JA3 Fingerprints

You can find further information about the JA3 fingerprint 807fca46d9d0cf63adf4e5e80e414bbe, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:807fca46d9d0cf63adf4e5e80e414bbe
First seen:2018-06-07 16:51:03 UTC
Last seen:2020-06-03 05:58:34 UTC
Status:Blacklisted
Malware samples:507
Destination IPs:139
Malware:Tofsee -
Listing date:2020-01-09 14:22:48

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-06-03 05:58:3423a03cd4232c3a51e0cd109b67f18855Virustotal results 34 / 73 (46.58%) 31.13.72.5:443
2020-06-02 23:05:370c076ef11a5eab18ba13181bbdd4f52fVirustotal results 38 / 73 (52.05%) 31.13.72.5:443
2020-06-02 20:10:3104250a771f42dfcebdd7192cbc2b14a7Virustotal results 1 / 71 (1.41%) 213.180.204.80:443
2020-06-01 21:04:21565a92e31f0939322a91e35be5c55961Virustotal results 32 / 73 (43.84%) 69.171.250.34:443
2020-06-01 21:02:4856d1bf1f802f22aa55b9a9f62587b9cbVirustotal results 8 / 72 (11.11%) 64.233.166.108:587
2020-06-01 08:22:59165ddff83c7394de9caa7e7199bb0030Virustotal results 56 / 73 (76.71%) 69.171.250.34:443
2020-06-01 07:07:370ef677668df589aa19e622d623139069Virustotal results 46 / 72 (63.89%) 69.171.250.34:443
2020-06-01 01:47:5900305b8da517477c84b35a7fba21d4e5Virustotal results 40 / 73 (54.79%) 69.171.250.34:443
2020-05-31 08:17:2445ccc88e984cf0b74750398a3ac79128Virustotal results 1 / 72 (1.39%) 213.203.205.250:443
2020-05-31 08:17:2445ccc88e984cf0b74750398a3ac79128Virustotal results 1 / 72 (1.39%) 213.203.205.251:443
2020-05-30 12:03:0742171261efc6586d2fb11777f49ea3a3Virustotal results 56 / 72 (77.78%) 157.240.194.11:443
2020-05-29 23:39:023c43139fe11d77d4578ce7a103c2b270Virustotal results 39 / 73 (53.42%) 69.171.250.34:443
2020-05-23 14:51:1554ace7d062138f1025ce08cafb439ea1Virustotal results 37 / 72 (51.39%) 31.13.72.5:443
2020-05-21 16:58:44a14df993e35826e0043e44669b54bc3cn/a69.171.250.34:443
2020-05-20 17:27:2603a99152680f5b7844f9e1b0bdb87b8aVirustotal results 50 / 73 (68.49%) 157.240.194.11:443
2020-05-17 23:15:3422fe8e82c1ad10bb322d61947eae6423Virustotal results 46 / 71 (64.79%) 69.171.250.34:443
2020-05-16 06:05:172d2016b20209e8e393aa06d6d04ecba0Virustotal results 20 / 72 (27.78%) 69.171.250.34:443
2020-05-14 17:55:21236c4319db956fef6e5593b4c67251bcn/a31.13.72.5:443
2020-05-12 09:37:031884bd28c4990aa12f9e38416c30bd08n/a52.143.252.60:443
2020-05-12 09:37:021884bd28c4990aa12f9e38416c30bd08n/a192.0.56.62:443
2020-05-12 09:37:021884bd28c4990aa12f9e38416c30bd08n/a192.0.51.239:443
2020-05-12 09:37:021884bd28c4990aa12f9e38416c30bd08n/a107.162.151.236:443
2020-05-05 13:35:40bf8e454e8b479b40138b642340f59d9aVirustotal results 32 / 71 (45.07%) 31.13.92.5:443
2020-05-03 19:24:22adbb1a5fbedd1c998d703cbf80cbd840Virustotal results 50 / 71 (70.42%) 31.13.72.5:443
2020-05-01 01:21:08654bbeeaa94647457f0ef8b51bf3a516Virustotal results 39 / 65 (60.00%) 157.240.194.34:443
2020-05-01 01:21:07654bbeeaa94647457f0ef8b51bf3a516Virustotal results 39 / 65 (60.00%) 31.13.72.34:443
2020-05-01 00:38:085fff7a9c24742db28b9b00e3275a40b9Virustotal results 35 / 73 (47.95%) 31.13.72.34:443
