JA3 Fingerprints

You can find further information about the JA3 fingerprint 70722097d1fe1d78d8c2164640ab6df4, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:70722097d1fe1d78d8c2164640ab6df4
First seen:2017-07-16 02:39:08 UTC
Last seen:2021-05-04 09:52:20 UTC
Status:Blacklisted
Malware samples:3'905
Destination IPs:167
Malware:Tofsee -
Listing date:2020-01-09 14:29:48

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-12-27 10:13:213cf749b0a3e58a4d65972191e3516b09n/a157.240.11.52:443
2021-12-21 15:37:3868548e43a73ef9fa6165a1677b58a3d6n/a172.67.165.37:443
2021-12-21 14:52:012ce703aa6da117a6b8c1422d0b89ccc6n/a172.64.202.8:443
2021-12-21 14:10:0925a4ae1edc111049cf65a377dcfe49e7n/a172.67.165.37:443
2021-12-21 12:39:51aac09a827c782a0d1254bb888ea0dc5dn/a172.67.165.37:443
2021-12-21 11:21:26f23c62759c0b828b0516e1503d051eebn/a104.21.11.45:443
2021-12-21 08:37:00a81ab9d8c512a3c771cfdea6de4511c1n/a104.21.79.27:443
2021-12-21 06:36:33afaaf029a7bbeee65dae5cc79d719159n/a172.67.140.235:443
2021-12-21 01:01:19a1e34a817fc34b65c78fcb9b8d57c47cn/a172.67.140.235:443
2021-12-20 16:55:54f9a7d78353bea3b5cc64cbd12f09c41en/a172.67.140.235:443
2021-12-20 15:07:58d778681961070ac6e0cd8d34b2c6d9d1n/a172.67.140.235:443
2021-12-20 13:32:45d98ada0288f15f7c3239aad96bf73f49n/a104.21.79.27:443
2021-12-20 10:33:245ddacc93b07452a86f97076c2d77b48en/a104.21.79.27:443
2021-12-20 06:29:49632f863f8bab316a1cde141314d3dc65n/a172.67.140.235:443
2021-12-20 05:55:208426f202fff106a789373511286c2efbn/a172.64.103.24:443
2021-12-20 05:47:344c8b8d901238e70e769cfcac44142382n/a172.64.102.24:443
2021-12-20 05:21:51ade6baaf8d12fcb43195c1fd9f667ab3Virustotal results 22 / 67 (32.84%) 172.64.103.24:443
2021-12-19 22:31:29c6ad3418d1d80a7e296194a5f66a5e72n/a104.21.67.12:443
2021-12-19 17:57:16ac4594b530390ea38ebd02519b5f577en/a104.21.67.12:443
2021-12-19 17:27:307d4949d308e250adb1222d3983169a9en/a172.67.167.152:443
2021-12-19 15:24:35fa9d8177830dcd6c37fb26a1fc3c1a65n/a104.21.67.12:443
2021-12-19 14:59:588a7d42a3585fe7a2da105ac11ff11839n/a104.21.67.12:443
2021-12-19 13:13:28b156923ff18735c83be0d62d7753e145n/a172.67.167.152:443
2021-12-19 09:49:36acb9b2e33e190038c312c468eb5ca964n/a172.67.167.152:443
2021-12-19 09:40:180203b4c72d14a217215c9f4d798d3af2n/a104.21.67.12:443
2021-12-19 08:16:3675775350e23e24519bad8f774d40e761n/a172.67.167.152:443
2021-12-19 07:36:3722ff78e882712ae5e604070cf427929cn/a172.67.167.152:443
2021-12-19 07:25:26e76e60a7c9660e260ca2c75e293bbf72Virustotal results 21 / 67 (31.34%) 104.21.67.12:443
2021-12-19 07:24:51c30a6d3bb42d45ecd1412cc80a1d5326n/a172.67.167.152:443
2021-12-19 07:23:29e69bdcb41211e6ad30cd93c9ac0b53c2Virustotal results 22 / 68 (32.35%) 104.21.67.12:443
2021-12-19 07:17:115d549a0c28addb279414a94f04c3d64fVirustotal results 22 / 68 (32.35%) 172.67.167.152:443
