JA3 Fingerprints

You can find further information about the JA3 fingerprint 911479ac8a0813ed1241b3686ccdade9, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:911479ac8a0813ed1241b3686ccdade9
First seen:2018-03-19 23:24:59 UTC
Last seen:2020-01-23 23:47:53 UTC
Status:Blacklisted
Malware samples:241
Destination IPs:121
Malware:Tofsee -
Listing date:2018-11-14 12:39:46

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-01-23 23:47:53c405156d8c14b0ce5fd69ec53cf0558bVirustotal results 52 / 72 (72.22%) 172.217.168.3:443
2020-01-23 23:47:53c405156d8c14b0ce5fd69ec53cf0558bVirustotal results 52 / 72 (72.22%) 216.58.215.227:443
2020-01-23 23:47:53c405156d8c14b0ce5fd69ec53cf0558bVirustotal results 52 / 72 (72.22%) 172.217.168.36:443
2020-01-23 23:47:52c405156d8c14b0ce5fd69ec53cf0558bVirustotal results 52 / 72 (72.22%) 172.217.168.4:443
2020-01-22 13:23:268779a8be485715775b78d262ba74d5b4n/a172.217.168.3:443
2020-01-22 13:23:268779a8be485715775b78d262ba74d5b4n/a172.217.168.36:443
2020-01-22 01:39:26bb4bc69313d7cb79534650ff90b839b7n/a172.217.168.3:443
2020-01-22 01:39:26bb4bc69313d7cb79534650ff90b839b7n/a172.217.168.4:443
2020-01-18 13:48:393df8d316815a3db82a63d877b51c1be6n/a172.217.22.131:443
2019-12-29 12:27:4971361ac1a45b262d0e9a7b9aa99bec50Virustotal results 51 / 70 (72.86%) 216.58.215.227:443
2019-12-29 12:19:03f1e74ee0601ba179ebc73c9936a1facbn/a216.58.206.68:443
2019-12-29 12:19:03f1e74ee0601ba179ebc73c9936a1facbn/a216.58.198.35:443
2019-12-25 13:10:15a58be18de6ec8f955e4b2b63df1aa5ffn/a216.58.198.35:443
2019-12-25 13:10:15a58be18de6ec8f955e4b2b63df1aa5ffn/a216.58.206.36:443
2019-12-16 13:10:48af8a7832d3b51e6f4affe2131356278cVirustotal results 52 / 72 (72.22%) 172.217.22.99:443
2019-12-16 13:10:37af8a7832d3b51e6f4affe2131356278cVirustotal results 52 / 72 (72.22%) 216.58.205.228:443
2019-12-08 23:55:40a3741a5647460b831036a1928a6da557Virustotal results 41 / 71 (57.75%) 172.217.20.99:443
2019-12-08 23:55:26a3741a5647460b831036a1928a6da557Virustotal results 41 / 71 (57.75%) 172.217.168.228:443
2019-12-01 05:52:02256cbb7a4783f60cd3b36bc072fd347an/a172.217.168.35:443
2019-11-26 08:31:34a3c3e30584fedee8abab26263333763aVirustotal results 53 / 69 (76.81%) 172.217.168.67:443
2019-11-24 01:23:378e9b103c83f61de14626d0991e51c721n/a172.217.168.36:443
2019-11-24 01:23:378e9b103c83f61de14626d0991e51c721n/a172.217.168.3:443
2019-11-24 01:15:38ec408db63fe2486b2ed5b08b0df805b7n/a172.217.168.3:443
2019-11-23 07:22:3844400b2e3a384d6e16275335e9de57fen/a172.217.168.195:443
2019-11-23 07:22:3144400b2e3a384d6e16275335e9de57fen/a172.217.19.196:443
2019-11-23 07:05:54125e5c3184aeb2a3b4db558d7c6d72e1Virustotal results 31 / 69 (44.93%) 172.217.20.99:443
2019-11-23 07:05:54125e5c3184aeb2a3b4db558d7c6d72e1Virustotal results 31 / 69 (44.93%) 172.217.17.68:443
2019-11-23 07:00:533adf0553db17c255a0f835f5e59eb94dn/a172.217.168.3:443
