JA3 Fingerprints

You can find further information about the JA3 fingerprint 4d7a28d6f2263ed61de88ca66eb011e3, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:4d7a28d6f2263ed61de88ca66eb011e3
First seen:2017-07-16 21:20:29 UTC
Last seen:2020-12-08 18:10:55 UTC
Status:Blacklisted
Malware samples:572
Destination IPs:105
Malware:Tofsee -
Listing date:2018-11-14 12:07:05

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-12-08 18:10:55ad4ca498c7b456a331e54dc87df18b6dVirustotal results 51 / 71 (71.83%) 216.58.215.238:443
2020-12-08 18:10:55ad4ca498c7b456a331e54dc87df18b6dVirustotal results 51 / 71 (71.83%) 216.58.215.238:443
2020-12-08 10:04:02a60c4442a7a16076853ca6ba913bff99Virustotal results 42 / 71 (59.15%) 172.217.168.46:443
2020-12-08 10:04:02a60c4442a7a16076853ca6ba913bff99Virustotal results 42 / 71 (59.15%) 172.217.168.46:443
2020-12-07 17:19:35e522fcbf8da17706f11b4cc90445fcean/a172.217.168.14:443
2020-12-07 17:19:35e522fcbf8da17706f11b4cc90445fcean/a216.58.215.238:443
2020-12-07 17:19:35e522fcbf8da17706f11b4cc90445fcean/a216.58.215.238:443
2020-12-07 17:19:35e522fcbf8da17706f11b4cc90445fcean/a172.217.168.14:443
2020-12-07 09:31:52aaf138a7ba6a303ba4e6d0959a290f58Virustotal results 43 / 71 (60.56%) 172.217.168.46:443
2020-12-07 09:31:52aaf138a7ba6a303ba4e6d0959a290f58Virustotal results 43 / 71 (60.56%) 172.217.168.46:443
2020-12-07 06:00:03a558546b390d854c148ba9b2a678c29cVirustotal results 53 / 70 (75.71%) 172.217.168.78:443
2020-12-07 06:00:03a558546b390d854c148ba9b2a678c29cVirustotal results 53 / 70 (75.71%) 172.217.168.78:443
2020-12-07 04:42:46a2b8989e48182b438ee2ed4ee37885abn/a172.217.17.78:443
2020-12-07 04:42:46a2b8989e48182b438ee2ed4ee37885abn/a172.217.17.78:443
2020-12-06 18:21:533e0cf82634e3d4d942188f324705e319Virustotal results 49 / 68 (72.06%) 172.217.168.238:443
2020-12-06 18:21:533e0cf82634e3d4d942188f324705e319Virustotal results 49 / 68 (72.06%) 172.217.168.238:443
2020-12-06 17:35:321ec251289f125c730fa3164bcc9a3acen/a172.217.168.14:443
2020-12-06 17:35:321ec251289f125c730fa3164bcc9a3acen/a172.217.168.14:443
2020-12-06 17:23:0111614911df86239742c041338096a080n/a216.58.214.14:443
2020-12-06 17:23:0111614911df86239742c041338096a080n/a216.58.214.14:443
2020-12-06 16:48:45a1381845052860df98801de968fb2f4eVirustotal results 30 / 68 (44.12%) 172.217.168.238:443
2020-12-06 16:48:45a1381845052860df98801de968fb2f4eVirustotal results 30 / 68 (44.12%) 172.217.168.238:443
2020-12-06 15:55:436c448bd295fa893e77f2e45c3ad19100Virustotal results 31 / 70 (44.29%) 172.217.19.206:443
2020-12-06 15:55:436c448bd295fa893e77f2e45c3ad19100Virustotal results 31 / 70 (44.29%) 172.217.20.78:443
2020-12-06 15:55:436c448bd295fa893e77f2e45c3ad19100Virustotal results 31 / 70 (44.29%) 172.217.19.206:443
2020-12-06 15:55:436c448bd295fa893e77f2e45c3ad19100Virustotal results 31 / 70 (44.29%) 172.217.20.78:443
2020-12-06 15:06:0409f3eed657c489d8dfaba7cb7b607059n/a216.58.214.14:443
2020-12-06 15:06:0409f3eed657c489d8dfaba7cb7b607059n/a216.58.214.14:443
2020-12-06 14:52:391877a3988ffa939b507578f646a82e9an/a172.217.19.206:443
