JA3 Fingerprints

You can find further information about the JA3 fingerprint 7c410ce832e848a3321432c9a82e972b, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:7c410ce832e848a3321432c9a82e972b
First seen:2018-01-31 20:04:25 UTC
Last seen:2021-04-10 12:54:06 UTC
Status:Blacklisted
Malware samples:4'609
Destination IPs:920
Malware:Tofsee -
Listing date:2018-11-14 11:48:14

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-04-10 12:54:069bd60d8672e34193a3bb35a09d3d4dc5n/a23.160.0.107:443
2021-04-08 19:50:4623e940efe55576aeea02f54992c58d09Virustotal results 50 / 69 (72.46%) 128.116.117.3:443
2021-04-08 19:50:4523e940efe55576aeea02f54992c58d09Virustotal results 50 / 69 (72.46%) 104.18.22.112:443
2021-04-08 17:03:07fb5a4ae6bc58afd538da3e7b08e97a75n/a157.240.17.17:443
2021-04-08 16:36:07fb1838007c9acd51ef47c4699c2bc679n/a24.234.21.209:443
2021-04-08 16:36:06fb1838007c9acd51ef47c4699c2bc679n/a52.223.198.11:443
2021-04-08 01:21:36d019b3344a1d000f31de5033839c3dd4n/a157.240.201.17:443
2021-04-07 16:27:02cbdd7a3540d6935c33768fb3aa77727dn/a157.240.17.54:443
2021-04-07 16:27:01cbdd7a3540d6935c33768fb3aa77727dn/a157.240.17.17:443
2021-04-06 17:28:31a86b94300a39f98fbc13c8f9479b7e8eVirustotal results 40 / 70 (57.14%) 66.225.237.140:443
2021-04-06 04:48:06a378b9daae78b2cee8be8c188660c4e0Virustotal results 42 / 70 (60.00%) 66.225.237.140:443
2021-04-06 03:04:3858a88c6c22cfb472f873324054b31c8an/a104.209.238.65:443
2021-04-06 02:34:077f7987b9b3b5714f337a67228aa032bbVirustotal results 43 / 70 (61.43%) 157.240.201.17:443
2021-04-06 02:34:077f7987b9b3b5714f337a67228aa032bbVirustotal results 43 / 70 (61.43%) 69.171.250.49:443
2021-04-06 01:07:38395d60110294fe5e0ed80f5fecc81127Virustotal results 49 / 68 (72.06%) 104.209.238.65:443
2021-04-06 01:07:37395d60110294fe5e0ed80f5fecc81127Virustotal results 49 / 68 (72.06%) 157.240.17.54:443
2021-04-06 01:07:36395d60110294fe5e0ed80f5fecc81127Virustotal results 49 / 68 (72.06%) 157.240.17.17:443
2021-04-05 23:16:08290d188235a006a029f723701a8b1451n/a104.209.238.65:443
2021-04-05 23:03:334bc95e56670cf29b89e5b8233b334a5eVirustotal results 47 / 69 (68.12%) 157.240.17.17:443
2021-04-05 22:50:444cc0160586ba19ece72e062213d9a9abVirustotal results 39 / 69 (56.52%) 104.209.238.65:443
2021-04-05 22:05:574238573670800a44c6579432c7413137Virustotal results 50 / 70 (71.43%) 104.209.238.65:443
2021-04-05 21:52:1620064a262bb8787749226bc0040b70c7Virustotal results 43 / 70 (61.43%) 104.209.238.65:443
2021-04-05 21:22:270431a11feb692db92a728fb5fb8e3d0en/a104.209.238.65:443
2021-04-05 08:30:41b079bcde9315ce71ab6fdd434c57e67eVirustotal results 40 / 70 (57.14%) 104.209.238.65:443
2021-04-05 07:44:05b00c08f138a44fe754fec809720b2f8aVirustotal results 53 / 70 (75.71%) 104.209.238.65:443
2021-04-05 06:51:25823dcf16f90d546f752dabdc7dac4edaVirustotal results 52 / 70 (74.29%) 104.209.238.65:443
2021-04-04 21:21:414fe17bbeb977982daf7f36ef0cdc69adVirustotal results 56 / 70 (80.00%) 104.209.238.65:443
2021-04-04 16:07:22aa6aa1e286779e3dd2d5e4090ca9b9d9Virustotal results 37 / 70 (52.86%) 104.209.238.65:443
2021-04-04 16:07:21aa6aa1e286779e3dd2d5e4090ca9b9d9Virustotal results 37 / 70 (52.86%) 200.57.176.145:443
2021-04-04 10:54:37a6cb9cde63cb998052272d92f6330ad6Virustotal results 52 / 70 (74.29%) 200.57.176.145:443
