JA3 Fingerprints

You can find further information about the JA3 fingerprint c0220cd64849a629397a9cb68f78a0ea, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:c0220cd64849a629397a9cb68f78a0ea
First seen:2019-03-24 00:12:32 UTC
Last seen:2021-07-31 00:26:06 UTC
Status:Blacklisted
Malware samples:2'679
Destination IPs:786
Malware:Tofsee -
Listing date:2020-01-09 14:28:36

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2022-06-23 19:53:2674156bd4dfc57bbd58ca39b9aec8e8d9n/a184.86.82.220:443
2022-06-23 19:13:535f53b56770214c3d7569b65c71a36741n/a104.85.6.98:443
2022-06-22 13:49:46a6dc3350a8319c45add354f2b59ab5d8n/a162.219.226.83:443
2022-06-20 16:06:12b440d803ab42f31567a4d4d61aa4ef94n/a108.156.66.76:443
2022-06-20 07:12:4468189edeae2fdfca3a1e7ee2054848e5n/a162.219.225.118:443
2022-06-19 23:29:15424689ac4af0fa036b054a1344c7e18bn/a13.224.90.218:443
2022-06-19 21:50:21880c8fe8d5981c0608d20d6f6e1c8610n/a18.65.38.93:443
2022-06-19 20:46:342f181490b99cd4ea14b0612e78e098a8n/a162.219.225.118:443
2022-06-19 17:31:24929451dedc66580436f74fd66b108e28n/a65.9.73.184:443
2022-06-19 10:01:45d42a0f37d70a406ecbf8335f18b666ebn/a162.219.225.118:443
2022-06-19 09:58:218a4cfe664de33869188261cc15e7c522n/a13.224.90.218:443
2022-06-19 05:22:546f3a3981b383f3608bf96a56af0f7482Virustotal results 25 / 68 (36.76%) 162.219.225.118:443
2022-06-19 05:22:546f3a3981b383f3608bf96a56af0f7482Virustotal results 25 / 68 (36.76%) 13.226.172.144:443
2022-06-19 05:22:546f3a3981b383f3608bf96a56af0f7482Virustotal results 25 / 68 (36.76%) 23.54.113.191:443
2022-06-18 19:46:25194f5184dd49eacd8fafe8610f285140Virustotal results 49 / 68 (72.06%) 65.9.73.184:443
2022-06-18 19:46:24194f5184dd49eacd8fafe8610f285140Virustotal results 49 / 68 (72.06%) 108.156.66.76:443
2022-06-18 19:46:24194f5184dd49eacd8fafe8610f285140Virustotal results 49 / 68 (72.06%) 18.65.38.93:443
2022-06-18 19:18:2543bc26e8a6f5e48fafe5c730b12ffc09Virustotal results 23 / 67 (34.33%) 13.224.102.80:443
2022-06-18 13:38:45afb9d8a81d5435b3e8855040bc82253an/a162.219.226.83:443
2022-06-18 13:38:45afb9d8a81d5435b3e8855040bc82253an/a23.54.113.191:443
2022-06-17 16:30:5071e69e2719d9a503abe125744a05cc8bn/a18.65.38.93:443
2022-06-17 03:34:16592ee81b55666e9e629141988a5a4ef0n/a13.224.102.80:443
2022-06-17 02:13:23556ca4f67e4d6bd4571f18d280375979n/a184.86.82.220:443
2022-06-17 00:38:215088e1c159988e22844fe7580f3f1b55n/a18.65.33.84:443
2022-06-17 00:38:215088e1c159988e22844fe7580f3f1b55n/a54.230.205.32:443
2022-06-15 21:12:23093a399416ae1b57ca8299c98723effcVirustotal results 53 / 68 (77.94%) 162.219.226.83:443
2022-06-15 16:02:23e32f7f13ebd03792da6837fe1c6f831en/a13.224.102.80:443
