JA3 Fingerprints

You can find further information about the JA3 fingerprint 9f62c4f26b90d3d757bea609e82f2eaf, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:9f62c4f26b90d3d757bea609e82f2eaf
First seen:2018-03-13 06:23:41 UTC
Last seen:2021-05-20 23:01:06 UTC
Status:Blacklisted
Malware samples:1'090
Destination IPs:230
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-08-30 05:08:2333ae4175a4dd7df12c620a20c585354fn/a129.226.103.162:443
2023-08-27 20:42:182e295bc573c5921052ec14eb19bb2d77n/a129.226.107.134:443
2023-07-23 19:47:512ccbe816e7ca00323d2957d5adb008fbVirustotal results 27 / 71 (38.03%) 129.226.103.162:443
2023-07-20 14:21:51009c5f26c8f412de47dc2aba49d16220Virustotal results 30 / 70 (42.86%) 129.226.107.134:443
2023-06-14 16:52:2201aa33028d8523d7bfff295cece44bdcVirustotal results 2 / 71 (2.82%) 89.58.63.57:443
2022-12-06 18:28:43d150efdb64a5ffa1c894d30790ce9a86n/a122.228.1.223:443
2022-12-06 18:28:43d150efdb64a5ffa1c894d30790ce9a86n/a47.99.155.188:443
2022-12-06 18:28:42d150efdb64a5ffa1c894d30790ce9a86n/a103.235.46.191:443
2022-12-06 18:28:42d150efdb64a5ffa1c894d30790ce9a86n/a47.114.89.19:443
2022-09-12 22:41:0847dc40a8ddaf84fa3f88212c8b20cf6an/a47.99.155.188:443
2022-09-12 22:41:0847dc40a8ddaf84fa3f88212c8b20cf6an/a103.235.46.191:443
2022-09-12 22:41:0847dc40a8ddaf84fa3f88212c8b20cf6an/a47.114.89.19:443
2022-09-12 22:41:0847dc40a8ddaf84fa3f88212c8b20cf6an/a60.170.11.73:443
2022-09-12 22:41:0847dc40a8ddaf84fa3f88212c8b20cf6an/a47.114.89.19:443
2022-09-12 22:41:0847dc40a8ddaf84fa3f88212c8b20cf6an/a103.235.46.191:443
2022-09-12 22:41:0847dc40a8ddaf84fa3f88212c8b20cf6an/a60.170.11.73:443
2022-09-12 22:41:0847dc40a8ddaf84fa3f88212c8b20cf6an/a47.99.155.188:443
2021-12-09 21:01:000d6d3eb3be9978a8313a30587027ab08n/a64.32.8.67:443
2021-10-14 20:27:0446bc0891ed385e4486325a509dccd008n/a64.32.8.68:443
2021-09-28 20:59:079ee2cdd766e189868648fb5bac9d4d93n/a172.65.251.78:443
2021-09-28 20:59:079ee2cdd766e189868648fb5bac9d4d93n/a167.99.148.217:443
2021-05-20 23:01:06e3eff52c17247b4bacfd405b253762e1Virustotal results 16 / 68 (23.53%) 172.67.198.144:443
2021-05-20 23:01:06e3eff52c17247b4bacfd405b253762e1Virustotal results 16 / 68 (23.53%) 172.67.198.144:443
2020-12-18 16:07:31d89ef902434ea9060ec5b38ee323ec3bVirustotal results 4 / 70 (5.71%) 185.30.165.36:443
2020-12-18 16:07:31d89ef902434ea9060ec5b38ee323ec3bVirustotal results 4 / 70 (5.71%) 104.16.249.249:443
2020-12-18 16:07:31d89ef902434ea9060ec5b38ee323ec3bVirustotal results 4 / 70 (5.71%) 185.30.165.36:443
2020-12-18 16:07:31d89ef902434ea9060ec5b38ee323ec3bVirustotal results 4 / 70 (5.71%) 104.16.249.249:443
2020-12-14 21:39:294f28a9f7d2a77de25b173f1d7e3aa2ceVirustotal results 42 / 69 (60.87%) 151.101.240.133:443
2020-12-14 21:39:294f28a9f7d2a77de25b173f1d7e3aa2ceVirustotal results 42 / 69 (60.87%) 151.101.240.133:443
2020-11-15 11:42:427a5558c76e8d4c8e9e084a7952f74d65Virustotal results 41 / 72 (56.94%) 172.65.251.78:443
2020-11-15 11:42:427a5558c76e8d4c8e9e084a7952f74d65Virustotal results 41 / 72 (56.94%) 167.99.148.217:443
2020-11-15 11:42:427a5558c76e8d4c8e9e084a7952f74d65Virustotal results 41 / 72 (56.94%) 167.99.148.217:443
