JA3 Fingerprints

You can find further information about the JA3 fingerprint 70722097d1fe1d78d8c2164640ab6df4, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:70722097d1fe1d78d8c2164640ab6df4
First seen:2017-07-16 02:39:08 UTC
Last seen:2021-05-04 09:52:20 UTC
Status:Blacklisted
Malware samples:3'836
Destination IPs:150
Malware:Tofsee -
Listing date:2020-01-09 14:29:48

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-10-07 09:46:230dadd6c07871cf8d5ae1508c5087069an/a157.240.17.63:443
2021-10-07 09:46:220dadd6c07871cf8d5ae1508c5087069an/a157.240.17.174:443
2021-09-20 10:52:53c414d2fee67558430b29e79f1d11fd26n/a157.240.17.63:443
2021-05-04 09:52:20ec33424a4ee988e0aa1aceb227025f36n/a172.67.175.104:443
2021-05-04 09:52:20ec33424a4ee988e0aa1aceb227025f36n/a172.67.175.104:443
2021-04-16 17:44:13e5c17362c085bc90e49e161d108717e0n/a172.64.172.34:443
2021-04-16 17:44:13e5c17362c085bc90e49e161d108717e0n/a172.64.172.34:443
2021-04-01 06:42:40a292f01ac62e280db8a93e994b779ff9Virustotal results 36 / 63 (57.14%) 194.145.202.234:443
2021-04-01 06:42:40a292f01ac62e280db8a93e994b779ff9Virustotal results 36 / 63 (57.14%) 194.145.202.234:443
2021-03-31 23:59:21844279f0285af97e45903102ba1c58acn/a194.145.202.235:443
2021-03-31 23:59:21844279f0285af97e45903102ba1c58acn/a194.145.202.235:443
2021-03-31 23:37:3904b7cf51f6782121562cd5bcd2bda7a6n/a157.240.17.63:443
2021-03-31 23:37:3904b7cf51f6782121562cd5bcd2bda7a6n/a157.240.17.63:443
2021-03-31 23:37:3804b7cf51f6782121562cd5bcd2bda7a6n/a157.240.219.63:443
2021-03-31 23:37:3804b7cf51f6782121562cd5bcd2bda7a6n/a157.240.219.63:443
2021-03-30 20:23:018d4d84d0ee162638eea72eab54a2b838Virustotal results 33 / 63 (52.38%) 157.240.201.63:443
2021-03-30 20:23:018d4d84d0ee162638eea72eab54a2b838Virustotal results 33 / 63 (52.38%) 157.240.201.63:443
2021-03-30 05:20:03fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 31.13.86.52:443
2021-03-30 05:20:03fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 31.13.86.52:443
2021-03-30 05:20:02fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 157.240.219.63:443
2021-03-30 05:20:02fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 157.240.219.63:443
2021-03-28 21:22:0725ea6d13d85e2befeecf4a469957c1b9n/a69.171.250.63:443
2021-03-28 21:22:0725ea6d13d85e2befeecf4a469957c1b9n/a69.171.250.63:443
2021-03-28 21:16:13398ba9429044cbfd00bae984dd65e3a4Virustotal results 52 / 70 (74.29%) 157.240.201.63:443
2021-03-28 21:16:13398ba9429044cbfd00bae984dd65e3a4Virustotal results 52 / 70 (74.29%) 157.240.201.63:443
2021-03-28 21:16:12398ba9429044cbfd00bae984dd65e3a4Virustotal results 52 / 70 (74.29%) 31.13.64.52:443
2021-03-28 21:16:12398ba9429044cbfd00bae984dd65e3a4Virustotal results 52 / 70 (74.29%) 31.13.64.52:443
2021-03-26 23:23:1390d7a75c936441d0caf11c3c4b58adc5Virustotal results 46 / 71 (64.79%) 157.240.219.63:443
2021-03-26 23:23:1390d7a75c936441d0caf11c3c4b58adc5Virustotal results 46 / 71 (64.79%) 157.240.17.63:443
2021-03-26 23:23:1390d7a75c936441d0caf11c3c4b58adc5Virustotal results 46 / 71 (64.79%) 157.240.219.63:443
2021-03-26 23:23:1390d7a75c936441d0caf11c3c4b58adc5Virustotal results 46 / 71 (64.79%) 157.240.17.63:443
2021-03-24 08:13:29c33da0d55a9d908f29bd9887aa768510n/a157.240.223.63:443
2021-03-24 08:13:29c33da0d55a9d908f29bd9887aa768510n/a157.240.219.63:443
