JA3 Fingerprints

You can find further information about the JA3 fingerprint d18a4da84af59e1108862a39bae7c9d4, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:d18a4da84af59e1108862a39bae7c9d4
First seen:2018-04-03 00:40:51 UTC
Last seen:2021-02-06 01:53:12 UTC
Status:Blacklisted
Malware samples:83
Destination IPs:37
Malware:Tofsee -
Listing date:2018-11-14 12:51:08

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-09-26 16:29:54cd4c8768f0e21429fbc7f844ed54e330n/a145.239.231.17:443
2021-09-26 16:29:54cd4c8768f0e21429fbc7f844ed54e330n/a142.250.203.110:443
2021-09-21 06:46:40d51c971722f64dededb8410a537c47d3n/a52.72.172.158:443
2021-09-11 08:44:07969deb37aac55eb8ee385aca27102dd2n/a62.141.38.176:443
2021-08-25 10:17:047394d2f799e6d9336a14ea64fa4e5d1fn/a212.82.100.76:587
2021-08-22 04:40:18344e9bddcd948c865df4b7fa0199dc34n/a151.101.112.84:443
2021-02-06 01:53:120a025b1367a36afa7f91b4a3b52d3824Virustotal results 3 / 70 (4.29%) 52.216.98.125:443
2021-02-06 01:53:120a025b1367a36afa7f91b4a3b52d3824Virustotal results 3 / 70 (4.29%) 52.216.98.125:443
2021-01-02 15:41:11098c76eda17b5d738cc591adf8c17df9Virustotal results 0 / 69 (0.00%) 140.82.121.3:443
2021-01-02 15:41:11098c76eda17b5d738cc591adf8c17df9Virustotal results 0 / 69 (0.00%) 185.199.108.153:443
2021-01-02 15:41:11098c76eda17b5d738cc591adf8c17df9Virustotal results 0 / 69 (0.00%) 52.217.12.36:443
2021-01-02 15:41:11098c76eda17b5d738cc591adf8c17df9Virustotal results 0 / 69 (0.00%) 95.143.172.170:443
2021-01-02 15:41:11098c76eda17b5d738cc591adf8c17df9Virustotal results 0 / 69 (0.00%) 140.82.121.3:443
2021-01-02 15:41:11098c76eda17b5d738cc591adf8c17df9Virustotal results 0 / 69 (0.00%) 185.199.108.153:443
2021-01-02 15:41:11098c76eda17b5d738cc591adf8c17df9Virustotal results 0 / 69 (0.00%) 52.217.12.36:443
2021-01-02 15:41:11098c76eda17b5d738cc591adf8c17df9Virustotal results 0 / 69 (0.00%) 95.143.172.170:443
2020-11-11 00:58:38aabf3a244725176bcca17e5d488524b6Virustotal results 10 / 73 (13.70%) 136.243.106.42:443
2020-11-11 00:58:38aabf3a244725176bcca17e5d488524b6Virustotal results 10 / 73 (13.70%) 136.243.106.42:443
2020-09-28 13:39:260500b295b20e26546ffede81edf77476Virustotal results 6 / 71 (8.45%) 216.58.208.110:443
2020-09-28 13:39:260500b295b20e26546ffede81edf77476Virustotal results 6 / 71 (8.45%) 216.58.208.110:443
2020-08-01 04:06:140cf4c7388038b31f8e68cf35cc8d5e31Virustotal results 0 / 69 (0.00%) 95.143.172.170:443
2020-08-01 04:06:140cf4c7388038b31f8e68cf35cc8d5e31Virustotal results 0 / 69 (0.00%) 140.82.118.4:443
2020-08-01 04:06:140cf4c7388038b31f8e68cf35cc8d5e31Virustotal results 0 / 69 (0.00%) 52.216.205.251:443
2020-08-01 04:06:140cf4c7388038b31f8e68cf35cc8d5e31Virustotal results 0 / 69 (0.00%) 185.199.109.153:443
2020-08-01 04:06:140cf4c7388038b31f8e68cf35cc8d5e31Virustotal results 0 / 69 (0.00%) 95.143.172.170:443
2020-08-01 04:06:140cf4c7388038b31f8e68cf35cc8d5e31Virustotal results 0 / 69 (0.00%) 140.82.118.4:443
2020-08-01 04:06:140cf4c7388038b31f8e68cf35cc8d5e31Virustotal results 0 / 69 (0.00%) 52.216.205.251:443
2020-08-01 04:06:140cf4c7388038b31f8e68cf35cc8d5e31Virustotal results 0 / 69 (0.00%) 185.199.109.153:443
2020-06-24 09:30:52a175008436819971840f555f09231365Virustotal results 48 / 73 (65.75%) 74.125.34.46:443
2020-06-24 09:30:52a175008436819971840f555f09231365Virustotal results 48 / 73 (65.75%) 74.125.34.46:443