2022-06-15 08:58:428529e819a7a785a836f80430db954f2dn/a104.85.6.98:443
2022-06-15 08:22:21485a4b456f85b2358376f40d0e612604n/a184.86.82.220:443
2022-06-14 13:53:21ed2f45b25e44af9ce0491c0e0e883217n/a54.230.205.32:443
2022-06-14 13:53:20ed2f45b25e44af9ce0491c0e0e883217n/a162.219.226.83:443
2022-06-14 10:52:03d729868ac710773872a547775e44db3dn/a13.226.168.131:443
2022-06-14 10:52:03d729868ac710773872a547775e44db3dn/a184.86.82.220:443
2022-06-14 09:56:08af6dc08ead3ee52a4c269b77be730451n/a162.219.226.83:443
2022-06-14 09:56:07af6dc08ead3ee52a4c269b77be730451n/a18.65.38.93:443
2022-06-14 05:06:099c17d74d9ad41728e29f4c605a9d25b1n/a104.85.6.98:443
2022-06-14 01:38:5222b0833fc700846f3d6890497dc814b1n/a13.224.102.80:443
2022-06-13 22:41:45fe709f78576a0df4763c7b2ad0fd82b3n/a13.224.102.80:443
2022-06-13 22:41:44fe709f78576a0df4763c7b2ad0fd82b3n/a162.219.226.83:443
2022-06-13 21:40:47c685b41f84097e1f2db12c7287272e12n/a162.219.226.83:443
2022-06-13 20:13:41b6d837eb16f4da4c73c2d6dc635c61e2n/a13.224.102.80:443
2022-06-13 19:56:3030acdbc45c41f089d662da2cef93bde1n/a104.85.6.98:443
2022-06-13 19:56:3030acdbc45c41f089d662da2cef93bde1n/a65.9.73.184:443
2022-06-13 17:40:010c125aceee03ef8a1435bf920a2a821dn/a162.219.226.83:443
2022-06-13 17:40:000c125aceee03ef8a1435bf920a2a821dn/a162.219.225.118:443
2022-06-13 17:39:590c125aceee03ef8a1435bf920a2a821dn/a143.204.96.31:443
2022-06-13 16:34:399374ea3a36d4efde3032794f3cbfde15n/a104.85.6.98:443
2022-06-12 23:00:300598ba07dbed12ec12db27c6600a78afn/a162.219.226.83:443
2022-06-12 22:28:0132875872dcf1f86dc7d217e1db160a98n/a104.85.6.98:443
2022-06-11 17:56:020bb56d67769920fb891229eaf5a3c469n/a65.9.73.184:443
2022-06-11 17:55:55131dfc8a6795af3cf0297723e19edb1cVirustotal results 42 / 69 (60.87%) 104.75.89.182:443
2022-06-11 17:55:55131dfc8a6795af3cf0297723e19edb1cVirustotal results 42 / 69 (60.87%) 143.204.96.31:443
2022-06-11 01:48:41b20a5ad514ac937bc31663d78886dc4en/a13.224.102.80:443
2022-06-10 23:44:22af2b0e867c111dc994d2b1aa6b2db77bn/a13.226.168.131:443
2022-06-10 02:58:16aba9ddd6e30623f51ecfdf24ab7bbd24n/a18.65.38.93:443
2022-06-08 12:20:5006ff7e78ae32d46bafde64407ae27ae5n/a13.227.223.235:443
2022-06-08 08:12:11b5c1bc6517f4d95e1133e82d9e3acc2bn/a65.9.73.184:443
2022-06-08 00:28:53ce02925be9f4e6559b15a37552b44c35n/a13.224.102.80:443
2022-06-07 15:13:061a7e2c5961d3e822c0dd0c58f0f4e4fan/a193.246.9.132:443
2022-06-07 15:13:061a7e2c5961d3e822c0dd0c58f0f4e4fan/a13.224.102.80:443
2022-06-06 20:13:41448738e5f3bd240eea78408b4a700295n/a104.85.6.98:443
2022-06-06 20:13:41448738e5f3bd240eea78408b4a700295n/a18.65.38.93:443
2022-06-06 13:43:05adaa7b07770c753d69eda0b502f785e0n/a162.219.226.83:443
2022-06-06 13:32:1095f3396965c2a0f54303f2abaaeae9dfn/a99.84.238.64:443