2020-04-30 19:11:51456bdbd9ea4dbd637676fb4988d51f02Virustotal results 43 / 73 (58.90%) 31.13.72.34:443
2020-04-27 10:53:540517417bea415033f222b3a10eaf644dVirustotal results 46 / 73 (63.01%) 31.13.72.34:443
2020-04-26 11:55:15a7bb53e773c7fde61c79a391ceb02f2aVirustotal results 47 / 72 (65.28%) 157.240.194.34:443
2020-04-25 19:55:2924f8429faf61ebe6fec3add0e6ecb427Virustotal results 44 / 73 (60.27%) 31.13.72.34:443
2020-04-25 19:55:2924f8429faf61ebe6fec3add0e6ecb427Virustotal results 44 / 73 (60.27%) 157.240.194.34:443
2020-04-24 03:54:1000c6bf4e558e3e1153c1ecec32a6e0e3Virustotal results 37 / 71 (52.11%) 157.240.194.34:443
2020-04-24 03:54:0900c6bf4e558e3e1153c1ecec32a6e0e3Virustotal results 37 / 71 (52.11%) 31.13.72.5:443
2020-04-22 08:24:1627a838d80cc4526bf4444220e8459566Virustotal results 37 / 73 (50.68%) 31.13.72.34:443
2020-04-15 12:35:50ac1e48c078a956f417966480c138f31eVirustotal results 48 / 73 (65.75%) 157.240.194.34:443
2020-04-10 23:01:260a42d7a3b6b2fc7affb3036442087be1n/a31.13.72.34:443
2020-04-07 06:39:53ef96067164e6bcb33439b5f68a97ce04n/a157.240.194.11:443
2020-04-03 22:01:273f8474528ca3cb2887e4686ee403906en/a157.240.194.11:443
2020-04-03 21:24:543dc79f9ef9b3020de8df734864f9648fn/a157.240.194.11:443
2020-04-01 23:08:0304bf1c2794a8e0ea112dfa93f3374644n/a31.13.72.34:443
2020-03-29 19:27:4283c6fa49c906279907c4d1a8096acd10n/a31.13.72.34:443
2020-03-29 00:54:11aabf7a7dfd185f1e3969712068f359a8Virustotal results 38 / 73 (52.05%) 31.13.72.5:443
2020-03-28 18:48:281f5a136b42a01c263022e9b7288080d5n/a157.240.20.10:443
2020-03-27 08:00:52cd0f9d101208331d0682a14607fb8935Virustotal results 55 / 73 (75.34%) 31.13.72.34:443
2020-03-25 19:14:13283379943f74ca13f4b8b68ce5555e34Virustotal results 55 / 73 (75.34%) 31.13.72.5:443
2020-03-25 17:48:457d99738ae0fbfe01e9b4e0b2734505b9n/a31.13.72.5:443
2020-03-25 14:18:50c0d90be5de2fbba760a3ae94c4cdbf85Virustotal results 22 / 72 (30.56%) 74.125.34.46:443
2020-03-24 10:47:18015cf6ea89bb81b627974c9285d383a0Virustotal results 54 / 72 (75.00%) 31.13.72.34:443
2020-03-24 00:43:18498712c2e86e43156e61b25b00ff4391n/a157.240.194.34:443
2020-03-22 12:32:34a61d1763c317f2f43e45ce868087c921Virustotal results 53 / 72 (73.61%) 31.13.72.5:443
2020-03-21 06:04:18a4bf21a69fb30c57ec8688cbd7e3cf89Virustotal results 54 / 73 (73.97%) 31.13.72.34:443
2020-03-20 18:47:55c839e7df2dd538ad2021e6a37bbcf8c0Virustotal results 57 / 73 (78.08%) 31.13.72.5:443
2020-03-19 21:25:45a990bfa906c958fd3e735278ef046e41Virustotal results 54 / 73 (73.97%) 104.109.91.227:443
2020-03-13 04:41:532e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 74.125.34.46:443
2020-03-09 17:35:39893e272d0e38bcb48d7ce7437b36565fn/a192.0.57.129:443
2020-03-09 17:35:38893e272d0e38bcb48d7ce7437b36565fn/a192.0.58.178:443
2020-03-09 16:46:59980322fcc4ba63d32948f64dfffd3d0bn/a192.0.58.178:443
2020-03-09 16:46:59980322fcc4ba63d32948f64dfffd3d0bn/a192.0.57.129:443
2020-03-09 03:22:49b3d8332be71e89b6c89b06037c29a855Virustotal results 55 / 73 (75.34%) 192.0.58.178:443
