JA3 Fingerprints

You can find further information about the JA3 fingerprint 807fca46d9d0cf63adf4e5e80e414bbe, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:807fca46d9d0cf63adf4e5e80e414bbe
First seen:2018-06-07 16:51:03 UTC
Last seen:2021-08-07 03:15:42 UTC
Status:Blacklisted
Malware samples:873
Destination IPs:240
Malware:Tofsee -
Listing date:2020-01-09 14:22:48

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-10-08 04:28:293abf510475def80e3204008402567eb5n/a162.159.137.232:443
2021-10-08 04:28:293abf510475def80e3204008402567eb5n/a23.23.147.66:443
2021-09-23 03:52:25bf59bcf689c92cae2770befffa49a9a0n/a54.152.238.77:443
2021-09-11 10:56:42c36d4ff50c734ad03c2cc5a109fe1204n/a64.233.167.109:587
2021-09-06 01:42:5411e4a49c488debe802645c8c096abdd4Virustotal results 36 / 67 (53.73%) 162.159.136.232:443
2021-08-29 00:31:568470cc0ab7a4ce9b542e6a4f2df993c1n/a142.250.102.109:587
2021-08-26 02:12:34b84a1e2776853089f774f3679b53e8d8n/a162.159.138.232:443
2021-08-25 02:46:26cbda0c4132e53803fc304d60128f3649n/a104.23.99.190:443
2021-08-25 02:46:26cbda0c4132e53803fc304d60128f3649n/a162.159.134.233:443
2021-08-25 02:46:26cbda0c4132e53803fc304d60128f3649n/a162.159.135.232:443
2021-08-23 20:30:203a29907ed1f09200b0779105aa0b5d3eVirustotal results 11 / 67 (16.42%) 162.159.136.234:443
2021-08-23 20:30:203a29907ed1f09200b0779105aa0b5d3eVirustotal results 11 / 67 (16.42%) 162.159.135.232:443
2021-08-19 22:10:523889dbd3297a3311f9f23535a9e31f64Virustotal results 35 / 68 (51.47%) 94.100.180.160:25
2021-08-19 20:58:261a9d7d7e62ba3497ad3a19d30ab5c8fdVirustotal results 30 / 69 (43.48%) 162.159.138.232:443
2021-08-19 20:58:261a9d7d7e62ba3497ad3a19d30ab5c8fdVirustotal results 30 / 69 (43.48%) 104.21.29.16:443
2021-08-19 07:06:27326ff86ca00a194f244b5c9950b31301Virustotal results 27 / 68 (39.71%) 142.250.153.109:587
2021-08-14 18:18:110f0bdac4d78aa4642d5e8d9f77d17d23Virustotal results 15 / 68 (22.06%) 142.250.102.109:465
2021-08-13 21:40:18686b967546ab8169c64842d340b7d89cn/a204.68.111.105:443
2021-08-13 21:40:18686b967546ab8169c64842d340b7d89cn/a45.67.159.245:443
2021-08-13 21:40:18686b967546ab8169c64842d340b7d89cn/a5.154.224.27:443
2021-08-13 21:40:18686b967546ab8169c64842d340b7d89cn/a89.111.52.100:443
2021-08-13 21:40:18686b967546ab8169c64842d340b7d89cn/a78.35.24.46:443
2021-08-13 02:06:22f908d42b67bc1416a6435493720ec987n/a50.16.239.65:443
2021-08-13 02:06:22f908d42b67bc1416a6435493720ec987n/a162.159.128.233:443
2021-08-13 02:06:22f908d42b67bc1416a6435493720ec987n/a104.23.99.190:443
2021-08-07 03:15:42a34d8322abcfbde1bfa9c227daf9a56eVirustotal results 34 / 65 (52.31%) 104.23.98.190:443
2021-08-07 03:15:42a34d8322abcfbde1bfa9c227daf9a56eVirustotal results 34 / 65 (52.31%) 54.235.88.121:443
2021-08-07 03:15:42a34d8322abcfbde1bfa9c227daf9a56eVirustotal results 34 / 65 (52.31%) 162.159.128.233:443
2021-08-07 03:15:42a34d8322abcfbde1bfa9c227daf9a56eVirustotal results 34 / 65 (52.31%) 104.23.98.190:443
2021-08-07 03:15:42a34d8322abcfbde1bfa9c227daf9a56eVirustotal results 34 / 65 (52.31%) 54.235.88.121:443
2021-08-07 03:15:42a34d8322abcfbde1bfa9c227daf9a56eVirustotal results 34 / 65 (52.31%) 162.159.128.233:443
2021-08-04 21:41:430acca931ddf7879d5047b492716848b8Virustotal results 23 / 69 (33.33%) 162.159.138.232:443
2021-08-04 21:41:430acca931ddf7879d5047b492716848b8Virustotal results 23 / 69 (33.33%) 162.159.138.232:443
2021-08-01 12:58:21da9571c77e427736f06a174f1c4073b7Virustotal results 36 / 67 (53.73%) 162.159.128.233:443
