JA3 Fingerprints

You can find further information about the JA3 fingerprint 807fca46d9d0cf63adf4e5e80e414bbe, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:807fca46d9d0cf63adf4e5e80e414bbe
First seen:2018-06-07 16:51:03 UTC
Last seen:2021-01-19 16:41:19 UTC
Status:Blacklisted
Malware samples:739
Destination IPs:180
Malware:Tofsee -
Listing date:2020-01-09 14:22:48

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-01-19 16:41:199cca9e2442840635488611a1e84c1f5an/a63.250.35.204:587
2021-01-17 14:09:36bcbd340b91f2f509c3d2c1913b9ec5f2Virustotal results 0 / 70 (0.00%) 213.180.193.76:443
2021-01-16 23:03:34834bbdaf6598d1b8130c556972d5c4d6Virustotal results 36 / 71 (50.70%) 213.180.204.80:443
2021-01-15 07:41:424d4b1ea836e736d7f9e1d66b35c0aa94Virustotal results 17 / 69 (24.64%) 63.250.35.204:587
2021-01-14 21:56:4097bd95de74714e1bd9cfe75a0192890fVirustotal results 33 / 71 (46.48%) 192.0.51.239:443
2021-01-14 21:56:3597bd95de74714e1bd9cfe75a0192890fVirustotal results 33 / 71 (46.48%) 192.0.58.178:443
2021-01-14 14:23:40d53337210f58efd55194f60b9bb84a4dVirustotal results 51 / 70 (72.86%) 192.0.48.20:443
2021-01-14 01:32:44b6d2db2f1b1c305bcd1ca597e9691af3Virustotal results 0 / 71 (0.00%) 213.180.193.76:443
2021-01-13 08:48:03b3be46bc5015d0dc0f966564ebd447d2Virustotal results 4 / 71 (5.63%) 213.180.204.80:443
2021-01-11 23:29:188aca514e6f0810d99aa92db2a0103844Virustotal results 35 / 71 (49.30%) 23.21.252.4:443
2021-01-11 23:29:178aca514e6f0810d99aa92db2a0103844Virustotal results 35 / 71 (49.30%) 162.159.135.232:443
2021-01-11 02:12:02a361aa294b3027c1428d741b0853e207Virustotal results 0 / 71 (0.00%) 213.180.204.80:443
2021-01-10 20:11:313137998981014a73f114e07482931447n/a213.180.204.80:443
2021-01-10 18:31:32124b8d84bb4581b27e4c9f10592064e6Virustotal results 0 / 71 (0.00%) 213.180.204.80:443
2021-01-09 13:29:58aedb26c87206fa678ed79380bc19b0dbVirustotal results 45 / 69 (65.22%) 192.0.50.210:443
2021-01-09 01:48:44a34eb82b52002975f95ed421a8c5a7e2Virustotal results 3 / 70 (4.29%) 213.180.193.76:443
2021-01-08 08:12:04149b0d1f4d9a3f8264b6a8a6f56fd4cen/a213.180.193.76:443
2021-01-03 16:20:4447eeb0542316cb1420370c702709dc10Virustotal results 47 / 70 (67.14%) 213.180.193.76:443
2021-01-03 13:26:25d7ef1a9ee4d03614a2dee532fb409cb6Virustotal results 28 / 71 (39.44%) 50.19.243.236:443
2021-01-03 13:26:24d7ef1a9ee4d03614a2dee532fb409cb6Virustotal results 28 / 71 (39.44%) 162.159.133.233:443
2021-01-03 13:26:24d7ef1a9ee4d03614a2dee532fb409cb6Virustotal results 28 / 71 (39.44%) 104.23.99.190:443
2021-01-02 00:06:158cf0e50a52fa12481ecf74db39b9f115Virustotal results 8 / 70 (11.43%) 108.177.126.108:587
2021-01-01 23:21:417077520217786d832ea050d16013b4aen/a213.180.193.76:443
2020-12-31 21:56:38a84362fe84007b16d3c52b1ca14ad0acVirustotal results 0 / 71 (0.00%) 213.180.204.80:443
2020-12-31 04:35:247dc322b4aaa8b3562d1dbbd7855da645n/a213.180.193.76:443
2020-12-28 10:27:4757ce039f6237b35172b016da056acf51n/a213.180.193.76:443
2020-12-27 21:16:2266a67890d98f9130530f26481c70f1a7Virustotal results 17 / 71 (23.94%) 104.23.99.190:443
2020-12-27 21:16:2266a67890d98f9130530f26481c70f1a7Virustotal results 17 / 71 (23.94%) 54.235.189.250:443
2020-12-27 21:16:2266a67890d98f9130530f26481c70f1a7Virustotal results 17 / 71 (23.94%) 172.217.218.109:587
2020-12-27 21:16:2266a67890d98f9130530f26481c70f1a7Virustotal results 17 / 71 (23.94%) 162.159.128.233:443
