JA3 Fingerprints

You can find further information about the JA3 fingerprint 25d74b7b4b779eb1efd4b31d26d651c6, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:25d74b7b4b779eb1efd4b31d26d651c6
First seen:2019-08-03 20:15:33 UTC
Last seen:2020-07-14 21:43:25 UTC
Status:Blacklisted
Malware samples:150
Destination IPs:29
Malware:Tofsee -
Listing date:2020-01-09 14:30:41

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-07-14 21:43:2588241d305ae596b5a09fd7e3f08f9d63Virustotal results 37 / 73 (50.68%) 40.101.12.114:993
2020-07-14 21:43:2588241d305ae596b5a09fd7e3f08f9d63Virustotal results 37 / 73 (50.68%) 40.101.12.114:993
2020-06-23 02:24:04275cd8c75977523e4bcd3fc8d607963cVirustotal results 30 / 74 (40.54%) 40.101.12.98:993
2020-06-23 02:24:04275cd8c75977523e4bcd3fc8d607963cVirustotal results 30 / 74 (40.54%) 40.101.12.98:993
2020-06-22 22:11:3306708f79d965f20cb92de0d6aaef9342Virustotal results 48 / 74 (64.86%) 40.101.12.114:993
2020-06-22 22:11:3306708f79d965f20cb92de0d6aaef9342Virustotal results 48 / 74 (64.86%) 40.101.12.114:993
2020-06-22 21:39:56188f6742a5dad541a51a514e1683d776Virustotal results 45 / 71 (63.38%) 40.101.83.194:993
2020-06-22 21:39:56188f6742a5dad541a51a514e1683d776Virustotal results 45 / 71 (63.38%) 40.101.83.194:993
2020-06-13 16:56:52aa6da725e7716737d3b244b2d5dea21bVirustotal results 43 / 73 (58.90%) 40.101.50.194:993
2020-06-13 16:56:52aa6da725e7716737d3b244b2d5dea21bVirustotal results 43 / 73 (58.90%) 40.101.50.194:993
2020-06-13 12:27:34a4f141dcda6675c024fc754b24569528Virustotal results 45 / 72 (62.50%) 40.101.50.162:993
2020-06-13 12:27:34a4f141dcda6675c024fc754b24569528Virustotal results 45 / 72 (62.50%) 40.101.50.162:993
2020-06-13 00:39:25186349f1a9f660463ec011955fa9c0a9Virustotal results 42 / 74 (56.76%) 40.101.84.18:993
2020-06-13 00:39:25186349f1a9f660463ec011955fa9c0a9Virustotal results 42 / 74 (56.76%) 40.101.84.18:993
2020-06-12 08:12:3320883046444504b103a2c6afe9f76cafVirustotal results 44 / 74 (59.46%) 40.101.126.114:993
2020-06-12 08:12:3320883046444504b103a2c6afe9f76cafVirustotal results 44 / 74 (59.46%) 40.101.126.114:993
2020-06-12 03:47:040064f96a2302bb30513cc57ab5ecaceeVirustotal results 48 / 73 (65.75%) 40.101.48.82:993
2020-06-12 03:47:040064f96a2302bb30513cc57ab5ecaceeVirustotal results 48 / 73 (65.75%) 40.101.48.82:993
2020-06-11 23:33:450d8b6e20cd1d695c1317fb661b9bccd4Virustotal results 47 / 73 (64.38%) 40.101.51.114:993
2020-06-11 23:33:450d8b6e20cd1d695c1317fb661b9bccd4Virustotal results 47 / 73 (64.38%) 40.101.51.114:993
2020-06-10 22:43:1411765b77618928d6b03765664029a15dVirustotal results 48 / 72 (66.67%) 40.101.121.18:993
