JA3 Fingerprints

You can find further information about the JA3 fingerprint 35c0a31c481927f022a3b530255ac080, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:35c0a31c481927f022a3b530255ac080
First seen:2017-07-15 19:43:19 UTC
Last seen:2021-04-10 12:54:04 UTC
Status:Blacklisted
Malware samples:1'211
Destination IPs:185
Malware:Tofsee -
Listing date:2018-11-14 12:41:34

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2022-07-25 21:28:5951f81d8a1db9f8a9c51daaec3a4bf4edn/a157.240.17.63:443
2022-06-06 19:58:48ba4e843255dd4005041543477dd85ed3n/a157.240.201.63:443
2022-05-19 01:14:480085db88c7814373f9160d29423eb27en/a157.240.17.63:443
2022-04-30 13:29:19b600e2503a3e84a33fe82c05d2c4acf4n/a157.240.17.63:443
2022-04-28 14:24:080da4de1f7a12624e5d4b010ed72b2003Virustotal results 41 / 71 (57.75%) 157.240.17.63:443
2022-04-28 11:20:47f163008a2a146317dd57d5673712e3e3n/a157.240.9.52:443
2022-04-28 09:48:13796333cee5e30770f35bd072ed6f6d3bn/a157.240.17.63:443
2022-04-28 08:08:16aa8dddf165038b76396c6887861c7737n/a157.240.11.52:443
2022-04-28 07:42:39aa2a7873a2df6bbfd9f8f3dd21fb382cn/a157.240.17.63:443
2022-04-28 05:39:03b019a9a5d4bc1d85462ea25e5227d20an/a157.240.22.63:443
2022-04-28 04:32:017c5fc370ff8ded0b7cb4e9acab7d0b16n/a157.240.17.63:443
2022-04-28 01:43:415286bd9b336025cb129d7b297109d70dn/a157.240.17.63:443
2022-04-27 23:17:226d24c650f874c108549872fdb0dbfe7en/a157.240.17.63:443
2022-04-27 21:58:01b9752bbe1b09eeed11d7a298d3b0c664n/a157.240.17.63:443
2022-04-25 17:10:3212d5ffd92740d47a5b90d7b8d2f4842cVirustotal results 48 / 69 (69.57%) 31.13.64.52:443
2022-04-24 08:38:51aac70a1d03659db37f4e9a6ca4cda521n/a157.240.17.63:443
2022-04-21 07:23:392c6b8c118b30b6faf424f5246fb3e055n/a157.240.17.63:443
2022-04-21 06:49:01a0d009d84f8e2bfaf9446d475d576d25n/a185.60.216.52:443
2022-04-21 06:49:01a0d009d84f8e2bfaf9446d475d576d25n/a157.240.20.63:443
2022-04-20 22:23:36564a832fbfbe0fb80dbd71c6fb01f55dn/a157.240.17.63:443
2022-04-20 09:12:11921aca9fb58246dcf100754d93390d67n/a157.240.20.63:443
2022-04-20 09:12:11921aca9fb58246dcf100754d93390d67n/a185.60.216.52:443
2022-04-20 08:59:3305212a09aed92a064e4465d15154247cn/a31.13.64.52:443
2022-04-20 08:57:546deb3f971572b40c1d02ffa04d57b07en/a157.240.17.63:443
2022-04-20 07:30:19904480bc8b6e1d49901212547251b09cVirustotal results 27 / 69 (39.13%) 157.240.201.63:443
2022-04-20 07:02:43bcf9e60beb4373d738fa5308bd535e36n/a157.240.17.63:443
2022-04-20 07:02:43bcf9e60beb4373d738fa5308bd535e36n/a157.240.234.63:443
2022-04-20 06:56:597cdd21578129107b20f8d84200d9e98cn/a157.240.17.63:443
2022-04-20 06:36:5003e9139954522b2b3eeb10509cb77fe8n/a157.240.201.63:443
2022-04-19 20:05:190ed5acb3f1623337418c3c4d15deaf09Virustotal results 46 / 70 (65.71%) 157.240.17.63:443