2021-04-04 10:54:37a6cb9cde63cb998052272d92f6330ad6Virustotal results 52 / 70 (74.29%) 104.209.238.65:443
2021-04-04 08:11:126f3e80df0fde8c9626d864b2f1f25b14Virustotal results 37 / 53 (69.81%) 104.209.238.65:443
2021-04-04 07:50:44a0e30843c4718d4211d1ba7a9f9b9f0aVirustotal results 41 / 70 (58.57%) 200.57.176.145:443
2021-04-04 07:50:44a0e30843c4718d4211d1ba7a9f9b9f0aVirustotal results 41 / 70 (58.57%) 104.209.238.65:443
2021-04-04 04:00:56930f3e4afaf0a0d7aa4269400747ec19n/a104.209.238.65:443
2021-04-04 04:00:56930f3e4afaf0a0d7aa4269400747ec19n/a200.57.176.145:443
2021-04-04 01:02:28918e744f9a4304e168b60444522b18d3Virustotal results 45 / 69 (65.22%) 200.57.176.145:443
2021-04-04 01:02:28918e744f9a4304e168b60444522b18d3Virustotal results 45 / 69 (65.22%) 104.209.238.65:443
2021-04-03 23:37:466dcdf25cf8c6ca2296c695c3092d9921Virustotal results 33 / 69 (47.83%) 104.209.238.65:443
2021-04-03 20:40:0508ba0b48dd2b55a7fe56486d7ba6c4f8n/a200.57.176.145:443
2021-04-03 20:24:2424b1d5d1805ca6c116bbaa037c9cfee1n/a200.57.176.145:443
2021-04-03 20:02:200031e93bd04ddf8151ac829c432e8a5bVirustotal results 54 / 71 (76.06%) 31.13.70.1:443
2021-04-03 19:55:57298b15e3b755672371f7526cc72a17b1n/a200.57.176.145:443
2021-04-03 19:39:291780de997485e17a5f4b01bade2cf764Virustotal results 49 / 69 (71.01%) 200.57.176.145:443
2021-04-03 08:51:31aa0a2e172913ea4dabb133fc4478a8ffVirustotal results 37 / 69 (53.62%) 94.190.159.185:443
2021-04-03 07:53:19a9d832670d7aa92a6c6aeb6ffd9e6224Virustotal results 20 / 66 (30.30%) 94.190.159.185:443
2021-04-03 06:18:07a97bc61230d38780278c4ec3654fe282Virustotal results 51 / 70 (72.86%) 94.190.159.185:443
2021-04-03 06:13:17a98a704a311bd249457670861cad7e03Virustotal results 52 / 70 (74.29%) 94.190.159.185:443
2021-04-03 03:19:21a8b9266ef352e5541c06f67a51371efcVirustotal results 51 / 69 (73.91%) 94.190.159.185:443
2021-04-03 00:08:14a7c3d0845743e4eeee968aed7e994217n/a69.171.250.15:443
2021-04-03 00:08:13a7c3d0845743e4eeee968aed7e994217n/a69.171.250.49:443
2021-04-03 00:08:13a7c3d0845743e4eeee968aed7e994217n/a94.190.159.185:443
2021-04-02 11:20:34a4e1347288cd13f4370add57b7b2197dVirustotal results 46 / 66 (69.70%) 94.190.159.185:443
2021-04-02 10:35:07a480b6b3349eaeaa2c54e388c164d15eVirustotal results 51 / 70 (72.86%) 94.190.159.185:443
2021-04-02 10:35:07a480b6b3349eaeaa2c54e388c164d15eVirustotal results 51 / 70 (72.86%) 185.60.216.15:443
2021-04-02 10:05:032f69822a1159f6e0e9b037e05f86b3a5n/a94.190.159.185:443
2021-04-02 04:52:47365e54ae5f0021f36da3f7217cbfef26Virustotal results 31 / 69 (44.93%) 94.190.159.185:443
2021-04-02 04:00:354d9a8be9080e6ed9249ae5f3c62d56c6n/a94.190.159.185:443
2021-04-02 04:00:344d9a8be9080e6ed9249ae5f3c62d56c6n/a185.60.216.15:443
2021-04-02 01:34:588c9af76cf1b4f1e265638f547aa53ecdVirustotal results 40 / 67 (59.70%) 200.57.176.157:443
2021-04-02 01:34:578c9af76cf1b4f1e265638f547aa53ecdVirustotal results 40 / 67 (59.70%) 200.57.163.52:443
2021-04-02 01:34:578c9af76cf1b4f1e265638f547aa53ecdVirustotal results 40 / 67 (59.70%) 94.190.159.185:443
2021-04-02 00:22:496f42ffc200e75c88479c82b9ae34435cVirustotal results 41 / 68 (60.29%) 69.171.250.49:443
2021-04-02 00:22:486f42ffc200e75c88479c82b9ae34435cVirustotal results 41 / 68 (60.29%) 69.171.250.15:443
2021-04-01 22:05:092ccaae0020383852db4c6148fbfc1f4dn/a94.190.159.185:443
