JA3 Fingerprints

You can find further information about the JA3 fingerprint 7c410ce832e848a3321432c9a82e972b, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:7c410ce832e848a3321432c9a82e972b
First seen:2018-01-31 20:04:25 UTC
Last seen:2021-08-01 06:13:14 UTC
Status:Blacklisted
Malware samples:7'026
Destination IPs:1'597
Malware:Tofsee -
Listing date:2018-11-14 11:48:14

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-02-07 23:55:420b265ec76166410b62211a47910a1ca1Virustotal results 52 / 70 (74.29%) 157.240.17.63:443
2023-02-07 19:44:4034b060017c8f32a580e74d4956eef08eVirustotal results 45 / 68 (66.18%) 157.240.17.63:443
2023-02-07 19:44:3934b060017c8f32a580e74d4956eef08eVirustotal results 45 / 68 (66.18%) 52.223.241.7:443
2023-02-07 17:49:53d480abc3df41f71d5969b0cd8a2d52cfVirustotal results 26 / 70 (37.14%) 157.240.17.63:443
2023-02-07 17:35:161aa050fbf5d333f1618debb1e9fc8c5cn/a157.240.11.52:443
2023-02-07 16:24:4630c2ff6a1ff366be5a10a852fa2b7f41n/a87.248.103.8:993
2023-02-07 16:24:4630c2ff6a1ff366be5a10a852fa2b7f41n/a157.240.17.63:443
2023-02-07 12:01:11057dbe1f60b6afd343c86b10fd71a9c2Virustotal results 34 / 70 (48.57%) 99.181.79.16:443
2023-02-07 12:01:09057dbe1f60b6afd343c86b10fd71a9c2Virustotal results 34 / 70 (48.57%) 216.116.81.113:443
2023-02-07 10:30:47fe041a63df2b9558f2247cb6f07f97bfn/a52.223.241.7:443
2023-02-07 10:30:47fe041a63df2b9558f2247cb6f07f97bfn/a157.240.247.63:443
2023-02-07 10:30:47fe041a63df2b9558f2247cb6f07f97bfn/a87.248.103.8:993
2023-02-07 07:46:21a3d4eda318b9be250155095c4f017d14n/a77.88.21.125:993
2023-02-07 07:46:21a3d4eda318b9be250155095c4f017d14n/a157.240.247.63:443
2023-02-07 07:46:21a3d4eda318b9be250155095c4f017d14n/a157.240.201.63:443
2023-02-07 07:46:21a3d4eda318b9be250155095c4f017d14n/a217.69.139.90:993
2023-02-07 06:50:2445745cc2b7e41ad2e663e73112e1d4ebn/a157.240.247.63:443
2023-02-07 06:50:2445745cc2b7e41ad2e663e73112e1d4ebn/a87.248.103.8:993
2023-02-07 06:43:45389e0bbeb62bafda651f89609f6155f1n/a94.100.180.90:993
2023-02-07 06:43:44389e0bbeb62bafda651f89609f6155f1n/a217.69.139.90:993
2023-02-07 06:43:44389e0bbeb62bafda651f89609f6155f1n/a87.248.103.8:993
2023-02-07 06:43:171e5707d88142fc30dd5020efe01a2d40n/a157.240.17.63:443
2023-02-07 06:43:171e5707d88142fc30dd5020efe01a2d40n/a217.69.139.90:993
2023-02-07 06:43:131f374aa76e90385b3697d554fb113906n/a200.147.3.221:993
2023-02-07 06:43:131f374aa76e90385b3697d554fb113906n/a200.147.36.76:993
2023-02-07 06:43:121f374aa76e90385b3697d554fb113906n/a200.147.4.19:993
2023-02-07 06:42:261c5c5fcbb9411738d3e6945a538522c9n/a217.69.139.90:993
2023-02-07 06:42:251c5c5fcbb9411738d3e6945a538522c9n/a94.100.180.90:993
2023-02-07 06:42:0180aa6f4cb1dd804d3aad02c03e40954bn/a157.240.17.63:443
2023-02-07 06:42:0080aa6f4cb1dd804d3aad02c03e40954bn/a200.147.36.76:993
2023-02-07 06:42:0080aa6f4cb1dd804d3aad02c03e40954bn/a104.18.226.44:443
2023-02-07 06:38:0004a4fa24bcb580aaa580052197e69c2en/a200.147.4.19:993
