JA3 Fingerprints

You can find further information about the JA3 fingerprint 1fe4c7a3544eb27afec2adfb3a3dbf60, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1fe4c7a3544eb27afec2adfb3a3dbf60
First seen:2018-03-11 19:23:08 UTC
Last seen:2021-08-09 11:42:58 UTC
Status:Blacklisted
Malware samples:6'322
Destination IPs:1'223
Malware:Tofsee -
Listing date:2020-01-09 14:18:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-02-03 22:36:271ff30ab5161ad8205700e0c9a81cab13n/a54.154.43.150:443
2023-02-03 22:36:271ff30ab5161ad8205700e0c9a81cab13n/a99.84.207.238:443
2023-02-03 22:36:271ff30ab5161ad8205700e0c9a81cab13n/a54.154.43.150:443
2023-02-03 22:36:271ff30ab5161ad8205700e0c9a81cab13n/a99.84.207.238:443
2023-02-03 22:36:261ff30ab5161ad8205700e0c9a81cab13n/a188.42.61.240:443
2023-02-03 22:36:261ff30ab5161ad8205700e0c9a81cab13n/a172.67.14.1:443
2023-02-03 22:36:261ff30ab5161ad8205700e0c9a81cab13n/a188.42.61.240:443
2023-02-03 22:36:261ff30ab5161ad8205700e0c9a81cab13n/a172.67.14.1:443
2023-01-23 18:15:1349e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.21.9.177:443
2023-01-23 18:15:1349e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 52.222.139.117:443
2023-01-23 18:15:1349e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 52.222.139.64:443
2023-01-23 18:15:1349e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 52.222.139.106:443
2023-01-23 18:15:1349e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 23.222.65.138:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 208.139.194.169:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.244.42.65:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 162.159.130.87:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.16.172.252:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 23.222.40.219:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 23.222.58.166:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 52.222.139.89:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 23.2.231.27:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 13.227.219.116:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.17.49.43:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 23.2.233.143:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 208.255.67.58:443
2023-01-23 18:15:1249e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 172.67.161.37:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 35.241.45.187:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 23.2.226.51:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 146.142.252.68:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 151.101.38.137:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.244.42.198:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 23.2.230.14:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 52.222.139.57:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.244.42.6:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.244.42.129:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.244.42.134:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 104.17.50.43:443
2023-01-23 18:15:1149e782bd8f3a31f7d1d7eddebe2f1a94Virustotal results 17 / 68 (25.00%) 18.213.206.73:443
2023-01-17 18:18:1672f4438c81361ebaa0b9edf0cd8d76ebn/a122.190.65.153:443
2023-01-17 18:18:1672f4438c81361ebaa0b9edf0cd8d76ebn/a124.237.225.14:443
2023-01-17 18:18:1672f4438c81361ebaa0b9edf0cd8d76ebn/a118.26.32.10:443
2023-01-17 18:18:1672f4438c81361ebaa0b9edf0cd8d76ebn/a118.26.34.93:443
2023-01-17 18:18:1672f4438c81361ebaa0b9edf0cd8d76ebn/a23.222.37.111:443
2023-01-17 18:18:1572f4438c81361ebaa0b9edf0cd8d76ebn/a96.16.53.210:443
2023-01-17 18:18:1572f4438c81361ebaa0b9edf0cd8d76ebn/a49.7.33.61:443
2023-01-09 18:57:1682e8f21e1a13b40c96bae3f64c7fe288n/a123.125.84.228:443
2023-01-09 18:57:1682e8f21e1a13b40c96bae3f64c7fe288n/a193.247.43.113:443
