JA3 Fingerprints

You can find further information about the JA3 fingerprint 911479ac8a0813ed1241b3686ccdade9, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:911479ac8a0813ed1241b3686ccdade9
First seen:2018-03-19 23:24:59 UTC
Last seen:2019-09-14 22:39:35 UTC
Status:Blacklisted
Malware samples:121
Destination IPs:110
Malware:Tofsee -
Listing date:2018-11-14 12:39:46

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-09-14 22:39:35d4c71d5f777edafa43e98f2e814cd061Virustotal results 41 / 59 (69.49%) 172.217.23.131:443
2019-09-14 22:39:34d4c71d5f777edafa43e98f2e814cd061Virustotal results 41 / 59 (69.49%) 172.217.16.196:443
2019-09-14 21:24:40ea0c2a041f32dda11fff8ada347d7b1an/a172.217.168.68:443
2019-09-14 21:24:40ea0c2a041f32dda11fff8ada347d7b1an/a172.217.168.35:443
2019-09-14 13:48:000ef3146be7e2482a1a33e8e1528619ffVirustotal results 53 / 69 (76.81%) 172.217.22.36:443
2019-09-14 13:48:000ef3146be7e2482a1a33e8e1528619ffVirustotal results 53 / 69 (76.81%) 172.217.23.131:443
2019-09-14 13:48:000ef3146be7e2482a1a33e8e1528619ffVirustotal results 53 / 69 (76.81%) 172.217.18.163:443
2019-09-14 13:20:3772ad4bb326b84c8b5713c0267a2957d1n/a216.58.215.228:443
2019-09-14 13:20:3672ad4bb326b84c8b5713c0267a2957d1n/a172.217.168.67:443
2019-09-14 12:52:159995976defd4549b032e2f3290e8d8edVirustotal results 17 / 71 (23.94%) 216.58.213.164:443
2019-09-14 12:52:159995976defd4549b032e2f3290e8d8edVirustotal results 17 / 71 (23.94%) 216.58.213.131:443
2019-09-14 10:39:5508a294288ea4445e7f52d9c9d983b7aan/a172.217.16.3:443
2019-09-14 10:39:5208a294288ea4445e7f52d9c9d983b7aan/a172.217.22.100:443
2019-09-13 18:31:204b8cab74c8684b0f08519509db3e7a2fVirustotal results 40 / 71 (56.34%) 172.217.19.228:443
2019-09-13 18:31:204b8cab74c8684b0f08519509db3e7a2fVirustotal results 40 / 71 (56.34%) 216.58.201.227:443
2019-09-12 04:44:26283bd21f9706fbd61816a242354bef5cVirustotal results 20 / 70 (28.57%) 172.217.168.67:443
2019-09-12 04:44:26283bd21f9706fbd61816a242354bef5cVirustotal results 20 / 70 (28.57%) 172.217.168.36:443
2019-09-10 06:27:359b33aed9b046065e86d75d3f01ef28c4n/a172.217.168.3:443
2019-09-10 06:27:359b33aed9b046065e86d75d3f01ef28c4n/a172.217.168.4:443
2019-09-09 22:31:19e1ddff07bfe6a67a6c4abf4b428b1f99n/a216.58.213.131:443
2019-09-09 22:31:19e1ddff07bfe6a67a6c4abf4b428b1f99n/a216.58.213.132:443
2019-09-09 07:26:00b208cc4a1b3f308128b8dc829d2a6df3n/a216.58.215.228:443
2019-09-09 07:25:59b208cc4a1b3f308128b8dc829d2a6df3n/a172.217.168.35:443
2019-09-09 07:02:34cf8908ee02f313761269c651948beb52n/a172.217.21.228:443
2019-09-09 07:02:34cf8908ee02f313761269c651948beb52n/a216.58.206.3:443
2019-09-09 07:01:070fe8ea6968a15e5189d837951db835b8n/a216.58.213.131:443
2019-09-09 07:01:02d3627528654c1a474f76c8f5c802ee58n/a172.217.22.100:443
2019-09-09 07:01:00d3627528654c1a474f76c8f5c802ee58n/a172.217.22.67:443
2019-09-09 03:36:039378a48db9ecd0bb0c9e070ccd110d31n/a172.217.168.35:443