2021-08-01 12:58:21da9571c77e427736f06a174f1c4073b7Virustotal results 36 / 67 (53.73%) 162.159.128.233:443
2021-07-27 07:25:28a7753f8e82627b1a0ff601a7b0cd589cVirustotal results 32 / 70 (45.71%) 162.159.128.233:443
2021-07-27 07:25:28a7753f8e82627b1a0ff601a7b0cd589cVirustotal results 32 / 70 (45.71%) 162.159.128.233:443
2021-07-26 06:45:009191ea4eda5e866c2b933cc7e1064e8bVirustotal results 33 / 69 (47.83%) 162.159.128.233:443
2021-07-26 06:45:009191ea4eda5e866c2b933cc7e1064e8bVirustotal results 33 / 69 (47.83%) 162.159.128.233:443
2021-07-25 13:25:55c427734fc35f4f46045eba0781f9b39fVirustotal results 43 / 70 (61.43%) 162.159.128.233:443
2021-07-25 13:25:55c427734fc35f4f46045eba0781f9b39fVirustotal results 43 / 70 (61.43%) 162.159.128.233:443
2021-07-20 21:02:125151503c7ddfbdeecdeb2cc9343221deVirustotal results 38 / 68 (55.88%) 162.159.137.232:443
2021-07-20 21:02:125151503c7ddfbdeecdeb2cc9343221deVirustotal results 38 / 68 (55.88%) 162.159.137.232:443
2021-07-19 11:41:5398560a14ec9554a585d4d361d5ef9995Virustotal results 23 / 69 (33.33%) 162.159.138.232:443
2021-07-19 11:41:5398560a14ec9554a585d4d361d5ef9995Virustotal results 23 / 69 (33.33%) 162.159.138.232:443
2021-07-19 10:31:496986612dbb263a15400bb3a85059dc37Virustotal results 36 / 70 (51.43%) 50.16.216.118:443
2021-07-19 10:31:496986612dbb263a15400bb3a85059dc37Virustotal results 36 / 70 (51.43%) 50.16.216.118:443
2021-07-16 13:50:47e1ff32f6580920f7ed069112ebf72602Virustotal results 34 / 67 (50.75%) 162.159.129.233:443
2021-07-16 13:50:47e1ff32f6580920f7ed069112ebf72602Virustotal results 34 / 67 (50.75%) 162.159.129.233:443
2021-07-15 18:58:2668f2ddd0086deef92e54a91e2dc5200aVirustotal results 35 / 69 (50.72%) 50.19.100.233:443
2021-07-15 18:58:2668f2ddd0086deef92e54a91e2dc5200aVirustotal results 35 / 69 (50.72%) 50.19.100.233:443
2021-07-12 19:12:59d51311346f226fd932a1a5ad68f2a182Virustotal results 31 / 68 (45.59%) 162.159.128.233:443
2021-07-12 19:12:59d51311346f226fd932a1a5ad68f2a182Virustotal results 31 / 68 (45.59%) 162.159.128.233:443
2021-07-12 15:57:20eb890fd5655b266e7f918a225318cd41Virustotal results 32 / 70 (45.71%) 140.82.121.3:443
2021-07-12 15:57:20eb890fd5655b266e7f918a225318cd41Virustotal results 32 / 70 (45.71%) 140.82.121.4:443
2021-07-12 15:57:20eb890fd5655b266e7f918a225318cd41Virustotal results 32 / 70 (45.71%) 140.82.121.3:443
2021-07-12 15:57:20eb890fd5655b266e7f918a225318cd41Virustotal results 32 / 70 (45.71%) 140.82.121.4:443
2021-07-12 15:57:19eb890fd5655b266e7f918a225318cd41Virustotal results 32 / 70 (45.71%) 185.199.108.133:443
2021-07-12 15:57:19eb890fd5655b266e7f918a225318cd41Virustotal results 32 / 70 (45.71%) 185.199.108.133:443
2021-07-12 13:16:123e2a09ed63a89c6aa285b050cc646121Virustotal results 40 / 69 (57.97%) 162.159.137.232:443
2021-07-12 13:16:123e2a09ed63a89c6aa285b050cc646121Virustotal results 40 / 69 (57.97%) 162.159.137.232:443
2021-07-12 12:44:472b09f40e386f01529ac30f1078c9ec51Virustotal results 7 / 67 (10.45%) 142.250.179.193:443
2021-07-12 12:44:472b09f40e386f01529ac30f1078c9ec51Virustotal results 7 / 67 (10.45%) 142.250.179.193:443
2021-07-09 18:03:05393a25d19405f69c7d908910324373eaVirustotal results 37 / 65 (56.92%) 162.159.128.233:443
2021-07-09 18:03:05393a25d19405f69c7d908910324373eaVirustotal results 37 / 65 (56.92%) 162.159.128.233:443
2021-07-06 19:07:545e6208c403521d82857bf2faf4168675Virustotal results 28 / 70 (40.00%) 104.23.98.190:443
2021-07-06 19:07:545e6208c403521d82857bf2faf4168675Virustotal results 28 / 70 (40.00%) 54.235.121.178:443