2020-11-15 11:42:427a5558c76e8d4c8e9e084a7952f74d65Virustotal results 41 / 72 (56.94%) 172.65.251.78:443
2020-03-27 15:13:40926941535345db23a2f45b3995939b80Virustotal results 22 / 72 (30.56%) 173.194.76.94:443
2020-03-27 15:13:40926941535345db23a2f45b3995939b80Virustotal results 22 / 72 (30.56%) 173.194.76.94:443
2020-03-27 15:13:39926941535345db23a2f45b3995939b80Virustotal results 22 / 72 (30.56%) 74.125.140.105:443
2020-03-27 15:13:39926941535345db23a2f45b3995939b80Virustotal results 22 / 72 (30.56%) 74.125.140.105:443
2020-03-26 03:27:47dc8f87f15cb39c308e162ca55a41d32fVirustotal results 22 / 71 (30.99%) 74.125.140.104:443
2020-03-26 03:27:47dc8f87f15cb39c308e162ca55a41d32fVirustotal results 22 / 71 (30.99%) 74.125.140.104:443
2020-03-26 03:27:46dc8f87f15cb39c308e162ca55a41d32fVirustotal results 22 / 71 (30.99%) 66.102.1.94:443
2020-03-26 03:27:46dc8f87f15cb39c308e162ca55a41d32fVirustotal results 22 / 71 (30.99%) 66.102.1.94:443
2020-03-26 03:27:45dc8f87f15cb39c308e162ca55a41d32fVirustotal results 22 / 71 (30.99%) 74.125.133.94:443
2020-03-26 03:27:45dc8f87f15cb39c308e162ca55a41d32fVirustotal results 22 / 71 (30.99%) 74.125.133.94:443
2020-03-25 14:18:52c0d90be5de2fbba760a3ae94c4cdbf85Virustotal results 22 / 72 (30.56%) 172.253.120.94:443
2020-03-25 14:18:52c0d90be5de2fbba760a3ae94c4cdbf85Virustotal results 22 / 72 (30.56%) 172.253.120.94:443
2020-03-13 04:41:502e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 64.233.184.147:443
2020-03-13 04:41:502e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 64.233.184.147:443
2020-03-13 04:41:432e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 64.233.184.103:443
2020-03-13 04:41:432e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 64.233.184.103:443
2020-01-14 08:21:00623d176dfe7902bb3266fef1ed8dbb72n/a172.217.218.105:443
2020-01-14 08:21:00623d176dfe7902bb3266fef1ed8dbb72n/a172.217.218.105:443
2020-01-12 17:19:04c12772934cd5e6ffcb0a6b527c723feeVirustotal results 55 / 73 (75.34%) 108.177.127.94:443
2020-01-12 17:19:04c12772934cd5e6ffcb0a6b527c723feeVirustotal results 55 / 73 (75.34%) 108.177.127.94:443
2020-01-06 09:25:41abbec4fd51260b9d8308a4c865a02481Virustotal results 56 / 73 (76.71%) 172.217.218.105:443
2020-01-06 09:25:41abbec4fd51260b9d8308a4c865a02481Virustotal results 56 / 73 (76.71%) 172.217.218.105:443
2020-01-06 02:50:53a4879f7c0309197bc2f65b9066a129d8Virustotal results 56 / 73 (76.71%) 108.177.119.94:443
2020-01-06 02:50:53a4879f7c0309197bc2f65b9066a129d8Virustotal results 56 / 73 (76.71%) 108.177.119.94:443
2020-01-05 21:02:34a9f00889009fbb4ca5328642a46567f0n/a108.177.127.94:443
2020-01-05 21:02:34a9f00889009fbb4ca5328642a46567f0n/a108.177.127.94:443
2020-01-04 21:32:001640c7824f875d32ac6532f41a7b4780n/a172.217.218.147:443
2020-01-04 21:32:001640c7824f875d32ac6532f41a7b4780n/a172.217.218.147:443
2020-01-02 06:35:534225b37d141afd0e9eb572a427f42c62n/a172.217.218.103:443
2020-01-02 06:35:534225b37d141afd0e9eb572a427f42c62n/a172.217.218.103:443
2020-01-02 05:46:012e87df2d6de0dc91b89e0c8abfb27d3an/a108.177.127.94:443
2020-01-02 05:46:012e87df2d6de0dc91b89e0c8abfb27d3an/a108.177.127.94:443