2020-06-10 22:43:1411765b77618928d6b03765664029a15dVirustotal results 48 / 72 (66.67%) 40.101.12.98:993
2020-06-10 22:43:1411765b77618928d6b03765664029a15dVirustotal results 48 / 72 (66.67%) 40.101.121.18:993
2020-06-10 22:43:1411765b77618928d6b03765664029a15dVirustotal results 48 / 72 (66.67%) 40.101.12.98:993
2020-06-09 07:49:510af96a1cca4ee238909e7ccf4e9e24efVirustotal results 57 / 70 (81.43%) 40.101.80.178:993
2020-06-09 07:49:510af96a1cca4ee238909e7ccf4e9e24efVirustotal results 57 / 70 (81.43%) 40.101.80.178:993
2020-06-08 21:05:204ec0fa372bf85fccfbc3b8192786e853Virustotal results 37 / 72 (51.39%) 52.97.170.34:993
2020-06-08 21:05:204ec0fa372bf85fccfbc3b8192786e853Virustotal results 37 / 72 (51.39%) 52.97.170.34:993
2020-06-08 06:46:432263a1b9149491dc3a2fcfda9cb4e0cbVirustotal results 37 / 72 (51.39%) 52.97.188.66:993
2020-06-08 06:46:432263a1b9149491dc3a2fcfda9cb4e0cbVirustotal results 37 / 72 (51.39%) 52.97.188.66:993
2020-06-07 03:13:41645d01bc4d8b0f936150771779901ab3Virustotal results 31 / 73 (42.47%) 40.101.126.194:993
2020-06-07 03:13:41645d01bc4d8b0f936150771779901ab3Virustotal results 31 / 73 (42.47%) 40.101.126.194:993
2020-06-06 19:42:244b8723377216600d7b2f1866941e463aVirustotal results 40 / 73 (54.79%) 40.101.51.130:993
2020-06-06 19:42:244b8723377216600d7b2f1866941e463aVirustotal results 40 / 73 (54.79%) 40.101.51.130:993
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 40.101.51.114:993
2020-06-06 08:20:40291500fd2bd96429e39d3aaee59f7a3fVirustotal results 37 / 72 (51.39%) 40.101.51.114:993
2020-06-04 17:13:4389977105987000082f42424f45a64457Virustotal results 45 / 71 (63.38%) 40.101.51.146:993
2020-06-04 17:13:4389977105987000082f42424f45a64457Virustotal results 45 / 71 (63.38%) 40.101.51.146:993
2020-06-03 20:11:22444189ff62dbf1b86beed92fdfdb5d90Virustotal results 41 / 73 (56.16%) 40.101.84.2:993
2020-06-03 20:11:22444189ff62dbf1b86beed92fdfdb5d90Virustotal results 41 / 73 (56.16%) 40.101.84.2:993
2020-06-03 18:59:334076dfd3e8f7ce86e7c846928aa3661aVirustotal results 21 / 73 (28.77%) 52.97.155.114:993
2020-06-03 18:59:334076dfd3e8f7ce86e7c846928aa3661aVirustotal results 21 / 73 (28.77%) 52.97.155.114:993
2020-06-03 05:58:3423a03cd4232c3a51e0cd109b67f18855Virustotal results 34 / 73 (46.58%) 40.101.50.194:993
2020-06-03 05:58:3423a03cd4232c3a51e0cd109b67f18855Virustotal results 34 / 73 (46.58%) 40.101.50.194:993
2020-06-02 23:05:350c076ef11a5eab18ba13181bbdd4f52fVirustotal results 38 / 73 (52.05%) 52.97.144.178:993
2020-06-02 23:05:350c076ef11a5eab18ba13181bbdd4f52fVirustotal results 38 / 73 (52.05%) 52.97.144.178:993
2020-06-01 21:04:22565a92e31f0939322a91e35be5c55961Virustotal results 32 / 73 (43.84%) 40.101.12.82:993