2020-06-24 02:36:1328093a90e265c0637fec95a5e42101a7Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-24 02:36:1328093a90e265c0637fec95a5e42101a7Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-22 13:46:247a1ea0844eb1a246222c9e7a8902e0a4Virustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-22 13:46:247a1ea0844eb1a246222c9e7a8902e0a4Virustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-22 12:48:4875f4c7a207e9c18a7c4ceadb3a141193Virustotal results 49 / 73 (67.12%) 74.125.34.46:443
2020-06-22 12:48:4875f4c7a207e9c18a7c4ceadb3a141193Virustotal results 49 / 73 (67.12%) 74.125.34.46:443
2020-06-22 08:22:3462ebe9aea87177ecc9a3970e451d041fVirustotal results 47 / 71 (66.20%) 74.125.34.46:443
2020-06-22 08:22:3462ebe9aea87177ecc9a3970e451d041fVirustotal results 47 / 71 (66.20%) 74.125.34.46:443
2020-06-22 07:11:5853c9c22b014af328d91a181df86517f1Virustotal results 53 / 74 (71.62%) 74.125.34.46:443
2020-06-22 07:11:5853c9c22b014af328d91a181df86517f1Virustotal results 53 / 74 (71.62%) 74.125.34.46:443
2020-06-21 23:33:153ea69564e92429572ec12913ff874890Virustotal results 53 / 73 (72.60%) 74.125.34.46:443
2020-06-21 23:33:153ea69564e92429572ec12913ff874890Virustotal results 53 / 73 (72.60%) 74.125.34.46:443
2020-06-21 22:03:023892834957a893d4d71bdb79304d4e90Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-21 22:03:023892834957a893d4d71bdb79304d4e90Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-21 20:18:4930e99775eb975d88619dc0a5a27e9c64Virustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-21 20:18:4930e99775eb975d88619dc0a5a27e9c64Virustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-19 16:05:40a42f6d3a7f2982447256f001b639215eVirustotal results 48 / 72 (66.67%) 74.125.34.46:443
2020-06-19 16:05:40a42f6d3a7f2982447256f001b639215eVirustotal results 48 / 72 (66.67%) 74.125.34.46:443
2020-06-19 15:50:28a362c951b8984f0ee329b281e7e42bf7Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-19 15:50:28a362c951b8984f0ee329b281e7e42bf7Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-19 08:57:2126cd2845fa151ee4878a83df30326ff4Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-19 08:57:2126cd2845fa151ee4878a83df30326ff4Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-19 08:32:59258272c5b0480d36427cb70a5d3f6439Virustotal results 46 / 73 (63.01%) 74.125.34.46:443
2020-06-19 08:32:59258272c5b0480d36427cb70a5d3f6439Virustotal results 46 / 73 (63.01%) 74.125.34.46:443
2020-06-19 08:28:4525054ee2a25c0525d323dc5056a699e9Virustotal results 45 / 71 (63.38%) 74.125.34.46:443
2020-06-19 08:28:4525054ee2a25c0525d323dc5056a699e9Virustotal results 45 / 71 (63.38%) 74.125.34.46:443
2020-06-19 07:53:10229720affc72c6a624753774de23136bVirustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-19 07:53:10229720affc72c6a624753774de23136bVirustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-19 00:07:3007e485fc2889f1137b9a0754a567ec18Virustotal results 46 / 69 (66.67%) 74.125.34.46:443
2020-06-19 00:07:3007e485fc2889f1137b9a0754a567ec18Virustotal results 46 / 69 (66.67%) 74.125.34.46:443
2020-06-18 23:51:020811eb50b7b53520397b1a4645b5a7b6Virustotal results 50 / 73 (68.49%) 74.125.34.46:443
2020-06-18 23:51:020811eb50b7b53520397b1a4645b5a7b6Virustotal results 50 / 73 (68.49%) 74.125.34.46:443
2020-06-18 23:00:01035f2d2e8ef3ce5fd281776d5cf4cf15Virustotal results 48 / 73 (65.75%) 74.125.34.46:443
2020-06-18 23:00:01035f2d2e8ef3ce5fd281776d5cf4cf15Virustotal results 48 / 73 (65.75%) 74.125.34.46:443
2020-06-18 21:32:54143289687b08093df43de4e7d88d2ebfVirustotal results 48 / 72 (66.67%) 74.125.34.46:443
2020-06-18 21:32:54143289687b08093df43de4e7d88d2ebfVirustotal results 48 / 72 (66.67%) 74.125.34.46:443