2023-02-07 06:35:0935a33f6dc2c8e3298e21d0a29b11f109n/a200.147.4.19:993
2023-02-07 06:35:0835a33f6dc2c8e3298e21d0a29b11f109n/a157.240.20.63:443
2023-02-07 06:35:0835a33f6dc2c8e3298e21d0a29b11f109n/a200.147.36.76:993
2023-02-07 04:56:15f815d4321550a7ad66d1e42aaac27267n/a94.100.180.90:993
2023-02-07 04:56:15f815d4321550a7ad66d1e42aaac27267n/a212.27.48.2:993
2023-02-07 02:26:210ece72516d97cf79d344e1fb24514053Virustotal results 56 / 68 (82.35%) 52.96.110.114:993
2023-02-07 02:26:210ece72516d97cf79d344e1fb24514053Virustotal results 56 / 68 (82.35%) 52.223.241.7:443
2023-02-07 02:26:210ece72516d97cf79d344e1fb24514053Virustotal results 56 / 68 (82.35%) 104.18.227.44:443
2023-02-07 00:28:34ae9dc34b6a8ea00485a79cc48fc59662Virustotal results 22 / 70 (31.43%) 67.195.228.138:993
2023-02-07 00:28:34ae9dc34b6a8ea00485a79cc48fc59662Virustotal results 22 / 70 (31.43%) 52.223.241.7:443
2023-02-06 23:53:23ca8dd6f47d5d394a0a7579c7e8e83c39Virustotal results 23 / 69 (33.33%) 40.99.204.242:993
2023-02-06 23:53:23ca8dd6f47d5d394a0a7579c7e8e83c39Virustotal results 23 / 69 (33.33%) 52.223.241.7:443
2023-02-06 23:53:23ca8dd6f47d5d394a0a7579c7e8e83c39Virustotal results 23 / 69 (33.33%) 40.101.18.242:993
2023-02-06 23:53:23ca8dd6f47d5d394a0a7579c7e8e83c39Virustotal results 23 / 69 (33.33%) 212.82.101.24:993
2023-02-06 23:28:41d85ac9e4a318a111a633603b59a678e1Virustotal results 24 / 70 (34.29%) 98.137.27.103:993
2023-02-06 23:28:40d85ac9e4a318a111a633603b59a678e1Virustotal results 24 / 70 (34.29%) 52.96.166.242:993
2023-02-06 23:28:40d85ac9e4a318a111a633603b59a678e1Virustotal results 24 / 70 (34.29%) 52.223.241.7:443
2023-02-06 23:22:40a21bdfec619934728706de4bf42f4d7cVirustotal results 24 / 70 (34.29%) 40.99.157.2:993
2023-02-06 23:22:40a21bdfec619934728706de4bf42f4d7cVirustotal results 24 / 70 (34.29%) 52.223.241.7:443
2023-02-06 23:22:39a21bdfec619934728706de4bf42f4d7cVirustotal results 24 / 70 (34.29%) 87.248.103.8:993
2023-02-06 23:22:38a21bdfec619934728706de4bf42f4d7cVirustotal results 24 / 70 (34.29%) 40.99.214.34:993
2023-02-06 23:21:1679c6ee0d6fd3628d6fce1d88cd84be8aVirustotal results 24 / 70 (34.29%) 212.82.101.24:993
2023-02-06 23:21:1679c6ee0d6fd3628d6fce1d88cd84be8aVirustotal results 24 / 70 (34.29%) 52.223.241.7:443
2023-02-06 22:59:108ba26140aec7702f27a18eb7e9238fe9Virustotal results 27 / 70 (38.57%) 52.96.10.82:993
2023-02-06 14:54:31319816456c61c55f512fac16f4632af0n/a52.97.232.210:993
2023-02-06 12:48:0008a4403e079a4f7fa39797970fa47fb7n/a157.240.17.63:443
2023-02-06 12:08:06ebd8bb8fd4326fae64375aa72345bd0fn/a157.240.17.63:443
2023-02-06 10:45:09a9d4046746dfbe7a71abbb18c7812f11n/a157.240.20.63:443
2023-02-06 09:42:09129f534735c6dca764d0fa6441b7d7a0n/a185.60.216.52:443
2023-02-06 09:42:09129f534735c6dca764d0fa6441b7d7a0n/a157.240.20.63:443
2023-02-06 08:52:13852de13db9455fd69afb25152d2bc190n/a157.240.11.52:443
2023-02-06 06:53:4723c0bac123554a7dbe4f13addbb6c433n/a157.240.247.63:443
2023-02-06 06:51:39f4769a6107f0bd058a18721fdbccd3ffn/a157.240.17.63:443