2021-03-24 08:13:29c33da0d55a9d908f29bd9887aa768510n/a157.240.223.63:443
2021-03-24 08:13:29c33da0d55a9d908f29bd9887aa768510n/a157.240.219.63:443
2021-03-23 00:34:25764434c10ccd017aee3c6155a8f56d4aVirustotal results 41 / 66 (62.12%) 69.171.250.63:443
2021-03-23 00:34:25764434c10ccd017aee3c6155a8f56d4aVirustotal results 41 / 66 (62.12%) 69.171.250.63:443
2021-03-22 22:41:4025fb58c6fd434c8c9faca860389f2de2Virustotal results 35 / 70 (50.00%) 157.240.201.63:443
2021-03-22 22:41:4025fb58c6fd434c8c9faca860389f2de2Virustotal results 35 / 70 (50.00%) 157.240.201.63:443
2021-03-22 22:07:2815d3936a9b78e64dcf520b5e5de2b646Virustotal results 35 / 71 (49.30%) 157.240.219.63:443
2021-03-22 22:07:2815d3936a9b78e64dcf520b5e5de2b646Virustotal results 35 / 71 (49.30%) 157.240.219.63:443
2021-03-21 00:04:069445ac35832a31eeeda4c2f6f5990486Virustotal results 43 / 68 (63.24%) 69.171.250.63:443
2021-03-21 00:04:069445ac35832a31eeeda4c2f6f5990486Virustotal results 43 / 68 (63.24%) 69.171.250.63:443
2021-03-19 23:31:1740d09fda968bb707e1aa7fe5665efe81Virustotal results 39 / 71 (54.93%) 157.240.219.63:443
2021-03-19 23:31:1740d09fda968bb707e1aa7fe5665efe81Virustotal results 39 / 71 (54.93%) 157.240.219.63:443
2021-03-19 00:15:219fa2afa127e379890af420fa0e7113c6Virustotal results 48 / 71 (67.61%) 157.240.11.52:443
2021-03-19 00:15:219fa2afa127e379890af420fa0e7113c6Virustotal results 48 / 71 (67.61%) 157.240.11.52:443
2021-03-18 21:44:38397bf0f442728c00dc7ab2b5531f0231n/a157.240.206.63:443
2021-03-18 21:44:38397bf0f442728c00dc7ab2b5531f0231n/a157.240.206.63:443
2021-03-18 21:44:37397bf0f442728c00dc7ab2b5531f0231n/a157.240.11.52:443
2021-03-18 21:44:37397bf0f442728c00dc7ab2b5531f0231n/a157.240.11.52:443
2021-03-18 21:03:561b0cbea67a48e84bf7532cfac0104014Virustotal results 35 / 71 (49.30%) 69.171.250.63:443
2021-03-18 21:03:561b0cbea67a48e84bf7532cfac0104014Virustotal results 35 / 71 (49.30%) 69.171.250.63:443
2021-03-16 22:13:2332be0f882345837d46c9ada216f3af0bn/a157.240.22.63:443
2021-03-16 22:13:2332be0f882345837d46c9ada216f3af0bn/a157.240.22.63:443
2021-03-16 02:17:199f054e2d0618baa10aa4e5263b7f2335Virustotal results 53 / 70 (75.71%) 104.21.90.231:443
2021-03-16 02:17:199f054e2d0618baa10aa4e5263b7f2335Virustotal results 53 / 70 (75.71%) 104.21.90.231:443
2021-03-16 01:24:1869fc873cdef328e31ec39fb382aa2150Virustotal results 43 / 67 (64.18%) 157.240.196.63:443
2021-03-16 01:24:1869fc873cdef328e31ec39fb382aa2150Virustotal results 43 / 67 (64.18%) 157.240.196.63:443
2021-03-16 01:24:1769fc873cdef328e31ec39fb382aa2150Virustotal results 43 / 67 (64.18%) 157.240.195.63:443
2021-03-16 01:24:1769fc873cdef328e31ec39fb382aa2150Virustotal results 43 / 67 (64.18%) 157.240.195.63:443
2021-03-15 02:22:409c5b0e0593253f3f72fa02bda5a58d65Virustotal results 43 / 70 (61.43%) 104.21.90.231:443
2021-03-15 02:22:409c5b0e0593253f3f72fa02bda5a58d65Virustotal results 43 / 70 (61.43%) 104.21.90.231:443
2021-03-15 00:00:289f513d0ea8f0398734a50d88cac1e205n/a172.67.162.55:443
2021-03-15 00:00:289f513d0ea8f0398734a50d88cac1e205n/a172.67.162.55:443
2021-03-14 23:42:317d42bfc9f77301e39f84fd6ab344400bVirustotal results 45 / 70 (64.29%) 104.21.90.231:443
2021-03-14 23:42:317d42bfc9f77301e39f84fd6ab344400bVirustotal results 45 / 70 (64.29%) 104.21.90.231:443
2021-03-14 23:22:5838715c4d309c714a5d8b4343a306022bVirustotal results 46 / 68 (67.65%) 104.21.90.231:443
