JA3 Fingerprints

You can find further information about the JA3 fingerprint 1fe4c7a3544eb27afec2adfb3a3dbf60, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1fe4c7a3544eb27afec2adfb3a3dbf60
First seen:2018-03-11 19:23:08 UTC
Last seen:2021-08-09 11:42:58 UTC
Status:Blacklisted
Malware samples:6'393
Destination IPs:1'616
Malware:Tofsee -
Listing date:2020-01-09 14:18:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-06-30 01:06:54153943dc28cfb68ffd6f4e9ba5878e0dn/a123.129.219.81:443
2024-06-28 09:54:403c8214e73da12907f82e098803e46cb2n/a18.165.183.21:443
2024-06-28 09:54:403c8214e73da12907f82e098803e46cb2n/a18.197.209.74:443
2024-06-28 09:54:393c8214e73da12907f82e098803e46cb2n/a3.68.255.101:443
2024-06-19 10:12:51070ffb3516e7e3671a71db5ae9388eden/a18.184.83.209:443
2024-06-19 10:12:50070ffb3516e7e3671a71db5ae9388eden/a18.239.94.70:443
2024-06-19 10:12:50070ffb3516e7e3671a71db5ae9388eden/a18.197.209.74:443
2024-06-17 07:35:030b32d1e4c2c1480638fbfd9453c78399n/a124.237.225.21:443
2024-06-17 06:51:112b55e6fd8defb15062584f6db8dfff70n/a111.48.118.157:443
2024-06-17 06:33:46271dc1437767888b1cb60079afb60a52n/a124.237.225.21:443
2024-06-17 03:05:15225a234969eb43475b173c63a5b2ccaen/a111.48.118.157:443
2024-06-17 01:53:092466a87939ac08d86e957a8ccdb1979cn/a124.237.225.21:443
2024-06-16 21:17:1723111c9da2e332dc3b696a074964517dn/a111.48.118.157:443
2024-06-16 20:34:3710e98808ecd18802a44f3de30e7d391cn/a124.237.225.21:443
2024-06-09 14:04:39309fe4e1372328d1f3016bbce517a0ebn/a18.245.199.88:443
2024-06-09 14:04:39309fe4e1372328d1f3016bbce517a0ebn/a3.124.203.143:443
2024-06-09 14:04:39309fe4e1372328d1f3016bbce517a0ebn/a18.197.209.74:443
2024-06-07 20:38:284c29e1d00c00730dfbcf9ddb33e01c72n/a157.255.245.97:443
2024-06-07 20:38:284c29e1d00c00730dfbcf9ddb33e01c72n/a218.60.10.29:443
2024-06-07 20:38:284c29e1d00c00730dfbcf9ddb33e01c72n/a157.255.219.174:443
2024-06-07 20:38:284c29e1d00c00730dfbcf9ddb33e01c72n/a157.255.220.252:443
2024-05-05 08:00:3739ea0759c82b362674f28affd14893fan/a64.15.159.202:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a188.42.61.240:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a54.216.196.198:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a3.161.79.145:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a172.67.14.1:443
2024-04-15 23:18:5529d00d80eb6bacf57cc012065243bb98Virustotal results 49 / 70 (70.00%) 124.237.225.21:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 193.246.48.163:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 123.125.84.228:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 193.246.48.179:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 118.26.32.95:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 122.190.65.153:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 118.26.32.29:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 110.242.72.74:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 95.100.232.223:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 116.211.202.129:443
2024-03-05 01:24:25092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 123.126.131.45:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 123.151.108.7:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 111.63.147.168:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 23.52.60.129:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 111.48.118.157:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 124.237.225.134:443
2024-03-05 01:24:24092f83200c197dd7e2b593d5a011eb05Virustotal results 7 / 71 (9.86%) 118.26.120.1:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a123.151.108.7:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a124.237.225.134:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a124.237.225.21:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a111.13.235.63:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a111.48.118.157:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a104.77.23.161:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a104.77.38.204:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a114.119.175.88:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a122.190.65.153:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a125.39.121.6:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a118.26.120.3:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a110.242.72.5:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a118.26.32.29:443
2024-02-29 12:07:42b8aa3aea1d188da126dd2b4ef5cb934bn/a118.26.34.93:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a118.26.32.95:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a193.246.48.179:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a110.242.72.74:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a193.247.41.9:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a193.246.48.163:443
2024-02-29 12:07:41b8aa3aea1d188da126dd2b4ef5cb934bn/a123.125.84.228:443
2024-02-28 20:31:31a4fdb1ca636f9a87033c5596aff571efn/a123.125.84.228:443
2024-02-28 20:31:31a4fdb1ca636f9a87033c5596aff571efn/a124.237.225.134:443
2024-02-28 20:31:31a4fdb1ca636f9a87033c5596aff571efn/a193.246.48.163:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a124.237.225.7:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a118.26.34.91:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a193.246.48.179:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a104.77.23.161:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a114.119.175.88:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a118.26.32.95:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a111.48.118.157:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a110.242.72.74:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a111.48.136.169:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a193.247.41.9:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a111.13.235.63:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a122.190.65.153:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a123.151.108.7:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a104.77.38.204:443
2024-02-28 20:31:30a4fdb1ca636f9a87033c5596aff571efn/a118.26.32.29:443
2024-02-27 19:04:53a28b17a88d75a80ed8b0f8835d9e286fn/a123.125.84.228:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a193.246.48.179:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a118.26.120.3:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a118.26.120.1:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a104.84.72.10:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a114.119.175.88:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a124.237.225.21:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a23.53.195.37:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a124.237.225.7:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a118.26.32.95:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a125.39.121.6:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a118.26.34.91:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a104.77.38.204:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a118.26.32.29:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a118.26.34.93:443
2024-02-27 19:04:52a28b17a88d75a80ed8b0f8835d9e286fn/a104.77.23.161:443
2024-02-27 19:04:51a28b17a88d75a80ed8b0f8835d9e286fn/a124.237.225.134:443
2024-02-27 19:04:51a28b17a88d75a80ed8b0f8835d9e286fn/a80.67.82.234:443
2024-02-27 19:04:51a28b17a88d75a80ed8b0f8835d9e286fn/a193.246.48.163:443

# of entries: 100 (max: 100)