JA3 Fingerprints

You can find further information about the JA3 fingerprint 807fca46d9d0cf63adf4e5e80e414bbe, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:807fca46d9d0cf63adf4e5e80e414bbe
First seen:2018-06-07 16:51:03 UTC
Last seen:2021-08-07 03:15:42 UTC
Status:Blacklisted
Malware samples:1'010
Destination IPs:305
Malware:Tofsee -
Listing date:2020-01-09 14:22:48

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-09-10 20:38:39ed7b291690697998f701b6df1a5cd228n/a95.140.230.170:443
2024-09-10 20:38:38ed7b291690697998f701b6df1a5cd228n/a92.38.179.229:443
2024-09-10 20:38:38ed7b291690697998f701b6df1a5cd228n/a95.140.230.217:443
2024-09-09 04:13:59ce983ab5f22d65b65107a7f3e7d6ea13n/a162.159.130.233:443
2024-09-09 04:13:59ce983ab5f22d65b65107a7f3e7d6ea13n/a172.67.19.24:443
2024-09-09 04:13:59ce983ab5f22d65b65107a7f3e7d6ea13n/a104.26.12.205:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a205.234.175.175:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a2.16.238.10:443
2024-05-03 08:46:0142659a805a5823642f5490172d0953b6n/a185.40.154.13:443
2024-04-17 09:05:115a167b24b67dfecd054af8bc805d1755n/a104.20.4.235:443
2024-04-17 09:05:115a167b24b67dfecd054af8bc805d1755n/a104.26.12.205:443
2024-04-17 09:05:115a167b24b67dfecd054af8bc805d1755n/a162.159.135.232:443
2024-04-13 16:28:37d1f8c0c7eaf024f84b11d7f19c9920c9n/a104.22.26.97:443
2024-03-10 00:31:35e206b7adcfb899f16fde92af5936ea10n/a34.117.186.192:443
2024-03-10 00:31:35e206b7adcfb899f16fde92af5936ea10n/a149.154.167.220:443
2024-02-22 06:13:130db91d679f25d7b2ed74cb4a0a4fcfdeVirustotal results 30 / 71 (42.25%) 104.26.13.205:443
2024-02-22 06:13:130db91d679f25d7b2ed74cb4a0a4fcfdeVirustotal results 30 / 71 (42.25%) 162.159.137.232:443
2024-02-20 21:28:1535caafecc5e884e66e8f960b12f623f0n/a185.40.154.13:443
2024-02-20 21:28:1535caafecc5e884e66e8f960b12f623f0n/a205.234.175.175:443
2024-02-20 21:28:1535caafecc5e884e66e8f960b12f623f0n/a92.223.89.37:443
2023-11-28 20:57:21003772c838213e729ad6cb022b7294b8Virustotal results 58 / 72 (80.56%) 18.204.74.98:443
2023-10-21 17:12:4419167c88453a1762264c5190df91a1een/a3.217.44.155:443
2023-10-19 07:55:479bd280dde0c5bdfe386e1b1aada2a215n/a3.217.44.155:443
2023-08-23 08:21:2106aec39678d5222a2d7f9475243ae9abVirustotal results 9 / 65 (13.85%) 140.143.218.231:443
2023-08-23 08:21:2106aec39678d5222a2d7f9475243ae9abVirustotal results 9 / 65 (13.85%) 103.126.92.132:443
2023-08-23 08:21:2006aec39678d5222a2d7f9475243ae9abVirustotal results 9 / 65 (13.85%) 42.236.89.185:443
2023-08-06 07:58:29e5408e0f2ff60307a129c5a7c72c229en/a162.159.135.232:443
2023-08-06 07:58:29e5408e0f2ff60307a129c5a7c72c229en/a104.237.62.211:443
2023-08-06 07:58:29e5408e0f2ff60307a129c5a7c72c229en/a172.67.34.170:443
2023-08-05 11:42:442a47f40c0ed7671e22a2c27906f2637fn/a162.159.128.233:443