2020-03-08 15:13:25afafe1a6fdac6f0b7f60aaeb5c98c8c7n/a192.0.58.178:443
2020-03-08 12:30:44046607bba932850fdd26867b61126208n/a192.0.58.178:443
2020-03-08 12:30:43046607bba932850fdd26867b61126208n/a8.36.90.165:443
2020-03-08 12:30:43046607bba932850fdd26867b61126208n/a192.0.57.129:443
2020-03-08 12:12:419bcd8aa537fc641cad31f9fdd996f973n/a192.0.58.178:443
2020-03-08 12:12:419bcd8aa537fc641cad31f9fdd996f973n/a192.0.57.129:443
2020-03-08 12:09:266bac2afa46efaa62a6e546f1bda22efbn/a192.0.57.129:443
2020-03-08 12:09:266bac2afa46efaa62a6e546f1bda22efbn/a192.0.58.178:443
2020-03-08 12:01:111f2d34be5ea8adef5155c384920b8890Virustotal results 55 / 72 (76.39%) 192.0.57.129:443
2020-03-08 03:08:033a0cbb947d31924795d51a881f4987e0n/a192.0.58.178:443
2020-03-08 03:08:033a0cbb947d31924795d51a881f4987e0n/a8.36.90.165:443
2020-03-08 03:08:023a0cbb947d31924795d51a881f4987e0n/a192.0.57.129:443
2020-03-08 03:03:1927fa25d9b6af7689e195d39ab676f406n/a192.0.58.178:443
2020-03-08 03:03:1827fa25d9b6af7689e195d39ab676f406n/a192.0.57.129:443
2020-03-07 16:43:23ba5c305cfecbba011188fa122242a402Virustotal results 50 / 73 (68.49%) 192.0.58.178:443
2020-03-06 15:13:29e6d95eff5c9b6042548f536e7796c8abn/a192.0.58.178:443
2020-03-05 14:10:386f97a1d9901d0339b1177cc9383fb860n/a192.0.58.178:443
2020-03-05 14:10:376f97a1d9901d0339b1177cc9383fb860n/a192.0.57.129:443
2020-03-05 13:20:44612f1f54240628307b00b74bf7337a1cn/a192.0.57.129:443
2020-03-05 13:20:43612f1f54240628307b00b74bf7337a1cn/a192.0.58.178:443
2020-03-05 13:15:07e7f455c6b8425db5a325839575a61d4bn/a192.0.58.178:443
2020-03-05 13:15:07e7f455c6b8425db5a325839575a61d4bn/a12.111.19.165:443
2020-03-05 08:20:52a5f25a359a42b23530675c3fea4fdf89Virustotal results 54 / 72 (75.00%) 192.0.57.129:443
2020-03-04 14:40:596bc3b81c1fab85abf87e29aaf98d3712n/a192.0.57.129:443
2020-03-04 14:37:19cf575cb3c451534a2baab0461b0cba6bn/a192.0.57.129:443
2020-03-04 14:35:51b6998cb5462145b9e41c7ae11c82c91dVirustotal results 50 / 69 (72.46%) 192.0.57.129:443
2020-03-04 08:58:09cc34bdd5ab3cd0e2ddd66ab6a585388cn/a209.94.80.54:443
2020-03-03 12:16:457e9f3bdba2578a651d640b542577c287n/a209.94.80.54:443
2020-03-03 08:23:32c30a3985d50c50a5faa619e70f26c255Virustotal results 55 / 73 (75.34%) 209.94.80.54:443
2020-03-03 08:17:11cd7c4eb5bb984cc22b0c10426049a064n/a12.111.19.165:443
2020-03-03 07:41:50e185400a30767fae05c69e96c340bc69n/a209.94.80.54:443
2020-03-02 15:14:04d5a44337d685f66be2db5a7faccfcac8Virustotal results 46 / 72 (63.89%) 209.94.80.54:443
2020-02-29 13:54:17c418e1ab14e56f3095e0e56df688dd96n/a8.36.90.165:443
2020-02-29 13:54:17c418e1ab14e56f3095e0e56df688dd96n/a209.94.80.54:443
2020-02-29 04:06:1485bfde7a246928401ecea1aff83d0b89n/a8.36.90.165:443
2020-02-29 04:00:55481c78c691f256e77c3968b0e0f0ed62n/a8.36.90.165:443
2020-02-28 23:57:239b44ebbaf69ff3b4577f80fb93debebbn/a8.36.90.165:443
2020-02-28 17:50:086711c1d27e18cbc9ddca9b0ffd754469n/a209.94.80.54:443
2020-02-28 17:50:086711c1d27e18cbc9ddca9b0ffd754469n/a8.36.90.165:443
2020-02-28 13:58:01b9cd2d4b83a446eabdeca8477936c554n/a8.36.90.165:443

# of entries: 100 (max: 100)