2020-12-06 14:52:391877a3988ffa939b507578f646a82e9an/a172.217.17.110:443
2020-12-06 14:52:391877a3988ffa939b507578f646a82e9an/a172.217.17.110:443
2020-12-06 14:52:391877a3988ffa939b507578f646a82e9an/a172.217.19.206:443
2020-12-06 13:50:00fdaeea142b908bc2acd01943b63ae0c9n/a172.217.17.78:443
2020-12-06 13:50:00fdaeea142b908bc2acd01943b63ae0c9n/a172.217.17.78:443
2020-12-06 12:50:03fc991d0a9fd7ed65f3ad9525848e30a4n/a172.217.19.206:443
2020-12-06 12:50:03fc991d0a9fd7ed65f3ad9525848e30a4n/a172.217.19.206:443
2020-12-06 11:16:06dfd29affc574e702b4b75713d1c80d80Virustotal results 40 / 70 (57.14%) 172.217.17.78:443
2020-12-06 11:16:06dfd29affc574e702b4b75713d1c80d80Virustotal results 40 / 70 (57.14%) 172.217.17.78:443
2020-12-06 10:23:20ccd4f25d772a46997c80fce86c0b2939n/a216.58.214.14:443
2020-12-06 10:23:20ccd4f25d772a46997c80fce86c0b2939n/a216.58.214.14:443
2020-12-06 09:52:14beb211923f9d8c600ded60fafbf1cad3n/a172.217.168.78:443
2020-12-06 09:52:14beb211923f9d8c600ded60fafbf1cad3n/a172.217.168.78:443
2020-12-06 02:20:1193bbddbb403c7720d36983683d7b485aVirustotal results 53 / 71 (74.65%) 172.217.168.46:443
2020-12-06 02:20:1193bbddbb403c7720d36983683d7b485aVirustotal results 53 / 71 (74.65%) 172.217.168.46:443
2020-12-06 01:46:21773dbc0b229903f101167e8c5b27dba3n/a172.217.168.46:443
2020-12-06 01:46:21773dbc0b229903f101167e8c5b27dba3n/a172.217.168.46:443
2020-12-06 01:01:55440905da0bb2df162dbd7a5af980b2e4n/a172.217.168.78:443
2020-12-06 01:01:55440905da0bb2df162dbd7a5af980b2e4n/a172.217.168.14:443
2020-12-06 01:01:55440905da0bb2df162dbd7a5af980b2e4n/a172.217.168.78:443
2020-12-06 01:01:55440905da0bb2df162dbd7a5af980b2e4n/a172.217.168.14:443
2020-12-06 00:41:33057286ae90b983664cf31dc5a197b101n/a172.217.168.14:443
2020-12-06 00:41:33057286ae90b983664cf31dc5a197b101n/a172.217.168.14:443
2020-12-05 19:22:036e3387ad2119a28dfaf32ca25c6731fdn/a172.217.168.14:443
2020-12-05 19:22:036e3387ad2119a28dfaf32ca25c6731fdn/a172.217.168.14:443
2020-12-05 19:22:026e3387ad2119a28dfaf32ca25c6731fdn/a216.58.215.238:443
2020-12-05 19:22:026e3387ad2119a28dfaf32ca25c6731fdn/a216.58.215.238:443
2020-12-05 18:22:013f7fb339f85c53faedc92b9fc84d4eedn/a172.217.168.14:443
2020-12-05 18:22:013f7fb339f85c53faedc92b9fc84d4eedn/a172.217.168.14:443
2020-12-05 17:35:381f9f5b6b4e513a017076a16f750c8b0dn/a172.217.168.14:443
2020-12-05 17:35:381f9f5b6b4e513a017076a16f750c8b0dn/a172.217.168.14:443
2020-12-05 17:35:371f9f5b6b4e513a017076a16f750c8b0dn/a216.58.215.238:443
2020-12-05 17:35:371f9f5b6b4e513a017076a16f750c8b0dn/a216.58.215.238:443
2020-12-05 17:32:131c2b848abbdf5ad034972a1ac37c0176Virustotal results 57 / 71 (80.28%) 172.217.168.14:443
2020-12-05 17:32:131c2b848abbdf5ad034972a1ac37c0176Virustotal results 57 / 71 (80.28%) 172.217.168.14:443
2020-12-05 17:32:121c2b848abbdf5ad034972a1ac37c0176Virustotal results 57 / 71 (80.28%) 172.217.168.46:443
2020-12-05 17:32:121c2b848abbdf5ad034972a1ac37c0176Virustotal results 57 / 71 (80.28%) 172.217.168.46:443
2020-12-05 07:04:46ab0aa372128a11105b58ebf2089794a8Virustotal results 51 / 71 (71.83%) 172.217.168.14:443