2019-09-09 03:36:009378a48db9ecd0bb0c9e070ccd110d31n/a172.217.168.68:443
2019-09-08 18:29:45d28510fa4f7da545e3b5caf30bcd454bn/a172.217.21.228:443
2019-09-08 18:29:45d28510fa4f7da545e3b5caf30bcd454bn/a172.217.18.163:443
2019-09-08 12:33:4599f6c14ec292a39b29fa447b6bacd6acVirustotal results 35 / 71 (49.30%) 172.217.168.3:443
2019-09-08 12:33:4599f6c14ec292a39b29fa447b6bacd6acVirustotal results 35 / 71 (49.30%) 216.58.215.228:443
2019-09-08 02:30:4578174d7d966f4afd91cef7d6b847973cVirustotal results 24 / 65 (36.92%) 172.217.23.131:443
2019-09-08 02:30:3978174d7d966f4afd91cef7d6b847973cVirustotal results 24 / 65 (36.92%) 172.217.22.36:443
2019-09-07 23:07:16766283dcadabb9a7f81fbd0534243036Virustotal results 16 / 69 (23.19%) 172.217.168.3:443
2019-09-07 23:07:16766283dcadabb9a7f81fbd0534243036Virustotal results 16 / 69 (23.19%) 172.217.168.67:443
2019-09-07 06:16:3015aae0a63bee5181f1fadcf9987799a7n/a216.58.215.227:443
2019-09-07 06:16:2615aae0a63bee5181f1fadcf9987799a7n/a172.217.168.4:443
2019-09-06 13:05:1057b9004e8c1f05d138700d7c27a22d17Virustotal results 37 / 70 (52.86%) 216.58.213.163:443
2019-09-06 13:05:0957b9004e8c1f05d138700d7c27a22d17Virustotal results 37 / 70 (52.86%) 216.58.206.228:443
2019-09-05 14:05:489008edb8b8a8cc0b92bdb60914db69c2n/a172.217.23.131:443
2019-09-05 14:05:479008edb8b8a8cc0b92bdb60914db69c2n/a216.58.206.3:443
2019-09-05 14:05:469008edb8b8a8cc0b92bdb60914db69c2n/a172.217.18.100:443
2019-09-05 13:27:29ae643c0f0084eec630d9368043fb3407n/a172.217.168.3:443
2019-09-05 13:27:29ae643c0f0084eec630d9368043fb3407n/a216.58.215.228:443
2019-09-05 09:56:4271edb62981757165054fa172127239a7n/a172.217.16.196:443
2019-09-05 09:56:4071edb62981757165054fa172127239a7n/a172.217.22.67:443
2019-09-05 05:45:231bd3cd2fb0ccf5785ce022717b3eec13n/a216.58.213.164:443
2019-09-05 05:45:221bd3cd2fb0ccf5785ce022717b3eec13n/a216.58.213.163:443
2019-09-05 00:52:2624faeed148ed574ebeefdd0aba8a0d40n/a172.217.22.4:443
2019-09-05 00:52:2124faeed148ed574ebeefdd0aba8a0d40n/a172.217.23.131:443
2019-09-04 19:52:564bedfaca00ed76c11c462bb1a387f440Virustotal results 49 / 70 (70.00%) 172.217.168.3:443
2019-09-04 19:52:544bedfaca00ed76c11c462bb1a387f440Virustotal results 49 / 70 (70.00%) 216.58.215.228:443
2019-09-03 03:32:1855e58709a2792160fa3e3d7c7aeaf5fan/a216.58.213.163:443
2019-09-03 03:32:1855e58709a2792160fa3e3d7c7aeaf5fan/a216.58.215.36:443
2019-09-02 07:57:18f13ceed9683d99e94c11db06aedb1bbdn/a216.58.206.3:443
2019-09-02 07:57:17f13ceed9683d99e94c11db06aedb1bbdn/a172.217.18.100:443
2019-08-31 09:29:1410454df659a4c456f5cdc195fdf6cfb3n/a172.217.168.35:443
2019-08-30 19:40:55f96afb5dc4ad236969368259af399b07n/a216.58.201.228:443
2019-08-30 19:40:55f96afb5dc4ad236969368259af399b07n/a216.58.204.99:443
2019-08-30 19:40:55f96afb5dc4ad236969368259af399b07n/a216.58.204.100:443
2019-08-29 00:18:27b73d56e716e232fcc1520b67e79047aeVirustotal results 54/70 (77.14%) 172.217.168.4:443
2019-08-29 00:18:27b73d56e716e232fcc1520b67e79047aeVirustotal results 54/70 (77.14%) 172.217.168.35:443