2019-11-23 07:00:523adf0553db17c255a0f835f5e59eb94dn/a172.217.168.35:443
2019-11-21 12:16:34f95f45d908a502ac021fdc072566934eVirustotal results 15 / 67 (22.39%) 172.217.20.99:443
2019-11-21 12:16:30f95f45d908a502ac021fdc072566934eVirustotal results 15 / 67 (22.39%) 216.58.211.100:443
2019-11-18 15:44:5046910094c1a7bf25a90fbbb12c18cfadVirustotal results 53 / 71 (74.65%) 172.217.168.67:443
2019-11-18 15:44:5046910094c1a7bf25a90fbbb12c18cfadVirustotal results 53 / 71 (74.65%) 172.217.168.4:443
2019-11-18 09:15:177ec0c2ea98850c97ef8b17e803fc7936Virustotal results 14 / 71 (19.72%) 172.217.168.35:443
2019-11-18 09:15:157ec0c2ea98850c97ef8b17e803fc7936Virustotal results 14 / 71 (19.72%) 172.217.168.4:443
2019-11-18 05:08:4414e97889d7460b0b3bbe3733beeec762n/a172.217.168.67:443
2019-11-18 05:08:4414e97889d7460b0b3bbe3733beeec762n/a216.58.215.228:443
2019-11-18 05:06:3783ccac764966b6f27992d63cdacd926eVirustotal results 58 / 71 (81.69%) 216.58.215.228:443
2019-11-18 05:06:3683ccac764966b6f27992d63cdacd926eVirustotal results 58 / 71 (81.69%) 172.217.168.35:443
2019-11-18 05:00:43c767515384fd17c8786744ee41f685e6n/a172.217.168.36:443
2019-11-18 05:00:43c767515384fd17c8786744ee41f685e6n/a172.217.168.35:443
2019-11-18 04:13:54ca722a3fe3a1479d635c791e35a8cfd0n/a172.217.168.67:443
2019-11-18 04:13:54ca722a3fe3a1479d635c791e35a8cfd0n/a216.58.215.228:443
2019-11-18 00:45:18683707292f48af81a477b6775d904632Virustotal results 11 / 71 (15.49%) 172.217.20.99:443
2019-11-18 00:45:18683707292f48af81a477b6775d904632Virustotal results 11 / 71 (15.49%) 172.217.19.196:443
2019-11-16 11:31:33823c3aa13255a6f9dc29fc0d52af935cVirustotal results 21 / 70 (30.00%) 172.217.168.228:443
2019-11-16 11:31:32823c3aa13255a6f9dc29fc0d52af935cVirustotal results 21 / 70 (30.00%) 172.217.20.99:443
2019-11-16 06:59:15bb4db6cbab51b71b11f95d38c57a737an/a216.58.215.228:443
2019-11-16 06:59:14bb4db6cbab51b71b11f95d38c57a737an/a172.217.168.35:443
2019-11-16 04:00:34c24dace139ba979e83cb5c85ffe2e9a6n/a172.217.168.4:443
2019-11-16 04:00:34c24dace139ba979e83cb5c85ffe2e9a6n/a172.217.168.3:443
2019-11-16 03:12:1614a0ec56839c1f1e44be25a08909f24cVirustotal results 56 / 71 (78.87%) 172.217.18.196:443
2019-11-16 03:12:1614a0ec56839c1f1e44be25a08909f24cVirustotal results 56 / 71 (78.87%) 216.58.198.195:443
2019-11-16 02:46:1024128223efcac9276959c15e9920a232n/a172.217.168.3:443
2019-11-16 02:46:0824128223efcac9276959c15e9920a232n/a216.58.215.228:443
2019-11-16 02:31:00c5e34c05d66dfadff60af1d053109bf9n/a216.58.215.227:443
2019-11-16 02:31:00c5e34c05d66dfadff60af1d053109bf9n/a172.217.168.35:443
2019-11-16 02:30:59c5e34c05d66dfadff60af1d053109bf9n/a172.217.168.68:443
2019-11-16 02:26:48f48276b2b20f1dec5701e74fb3b53eb0n/a172.217.17.36:443
2019-11-16 02:26:48f48276b2b20f1dec5701e74fb3b53eb0n/a172.217.20.99:443
2019-11-16 02:23:060443e15e4773476eb03aae89c480333en/a172.217.168.68:443
2019-11-16 02:23:060443e15e4773476eb03aae89c480333en/a172.217.168.3:443