2023-08-05 11:42:442a47f40c0ed7671e22a2c27906f2637fn/a34.160.111.145:443
2023-07-30 00:00:301a4e7e5f0f390c04fb8548d29fb5d739Virustotal results 29 / 71 (40.85%) 162.159.128.233:443
2023-07-30 00:00:301a4e7e5f0f390c04fb8548d29fb5d739Virustotal results 29 / 71 (40.85%) 159.89.102.253:443
2023-07-30 00:00:301a4e7e5f0f390c04fb8548d29fb5d739Virustotal results 29 / 71 (40.85%) 104.237.62.211:443
2023-07-12 17:41:022496d2eb4c1c9e271b6c212f95ffa8een/a162.159.134.234:443
2023-07-12 17:41:012496d2eb4c1c9e271b6c212f95ffa8een/a162.159.135.232:443
2023-06-26 00:03:44934fa2c3b9a535e584f02032a2f74fcen/a172.67.34.170:443
2023-06-26 00:03:44934fa2c3b9a535e584f02032a2f74fcen/a173.231.16.76:443
2023-06-26 00:03:44934fa2c3b9a535e584f02032a2f74fcen/a162.159.135.232:443
2023-06-25 23:50:21915ba23dfa2a50b032d0c0fb3110397an/a172.67.34.170:443
2023-06-25 23:50:21915ba23dfa2a50b032d0c0fb3110397an/a162.159.136.232:443
2023-06-25 23:50:21915ba23dfa2a50b032d0c0fb3110397an/a173.231.16.76:443
2023-06-25 20:36:45746b90bd1e39d5c672ad7b5a86c6e7f8n/a162.159.135.232:443
2023-06-25 20:36:45746b90bd1e39d5c672ad7b5a86c6e7f8n/a104.237.62.211:443
2023-06-25 20:06:256f93319eab4353c104b3472cb2920fd8n/a172.67.34.170:443
2023-06-25 20:06:256f93319eab4353c104b3472cb2920fd8n/a162.159.133.233:443
2023-06-25 10:19:224b07de8445edf9756155fecfbc97157cn/a162.159.128.233:443
2023-06-25 10:19:224b07de8445edf9756155fecfbc97157cn/a104.20.67.143:443
2023-06-25 10:19:224b07de8445edf9756155fecfbc97157cn/a104.237.62.211:443
2023-06-25 10:06:401e3a3eebc8db098105b71d459e581ebaVirustotal results 34 / 68 (50.00%) 173.231.16.76:443
2023-06-13 01:43:267df8226293cce227ec232c1bb979c166n/a64.185.227.155:443
2023-05-21 12:26:460bb02277ea8f5722372d6f5e1570c7cfVirustotal results 13 / 70 (18.57%) 142.250.27.109:587
2023-04-14 06:30:24de84fcd68db4cf1300e1a48cfa8e46e5n/a72.52.178.23:443
2023-03-21 04:44:45d31dec6a5797a62aa526fe2da4c0f64fn/a185.199.108.133:443
2023-03-21 04:44:45d31dec6a5797a62aa526fe2da4c0f64fn/a192.30.255.112:443
2023-03-09 21:35:18523e432070e00667e4d9267e759f6e6an/a99.84.203.119:443
2023-03-09 21:35:18523e432070e00667e4d9267e759f6e6an/a185.40.154.13:443
2023-03-05 13:21:343b5d52be14b7f2b756d7798696ab5ea1Virustotal results 7 / 70 (10.00%) 64.185.227.155:443
2023-03-05 13:21:343b5d52be14b7f2b756d7798696ab5ea1Virustotal results 7 / 70 (10.00%) 149.154.167.220:443
2023-02-23 22:45:50a0eab650dc9402e3caaf0092a7137327n/a104.237.62.211:443
2023-02-13 08:12:338b9a35db58eaddb9c5e7614e935ec63en/a142.251.2.108:587
2023-02-11 01:37:0197e22c8800d9bae0735e189dc6f34e2an/a162.159.136.232:443
2023-02-08 13:17:307a5ad66ecc84fcdc4cf3a7074f74f8c8n/a172.65.251.78:443
2023-02-08 13:17:307a5ad66ecc84fcdc4cf3a7074f74f8c8n/a162.159.128.233:443
2023-02-08 01:48:5549feafbf6900839e7ccc41f0d4fbb04fn/a142.250.145.109:587