2022-06-06 13:27:376c51b703f9be993a6e39f1fb9e86650en/a162.219.226.83:443
2022-06-06 13:27:376c51b703f9be993a6e39f1fb9e86650en/a18.66.220.194:443
2022-06-06 10:23:42cc8229fba3e64720105b147bc8a05defn/a13.224.102.80:443
2022-06-06 10:23:41cc8229fba3e64720105b147bc8a05defn/a193.246.9.132:443
2022-06-06 09:33:085b25789fe350d2a6ba2210eb9aa435b4n/a162.219.226.83:443
2022-06-06 09:33:085b25789fe350d2a6ba2210eb9aa435b4n/a143.204.96.31:443
2022-06-06 09:33:075b25789fe350d2a6ba2210eb9aa435b4n/a104.75.89.182:443
2022-06-06 05:43:37f59df1e373fb415c4eff9577a93bbe09n/a162.219.226.83:443
2022-06-06 05:43:36f59df1e373fb415c4eff9577a93bbe09n/a13.227.223.235:443
2022-06-06 05:43:36f59df1e373fb415c4eff9577a93bbe09n/a18.65.38.93:443
2022-06-05 19:22:029dd923205102d1b2d4da4b597e2a4eden/a162.219.226.83:443
2022-06-05 07:36:5651864dbcf25db5202201d86d6f19b060n/a18.66.220.194:443
2022-06-05 06:08:41f95af6dce97a09a3f0231c6dd4ca98ffn/a65.9.73.184:443
2022-06-05 03:24:01b50f0dc5c7ee3c652ee02fa51d54ad12n/a18.66.220.194:443
2022-06-05 00:30:18f7c4fad9f2e19285fa11fbe4ee0bf974n/a184.86.82.220:443
2022-06-04 18:09:140dbf6d3cc1a2af87d384ba6a74c93777n/a13.224.102.80:443
2022-06-01 13:45:23b5df0d73a73a15437f8dcd7c320d9908n/a23.219.41.209:443
2022-05-31 11:51:56e2a06aeb0126a0e5ec6cd94fa941177dn/a13.224.102.80:443
2022-05-30 11:38:364f2915e558bdabfba07732f8d782396bn/a104.75.90.57:443
2022-05-24 14:25:16bea92abe65b4ae74dea34aa3a62aded8n/a18.66.220.194:443
2022-05-14 21:32:508660b6ba658a3978ee4434c7fe3f725cn/a162.219.224.22:443
2022-05-08 00:41:18b935db7ad29a30f66eb5442f19f9571dn/a13.224.90.218:443
2022-05-08 00:41:03a194efe2eb5033e3237cff72d01ee05en/a108.139.242.218:443
2022-05-07 09:14:46384f3d8d44414e58ca22f59296a5c0b7n/a162.219.225.118:443
2022-05-07 09:14:46384f3d8d44414e58ca22f59296a5c0b7n/a13.224.90.218:443
2022-05-05 20:14:15b5be195a9b7cce61e10ccefa06821a40n/a104.85.6.101:443
2022-05-04 00:39:13ec33084eebb9ed8c635169eab2382692n/a65.9.86.28:443
2022-05-04 00:39:12ec33084eebb9ed8c635169eab2382692n/a23.222.66.129:443
2022-05-04 00:39:11ec33084eebb9ed8c635169eab2382692n/a65.9.92.33:443
2022-04-21 00:27:40a58eec6a8c3bef61d3f2bde19b953014n/a65.9.72.157:443
2022-04-20 13:39:40a27a96963bb7401598fa5c9ce5c7fa16n/a65.9.73.184:443
2022-02-05 00:54:27fc2a5527053ff003570465cca340031fVirustotal results 0 / 66 (0.00%) 3.97.234.112:443
2021-12-16 01:47:00200de473390b516479e76604e03bba78n/a64.233.184.206:8883
2021-11-29 22:44:086d7c5f2a68f8f0805ff0e1c631ec0f5an/a64.233.184.206:8883
2021-10-10 05:24:36a00c4eb528943e946efc048bf376baccn/a10.0.7.113:60191
2021-10-10 05:24:36a00c4eb528943e946efc048bf376baccn/a10.0.7.113:59265

# of entries: 100 (max: 100)