2021-03-14 23:22:5838715c4d309c714a5d8b4343a306022bVirustotal results 46 / 68 (67.65%) 104.21.90.231:443
2021-03-14 23:08:51480ff43094e75b127effea05f0dca712n/a172.67.162.55:443
2021-03-14 23:08:51480ff43094e75b127effea05f0dca712n/a172.67.162.55:443
2021-03-14 09:54:18a6d4c507ce1922a0eb00d998530a7e7aVirustotal results 44 / 69 (63.77%) 172.64.172.34:443
2021-03-14 09:54:18a6d4c507ce1922a0eb00d998530a7e7aVirustotal results 44 / 69 (63.77%) 172.64.172.34:443
2021-03-14 00:29:519d99df2e358f4a8a0217c7067903cb59Virustotal results 50 / 69 (72.46%) 157.240.195.63:443
2021-03-14 00:29:519d99df2e358f4a8a0217c7067903cb59Virustotal results 50 / 69 (72.46%) 157.240.195.63:443
2021-03-13 23:56:5896875f3fd7a9b7c984176d87481c51a0Virustotal results 45 / 70 (64.29%) 172.64.173.34:443
2021-03-13 23:56:5896875f3fd7a9b7c984176d87481c51a0Virustotal results 45 / 70 (64.29%) 172.64.173.34:443
2021-03-13 22:05:1810768b55dc9f780ec4d442597f6a215aVirustotal results 45 / 70 (64.29%) 31.13.64.52:443
2021-03-13 22:05:1810768b55dc9f780ec4d442597f6a215aVirustotal results 45 / 70 (64.29%) 31.13.64.52:443
2021-03-13 22:05:1710768b55dc9f780ec4d442597f6a215aVirustotal results 45 / 70 (64.29%) 172.64.173.34:443
2021-03-13 22:05:1710768b55dc9f780ec4d442597f6a215aVirustotal results 45 / 70 (64.29%) 172.64.173.34:443
2021-03-13 21:50:354b2946a156cfe1be8732c68bfec65abeVirustotal results 46 / 69 (66.67%) 172.64.172.34:443
2021-03-13 21:50:354b2946a156cfe1be8732c68bfec65abeVirustotal results 46 / 69 (66.67%) 172.64.172.34:443
2021-03-13 21:11:2541b54eec564a772224974f0bfff2856dVirustotal results 48 / 69 (69.57%) 172.64.172.34:443
2021-03-13 21:11:2541b54eec564a772224974f0bfff2856dVirustotal results 48 / 69 (69.57%) 172.64.172.34:443
2021-03-13 20:12:310772066368872132b78d6de489d88195Virustotal results 46 / 69 (66.67%) 172.64.172.34:443
2021-03-13 20:12:310772066368872132b78d6de489d88195Virustotal results 46 / 69 (66.67%) 172.64.172.34:443
2021-03-13 18:37:49ccce3e9a688f62c75587e1248f7b0923Virustotal results 49 / 69 (71.01%) 172.64.173.34:443
2021-03-13 18:37:49ccce3e9a688f62c75587e1248f7b0923Virustotal results 49 / 69 (71.01%) 172.64.173.34:443
2021-03-13 17:09:41aa45aa740fa1ab6b0d9acc9527a201baVirustotal results 50 / 69 (72.46%) 172.64.172.34:443
2021-03-13 17:09:41aa45aa740fa1ab6b0d9acc9527a201baVirustotal results 50 / 69 (72.46%) 172.64.173.34:443
2021-03-13 17:09:41aa45aa740fa1ab6b0d9acc9527a201baVirustotal results 50 / 69 (72.46%) 172.64.172.34:443
2021-03-13 17:09:41aa45aa740fa1ab6b0d9acc9527a201baVirustotal results 50 / 69 (72.46%) 172.64.173.34:443
2021-03-13 17:07:51a9553728fe353f2f28187c61dc1950bfVirustotal results 49 / 71 (69.01%) 172.64.173.34:443
2021-03-13 17:07:51a9553728fe353f2f28187c61dc1950bfVirustotal results 49 / 71 (69.01%) 172.64.173.34:443
2021-03-13 16:52:1690f0353fade81bc4550847626f1c7424Virustotal results 41 / 71 (57.75%) 172.64.173.34:443
2021-03-13 16:52:1690f0353fade81bc4550847626f1c7424Virustotal results 41 / 71 (57.75%) 172.64.173.34:443
2021-03-13 12:15:481045f9d33079c8206441f5645c545a10Virustotal results 46 / 70 (65.71%) 172.64.173.34:443
2021-03-13 12:15:481045f9d33079c8206441f5645c545a10Virustotal results 46 / 70 (65.71%) 172.64.173.34:443
2021-03-13 12:02:3557e3c93e7b6649aed3b8e9e9a923f9c0Virustotal results 46 / 69 (66.67%) 172.64.172.34:443

# of entries: 100 (max: 100)