2023-02-07 14:18:492a35046b2579468e641585d6c00cd809Virustotal results 8 / 62 (12.90%) 162.159.138.232:443
2023-02-07 13:28:59080586757d7a4b7bdef947d58e2b9b98Virustotal results 34 / 69 (49.28%) 162.159.136.232:443
2023-02-03 22:36:261ff30ab5161ad8205700e0c9a81cab13n/a99.84.192.101:443
2023-02-03 22:36:261ff30ab5161ad8205700e0c9a81cab13n/a185.40.154.13:443
2023-02-03 22:36:261ff30ab5161ad8205700e0c9a81cab13n/a185.40.154.13:443
2023-02-03 22:36:261ff30ab5161ad8205700e0c9a81cab13n/a99.84.192.101:443
2023-02-03 19:44:0828e75f2acbd054f6dd4311897458f405n/a162.159.136.232:443
2023-02-03 19:44:0828e75f2acbd054f6dd4311897458f405n/a104.237.62.211:443
2023-02-03 19:44:0828e75f2acbd054f6dd4311897458f405n/a104.20.68.143:443
2023-02-01 17:03:3769991ad06c9136a771c312a33ad463bcn/a162.159.138.232:443
2023-02-01 17:03:3769991ad06c9136a771c312a33ad463bcn/a104.20.68.143:443
2023-02-01 17:03:3769991ad06c9136a771c312a33ad463bcn/a104.237.62.211:443
2023-02-01 11:10:5813bb645507e789fc1c1b2accbaeb96eaVirustotal results 33 / 68 (48.53%) 162.159.137.232:443
2023-02-01 11:10:5813bb645507e789fc1c1b2accbaeb96eaVirustotal results 33 / 68 (48.53%) 104.237.62.211:443
2023-02-01 11:10:5813bb645507e789fc1c1b2accbaeb96eaVirustotal results 33 / 68 (48.53%) 104.20.67.143:443
2023-01-31 02:28:33c18bcf84d1b96afa8a4425d3f47f309fn/a162.159.136.232:443
2023-01-22 21:52:546ce55dec5efa07ab71104205076d6c68n/a162.159.136.232:443
2023-01-20 22:29:50fdf3f205d8026fd353415aae94af28e9n/a162.159.128.233:443
2023-01-20 22:29:50fdf3f205d8026fd353415aae94af28e9n/a104.237.62.211:443
2023-01-18 12:39:59e98f2211ce6f858d25fe7162707359ben/a104.237.62.211:443
2023-01-18 12:39:59e98f2211ce6f858d25fe7162707359ben/a104.20.68.143:443
2023-01-18 12:39:59e98f2211ce6f858d25fe7162707359ben/a162.159.136.232:443
2023-01-18 03:26:01cfd851af4c98887f17f17701476f61ebn/a162.159.138.232:443
2023-01-17 22:03:50c3a16d7fc6561f82735b58603cbd504dn/a64.185.227.155:443
2023-01-17 22:03:50c3a16d7fc6561f82735b58603cbd504dn/a104.20.68.143:443
2023-01-17 22:03:50c3a16d7fc6561f82735b58603cbd504dn/a162.159.137.232:443
2023-01-16 23:11:2564860909b6e147172cdb42ad35c826e3n/a172.67.34.170:443
2023-01-16 23:11:2564860909b6e147172cdb42ad35c826e3n/a162.159.135.233:443
2023-01-16 23:11:2464860909b6e147172cdb42ad35c826e3n/a104.237.62.211:443
2023-01-09 01:38:367cbf7e9ab78bf576cac250e73b814851n/a34.160.111.145:443
2023-01-09 01:38:367cbf7e9ab78bf576cac250e73b814851n/a162.159.136.232:443
2023-01-04 18:16:092e937adf2a89d1a046cb3ea0542028d9Virustotal results 32 / 66 (48.48%) 162.159.136.232:443
2023-01-04 18:16:092e937adf2a89d1a046cb3ea0542028d9Virustotal results 32 / 66 (48.48%) 104.237.62.212:443
2023-01-04 18:16:082e937adf2a89d1a046cb3ea0542028d9Virustotal results 32 / 66 (48.48%) 172.67.34.170:443
2023-01-03 11:34:57f0783e36f29f21ef1e0c9284d95fd168n/a162.159.128.233:443

# of entries: 100 (max: 100)