2020-01-01 05:19:02a40ba0bcd7a2c8cb0eefd96c6cedc891Virustotal results 54 / 72 (75.00%) 172.217.218.103:443
2020-01-01 05:19:02a40ba0bcd7a2c8cb0eefd96c6cedc891Virustotal results 54 / 72 (75.00%) 172.217.218.103:443
2020-01-01 05:05:5315a8d0958542f3d43b538ecf4fb1f91bn/a108.177.127.94:443
2020-01-01 05:05:5315a8d0958542f3d43b538ecf4fb1f91bn/a108.177.127.94:443
2019-12-29 12:25:53c4376e4524ae31a25876cffeaf65df95n/a172.217.218.105:443
2019-12-29 12:25:53c4376e4524ae31a25876cffeaf65df95n/a108.177.127.94:443
2019-12-29 12:25:53c4376e4524ae31a25876cffeaf65df95n/a108.177.127.94:443
2019-12-29 12:25:53c4376e4524ae31a25876cffeaf65df95n/a172.217.218.105:443
2019-12-29 12:19:03f1e74ee0601ba179ebc73c9936a1facbn/a172.217.218.94:443
2019-12-29 12:19:03f1e74ee0601ba179ebc73c9936a1facbn/a108.177.119.94:443
2019-12-29 12:19:03f1e74ee0601ba179ebc73c9936a1facbn/a172.217.218.94:443
2019-12-29 12:19:03f1e74ee0601ba179ebc73c9936a1facbn/a108.177.119.94:443
2019-12-21 12:41:32dcc2d57e2051374ceccf38cfee1b2177n/a66.102.1.94:443
2019-12-21 12:41:32dcc2d57e2051374ceccf38cfee1b2177n/a66.102.1.94:443
2019-12-21 11:12:50a36a7f1fadad0c9a2cc55c6244e8b9fdVirustotal results 54 / 73 (73.97%) 64.233.184.99:443
2019-12-21 11:12:50a36a7f1fadad0c9a2cc55c6244e8b9fdVirustotal results 54 / 73 (73.97%) 64.233.184.99:443
2019-12-21 11:12:49a36a7f1fadad0c9a2cc55c6244e8b9fdVirustotal results 54 / 73 (73.97%) 64.233.167.94:443
2019-12-21 11:12:49a36a7f1fadad0c9a2cc55c6244e8b9fdVirustotal results 54 / 73 (73.97%) 64.233.167.94:443
2019-12-17 19:40:06106a994acc30417e2a96a42738c38068n/a172.217.169.4:443
2019-12-17 19:40:06106a994acc30417e2a96a42738c38068n/a172.217.169.4:443
2019-12-13 06:06:011bf15eac4e692769a03649584de4cd32n/a108.177.127.94:443
2019-12-13 06:06:011bf15eac4e692769a03649584de4cd32n/a108.177.127.94:443
2019-12-11 16:53:22246426abc4c393625af25ddb802253a0Virustotal results 56 / 72 (77.78%) 172.217.218.106:443
2019-12-11 16:53:22246426abc4c393625af25ddb802253a0Virustotal results 56 / 72 (77.78%) 74.125.143.94:443
2019-12-11 16:53:22246426abc4c393625af25ddb802253a0Virustotal results 56 / 72 (77.78%) 172.217.218.106:443
2019-12-11 16:53:22246426abc4c393625af25ddb802253a0Virustotal results 56 / 72 (77.78%) 74.125.143.94:443
2019-12-09 11:48:17481d71aed93eab747a96f5d335c119d9Virustotal results 54 / 69 (78.26%) 172.217.218.105:443
2019-12-09 11:48:17481d71aed93eab747a96f5d335c119d9Virustotal results 54 / 69 (78.26%) 172.217.218.105:443
2019-12-09 11:35:307929badc5e569610c187892a5f2b07f8Virustotal results 56 / 71 (78.87%) 108.177.126.94:443
2019-12-09 11:35:307929badc5e569610c187892a5f2b07f8Virustotal results 56 / 71 (78.87%) 108.177.126.94:443
2019-12-09 11:35:147929badc5e569610c187892a5f2b07f8Virustotal results 56 / 71 (78.87%) 172.217.218.94:443
2019-12-09 11:35:147929badc5e569610c187892a5f2b07f8Virustotal results 56 / 71 (78.87%) 172.217.218.94:443
2019-12-09 04:15:04a2fb434588ebde780f4d56cd28b61c5aVirustotal results 52 / 72 (72.22%) 172.217.218.147:443
2019-12-09 04:15:04a2fb434588ebde780f4d56cd28b61c5aVirustotal results 52 / 72 (72.22%) 172.217.218.147:443
2019-12-09 03:26:374ce88cb986c91e667d1aa535173091b6n/a172.217.218.103:443

# of entries: 100 (max: 100)