2021-04-01 21:40:520e1da6304f65f52110d3818bef505f25n/a94.190.159.185:443
2021-04-01 06:42:40a292f01ac62e280db8a93e994b779ff9Virustotal results 36 / 63 (57.14%) 66.225.237.140:443
2021-04-01 00:14:17752f150e2bf7f8097cda8a5b6ea9eeb0n/a66.225.237.140:443
2021-04-01 00:04:148bfb83a9c9159580bd8398723e3d9890Virustotal results 39 / 70 (55.71%) 66.225.237.140:443
2021-03-31 22:24:34125516bbb6aa68201ed378c8e1432313n/a66.225.237.140:443
2021-03-31 22:24:34125516bbb6aa68201ed378c8e1432313n/a52.223.241.7:443
2021-03-31 22:24:34125516bbb6aa68201ed378c8e1432313n/a52.223.241.1:443
2021-03-31 21:16:491575267aea12171c4cae5588080a39dfn/a66.225.237.140:443
2021-03-31 16:20:35a8d853b3bf094e7137c9088e8426ffe3n/a66.225.237.140:443
2021-03-30 22:21:15a1fc28c605d01722ccc159dd37972fc4n/a66.225.237.140:443
2021-03-30 20:23:018d4d84d0ee162638eea72eab54a2b838Virustotal results 33 / 63 (52.38%) 66.225.237.140:443
2021-03-30 19:24:22662d29c7d2c8a2aa977f758b05be8ad8Virustotal results 39 / 65 (60.00%) 66.225.237.140:443
2021-03-30 17:16:18004bac9e1fffbe7f28e1127d72d63f80n/a200.57.176.157:443
2021-03-30 17:16:18004bac9e1fffbe7f28e1127d72d63f80n/a66.225.237.140:443
2021-03-30 13:37:52ff911363eb9b8a3bfc2ff179b9b48c19Virustotal results 56 / 71 (78.87%) 66.225.237.140:443
2021-03-30 13:10:37e85f4719d0b949847691f24e3d3cec20Virustotal results 37 / 72 (51.39%) 52.202.184.16:443
2021-03-30 12:28:19af844165ba2dad7c72a06cf276ab5475Virustotal results 45 / 71 (63.38%) 157.240.17.54:443
2021-03-30 12:28:19af844165ba2dad7c72a06cf276ab5475Virustotal results 45 / 71 (63.38%) 157.240.17.17:443
2021-03-30 12:09:46b7987f952f59c7d34e282bb55e151ee2Virustotal results 48 / 69 (69.57%) 217.72.199.49:443
2021-03-30 11:36:028971c26d5f4c3d12ddf361ff096d5a99Virustotal results 57 / 70 (81.43%) 66.225.237.140:443
2021-03-30 11:06:3490cde9d79b5f3ff052c1293b6c835080Virustotal results 49 / 71 (69.01%) 217.72.199.49:443
2021-03-30 11:04:188de8345fdbbd4ca3935a9668d00c6d8bVirustotal results 53 / 70 (75.71%) 82.165.229.100:443
2021-03-30 11:04:188de8345fdbbd4ca3935a9668d00c6d8bVirustotal results 53 / 70 (75.71%) 82.165.229.70:443
2021-03-30 11:04:168de8345fdbbd4ca3935a9668d00c6d8bVirustotal results 53 / 70 (75.71%) 66.225.237.140:443
2021-03-30 11:04:168de8345fdbbd4ca3935a9668d00c6d8bVirustotal results 53 / 70 (75.71%) 217.160.153.91:443
2021-03-30 09:16:243947bd00bac39347ee516ba6ab2f67a9Virustotal results 48 / 71 (67.61%) 66.225.237.140:443
2021-03-30 09:10:21357d2c8b5c2be4b82aeee02459759c10Virustotal results 52 / 70 (74.29%) 217.160.153.91:443
2021-03-30 09:10:21357d2c8b5c2be4b82aeee02459759c10Virustotal results 52 / 70 (74.29%) 82.165.230.20:443
2021-03-30 08:39:080c4553756f0348815e09a4ba9c358d2cVirustotal results 60 / 71 (84.51%) 66.225.237.140:443
2021-03-30 08:10:49220ec18eea718fa5c0e4e2d3e478b595Virustotal results 51 / 71 (71.83%) 66.225.237.140:443
2021-03-30 07:18:32ff1131e1b8f51c19a09f0b2ecf155f31n/a66.225.237.140:443
2021-03-30 06:10:06fe1269895914e91018a5fbc7f5d7c884n/a66.225.237.140:443
2021-03-30 05:43:12fd94a25e5c0e864f1381dea082146d86Virustotal results 40 / 71 (56.34%) 66.225.237.140:443
2021-03-30 05:20:03fcfc143efbc4f092f13bcfb643c413b1Virustotal results 53 / 71 (74.65%) 66.225.237.140:443
2021-03-30 05:02:28fcfa312dcc9d0398fed9c862a991f579n/a66.225.237.140:443

# of entries: 100 (max: 100)