2021-12-19 06:44:45c07456bca676f2034b19eda4a63dbe66n/a104.21.67.12:443
2021-12-19 04:03:5602779b84b9305108e5004c88300d7ca5Virustotal results 22 / 68 (32.35%) 172.64.143.36:443
2021-12-19 00:42:32a0fe9935cfe3b6027492e79d7ee1169dn/a172.64.202.8:443
2021-12-19 00:20:253a51249fcb212aea9b872720fdb27ee5Virustotal results 21 / 68 (30.88%) 104.21.67.12:443
2021-12-18 23:42:059a11001f0378e5520d35dff6eabebd88n/a104.21.67.12:443
2021-12-18 18:14:09a380aa3d52cdb2b613a091cd1d55b6f6n/a172.64.202.8:443
2021-12-18 17:32:43acd3a78eefb83c35565499b398f52de5n/a104.21.81.195:443
2021-12-18 16:30:3828c9847c97decba42e5e3a6a96de3ae9n/a104.21.81.195:443
2021-12-18 16:14:35d7d3e7010b5ca02f3ef6592c0bce20can/a104.21.81.195:443
2021-12-18 14:09:469261ec807dc6965583568535f281f45bVirustotal results 24 / 67 (35.82%) 104.21.81.195:443
2021-12-18 09:01:04ade0396b3000395116098cc9c763eca9Virustotal results 34 / 69 (49.28%) 172.67.163.212:443
2021-12-18 07:54:15c6cd7378136fd0933e55d7e99804d43an/a172.67.163.212:443
2021-12-18 07:52:10a57b2cbe48c57a8df7310f5d9b918aean/a104.21.81.195:443
2021-12-18 07:43:07672f0165c5cedbf1fcffa25091e95d37n/a104.21.81.195:443
2021-12-18 04:41:18b1f5130098a50b8c7939ba643ad7b6d8n/a104.21.81.195:443
2021-12-17 15:01:43bdcbffdee8da08ce0b2840391a8a5227n/a172.67.153.18:443
2021-12-17 13:30:332548cb9c7c428a6e3149c55a16f41c30n/a104.21.32.167:443
2021-12-17 11:15:44c814d9c8f2367de4c922ae4fcef11ca4n/a104.21.32.167:443
2021-12-17 10:55:07b7cb7f3fdc93955bcc71214c9039b439n/a172.67.153.18:443
2021-12-17 09:45:59f0f4715de618882a58c4f0c6119c47can/a172.67.153.18:443
2021-12-17 09:44:59d4002de999d7b0635d5d5242d9ceda56n/a104.21.32.167:443
2021-12-17 09:43:464dc10d3d67ef8f7db1b65047ec518aban/a104.21.32.167:443
2021-12-17 07:57:50edb8c7e69dffe998ba2215188cc63f48n/a172.67.153.18:443
2021-12-17 07:49:51a4ea5b25e2ffd2bd8c18e0331f3cff69n/a172.67.153.18:443
2021-12-17 07:39:223693fb837df1d8773042e0da75c83b5fn/a172.67.153.18:443
2021-12-17 07:30:172eb7b9f9c0030fb309e02d1729ad5ee7n/a104.21.32.167:443
2021-12-16 15:44:0004a9977c6c093b1f67e0a0c4f0365137n/a172.67.164.185:443
2021-12-16 15:37:589844ed269b47960ad3ca78a727e1582an/a172.67.164.185:443
2021-12-16 14:35:5254afb4b3bb129abae7f3c3650cb3982cn/a172.67.164.185:443
2021-12-16 10:52:024793500e14996a44e634089987e1ccf9n/a172.64.202.8:443
2021-12-16 10:43:0161226363d8c57b5d1ed89015826a7888n/a104.21.50.178:443
2021-12-16 08:22:34f058fbdac6c0453ab74b7e33dfde839an/a172.67.164.185:443
2021-12-16 08:20:10c425bb854266bc041c287e16bb345a04n/a104.21.50.178:443
2021-12-16 07:58:5081b268f1a348d1f423f4ca65c145cbbcn/a172.67.164.185:443
2021-12-16 07:24:496236e6db20da57c2555ffe5a7c73ae80Virustotal results 22 / 65 (33.85%) 172.67.164.185:443
2021-12-15 01:20:40a84635b5c36d1edec196e145b4ce1112Virustotal results 26 / 68 (38.24%) 104.21.64.150:443
2021-12-15 00:20:41ad92f6df46ea02f1d3cb0c92256ad82dn/a172.64.103.24:443
