JA3 Fingerprints

You can find further information about the JA3 fingerprint 1fe4c7a3544eb27afec2adfb3a3dbf60, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1fe4c7a3544eb27afec2adfb3a3dbf60
First seen:2018-03-11 19:23:08 UTC
Last seen:2021-08-09 11:42:58 UTC
Status:Blacklisted
Malware samples:5'456
Destination IPs:747
Malware:Tofsee -
Listing date:2020-01-09 14:18:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-10-17 06:54:29af4ab116f300f3feaac8d6c1deaf2a3dn/a13.224.94.11:443
2021-10-17 06:54:29af4ab116f300f3feaac8d6c1deaf2a3dn/a18.194.214.166:443
2021-10-16 11:46:02fdb885538ea98d03bc0ed1789cfb3fb6n/a193.246.48.163:443
2021-10-16 11:46:02fdb885538ea98d03bc0ed1789cfb3fb6n/a106.38.212.25:443
2021-10-16 11:46:02fdb885538ea98d03bc0ed1789cfb3fb6n/a23.201.247.222:443
2021-10-16 11:46:01fdb885538ea98d03bc0ed1789cfb3fb6n/a129.227.142.21:443
2021-10-16 11:46:01fdb885538ea98d03bc0ed1789cfb3fb6n/a49.7.32.101:443
2021-10-16 11:46:01fdb885538ea98d03bc0ed1789cfb3fb6n/a118.26.32.10:443
2021-10-12 20:42:4436ee5bcd27a792688f9d1696495d60c2n/a129.227.142.21:443
2021-10-11 13:57:41b110445ab580dce62588d1588dd9c611n/a172.217.168.35:443
2021-10-11 13:57:41b110445ab580dce62588d1588dd9c611n/a172.217.168.68:443
2021-10-11 13:57:31b0ec1f35f2f99a5b34b00bf7dc7d9815n/a142.250.179.196:443
2021-10-11 13:57:30b0ec1f35f2f99a5b34b00bf7dc7d9815n/a142.250.179.195:443
2021-10-11 13:45:39b1099508ad4f1c110305ef9859c29c62n/a172.217.168.3:443
2021-10-11 13:45:39b1099508ad4f1c110305ef9859c29c62n/a216.58.215.228:443
2021-10-11 13:31:40b0d7d6d733a172f4de858a676804769cn/a172.217.168.68:443
2021-10-11 13:31:40b0d7d6d733a172f4de858a676804769cn/a216.58.215.228:443
2021-10-11 13:31:40b0d7d6d733a172f4de858a676804769cn/a172.217.168.35:443
2021-10-11 13:11:48b0a8e7268594f719830488f06799c8b5n/a172.217.168.3:443
2021-10-11 13:11:48b0a8e7268594f719830488f06799c8b5n/a216.58.215.228:443
2021-10-10 07:41:49a35e871593eaad66567102ee820f1d8dn/a142.251.36.35:443
2021-10-10 07:41:48a35e871593eaad66567102ee820f1d8dn/a142.250.179.196:443
2021-10-10 05:38:19f5492d4b419b7cf2cc9ff273e8faed02n/a142.250.203.110:443
2021-10-10 01:24:3030236a41827e4f14001f07e20586db49n/a142.250.186.100:443
2021-10-10 01:24:2830236a41827e4f14001f07e20586db49n/a142.250.184.227:443
2021-10-10 01:24:2830236a41827e4f14001f07e20586db49n/a142.250.181.227:443
2021-10-09 22:29:512b54904091859b775c80da074bc65c6dn/a216.58.215.228:443
2021-10-09 22:29:512b54904091859b775c80da074bc65c6dn/a172.217.168.67:443
2021-10-09 15:06:320da3131f0e073e0519e29c559f359d8an/a172.217.168.67:443
2021-10-09 14:57:29690febb75b8fc1a29d5970ea0be532e0n/a142.250.184.227:443