2020-12-05 07:04:46ab0aa372128a11105b58ebf2089794a8Virustotal results 51 / 71 (71.83%) 172.217.168.14:443
2020-12-04 22:25:3283f3ebd55f5eeccb8c9b9776733f8f8an/a216.58.215.238:443
2020-12-04 22:25:3283f3ebd55f5eeccb8c9b9776733f8f8an/a216.58.215.238:443
2020-12-04 22:25:2983f3ebd55f5eeccb8c9b9776733f8f8an/a172.217.168.14:443
2020-12-04 22:25:2983f3ebd55f5eeccb8c9b9776733f8f8an/a172.217.168.14:443
2020-12-04 21:53:185f9347d7ccbe4d014e3dd73c796f4d40Virustotal results 43 / 62 (69.35%) 172.217.168.14:443
2020-12-04 21:53:185f9347d7ccbe4d014e3dd73c796f4d40Virustotal results 43 / 62 (69.35%) 172.217.168.14:443
2020-12-04 21:53:175f9347d7ccbe4d014e3dd73c796f4d40Virustotal results 43 / 62 (69.35%) 172.217.168.78:443
2020-12-04 21:53:175f9347d7ccbe4d014e3dd73c796f4d40Virustotal results 43 / 62 (69.35%) 172.217.168.78:443
2020-12-04 20:58:02374badcf8a4502944402f834682fa6a7n/a172.217.168.46:443
2020-12-04 20:58:02374badcf8a4502944402f834682fa6a7n/a172.217.168.46:443
2020-12-04 16:46:08f9fd42bd9205b337e600026837b3aa82Virustotal results 39 / 68 (57.35%) 216.58.215.238:443
2020-12-04 16:46:08f9fd42bd9205b337e600026837b3aa82Virustotal results 39 / 68 (57.35%) 216.58.215.238:443
2020-12-04 09:22:10e20b7da24c306439a408cd77f21a5994Virustotal results 50 / 71 (70.42%) 172.217.20.78:443
2020-12-04 09:22:10e20b7da24c306439a408cd77f21a5994Virustotal results 50 / 71 (70.42%) 172.217.20.78:443
2020-12-04 08:26:48dcf5603d21cf2c82ed5d0767e15410ccn/a172.217.168.14:443
2020-12-04 08:26:48dcf5603d21cf2c82ed5d0767e15410ccn/a172.217.168.14:443
2020-12-04 08:26:48dcf5603d21cf2c82ed5d0767e15410ccn/a172.217.168.46:443
2020-12-04 08:26:48dcf5603d21cf2c82ed5d0767e15410ccn/a216.58.215.238:443
2020-12-04 08:26:48dcf5603d21cf2c82ed5d0767e15410ccn/a172.217.168.46:443
2020-12-04 08:26:48dcf5603d21cf2c82ed5d0767e15410ccn/a216.58.215.238:443
2020-12-03 19:35:18251cc5e36d538fb08f29602dfd0b0d32Virustotal results 53 / 71 (74.65%) 172.217.168.78:443
2020-12-03 19:35:18251cc5e36d538fb08f29602dfd0b0d32Virustotal results 53 / 71 (74.65%) 172.217.168.78:443
2020-12-03 10:43:00407d35010e5c22848d145ec5338b5269Virustotal results 50 / 70 (71.43%) 172.217.168.14:443
2020-12-03 10:43:00407d35010e5c22848d145ec5338b5269Virustotal results 50 / 70 (71.43%) 172.217.168.14:443
2020-12-02 08:50:21ac6e6481f4403be34b45b252e2867124Virustotal results 49 / 71 (69.01%) 172.217.168.238:443
2020-12-02 08:50:21ac6e6481f4403be34b45b252e2867124Virustotal results 49 / 71 (69.01%) 172.217.168.238:443
2020-12-02 06:44:00aa0704191b7f19ba3c50460c4c733f47Virustotal results 52 / 71 (73.24%) 172.217.17.78:443
2020-12-02 06:44:00aa0704191b7f19ba3c50460c4c733f47Virustotal results 52 / 71 (73.24%) 172.217.17.78:443
2020-12-02 05:36:17a87f41d5c94487a7a1a680c2cb2a8d25Virustotal results 47 / 71 (66.20%) 216.58.215.238:443
2020-12-02 05:36:17a87f41d5c94487a7a1a680c2cb2a8d25Virustotal results 47 / 71 (66.20%) 216.58.215.238:443
2020-12-02 02:19:47a02f8ab2766fe9b8e9f598fc85935217Virustotal results 50 / 69 (72.46%) 216.58.215.238:443
2020-12-02 02:19:47a02f8ab2766fe9b8e9f598fc85935217Virustotal results 50 / 69 (72.46%) 216.58.215.238:443

# of entries: 100 (max: 100)