2020-12-27 10:49:0956ade5b161651a31079f6cedba5198acn/a63.250.35.204:587
2020-12-26 23:02:046c90f06d779eaacd4bb5cf2771b5755aVirustotal results 17 / 67 (25.37%) 213.180.204.80:443
2020-12-25 20:48:374ea1d6064725d7134469c2ef872712a8Virustotal results 0 / 71 (0.00%) 213.180.204.80:443
2020-12-25 12:31:005f0c058bb10b9b19582e87007dd5a75bVirustotal results 43 / 71 (60.56%) 213.180.193.76:443
2020-12-25 03:09:12d072575de93d11889cce0384462d65f2Virustotal results 42 / 72 (58.33%) 213.180.204.80:443
2020-12-24 13:24:16db564369383e6e05fb5846019bb2349dVirustotal results 42 / 71 (59.15%) 162.159.137.232:443
2020-12-24 13:24:16db564369383e6e05fb5846019bb2349dVirustotal results 42 / 71 (59.15%) 23.23.100.164:443
2020-12-24 13:24:16db564369383e6e05fb5846019bb2349dVirustotal results 42 / 71 (59.15%) 104.23.99.190:443
2020-12-24 06:01:20a62e08dd1735c0a12a4a1e757a231d27n/a213.180.204.80:443
2020-12-23 14:49:116dde5777d4eb165db572afc1e38839d0Virustotal results 33 / 71 (46.48%) 213.180.193.76:443
2020-12-22 16:08:08f8dda7f675ef01968435bdefdd6739a5Virustotal results 48 / 71 (67.61%) 213.180.193.76:443
2020-12-22 07:02:05dca0e752b1d4450fb4f8181561f794a1n/a213.180.204.80:443
2020-12-21 21:23:56695d4d37b04b039cd446bf3b6e89e3f5Virustotal results 7 / 64 (10.94%) 63.250.35.204:587
2020-12-21 12:16:314fc144f159eea8873b790a08b02c04b4n/a213.180.204.80:443
2020-12-21 06:30:37b5db586c781a1991dd1b815b128b7fa1Virustotal results 29 / 70 (41.43%) 54.225.66.103:443
2020-12-21 06:30:37b5db586c781a1991dd1b815b128b7fa1Virustotal results 29 / 70 (41.43%) 162.159.133.233:443
2020-12-20 23:01:244eaa3dc12c4db825060a9b1f4d1cbd04Virustotal results 22 / 71 (30.99%) 213.180.193.76:443
2020-12-20 05:14:49a5784a20710615467bf1698304da83b9Virustotal results 22 / 70 (31.43%) 213.180.204.80:443
2020-12-20 04:27:31a3691ca524f5df59a5132b9a2810cc54n/a213.180.193.76:443
2020-12-16 19:36:273640160bd1a0e8732ddbba04b09e9655n/a213.180.204.80:443
2020-12-15 21:36:26107b75429a9ddb7e7b665c1ec262361bn/a213.180.204.80:443
2020-12-14 11:12:44f789a0b869111b38bd8c11bef06c4bb7Virustotal results 24 / 71 (33.80%) 104.23.98.190:443
2020-12-14 11:12:44f789a0b869111b38bd8c11bef06c4bb7Virustotal results 24 / 71 (33.80%) 54.225.66.103:443
2020-12-14 11:12:44f789a0b869111b38bd8c11bef06c4bb7Virustotal results 24 / 71 (33.80%) 162.159.137.232:443
2020-12-13 21:25:24a6dcdb4424fb58d797b2cb81d0f935den/a213.180.193.76:443
2020-12-13 14:09:57ade657a21fef1a1f84b6b79d8309d07cVirustotal results 21 / 71 (29.58%) 213.180.193.76:443
2020-12-13 12:22:27940dc4353c8dcd4a2ed484521446f1d1Virustotal results 40 / 71 (56.34%) 213.180.193.76:443
2020-12-13 12:04:4679062376801d630a4e6222f5b8f8cf2bVirustotal results 38 / 70 (54.29%) 213.180.204.80:443
2020-12-12 21:34:0094f156b06f6d1cc0ca9ef8ea34244c91Virustotal results 30 / 71 (42.25%) 213.180.193.76:443
2020-12-12 11:48:17a4608de0703d5b41303f55fef6496185Virustotal results 3 / 71 (4.23%) 213.180.204.80:443
2020-12-11 05:07:56a59008e196071a6f631555b6cf5ddc86n/a213.180.204.80:443
2020-12-10 22:45:534bd065b4b665c53a80d590f2b0544cafVirustotal results 30 / 71 (42.25%) 213.180.204.80:443
2020-12-09 21:26:2921f5098f7eab07cf139e48ebf35d837bn/a213.180.193.76:443
2020-12-09 21:02:29251e8ffd429851a3ff8cf6227011e62eVirustotal results 40 / 71 (56.34%) 213.180.193.76:443
2020-12-09 10:59:28abddc83c72db79f1a35b6f8bc1777752Virustotal results 2 / 66 (3.03%) 213.180.204.80:443
2020-12-07 22:44:014d0f46a9c6db4d7fe14eea2bb8334526n/a213.180.193.76:443