2021-10-09 14:57:28690febb75b8fc1a29d5970ea0be532e0n/a142.250.186.100:443
2021-10-09 14:53:13eb64ecddfa2db02c0fc9a83edb8231c2n/a142.250.179.163:443
2021-10-09 14:53:12eb64ecddfa2db02c0fc9a83edb8231c2n/a142.250.179.196:443
2021-10-09 14:03:38318bc137dd15fc91c793f3246d70a679n/a172.217.168.67:443
2021-10-09 14:03:38318bc137dd15fc91c793f3246d70a679n/a172.217.168.36:443
2021-10-09 13:40:409584cfcc00919d0789bfc34f0625a5b0n/a64.233.185.94:443
2021-10-09 13:40:399584cfcc00919d0789bfc34f0625a5b0n/a108.177.122.99:443
2021-10-09 13:35:02a0f4831e98beb28259c82e9b449a06acn/a172.217.168.36:443
2021-10-09 13:35:01a0f4831e98beb28259c82e9b449a06acn/a172.217.168.67:443
2021-10-09 13:32:53a862863d576f061bbe7583bba3ed3a96n/a74.125.21.94:443
2021-10-09 13:23:52a91ddc6ef1ac798879d77f323d93e713n/a142.250.179.196:443
2021-10-09 13:23:52a91ddc6ef1ac798879d77f323d93e713n/a142.250.179.195:443
2021-10-09 13:21:03a8f5b4898de7f0376758a84d67407cd5Virustotal results 44 / 69 (63.77%) 108.177.122.99:443
2021-10-09 13:21:03a8f5b4898de7f0376758a84d67407cd5Virustotal results 44 / 69 (63.77%) 64.233.185.94:443
2021-10-09 13:17:23a914f1a01624d63a8513d3a975ceb7dfn/a142.250.179.195:443
2021-10-09 13:17:23a914f1a01624d63a8513d3a975ceb7dfn/a142.250.179.196:443
2021-10-09 13:07:01a83d8ac16800108ec841b00b32d8969eVirustotal results 48 / 68 (70.59%) 172.217.168.35:443
2021-10-09 09:01:58fc84c02dd8e481a0786fe6c912ad9b09n/a172.217.168.67:443
2021-10-09 09:01:57fc84c02dd8e481a0786fe6c912ad9b09n/a172.217.168.68:443
2021-10-09 08:05:29a2661e043c537f3c8f177d93316487ben/a64.233.185.94:443
2021-10-09 08:05:28a2661e043c537f3c8f177d93316487ben/a108.177.122.106:443
2021-10-09 07:21:04d425ad286b5fdd9c71addbb41121a633n/a172.217.168.36:443
2021-10-09 07:21:04d425ad286b5fdd9c71addbb41121a633n/a172.217.168.67:443
2021-10-09 05:54:44e7b091d862d9999333eaf4b42c35df4an/a142.250.179.196:443
2021-10-09 05:54:44e7b091d862d9999333eaf4b42c35df4an/a142.250.179.195:443
2021-10-09 05:00:24eba169c46370777ca75fda0563ddc8f4n/a142.250.179.131:443
2021-10-09 04:58:19ebf3755ddefaa5cb79df628c85ff267bn/a142.250.179.196:443
2021-10-09 04:58:19ebf3755ddefaa5cb79df628c85ff267bn/a142.250.179.131:443
2021-10-09 04:58:19ebf3755ddefaa5cb79df628c85ff267bn/a142.250.179.195:443
2021-10-08 12:39:49ba2adfa17a17b9987260a7bfefacc52cn/a216.58.215.227:443
2021-10-08 12:39:49ba2adfa17a17b9987260a7bfefacc52cn/a216.58.215.228:443
2021-10-08 12:28:09c1e6c75e289a41bce23a3c027dadcc22n/a216.58.215.228:443
2021-10-08 12:28:09c1e6c75e289a41bce23a3c027dadcc22n/a172.217.168.3:443
2021-10-08 11:52:04c189923fe8244cae435ed883778544afn/a172.217.168.35:443
2021-10-08 11:52:04c189923fe8244cae435ed883778544afn/a172.217.168.4:443