2020-06-01 21:04:22565a92e31f0939322a91e35be5c55961Virustotal results 32 / 73 (43.84%) 40.101.12.82:993
2020-06-01 08:23:00165ddff83c7394de9caa7e7199bb0030Virustotal results 56 / 73 (76.71%) 40.101.84.210:993
2020-06-01 08:23:00165ddff83c7394de9caa7e7199bb0030Virustotal results 56 / 73 (76.71%) 40.101.84.210:993
2020-06-01 07:07:380ef677668df589aa19e622d623139069Virustotal results 46 / 72 (63.89%) 40.101.51.146:993
2020-06-01 07:07:380ef677668df589aa19e622d623139069Virustotal results 46 / 72 (63.89%) 40.101.51.146:993
2020-06-01 06:50:099004f899c8f2e342c9ef722ace6718a9Virustotal results 38 / 73 (52.05%) 40.101.19.162:993
2020-06-01 06:50:099004f899c8f2e342c9ef722ace6718a9Virustotal results 38 / 73 (52.05%) 40.101.19.162:993
2020-05-31 12:28:555ee07e9f53d82de0ba8eca75b4f12c11Virustotal results 40 / 73 (54.79%) 40.101.84.210:993
2020-05-31 12:28:555ee07e9f53d82de0ba8eca75b4f12c11Virustotal results 40 / 73 (54.79%) 40.101.84.210:993
2020-05-31 07:59:0043f4ec91f341bc01a16884a3e891fc67Virustotal results 50 / 73 (68.49%) 40.101.121.2:993
2020-05-31 07:59:0043f4ec91f341bc01a16884a3e891fc67Virustotal results 50 / 73 (68.49%) 40.101.121.2:993
2020-05-30 20:20:17905e801af6d84772c2b961a0e1032840Virustotal results 46 / 72 (63.89%) 40.101.84.2:993
2020-05-30 20:20:17905e801af6d84772c2b961a0e1032840Virustotal results 46 / 72 (63.89%) 40.101.84.2:993
2020-05-30 15:45:00776e7db40bc3b50ae269d927c10e1f6dVirustotal results 56 / 73 (76.71%) 40.101.126.130:993
2020-05-30 15:45:00776e7db40bc3b50ae269d927c10e1f6dVirustotal results 56 / 73 (76.71%) 40.101.126.130:993
2020-05-30 12:03:0842171261efc6586d2fb11777f49ea3a3Virustotal results 56 / 72 (77.78%) 52.97.163.2:993
2020-05-30 12:03:0842171261efc6586d2fb11777f49ea3a3Virustotal results 56 / 72 (77.78%) 52.97.163.2:993
2020-05-29 23:39:013c43139fe11d77d4578ce7a103c2b270Virustotal results 39 / 73 (53.42%) 40.101.30.242:993
2020-05-29 23:39:013c43139fe11d77d4578ce7a103c2b270Virustotal results 39 / 73 (53.42%) 40.101.30.242:993
2020-05-29 20:30:400442765c8308662fc48d5158b8f63410Virustotal results 41 / 72 (56.94%) 40.101.126.130:993
2020-05-29 20:30:400442765c8308662fc48d5158b8f63410Virustotal results 41 / 72 (56.94%) 40.101.126.130:993
2020-05-29 18:42:141818543d2a2006ae9b498cdec8d1417dVirustotal results 52 / 73 (71.23%) 40.101.28.178:993
2020-05-29 18:42:141818543d2a2006ae9b498cdec8d1417dVirustotal results 52 / 73 (71.23%) 40.101.28.178:993
2019-09-08 23:30:43e5a795371fddd895edff42606a3612f3Virustotal results 48/66 (72.73%) 217.69.139.90:993
2019-09-08 23:30:43e5a795371fddd895edff42606a3612f3Virustotal results 48/66 (72.73%) 217.69.139.90:993
