JA3 Fingerprints

You can find further information about the JA3 fingerprint 1fe4c7a3544eb27afec2adfb3a3dbf60, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:1fe4c7a3544eb27afec2adfb3a3dbf60
First seen:2018-03-11 19:23:08 UTC
Last seen:2020-06-06 08:20:40 UTC
Status:Blacklisted
Malware samples:3'047
Destination IPs:182
Malware:Tofsee -
Listing date:2020-01-09 14:18:54

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 157.245.5.40:443
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 176.58.123.25:443
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 104.31.66.68:443
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 31.13.72.8:443
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 23.128.64.141:443
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 31.13.72.36:443
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 74.114.154.18:443
2020-06-06 07:00:3011cf5b6aa18edb0740097e3eddd976feVirustotal results 54 / 71 (76.06%) 104.31.66.68:443
2020-06-06 07:00:3011cf5b6aa18edb0740097e3eddd976feVirustotal results 54 / 71 (76.06%) 176.58.123.25:443
2020-06-06 07:00:3011cf5b6aa18edb0740097e3eddd976feVirustotal results 54 / 71 (76.06%) 157.245.5.40:443
2020-06-06 07:00:3011cf5b6aa18edb0740097e3eddd976feVirustotal results 54 / 71 (76.06%) 74.114.154.18:443
2020-06-06 07:00:2911cf5b6aa18edb0740097e3eddd976feVirustotal results 54 / 71 (76.06%) 31.13.72.36:443
2020-06-06 07:00:2911cf5b6aa18edb0740097e3eddd976feVirustotal results 54 / 71 (76.06%) 185.255.55.29:443
2020-06-06 07:00:2911cf5b6aa18edb0740097e3eddd976feVirustotal results 54 / 71 (76.06%) 31.13.72.8:443
2020-06-06 07:00:2811cf5b6aa18edb0740097e3eddd976feVirustotal results 54 / 71 (76.06%) 23.128.64.141:443
2020-06-04 17:23:0089df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 157.245.5.40:443
2020-06-04 17:23:0089df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 157.240.194.18:443
2020-06-04 17:23:0089df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 172.67.208.45:443
2020-06-04 17:23:0089df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 31.13.72.36:443
2020-06-04 17:22:5989df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 31.13.72.8:443
2020-06-04 17:22:5989df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 104.31.66.68:443
2020-06-04 17:22:5989df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 157.240.194.35:443
2020-06-04 17:22:5989df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 176.58.123.25:443
2020-06-04 17:22:5889df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 185.255.55.29:443
2020-06-04 17:22:5889df7dc5ff08f84e98b89069f9983a38Virustotal results 53 / 72 (73.61%) 74.114.154.22:443
2020-06-04 11:56:5579e53783103373055ab968bfbb56b91fVirustotal results 35 / 73 (47.95%) 176.58.123.25:443
2020-06-04 10:44:3872dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 176.58.123.25:443
2020-06-04 10:44:3872dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 104.31.66.68:443
2020-06-04 10:44:3772dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 23.128.64.141:443
2020-06-04 10:44:3772dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 185.255.55.29:443
2020-06-04 10:44:3772dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 157.240.194.18:443
2020-06-04 10:44:3772dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 172.67.208.45:443
2020-06-04 10:44:3772dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 31.13.72.8:443
2020-06-04 10:44:3772dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 157.245.5.40:443
2020-06-04 10:44:3772dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 31.13.72.36:443
2020-06-04 10:44:3772dbe5bc1cc3d9bb9b4518d9e7af9c78Virustotal results 22 / 73 (30.14%) 74.114.154.18:443
2020-06-04 06:43:09628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 104.31.67.68:443
2020-06-04 06:43:09628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 157.240.194.18:443
2020-06-04 06:43:09628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 104.31.66.68:443
2020-06-04 06:43:09628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 176.58.123.25:443
2020-06-04 06:43:09628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 74.114.154.22:443
2020-06-04 06:43:09628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 31.13.72.36:443
2020-06-04 06:43:09628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 31.13.72.8:443
2020-06-04 06:43:09628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 23.128.64.141:443
2020-06-04 06:43:08628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 185.255.55.29:443
2020-06-04 06:43:08628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 74.114.154.18:443
2020-06-04 06:43:07628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 77.88.55.77:443
2020-06-04 06:43:07628683b1d08b2b39029af7cb07af609cVirustotal results 30 / 73 (41.10%) 157.245.5.40:443
2020-06-04 06:13:3260a26ebacf62b2d45150059dc7fe3f3aVirustotal results 33 / 72 (45.83%) 31.13.72.8:443