2023-01-09 18:57:1682e8f21e1a13b40c96bae3f64c7fe288n/a118.26.34.93:443
2023-01-09 18:57:1682e8f21e1a13b40c96bae3f64c7fe288n/a111.48.118.157:443
2023-01-09 18:57:1582e8f21e1a13b40c96bae3f64c7fe288n/a116.211.202.129:443
2023-01-09 18:57:1582e8f21e1a13b40c96bae3f64c7fe288n/a111.202.75.3:443
2023-01-09 18:57:1582e8f21e1a13b40c96bae3f64c7fe288n/a118.26.32.20:443
2023-01-09 18:57:1582e8f21e1a13b40c96bae3f64c7fe288n/a49.7.32.36:443
2023-01-09 18:57:1582e8f21e1a13b40c96bae3f64c7fe288n/a114.119.175.88:443
2023-01-09 18:57:1582e8f21e1a13b40c96bae3f64c7fe288n/a118.26.32.95:443
2023-01-09 18:57:1482e8f21e1a13b40c96bae3f64c7fe288n/a118.26.32.10:443
2023-01-09 18:57:1482e8f21e1a13b40c96bae3f64c7fe288n/a184.24.31.117:443
2023-01-09 18:57:1482e8f21e1a13b40c96bae3f64c7fe288n/a193.247.43.235:443
2023-01-09 18:57:1482e8f21e1a13b40c96bae3f64c7fe288n/a106.38.212.74:443
2023-01-09 18:57:1482e8f21e1a13b40c96bae3f64c7fe288n/a193.247.43.211:443
2023-01-09 18:57:1482e8f21e1a13b40c96bae3f64c7fe288n/a118.26.34.91:443
2023-01-09 18:57:1482e8f21e1a13b40c96bae3f64c7fe288n/a49.7.33.61:443
2023-01-07 21:51:080f3f7d4549d6f7c903cea5558bc6f4e0n/a203.205.254.103:443
2022-11-24 07:45:11140a8c39b8728741327205a6d4a3484en/a203.205.254.103:443
2022-11-22 12:02:015848a424080e65a705bb0f7728f52d13n/a104.109.70.58:443
2022-11-22 12:02:015848a424080e65a705bb0f7728f52d13n/a123.125.84.228:443
2022-11-22 12:02:015848a424080e65a705bb0f7728f52d13n/a36.110.238.54:443
2022-11-22 12:02:015848a424080e65a705bb0f7728f52d13n/a2.16.186.184:443
2022-11-22 12:02:005848a424080e65a705bb0f7728f52d13n/a49.7.32.101:443
2022-11-22 12:02:005848a424080e65a705bb0f7728f52d13n/a118.26.32.20:443
2022-11-22 12:02:005848a424080e65a705bb0f7728f52d13n/a118.26.34.93:443
2022-11-22 12:02:005848a424080e65a705bb0f7728f52d13n/a36.110.238.98:443
2022-11-22 12:02:005848a424080e65a705bb0f7728f52d13n/a111.202.75.3:443
2022-11-22 12:02:005848a424080e65a705bb0f7728f52d13n/a106.38.212.74:443
2022-11-10 23:55:12ffd0b5c615148badde411d174188501dn/a172.64.145.84:443
2022-11-10 16:09:37ff24b3ceb9e1d8ebcba4ea9c0c4184dan/a67.227.167.10:443
2022-11-10 16:09:37ff24b3ceb9e1d8ebcba4ea9c0c4184dan/a104.131.182.219:443
2022-11-10 16:09:37ff24b3ceb9e1d8ebcba4ea9c0c4184dan/a160.111.244.48:443
2022-11-10 16:09:37ff24b3ceb9e1d8ebcba4ea9c0c4184dan/a67.225.218.181:443
2022-10-21 02:58:02389d2baac76e703f08a5d1ed5ea54767n/a52.57.197.197:443
2022-10-21 02:58:02389d2baac76e703f08a5d1ed5ea54767n/a65.9.86.128:443
2022-10-21 02:58:02389d2baac76e703f08a5d1ed5ea54767n/a18.184.83.209:443
2022-10-21 02:58:02389d2baac76e703f08a5d1ed5ea54767n/a18.197.209.74:443
2022-10-11 04:31:45a73b342c38ac1362726f9ccc27519565n/a172.217.168.14:443
2022-10-04 12:53:09a9b5f0efc2ecc02033bfe0dd15d49d35n/a111.48.118.157:443
2022-10-02 18:03:2549a3e9fc00bccc168690ebe3216ebe32n/a216.239.36.55:443
2022-09-29 06:38:022f94027a2869a8f5986b396a65d01c06n/a103.235.46.40:443
2022-09-27 10:31:072c32859a8104cd93e5412b59d670611cn/a157.255.245.97:443
2022-09-27 10:31:072c32859a8104cd93e5412b59d670611cn/a157.255.243.124:443
2022-09-27 10:31:072c32859a8104cd93e5412b59d670611cn/a203.205.137.12:443
2022-09-27 10:31:062c32859a8104cd93e5412b59d670611cn/a61.241.44.30:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a95.216.163.36:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a35.227.216.47:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a52.45.81.121:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a104.17.148.61:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a45.60.107.115:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a185.199.109.153:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a160.111.244.48:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a104.80.224.24:443
2022-09-24 10:22:574a3ba1f6b9ef4d81daa978b7591c2cd9n/a23.185.0.1:443

# of entries: 100 (max: 100)