2022-04-19 18:50:1519c983e2c13c15251f703b7d028b0768n/a157.240.17.63:443
2022-04-15 12:20:42c33d68eb0f843daec4187b6e8bc747cfn/a157.240.17.63:443
2022-04-15 11:49:07c257b0390e51f48ba03a1d66077df3efn/a157.240.17.63:443
2022-04-15 10:53:56c07e52b5f416b580bda7ce6331570b57n/a157.240.201.63:443
2022-04-15 01:12:0275aee137602be8a2b9e6b036d1041e1bn/a157.240.17.63:443
2022-04-15 00:21:0458a1c9ac34222176db59bc1c010a2353n/a185.60.216.52:443
2022-04-14 21:22:06118a6e610cbfc23db7aca156c1888d76Virustotal results 51 / 69 (73.91%) 157.240.17.63:443
2022-04-14 20:54:27489c692e8c4fc54f260a6fcf9db36160Virustotal results 46 / 70 (65.71%) 157.240.201.63:443
2022-04-14 20:54:26489c692e8c4fc54f260a6fcf9db36160Virustotal results 46 / 70 (65.71%) 31.13.64.52:443
2022-04-14 20:45:3906ce5f49382864f4a5c9385fe6e914d0Virustotal results 47 / 70 (67.14%) 185.60.216.52:443
2022-04-14 20:41:4629b1b46ecd99d9cc13663afcb72e6e64n/a157.240.17.63:443
2022-04-13 19:29:5510f003a051f1f0587cec2179b8c6efceVirustotal results 45 / 69 (65.22%) 157.240.22.63:443
2022-04-11 16:28:090e4e1585fd5d09cb14a155976cc39424Virustotal results 28 / 68 (41.18%) 157.240.17.63:443
2022-04-10 05:12:23d4fbad00810efbb5dbd8a2452fe04ec3Virustotal results 22 / 64 (34.38%) 157.240.17.63:443
2022-04-09 16:48:1707af01deb368368735f63e42c7f9ac5dn/a157.240.201.63:443
2022-04-09 16:48:1607af01deb368368735f63e42c7f9ac5dn/a31.13.64.52:443
2022-04-08 21:46:5792f49693d962c5b227439cc754fc9057n/a157.240.17.63:443
2022-04-08 15:22:58568bc9c4591bfec121baa137cd7f3757n/a157.240.17.63:443
2022-04-05 17:53:21be253966340f466fde997d83c92a9225n/a157.240.17.63:443
2022-04-04 11:29:1771c0a349e043fd315dcce7b5669d4313n/a157.240.17.63:443
2022-04-04 05:43:4930e48643019cd810784bceb2301e253en/a157.240.17.63:443
2022-04-04 04:44:0703a3858edda11d9addf980e84fe669f2n/a157.240.22.63:443
2022-04-04 04:41:59036375bdae9fbc469f1bff75790556bbn/a157.240.17.63:443
2022-04-04 04:37:460b0c6722cbb2d05f635acb1d66138bc9n/a157.240.17.63:443
2022-04-04 04:15:573b67d715b5948d754a14373d940c998aVirustotal results 22 / 67 (32.84%) 31.13.64.52:443
2022-04-01 23:31:09d82d4aec1a7586eccca554391ef102c8n/a157.240.17.63:443
2022-03-31 20:22:126789aeafa8c448b749e98b32a00d72b8n/a157.240.11.52:443
2022-03-27 18:57:21cf0dfeb4a70465acc8f6eb9545ccf899n/a157.240.17.63:443
2022-03-27 18:36:543a459c24100923a5c5e32a72c9e6d3can/a31.13.64.52:443
2022-03-27 18:35:04ae4140dbbc7309e528df1056ed3f2822n/a157.240.17.63:443
2022-03-25 18:56:0231b7a36eca0cd4375ee5aa6f50a670efn/a157.240.17.63:443
2022-03-16 16:35:50b1dddc3542475874a31a45d15829a947n/a157.240.11.52:443
2022-03-16 15:58:04a22da2e34777eafadeaa261526ec60b6n/a157.240.17.63:443
2022-03-16 15:23:28a12ba1fc6a52da3c156d9e189f8f3b53n/a31.13.64.52:443
2022-03-16 10:23:27afc0ee481695af8a2a48d1876da81470n/a157.240.17.63:443