2020-12-06 19:46:37514d6ed941ef2af31cbbe440715aec8dVirustotal results 3 / 67 (4.48%) 213.180.204.80:443
2020-12-06 13:19:43fd139b1423c89165e2a178087deaadb5n/a213.180.193.76:443
2020-12-04 12:38:04ef8407b2940c22985a7c6b337b2c6303Virustotal results 32 / 73 (43.84%) 213.180.193.76:443
2020-12-01 15:21:344d4fb684606e0101f3cd920d726c5c09Virustotal results 15 / 71 (21.13%) 213.180.204.80:443
2020-12-01 09:44:04f94d84c3719a588836893a7f94daa774Virustotal results 17 / 70 (24.29%) 213.180.204.80:443
2020-12-01 04:27:57717730ff8c63a8e21075a62473bc2eeeVirustotal results 16 / 66 (24.24%) 213.180.193.76:443
2020-11-29 14:53:46ee1e31b190a55eed3e68a784f4015936Virustotal results 0 / 71 (0.00%) 213.180.193.76:443
2020-11-28 11:01:5447928b377913f11297c64b2d5da4b4b1Virustotal results 26 / 70 (37.14%) 104.23.99.190:443
2020-11-28 11:01:5347928b377913f11297c64b2d5da4b4b1Virustotal results 26 / 70 (37.14%) 23.21.126.66:443
2020-11-28 11:01:5347928b377913f11297c64b2d5da4b4b1Virustotal results 26 / 70 (37.14%) 162.159.137.232:443
2020-11-26 12:54:318835fdcd6a3e1b41498e9c5d45e429a8Virustotal results 37 / 71 (52.11%) 104.23.98.190:443
2020-11-26 12:54:318835fdcd6a3e1b41498e9c5d45e429a8Virustotal results 37 / 71 (52.11%) 54.225.153.147:443
2020-11-26 12:54:318835fdcd6a3e1b41498e9c5d45e429a8Virustotal results 37 / 71 (52.11%) 162.159.137.232:443
2020-11-25 08:48:14c433bb6f88baa06d9ea955197255557en/a213.180.204.80:443
2020-11-24 17:29:50afbafc8e6646677c1fa29319ef3e4db8Virustotal results 3 / 71 (4.23%) 213.180.204.80:443
2020-11-24 13:09:50aa083e339675e8066ea023cefc15834cVirustotal results 10 / 71 (14.08%) 162.159.128.233:443
2020-11-24 13:09:50aa083e339675e8066ea023cefc15834cVirustotal results 10 / 71 (14.08%) 104.23.98.190:443
2020-11-24 13:09:50aa083e339675e8066ea023cefc15834cVirustotal results 10 / 71 (14.08%) 54.235.142.93:443
2020-11-23 06:11:03a5435b066d91fbcfe3eb910f84bb4597n/a213.180.193.76:443
2020-11-21 09:29:37acd8c15424001fec9f787f46f63e2b7fVirustotal results 33 / 71 (46.48%) 162.159.138.232:443
2020-11-20 23:58:4082284a7e31004806a7675e7568f59a1aVirustotal results 35 / 72 (48.61%) 184.73.247.141:443
2020-11-20 23:58:4082284a7e31004806a7675e7568f59a1aVirustotal results 35 / 72 (48.61%) 104.23.98.190:443
2020-11-20 23:58:4082284a7e31004806a7675e7568f59a1aVirustotal results 35 / 72 (48.61%) 162.159.138.232:443
2020-11-20 18:17:28398a07c5d4112d55151c73308860e868n/a213.180.204.80:443
2020-11-20 18:03:194e4e471c0bec13e25d69283bca970554n/a213.180.204.80:443
2020-11-20 04:47:12a427334d1982b44bd22501b852b13bd1Virustotal results 18 / 72 (25.00%) 54.235.83.248:443
2020-11-20 04:47:12a427334d1982b44bd22501b852b13bd1Virustotal results 18 / 72 (25.00%) 162.159.135.232:443
2020-11-19 22:57:54483ad04edea06209ef29e0cc1f6553d7n/a213.180.204.80:443
2020-11-19 15:35:51c1e831a09cd6eefa65d3e0c7166be3b0n/a213.180.204.80:443
2020-11-17 10:57:33a967a0c48da6b72e5e677fc1ec8f07efVirustotal results 2 / 72 (2.78%) 213.180.204.80:443
2020-11-16 23:35:1353005cf2a7cc3f25c53d9aa27737cf21Virustotal results 16 / 71 (22.54%) 54.204.14.42:443
2020-11-16 23:35:1353005cf2a7cc3f25c53d9aa27737cf21Virustotal results 16 / 71 (22.54%) 108.177.96.109:587
2020-11-16 23:35:1353005cf2a7cc3f25c53d9aa27737cf21Virustotal results 16 / 71 (22.54%) 162.159.129.233:443
2020-11-16 23:35:1353005cf2a7cc3f25c53d9aa27737cf21Virustotal results 16 / 71 (22.54%) 104.23.99.190:443

# of entries: 100 (max: 100)