2019-09-08 04:17:5971ee7e217d09aa326fe03ac74326f60dVirustotal results 33 / 68 (48.53%) 217.69.139.90:993
2019-09-08 04:17:5971ee7e217d09aa326fe03ac74326f60dVirustotal results 33 / 68 (48.53%) 217.69.139.90:993
2019-09-08 02:30:4378174d7d966f4afd91cef7d6b847973cVirustotal results 24 / 65 (36.92%) 94.100.180.90:993
2019-09-08 02:30:4378174d7d966f4afd91cef7d6b847973cVirustotal results 24 / 65 (36.92%) 94.100.180.90:993
2019-09-08 01:33:539edf624e82e937b1e1a89be17db46ea4Virustotal results 53/69 (76.81%) 217.69.139.90:993
2019-09-08 01:33:539edf624e82e937b1e1a89be17db46ea4Virustotal results 53/69 (76.81%) 217.69.139.90:993
2019-09-07 19:09:149f488f91ea3e6e1d033b61ad886e98e3Virustotal results 53/69 (76.81%) 94.100.180.90:993
2019-09-07 19:09:149f488f91ea3e6e1d033b61ad886e98e3Virustotal results 53/69 (76.81%) 94.100.180.90:993
2019-09-07 18:50:29bd054caf91b0b7bdca83f0d4ac29ce38Virustotal results 41/69 (59.42%) 94.100.180.90:993
2019-09-07 18:50:29bd054caf91b0b7bdca83f0d4ac29ce38Virustotal results 41/69 (59.42%) 94.100.180.90:993
2019-09-07 01:55:44d25b1fdd3c50acda31d8c4d6b51d7fe8n/a94.100.180.90:993
2019-09-07 01:55:44d25b1fdd3c50acda31d8c4d6b51d7fe8n/a94.100.180.90:993
2019-09-06 16:00:3217d776a21be0501d2d86276aaa113780Virustotal results 53/71 (74.65%) 217.69.139.90:993
2019-09-06 16:00:3217d776a21be0501d2d86276aaa113780Virustotal results 53/71 (74.65%) 217.69.139.90:993
2019-09-06 05:40:33b4aeb05f29bafcb4e9d969a9a6ad56d3Virustotal results 33 / 66 (50.00%) 94.100.180.90:993
2019-09-06 05:40:33b4aeb05f29bafcb4e9d969a9a6ad56d3Virustotal results 33 / 66 (50.00%) 94.100.180.90:993
2019-09-05 09:56:59db6098971c82933fbb382b7da4dcd304n/a94.100.180.90:993
2019-09-05 09:56:59db6098971c82933fbb382b7da4dcd304n/a94.100.180.90:993
2019-09-05 09:56:4471edb62981757165054fa172127239a7Virustotal results 52/68 (76.47%) 94.100.180.90:993
2019-09-05 09:56:4471edb62981757165054fa172127239a7Virustotal results 52/68 (76.47%) 94.100.180.90:993
2019-09-05 08:52:20115a438807a9262e15b085b26bbea33fn/a94.100.180.90:993
2019-09-05 08:52:20115a438807a9262e15b085b26bbea33fn/a94.100.180.90:993
2019-09-05 07:59:02fbc71040ebe5662a7be8a5e8dae81691Virustotal results 23 / 67 (34.33%) 94.100.180.90:993
2019-09-05 07:59:02fbc71040ebe5662a7be8a5e8dae81691Virustotal results 23 / 67 (34.33%) 94.100.180.90:993
2019-09-05 01:41:4188ddb800f09364ef57ee2d2dab28ca14n/a217.69.139.90:993
2019-09-05 01:41:4188ddb800f09364ef57ee2d2dab28ca14n/a217.69.139.90:993
2019-09-05 01:27:317584316e9d238e2e64102ba25b28f5e5Virustotal results 33/69 (47.83%) 94.100.180.90:993
2019-09-05 01:27:317584316e9d238e2e64102ba25b28f5e5Virustotal results 33/69 (47.83%) 94.100.180.90:993

# of entries: 100 (max: 100)