2022-03-16 09:49:326f9a001566a3bbf290587fce7f017e09n/a157.240.17.63:443
2022-03-16 09:24:10533c5d71f308dceb8bca177037dbc146n/a157.240.17.63:443
2022-03-16 00:30:20bb71135312e03b96a3e9a87be3906f0bn/a157.240.11.52:443
2022-03-15 22:43:31b957fdd85fb1d1f2ac7c9ba17c206a7en/a157.240.17.63:443
2022-03-15 16:22:15ad47edfde0159f9d09eeccdf532557fen/a157.240.17.63:443
2022-03-14 19:43:0789e2f4ad9915acdee14457785dcb71a6n/a31.13.64.52:443
2022-03-14 19:08:27f63bee38fa97651379b42ae5f3afe06eVirustotal results 21 / 66 (31.82%) 157.240.17.63:443
2022-03-14 18:40:5101d5532bf949e4d239af970b3334458en/a157.240.17.63:443
2022-03-14 14:53:06fe1721207198e06d6615a2206798b31dn/a31.13.64.52:443
2022-03-14 14:52:2406994cc3fac4de8ba8de82c8698c49b5n/a157.240.17.63:443
2022-03-14 11:05:21735f09170b5bd38d9036ffb09fdabdb7n/a157.240.201.63:443
2022-03-13 20:42:48ffe87305e19bab88d337a5786567a933n/a157.240.17.63:443
2022-03-13 20:04:105c9f714af83be3c29e9cbf823e04b3cfn/a31.13.64.52:443
2022-03-13 19:27:296217ad2d74ba76947776e2d028971c29n/a157.240.201.63:443
2022-03-13 15:39:4467062cc495c002130f7e33a527b0e11fn/a157.240.17.63:443
2022-03-13 13:53:03eb5b36c5d9f8ca8f57958d689e24568cn/a157.240.11.52:443
2022-03-13 13:53:03eb5b36c5d9f8ca8f57958d689e24568cn/a31.13.70.52:443
2022-03-13 13:53:03eb5b36c5d9f8ca8f57958d689e24568cn/a157.240.22.63:443
2022-03-13 11:55:04d2401ba3aab0a9221e14adcd3c772917n/a31.13.64.52:443
2022-03-13 08:52:249480ad4c33f8cb3857fca40eb9004676n/a157.240.17.63:443
2022-03-12 22:01:44a1ae557a1bce9234346d57e1f6e890cdn/a31.13.64.52:443
2022-03-07 12:15:01bd97e96e34daed0efadfbaf023d2bdd1n/a157.240.17.63:443
2022-03-06 20:30:287212a9707e99dcb7ff7b3242632e3e4an/a31.13.64.52:443
2022-03-05 18:51:238275693e2df8a8f6e6650d2b57c4abecn/a157.240.17.63:443
2022-03-05 18:10:27605a7f63f6fdbda133995b28b6dae2f5n/a31.13.64.52:443
2022-03-05 18:10:26605a7f63f6fdbda133995b28b6dae2f5n/a157.240.201.63:443
2022-03-05 17:31:232cd0a26f2e192721008d6b717e3e3a44n/a185.60.216.52:443
2022-03-05 16:34:2702d892a8a6f2b950072d5bf66ef30019n/a185.60.216.52:443
2022-03-03 23:04:05249a9ffd875d55b39bbb599ad490f6edn/a157.240.11.52:443
2022-03-03 23:04:04249a9ffd875d55b39bbb599ad490f6edn/a31.13.70.52:443
2022-03-03 21:58:31201f82c27779fdc034b414b16b027a18n/a157.240.17.63:443
2022-03-03 06:06:4916492d0929f4ec39dfb2188c36097249Virustotal results 41 / 71 (57.75%) 157.240.17.63:443
2022-03-02 23:03:530f9b83b58dded9bdfaef6e9155425080Virustotal results 35 / 71 (49.30%) 157.240.201.63:443
2022-03-02 23:03:510f9b83b58dded9bdfaef6e9155425080Virustotal results 35 / 71 (49.30%) 31.13.64.52:443
2022-03-02 15:50:240bba839a984425c5449a1af9f53dd760Virustotal results 44 / 71 (61.97%) 157.240.201.63:443

# of entries: 100 (max: 100)