2020-06-04 06:13:3260a26ebacf62b2d45150059dc7fe3f3aVirustotal results 33 / 72 (45.83%) 23.128.64.141:443
2020-06-04 06:13:3260a26ebacf62b2d45150059dc7fe3f3aVirustotal results 33 / 72 (45.83%) 74.114.154.22:443
2020-06-04 06:13:3260a26ebacf62b2d45150059dc7fe3f3aVirustotal results 33 / 72 (45.83%) 157.245.5.40:443
2020-06-04 06:13:3260a26ebacf62b2d45150059dc7fe3f3aVirustotal results 33 / 72 (45.83%) 185.255.55.29:443
2020-06-04 06:13:3160a26ebacf62b2d45150059dc7fe3f3aVirustotal results 33 / 72 (45.83%) 176.58.123.25:443
2020-06-04 06:13:3160a26ebacf62b2d45150059dc7fe3f3aVirustotal results 33 / 72 (45.83%) 104.31.67.68:443
2020-06-04 06:13:3160a26ebacf62b2d45150059dc7fe3f3aVirustotal results 33 / 72 (45.83%) 31.13.72.36:443
2020-06-03 20:29:0845407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 157.240.194.18:443
2020-06-03 20:29:0745407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 185.255.55.29:443
2020-06-03 20:29:0745407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 74.114.154.22:443
2020-06-03 20:29:0745407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 104.31.66.68:443
2020-06-03 20:29:0745407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 157.245.5.40:443
2020-06-03 20:29:0645407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 31.13.72.36:443
2020-06-03 20:29:0645407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 31.13.72.8:443
2020-06-03 20:29:0645407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 23.128.64.141:443
2020-06-03 20:29:0645407bb7a06915caf631ef33c93ee1f6Virustotal results 29 / 73 (39.73%) 176.58.123.25:443
2020-06-03 20:11:23444189ff62dbf1b86beed92fdfdb5d90Virustotal results 41 / 73 (56.16%) 176.58.123.25:443
2020-06-03 19:42:06429b55158aaa37c28245682bc41b56f0Virustotal results 36 / 73 (49.32%) 74.114.154.22:443
2020-06-03 19:42:06429b55158aaa37c28245682bc41b56f0Virustotal results 36 / 73 (49.32%) 31.13.72.8:443
2020-06-03 19:42:06429b55158aaa37c28245682bc41b56f0Virustotal results 36 / 73 (49.32%) 104.31.67.68:443
2020-06-03 19:42:06429b55158aaa37c28245682bc41b56f0Virustotal results 36 / 73 (49.32%) 157.245.5.40:443
2020-06-03 19:42:06429b55158aaa37c28245682bc41b56f0Virustotal results 36 / 73 (49.32%) 185.255.55.29:443
2020-06-03 19:42:06429b55158aaa37c28245682bc41b56f0Virustotal results 36 / 73 (49.32%) 23.128.64.141:443
2020-06-03 19:42:05429b55158aaa37c28245682bc41b56f0Virustotal results 36 / 73 (49.32%) 176.58.123.25:443
2020-06-03 19:42:05429b55158aaa37c28245682bc41b56f0Virustotal results 36 / 73 (49.32%) 31.13.72.36:443
2020-06-03 19:39:0541a44556b28fd811d2794df787ea3168n/a74.114.154.22:443
2020-06-03 19:39:0441a44556b28fd811d2794df787ea3168n/a172.67.208.45:443
2020-06-03 19:39:0441a44556b28fd811d2794df787ea3168n/a176.58.123.25:443
2020-06-03 19:39:0441a44556b28fd811d2794df787ea3168n/a185.255.55.29:443
2020-06-03 19:39:0441a44556b28fd811d2794df787ea3168n/a23.128.64.141:443
2020-06-03 19:39:0441a44556b28fd811d2794df787ea3168n/a31.13.72.36:443
2020-06-03 19:39:0341a44556b28fd811d2794df787ea3168n/a157.245.5.40:443
2020-06-03 19:39:0341a44556b28fd811d2794df787ea3168n/a104.31.67.68:443
2020-06-03 19:39:0341a44556b28fd811d2794df787ea3168n/a31.13.72.8:443
2020-06-03 18:59:344076dfd3e8f7ce86e7c846928aa3661aVirustotal results 21 / 73 (28.77%) 172.217.168.35:443
2020-06-03 18:59:344076dfd3e8f7ce86e7c846928aa3661aVirustotal results 21 / 73 (28.77%) 172.217.168.4:443
2020-06-03 18:59:334076dfd3e8f7ce86e7c846928aa3661aVirustotal results 21 / 73 (28.77%) 157.245.5.40:443
2020-06-03 08:55:122f733ac9d21d89d2750bba5b9560292cVirustotal results 21 / 53 (39.62%) 106.38.219.49:443
2020-06-03 06:52:3426f76004616d976e62343a5d95a0763eVirustotal results 41 / 73 (56.16%) 157.245.5.40:443
2020-06-03 06:41:38260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 157.245.5.40:443
2020-06-03 06:41:37260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 31.13.72.36:443
2020-06-03 06:41:37260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 172.217.168.68:443
2020-06-03 06:41:36260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 172.217.168.67:443
2020-06-03 06:41:35260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 23.128.64.141:443
2020-06-03 06:41:35260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 31.13.72.8:443
2020-06-03 06:41:34260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 104.31.66.68:443
2020-06-03 06:41:34260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 74.114.154.22:443
2020-06-03 06:41:33260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 157.240.194.18:443
2020-06-03 06:41:33260b8cb8f0cbf915c6c0e57f0bc20fffVirustotal results 29 / 73 (39.73%) 185.255.55.29:443
2020-06-03 05:42:4122ac68d2f2cc863bf981f7bb68d24c5aVirustotal results 44 / 73 (60.27%) 185.255.55.29:443
2020-06-03 05:42:4022ac68d2f2cc863bf981f7bb68d24c5aVirustotal results 44 / 73 (60.27%) 31.13.72.36:443

# of entries: 100 (max: 100)