2021-07-06 19:07:545e6208c403521d82857bf2faf4168675Virustotal results 28 / 70 (40.00%) 104.23.98.190:443
2021-07-06 19:07:545e6208c403521d82857bf2faf4168675Virustotal results 28 / 70 (40.00%) 54.235.121.178:443
2021-07-01 11:21:15d0b688f53c3fb1fb7ff7068b1301f71aVirustotal results 31 / 70 (44.29%) 104.23.98.190:443
2021-07-01 11:21:15d0b688f53c3fb1fb7ff7068b1301f71aVirustotal results 31 / 70 (44.29%) 162.159.135.233:443
2021-07-01 11:21:15d0b688f53c3fb1fb7ff7068b1301f71aVirustotal results 31 / 70 (44.29%) 162.159.135.232:443
2021-07-01 11:21:15d0b688f53c3fb1fb7ff7068b1301f71aVirustotal results 31 / 70 (44.29%) 104.23.98.190:443
2021-07-01 11:21:15d0b688f53c3fb1fb7ff7068b1301f71aVirustotal results 31 / 70 (44.29%) 162.159.135.233:443
2021-07-01 11:21:15d0b688f53c3fb1fb7ff7068b1301f71aVirustotal results 31 / 70 (44.29%) 162.159.135.232:443
2021-06-30 21:08:3003cb9b03a437c9dca9362369cfa2bffaVirustotal results 36 / 69 (52.17%) 54.225.78.40:443
2021-06-30 21:08:3003cb9b03a437c9dca9362369cfa2bffaVirustotal results 36 / 69 (52.17%) 54.225.78.40:443
2021-06-30 01:41:298a5802205bb4c79bb9db55cb2cd88495Virustotal results 20 / 69 (28.99%) 104.21.10.155:443
2021-06-30 01:41:298a5802205bb4c79bb9db55cb2cd88495Virustotal results 20 / 69 (28.99%) 104.21.10.155:443
2021-06-29 23:39:01a5cec3b1c5465285ced79c29aaafab13Virustotal results 29 / 70 (41.43%) 104.21.10.155:443
2021-06-29 23:39:01a5cec3b1c5465285ced79c29aaafab13Virustotal results 29 / 70 (41.43%) 104.21.10.155:443
2021-06-29 20:46:210ac89a7c26d483d79e4af909406e62bdVirustotal results 27 / 70 (38.57%) 172.67.131.137:443
2021-06-29 20:46:210ac89a7c26d483d79e4af909406e62bdVirustotal results 27 / 70 (38.57%) 172.67.131.137:443
2021-06-25 10:24:48ab903ad7edddc4a756a2049041f6a8ddVirustotal results 13 / 69 (18.84%) 23.21.136.132:443
2021-06-25 10:24:48ab903ad7edddc4a756a2049041f6a8ddVirustotal results 13 / 69 (18.84%) 162.159.135.232:443
2021-06-25 10:24:48ab903ad7edddc4a756a2049041f6a8ddVirustotal results 13 / 69 (18.84%) 23.21.136.132:443
2021-06-25 10:24:48ab903ad7edddc4a756a2049041f6a8ddVirustotal results 13 / 69 (18.84%) 162.159.135.232:443
2021-06-18 22:22:448876cc38cf6965afe40a7c212d22ca31Virustotal results 31 / 70 (44.29%) 162.159.137.232:443
2021-06-18 22:22:448876cc38cf6965afe40a7c212d22ca31Virustotal results 31 / 70 (44.29%) 162.159.137.232:443
2021-06-17 09:24:09d9335831733833a30c5d82e9a11db383Virustotal results 42 / 68 (61.76%) 162.159.128.233:443
2021-06-17 09:24:09d9335831733833a30c5d82e9a11db383Virustotal results 42 / 68 (61.76%) 162.159.128.233:443
2021-06-12 12:40:51d2ccbb785d79de533b568739141c2260Virustotal results 43 / 70 (61.43%) 104.23.99.190:443
2021-06-12 12:40:51d2ccbb785d79de533b568739141c2260Virustotal results 43 / 70 (61.43%) 162.159.134.233:443
2021-06-12 12:40:51d2ccbb785d79de533b568739141c2260Virustotal results 43 / 70 (61.43%) 162.159.136.232:443
2021-06-12 12:40:51d2ccbb785d79de533b568739141c2260Virustotal results 43 / 70 (61.43%) 104.23.99.190:443
2021-06-12 12:40:51d2ccbb785d79de533b568739141c2260Virustotal results 43 / 70 (61.43%) 162.159.134.233:443
2021-06-12 12:40:51d2ccbb785d79de533b568739141c2260Virustotal results 43 / 70 (61.43%) 162.159.136.232:443
2021-06-09 13:48:48c2c308139d340e549194027f90e36b99Virustotal results 38 / 70 (54.29%) 172.67.133.228:443
2021-06-09 13:48:48c2c308139d340e549194027f90e36b99Virustotal results 38 / 70 (54.29%) 172.67.133.228:443
2021-06-08 10:12:21af4b896bae235a6c6719423f8c0a9825Virustotal results 38 / 70 (54.29%) 162.159.128.233:443

# of entries: 100 (max: 100)