2023-02-06 06:51:39f4769a6107f0bd058a18721fdbccd3ffn/a52.223.241.7:443
2023-02-06 05:29:561a3ca63eda79e67386bf340c651734d3n/a52.223.241.7:443
2023-02-06 05:29:551a3ca63eda79e67386bf340c651734d3n/a185.60.216.52:443
2023-02-06 04:19:445ae167ea03c01f1aa7e108e2e5bf6cc4n/a157.240.17.63:443
2023-02-06 04:11:23678f0b53df00ea71a3b5e4c4d29d4c5aVirustotal results 27 / 69 (39.13%) 157.240.247.63:443
2023-02-06 04:08:4966376361ef10e79b92812d799f606b18Virustotal results 23 / 67 (34.33%) 157.240.17.63:443
2023-02-05 19:43:18abc7c1377aae5b547b50f627fe354798n/a157.240.247.63:443
2023-02-05 16:21:5584bf0af53cec0b23da9f3d6aec9421c4n/a157.240.201.63:443
2023-02-05 16:21:5584bf0af53cec0b23da9f3d6aec9421c4n/a52.223.241.7:443
2023-02-05 09:03:28c3a782c399da3f28c4249d1db3aebbbbn/a74.208.5.13:993
2023-02-05 09:03:28c3a782c399da3f28c4249d1db3aebbbbn/a157.240.201.63:443
2023-02-05 08:31:30c14d8beb908ec9d57bbe956d4e514f7fn/a157.240.247.63:443
2023-02-05 02:39:51b5c4652099d0763fce9f34496fac6b02n/a93.17.128.57:993
2023-02-05 02:39:51b5c4652099d0763fce9f34496fac6b02n/a210.131.2.25:993
2023-02-05 02:39:50b5c4652099d0763fce9f34496fac6b02n/a157.240.21.174:443
2023-02-05 02:39:50b5c4652099d0763fce9f34496fac6b02n/a40.99.150.82:993
2023-02-05 02:39:50b5c4652099d0763fce9f34496fac6b02n/a162.215.3.42:993
2023-02-05 02:39:50b5c4652099d0763fce9f34496fac6b02n/a203.134.11.4:993
2023-02-05 02:39:50b5c4652099d0763fce9f34496fac6b02n/a157.240.253.63:443
2023-02-05 02:39:50b5c4652099d0763fce9f34496fac6b02n/a64.29.151.234:993
2023-02-05 02:39:49b5c4652099d0763fce9f34496fac6b02n/a195.130.217.240:995
2023-02-04 23:47:20a01dff3b6c5117a2eef436ae4d2eac98Virustotal results 47 / 70 (67.14%) 52.223.241.7:443
2023-02-04 21:34:465a365853c1dee968cbb6df15384a1783n/a52.223.241.7:443
2023-02-04 19:11:45a7a944c9dee2329063d75817e43cac00Virustotal results 50 / 70 (71.43%) 185.5.54.58:993
2023-02-04 18:16:120f33bc445e83a92627496bf1782b54cbVirustotal results 52 / 70 (74.29%) 217.20.155.13:443
2023-02-03 22:11:341820ce5f38e8cf94d7129922f6605cd4Virustotal results 52 / 70 (74.29%) 200.147.41.246:993
2023-02-03 22:11:331820ce5f38e8cf94d7129922f6605cd4Virustotal results 52 / 70 (74.29%) 40.99.201.210:993
2023-02-03 22:11:331820ce5f38e8cf94d7129922f6605cd4Virustotal results 52 / 70 (74.29%) 52.223.241.7:443
2023-02-03 22:11:331820ce5f38e8cf94d7129922f6605cd4Virustotal results 52 / 70 (74.29%) 80.12.24.13:995
2023-02-03 08:16:07be942f0ba0942392fa3701ffba089e63n/a52.223.241.7:443
2023-02-02 19:31:32a73ad522d9f33ac638c23fe1e3c75e58Virustotal results 51 / 70 (72.86%) 77.88.21.125:993
2023-02-02 19:31:31a73ad522d9f33ac638c23fe1e3c75e58Virustotal results 51 / 70 (72.86%) 217.69.139.90:993
2023-02-02 19:31:31a73ad522d9f33ac638c23fe1e3c75e58Virustotal results 51 / 70 (72.86%) 212.27.48.2:993
2023-02-02 19:31:31a73ad522d9f33ac638c23fe1e3c75e58Virustotal results 51 / 70 (72.86%) 52.223.241.7:443
2023-02-02 17:02:53df5b3d4a5d4df010f939618e47552485n/a198.61.137.174:993

# of entries: 100 (max: 100)