2021-10-08 05:36:11a22e01ab691e206649b7f12381e2798dn/a142.250.179.196:443
2021-10-08 05:36:10a22e01ab691e206649b7f12381e2798dn/a142.250.179.195:443
2021-10-07 19:23:40a96110d39e67598484fbe639c5a3c490n/a172.217.168.36:443
2021-10-07 19:23:40a96110d39e67598484fbe639c5a3c490n/a172.217.168.67:443
2021-10-07 13:37:08a82a96325b727b35b704558ded358350n/a23.201.248.207:443
2021-10-07 13:37:08a82a96325b727b35b704558ded358350n/a172.217.168.3:443
2021-10-07 12:25:13a7a30aa0477b1d6e2f502af1b223f1ffn/a142.250.184.227:443
2021-10-07 12:25:13a7a30aa0477b1d6e2f502af1b223f1ffn/a172.217.23.100:443
2021-10-07 11:21:597636453ea746dc166f4d4bec217ef642n/a142.250.203.99:443
2021-10-07 10:18:59a5ffd0c008e1c1df4e9f6f867c18d4fbn/a142.250.179.195:443
2021-10-07 10:18:59a5ffd0c008e1c1df4e9f6f867c18d4fbn/a142.250.179.196:443
2021-10-07 10:06:17a5b75434620cfd3a11279b902ac4755en/a172.217.168.68:443
2021-10-07 10:06:17a5b75434620cfd3a11279b902ac4755en/a172.217.168.35:443
2021-10-07 06:17:53a24ef24778b881e72fb9bee32e7d2dc9Virustotal results 48 / 67 (71.64%) 172.217.168.3:443
2021-10-07 06:02:119d38a5b8da86db2cc28bd9c54f67d1ebn/a216.58.215.228:443
2021-10-07 06:02:109d38a5b8da86db2cc28bd9c54f67d1ebn/a172.217.168.3:443
2021-10-07 04:43:26a380b6d05f71c2ffe478eb4ee714082en/a172.217.168.3:443
2021-10-07 01:19:58a7850b3873bb5e9d60d120f66a1c353en/a142.250.185.195:443
2021-10-07 01:19:58a7850b3873bb5e9d60d120f66a1c353en/a142.250.186.100:443
2021-10-06 22:07:35afc56fe7d6f78eda8462b64a38b51d7cn/a142.251.36.3:443
2021-10-06 19:31:17b61d1b63dc1e8bdcdf855c430ecfc16bn/a172.217.168.3:443
2021-10-06 19:31:17b61d1b63dc1e8bdcdf855c430ecfc16bn/a172.217.168.68:443
2021-10-06 17:55:27b7595d8522bba797b1a0958db78c50a5n/a216.58.194.227:443
2021-10-06 17:55:27b7595d8522bba797b1a0958db78c50a5n/a108.177.122.94:443
2021-10-06 17:55:27b7595d8522bba797b1a0958db78c50a5n/a142.250.9.106:443
2021-10-06 17:43:26a82f7832d180139d51974042b9dc526fn/a172.217.168.35:443
2021-10-06 09:31:44a6502d7e3a37ab4678e7146020cf7c12n/a142.250.179.196:443
2021-10-06 09:31:44a6502d7e3a37ab4678e7146020cf7c12n/a216.58.214.3:443
2021-10-06 07:47:5833508e9efe710acaf220afb42e9efb52n/a142.250.179.195:443
2021-10-06 07:47:5833508e9efe710acaf220afb42e9efb52n/a142.250.179.196:443
2021-10-06 07:47:199abe35d926ab37622d534fb854dd4597n/a172.217.168.68:443
2021-10-06 07:47:199abe35d926ab37622d534fb854dd4597n/a172.217.168.35:443
2021-10-06 07:44:58ba0a6e04ee69a73d3cfb024180b96940n/a142.250.105.94:443
2021-10-06 07:44:58ba0a6e04ee69a73d3cfb024180b96940n/a172.217.215.105:443
2021-10-06 07:43:352caef13c8bb68ebeeab9c02f1d674eccn/a172.217.168.35:443

# of entries: 100 (max: 100)