2019-11-16 02:08:44b07ab12a3611bce9fdc7bb446c52a287n/a216.58.215.228:443
2019-11-16 02:08:41b07ab12a3611bce9fdc7bb446c52a287n/a172.217.168.3:443
2019-11-12 10:51:518f3cb58e5c4844ba85f4427841972422n/a172.217.20.99:443
2019-11-12 10:51:508f3cb58e5c4844ba85f4427841972422n/a172.217.17.68:443
2019-11-12 10:31:317d7e7add0172726bdd4f4ee8716adafdn/a172.217.23.164:443
2019-11-12 10:31:307d7e7add0172726bdd4f4ee8716adafdn/a216.58.210.3:443
2019-11-12 09:23:38db30b9e49bd6963b1d9d442ebeed2a44n/a172.217.168.67:443
2019-11-12 09:23:38db30b9e49bd6963b1d9d442ebeed2a44n/a172.217.168.36:443
2019-11-12 07:57:040f4b50c8c441f76d66adeebe9644621dn/a172.217.168.67:443
2019-11-11 11:32:51fb71f79fefbc5e75418a9abf30c6f6a5n/a172.217.168.35:443
2019-11-11 11:32:51fb71f79fefbc5e75418a9abf30c6f6a5n/a172.217.168.68:443
2019-11-11 03:23:4203b468ec3fdc708e1ca571d65d05d125n/a172.217.168.35:443
2019-11-11 03:23:4203b468ec3fdc708e1ca571d65d05d125n/a172.217.168.4:443
2019-11-10 02:09:316384575fd6b749ddd0c5cef02bd078e7n/a216.58.213.132:443
2019-11-10 02:09:316384575fd6b749ddd0c5cef02bd078e7n/a172.217.22.131:443
2019-11-10 02:09:306384575fd6b749ddd0c5cef02bd078e7n/a172.217.22.132:443
2019-11-09 11:03:09923938db1aa19b53186a7e0cd1e09b7fn/a172.217.168.3:443
2019-11-09 11:03:09923938db1aa19b53186a7e0cd1e09b7fn/a172.217.168.68:443
2019-11-09 06:42:50ac8a3b535eded94ec514890b179cb873n/a172.217.168.3:443
2019-11-08 09:00:5667f7dcd4782b25fbd9f43b7a84cd8eccVirustotal results 47 / 69 (68.12%) 172.217.168.35:443
2019-11-08 09:00:5667f7dcd4782b25fbd9f43b7a84cd8eccVirustotal results 47 / 69 (68.12%) 216.58.215.228:443
2019-11-07 13:14:29833bf54e58259b697de8e23d91db18f6n/a172.217.168.35:443
2019-11-06 09:24:446ecf7bf73e2ec703990cbe2b2c587d19n/a172.217.168.36:443
2019-11-06 09:24:436ecf7bf73e2ec703990cbe2b2c587d19n/a172.217.168.35:443
2019-11-06 09:11:56e6af3c8f76eac19f2cd024fd7c883dc6n/a172.217.168.35:443
2019-11-06 09:11:55e6af3c8f76eac19f2cd024fd7c883dc6n/a172.217.168.68:443
2019-11-06 09:11:55e6af3c8f76eac19f2cd024fd7c883dc6n/a216.58.215.228:443
2019-11-06 08:34:255c208dda395ef16244576bc7d2db012en/a172.217.17.68:443
2019-11-06 08:34:245c208dda395ef16244576bc7d2db012en/a172.217.168.195:443
2019-11-04 13:06:53de43b36050f9b364adca1ebda6c4ce04n/a172.217.168.35:443
2019-11-04 13:06:53de43b36050f9b364adca1ebda6c4ce04n/a172.217.168.36:443
2019-11-04 13:03:066a3354e2fe701df49a7933c5199f707fn/a216.58.206.228:443
2019-11-04 13:03:036a3354e2fe701df49a7933c5199f707fn/a216.58.198.195:443
2019-11-04 12:57:56a28c8856f9e43439ca17f9daef0b3574n/a216.58.215.228:443
2019-11-04 12:57:56a28c8856f9e43439ca17f9daef0b3574n/a216.58.215.227:443
2019-11-04 12:52:527d3dccea08ec29cd00579161d98058d8n/a172.217.20.99:443
2019-11-04 12:52:527d3dccea08ec29cd00579161d98058d8n/a172.217.168.228:443
2019-11-04 09:53:36e3c5c3e837a1c066a1ed37679005ca29n/a216.58.215.228:443

# of entries: 100 (max: 100)