2020-06-18 21:19:050e86068f86ee15f46329a0d2ed63b7b2Virustotal results 47 / 73 (64.38%) 74.125.34.46:443
2020-06-18 21:19:050e86068f86ee15f46329a0d2ed63b7b2Virustotal results 47 / 73 (64.38%) 74.125.34.46:443
2020-06-18 12:25:474bfa26be856487eceab1d55e43df1175Virustotal results 46 / 71 (64.79%) 74.125.34.46:443
2020-06-18 12:25:474bfa26be856487eceab1d55e43df1175Virustotal results 46 / 71 (64.79%) 74.125.34.46:443
2020-06-18 10:57:38450e9b6e8e8c6acb77419ef44728dc7fVirustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-18 10:57:38450e9b6e8e8c6acb77419ef44728dc7fVirustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-18 07:00:58340f258a0d231aa32d12d9a19de5a6a7Virustotal results 49 / 73 (67.12%) 74.125.34.46:443
2020-06-18 07:00:58340f258a0d231aa32d12d9a19de5a6a7Virustotal results 49 / 73 (67.12%) 74.125.34.46:443
2020-06-18 06:16:04309204ab2de1c9949f574edf8ee98868Virustotal results 1 / 72 (1.39%) 140.82.118.3:443
2020-06-18 06:16:04309204ab2de1c9949f574edf8ee98868Virustotal results 1 / 72 (1.39%) 185.199.111.153:443
2020-06-18 06:16:04309204ab2de1c9949f574edf8ee98868Virustotal results 1 / 72 (1.39%) 95.143.172.170:443
2020-06-18 06:16:04309204ab2de1c9949f574edf8ee98868Virustotal results 1 / 72 (1.39%) 52.217.46.228:443
2020-06-18 06:16:04309204ab2de1c9949f574edf8ee98868Virustotal results 1 / 72 (1.39%) 140.82.118.3:443
2020-06-18 06:16:04309204ab2de1c9949f574edf8ee98868Virustotal results 1 / 72 (1.39%) 185.199.111.153:443
2020-06-18 06:16:04309204ab2de1c9949f574edf8ee98868Virustotal results 1 / 72 (1.39%) 95.143.172.170:443
2020-06-18 06:16:04309204ab2de1c9949f574edf8ee98868Virustotal results 1 / 72 (1.39%) 52.217.46.228:443
2020-06-18 05:43:042d93d42b1aa2d29781bbc4ff986bb2caVirustotal results 48 / 73 (65.75%) 74.125.34.46:443
2020-06-18 05:43:042d93d42b1aa2d29781bbc4ff986bb2caVirustotal results 48 / 73 (65.75%) 74.125.34.46:443
2020-06-18 05:40:322cce0eaf6eeb90d752f8d19cfbca6f13Virustotal results 48 / 73 (65.75%) 74.125.34.46:443
2020-06-18 05:40:322cce0eaf6eeb90d752f8d19cfbca6f13Virustotal results 48 / 73 (65.75%) 74.125.34.46:443
2020-06-18 05:24:240580ef79e1f4fad6ee3c517434d68e63Virustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-18 05:24:240580ef79e1f4fad6ee3c517434d68e63Virustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-18 05:22:312cf059ee063f2839628ec52d3d3dd38cVirustotal results 48 / 72 (66.67%) 74.125.34.46:443
2020-06-18 05:22:312cf059ee063f2839628ec52d3d3dd38cVirustotal results 48 / 72 (66.67%) 74.125.34.46:443
2020-06-18 04:43:24298f5232934f194c0eab77de4009127aVirustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-18 04:43:24298f5232934f194c0eab77de4009127aVirustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-18 01:02:450429577b65396242f2eddba938307b4cVirustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-18 01:02:450429577b65396242f2eddba938307b4cVirustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-17 23:51:07188f771692c1b86c50f668e5322bf236Virustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-17 23:51:07188f771692c1b86c50f668e5322bf236Virustotal results 50 / 74 (67.57%) 74.125.34.46:443
2020-06-17 22:51:32149a747f3ba3d2d166a9c671600c0149Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-17 22:51:32149a747f3ba3d2d166a9c671600c0149Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-17 21:35:2910c207dff56f9641613ba92ebaa7d6a0Virustotal results 49 / 74 (66.22%) 74.125.34.46:443
2020-06-17 21:35:2910c207dff56f9641613ba92ebaa7d6a0Virustotal results 49 / 74 (66.22%) 74.125.34.46:443

# of entries: 100 (max: 100)