.217.168.3:443
2022-01-14 16:28:035ec0c55af962630debef76632458fe3dn/a216.58.215.228:443
2022-01-14 16:28:035ec0c55af962630debef76632458fe3dn/a216.58.215.227:443
2022-01-14 13:45:56e797addbd37d8a1e7b8df3b50b426f2fn/a142.250.188.227:443
2022-01-14 13:45:55e797addbd37d8a1e7b8df3b50b426f2fn/a142.250.72.164:443
2022-01-14 13:18:1150badd524b2e3faf0ff050dd5be8a584n/a172.217.168.67:443
2022-01-14 13:18:1150badd524b2e3faf0ff050dd5be8a584n/a216.58.215.227:443
2022-01-14 13:18:1150badd524b2e3faf0ff050dd5be8a584n/a172.217.168.4:443
2022-01-14 12:00:29ab2bd639bd6deed5786448002a6945e9n/a172.217.168.4:443
2022-01-14 12:00:29ab2bd639bd6deed5786448002a6945e9n/a172.217.168.35:443
2022-01-14 11:07:23e4b33586bfdb5a9cd45f3038b8f4ccbdn/a142.250.72.164:443
2022-01-14 11:07:23e4b33586bfdb5a9cd45f3038b8f4ccbdn/a142.250.68.3:443
2022-01-14 11:07:22e4b33586bfdb5a9cd45f3038b8f4ccbdn/a142.250.72.227:443
2022-01-14 10:14:407c64bd730b6c9565f287278834a33618n/a172.217.168.35:443
2022-01-14 05:19:242d03728d8cc5c7ff0fb9f70de3292cd4n/a172.217.168.68:443
2022-01-14 05:19:242d03728d8cc5c7ff0fb9f70de3292cd4n/a172.217.168.67:443
2022-01-13 08:06:45c5ec54543105c64135c181b7a7283658n/a172.217.168.67:443
2022-01-13 08:06:45c5ec54543105c64135c181b7a7283658n/a172.217.168.68:443
2022-01-13 08:06:44c5ec54543105c64135c181b7a7283658n/a172.217.168.3:443
2022-01-13 08:02:0495356994b2a28586786855d158676289n/a142.251.39.99:443
2022-01-13 08:02:0495356994b2a28586786855d158676289n/a216.58.208.100:443
2022-01-13 07:36:0826533d1123c26472c3db654ef0791148n/a172.217.4.163:443
2022-01-12 12:51:03a9c07cf8e9106baf9a597a769aa07a94n/a172.217.168.36:443
2022-01-12 12:51:03a9c07cf8e9106baf9a597a769aa07a94n/a172.217.168.35:443
2022-01-12 08:40:55b591c0da775c2df0ed0cd5612c367ab1n/a216.58.215.227:443
2022-01-11 21:37:15b7726400c83e4f65c3a749c8bf05d61dn/a142.250.181.228:443
2022-01-11 21:37:14b7726400c83e4f65c3a749c8bf05d61dn/a142.250.186.131:443
2022-01-11 20:50:16f4d74fa642fbd55fa10941c0ba4e594fn/a172.217.168.3:443
2022-01-11 20:07:09315ed3d6ebaf66bd0728a71191a0f949n/a216.58.208.100:443
2022-01-11 20:07:08315ed3d6ebaf66bd0728a71191a0f949n/a142.250.179.163:443
2022-01-11 09:07:17a31d071e702db60e327007e4f9680badn/a142.250.186.164:443
2022-01-11 09:07:16a31d071e702db60e327007e4f9680badn/a142.250.181.227:443
2022-01-11 09:07:16a31d071e702db60e327007e4f9680badn/a142.250.186.131:443
2022-01-11 07:05:01e9af941c5a2c51bac0912e5148043149n/a172.217.168.68:443
2022-01-11 07:05:01e9af941c5a2c51bac0912e5148043149n/a172.217.168.67:443
2022-01-11 06:29:53a3f805829eef7ae401e84a31d6286702n/a172.217.5.196:443
2022-01-11 06:29:53a3f805829eef7ae401e84a31d6286702n/a172.217.14.67:443
2022-01-11 06:19:1108719e4d0e22fca2ba927a8f4f8287c2Virustotal results 25 / 68 (36.76%) 216.58.208.100:443
2022-01-11 06:19:1108719e4d0e22fca2ba927a8f4f8287c2Virustotal results 25 / 68 (36.76%) 142.250.179.163:443
2022-01-10 15:51:42f3614c2a7c23c7fe97f23a48fc519624n/a216.58.215.228:443
2022-01-10 15:51:41f3614c2a7c23c7fe97f23a48fc519624n/a172.217.168.35:443
2022-01-10 10:27:158d220417c859bc1f25ab7773f271e57cn/a172.217.168.35:443
2022-01-10 10:27:148d220417c859bc1f25ab7773f271e57cn/a172.217.168.36:443
2022-01-10 08:55:13ea528eb0774cd6cbb49df9742736a469n/a216.58.215.228:443
2022-01-10 08:55:13ea528eb0774cd6cbb49df9742736a469n/a172.217.168.67:443
2022-01-10 08:09:595c9fc8ff990cc99c0250f81aa86444ecn/a142.250.184.227:443
2022-01-10 08:09:585c9fc8ff990cc99c0250f81aa86444ecn/a142.250.185.67:443
2022-01-10 08:09:585c9fc8ff990cc99c0250f81aa86444ecn/a142.250.181.228:443
2022-01-09 17:38:360dec24689687365222a13067e53fd422n/a49.7.32.101:443
2022-01-09 17:38:360dec24689687365222a13067e53fd422n/a129.227.142.21:443
2022-01-09 17:38:350dec24689687365222a13067e53fd422n/a23.222.37.111:443
2022-01-09 17:38:350dec24689687365222a13067e53fd422n/a106.38.212.25:443
2022-01-09 17:38:340dec24689687365222a13067e53fd422n/a118.26.32.10:443
2022-01-09 17:38:340dec24689687365222a13067e53fd422n/a118.26.120.1:443
2022-01-09 17:38:340dec24689687365222a13067e53fd422n/a96.16.53.210:443
2022-01-09 07:57:093c987f1bf61a7c2c79bcdcdcddf0db2aVirustotal results 20 / 66 (30.30%) 142.251.39.99:443
2022-01-09 07:57:093c987f1bf61a7c2c79bcdcdcddf0db2aVirustotal results 20 / 66 (30.30%) 216.58.208.100:443
2022-01-09 07:27:42b78c1fd008164d31321a0948c3afc6b2Virustotal results 38 / 65 (58.46%) 172.217.168.67:443
2022-01-09 07:27:42b78c1fd008164d31321a0948c3afc6b2Virustotal results 38 / 65 (58.46%) 216.58.215.228:443
2022-01-09 07:27:42b78c1fd008164d31321a0948c3afc6b2Virustotal results 38 / 65 (58.46%) 142.250.203.100:443
2022-01-09 06:10:08a8a82181892904c5623086befebae535Virustotal results 39 / 68 (57.35%) 142.250.217.131:443

# of entries: 100 (max: 100)