2021-11-29 21:07:453487c5e7b3622f367c33f0c6f2f6d7b1n/a157.240.17.63:443
2021-10-07 09:46:230dadd6c07871cf8d5ae1508c5087069an/a157.240.17.63:443
2021-10-07 09:46:220dadd6c07871cf8d5ae1508c5087069an/a157.240.17.174:443
2021-09-20 10:52:53c414d2fee67558430b29e79f1d11fd26n/a157.240.17.63:443
2021-05-04 09:52:20ec33424a4ee988e0aa1aceb227025f36n/a172.67.175.104:443
2021-05-04 09:52:20ec33424a4ee988e0aa1aceb227025f36n/a172.67.175.104:443
2021-04-16 17:44:13e5c17362c085bc90e49e161d108717e0n/a172.64.172.34:443
2021-04-16 17:44:13e5c17362c085bc90e49e161d108717e0n/a172.64.172.34:443
2021-04-01 06:42:40a292f01ac62e280db8a93e994b779ff9Virustotal results 36 / 63 (57.14%) 194.145.202.234:443
2021-04-01 06:42:40a292f01ac62e280db8a93e994b779ff9Virustotal results 36 / 63 (57.14%) 194.145.202.234:443
2021-03-31 23:59:21844279f0285af97e45903102ba1c58acn/a194.145.202.235:443
2021-03-31 23:59:21844279f0285af97e45903102ba1c58acn/a194.145.202.235:443
2021-03-31 23:37:3904b7cf51f6782121562cd5bcd2bda7a6n/a157.240.17.63:443
2021-03-31 23:37:3904b7cf51f6782121562cd5bcd2bda7a6n/a157.240.17.63:443
2021-03-31 23:37:3804b7cf51f6782121562cd5bcd2bda7a6n/a157.240.219.63:443
2021-03-31 23:37:3804b7cf51f6782121562cd5bcd2bda7a6n/a157.240.219.63:443
2021-03-30 20:23:018d4d84d0ee162638eea72eab54a2b838Virustotal results 33 / 63 (52.38%) 157.240.201.63:443
2021-03-30 20:23:018d4d84d0ee162638eea72eab54a2b838Virustotal results 33 / 63 (52.38%) 157.240.201.63:443
2021-03-30 05:20:03fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 31.13.86.52:443
2021-03-30 05:20:03fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 31.13.86.52:443
2021-03-30 05:20:02fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 157.240.219.63:443
2021-03-30 05:20:02fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 157.240.219.63:443
2021-03-28 21:22:0725ea6d13d85e2befeecf4a469957c1b9n/a69.171.250.63:443
2021-03-28 21:22:0725ea6d13d85e2befeecf4a469957c1b9n/a69.171.250.63:443
2021-03-28 21:16:13398ba9429044cbfd00bae984dd65e3a4Virustotal results 52 / 70 (74.29%) 157.240.201.63:443
2021-03-28 21:16:13398ba9429044cbfd00bae984dd65e3a4Virustotal results 52 / 70 (74.29%) 157.240.201.63:443
2021-03-28 21:16:12398ba9429044cbfd00bae984dd65e3a4Virustotal results 52 / 70 (74.29%) 31.13.64.52:443
2021-03-28 21:16:12398ba9429044cbfd00bae984dd65e3a4Virustotal results 52 / 70 (74.29%) 31.13.64.52:443
2021-03-26 23:23:1390d7a75c936441d0caf11c3c4b58adc5Virustotal results 46 / 71 (64.79%) 157.240.17.63:443
2021-03-26 23:23:1390d7a75c936441d0caf11c3c4b58adc5Virustotal results 46 / 71 (64.79%) 157.240.219.63:443
2021-03-26 23:23:1390d7a75c936441d0caf11c3c4b58adc5Virustotal results 46 / 71 (64.79%) 157.240.17.63:443
2021-03-26 23:23:1390d7a75c936441d0caf11c3c4b58adc5Virustotal results 46 / 71 (64.79%) 157.240.219.63:443

# of entries: 100 (max: 100)