2019-08-27 21:31:482369232562d077d4b5093ee8f0033c20n/a172.217.168.35:443
2019-08-27 10:04:14bc45f3324250cd0eb038d6a0b0e023b7Virustotal results 52 / 68 (76.47%) 172.217.22.99:443
2019-08-27 10:04:13bc45f3324250cd0eb038d6a0b0e023b7Virustotal results 52 / 68 (76.47%) 172.217.18.100:443
2019-08-26 16:32:398658c32ac62efb9cab3b6208ace9fd62n/a172.217.168.35:443
2019-08-26 16:32:378658c32ac62efb9cab3b6208ace9fd62n/a172.217.168.67:443
2019-08-26 02:49:133c3581f01efb28d7f1e71afb2d29aed9n/a172.217.168.228:443
2019-08-26 02:49:133c3581f01efb28d7f1e71afb2d29aed9n/a172.217.20.99:443
2019-08-26 02:40:507a25b766f65b2e4eaf5519831f09189dn/a172.217.21.132:443
2019-08-26 02:40:497a25b766f65b2e4eaf5519831f09189dn/a216.58.211.131:443
2019-08-26 01:56:343e1fda8c9192a19980cb75ca6bbc7cccn/a172.217.17.68:443
2019-08-26 01:56:343e1fda8c9192a19980cb75ca6bbc7cccn/a172.217.168.195:443
2019-08-26 01:42:319d5646e92a3488ac70d70b60adac60a2n/a172.217.168.67:443
2019-08-26 01:42:319d5646e92a3488ac70d70b60adac60a2n/a216.58.215.228:443
2019-08-26 01:42:319d5646e92a3488ac70d70b60adac60a2n/a172.217.168.35:443
2019-08-26 01:00:2745c8e838c8d5f93633469a469ca27b5an/a216.58.201.228:443
2019-08-26 01:00:2745c8e838c8d5f93633469a469ca27b5an/a172.217.22.131:443
2019-08-26 00:04:303b575ae43b1cb11501549ab2fdc85679n/a172.217.22.99:443
2019-08-25 15:50:16ab41ca537450414bc8d53aae1caec11bn/a172.217.168.4:443
2019-08-25 15:50:15ab41ca537450414bc8d53aae1caec11bn/a216.58.215.227:443
2019-08-23 06:48:511c18466c95238f340fecfef37d96037eVirustotal results 50 / 70 (71.43%) 172.217.168.36:443
2019-08-23 06:48:501c18466c95238f340fecfef37d96037eVirustotal results 50 / 70 (71.43%) 172.217.168.35:443
2019-08-22 14:32:465c547cf813ad0dc06a5e32219cce7fe8n/a172.217.17.67:443
2019-08-22 14:32:455c547cf813ad0dc06a5e32219cce7fe8n/a172.217.17.68:443
2019-08-21 16:12:32d25624ea134cdfee17550d2d690810acn/a216.58.210.3:443
2019-08-21 16:12:31d25624ea134cdfee17550d2d690810acn/a172.217.18.100:443
2019-08-20 15:03:396ff6a5712f93330e1cb5fbf60b959f13Virustotal results 22 / 71 (30.99%) 172.217.168.67:443
2019-08-20 15:03:396ff6a5712f93330e1cb5fbf60b959f13Virustotal results 22 / 71 (30.99%) 172.217.168.35:443
2019-08-20 15:03:396ff6a5712f93330e1cb5fbf60b959f13Virustotal results 22 / 71 (30.99%) 172.217.168.36:443
2019-08-20 11:59:52551333c33219fcba61b21fc3a3121bb8n/a172.217.168.35:443
2019-08-20 03:46:22a2350fa012d87287af3b46682d5f122eVirustotal results 35 / 71 (49.30%) 172.217.20.99:443
2019-08-20 03:46:21a2350fa012d87287af3b46682d5f122eVirustotal results 35 / 71 (49.30%) 172.217.168.228:443
2019-08-19 18:49:00ba5685276d05c09265a71cdd71dbb66en/a216.58.211.100:443
2019-08-19 18:49:00ba5685276d05c09265a71cdd71dbb66en/a172.217.19.196:443
2019-08-19 18:48:59ba5685276d05c09265a71cdd71dbb66en/a172.217.168.195:443
2019-08-19 16:21:295de1d0a9b802c5e9663a28530d480707n/a172.217.168.68:443

# of entries: 100 (max: 100)