JA3 Fingerprints

You can find further information about the JA3 fingerprint fd80fa9c6120cdeea8520510f3c644ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:fd80fa9c6120cdeea8520510f3c644ac
First seen:2018-03-11 09:34:30 UTC
Last seen:2021-08-11 12:34:00 UTC
Status:Blacklisted
Malware samples:10'162
Destination IPs:676
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-11-09 10:46:3334b08c3388e880f9acc656379f95741bn/a1.201.145.167:443
2024-11-09 05:11:3749f6abbb69d4e01d3cf6b300368ead63n/a172.67.74.82:443
2024-11-09 05:11:3749f6abbb69d4e01d3cf6b300368ead63n/a10.0.7.49:49808
2024-11-09 05:11:3749f6abbb69d4e01d3cf6b300368ead63n/a10.0.7.49:49802
2024-11-09 05:11:3649f6abbb69d4e01d3cf6b300368ead63n/a10.0.7.49:49804
2024-10-20 16:45:10912fcde743b191fa5fef3db31e47ee44n/a199.59.243.227:443
2024-10-12 15:14:1979b940cedb20098990864f8f0a60372fn/a112.216.238.82:587
2024-10-05 09:46:35a12d2ff781ebe036e06901d0fd4276b0n/a104.26.3.27:443
2024-10-05 09:46:35a12d2ff781ebe036e06901d0fd4276b0n/a75.2.88.159:443
2024-10-04 10:59:18574e440a15bc2951105b5b5506edd82dn/a210.0.255.160:443
2024-10-02 17:28:061b7108837c85717b2a8ca08f6eb305f4n/a188.114.96.0:443
2024-10-02 17:28:061b7108837c85717b2a8ca08f6eb305f4n/a104.26.2.27:443
2024-10-02 17:28:051b7108837c85717b2a8ca08f6eb305f4n/a106.11.172.9:443
2024-10-01 10:20:5988fe164cba933948dce0706366c0d932n/a104.26.3.27:443
2024-09-20 21:53:143bf466ca0fcdb4451cc4b3842f4ef48an/a223.6.6.6:443
2024-09-18 02:45:2105abe802283256ea65e07a532c1587c5n/a223.6.6.6:443
2024-09-11 22:08:243144d6e044cf2e13a669ed8cef848cfen/a185.15.59.224:443
2024-09-09 01:29:0260ec502046b8c0d787ad3b5e431c9126n/a112.216.238.82:587
2024-09-07 09:26:035ef3d2ffc37b337f07b51befa2157152n/a188.114.97.7:443
2024-09-07 09:26:035ef3d2ffc37b337f07b51befa2157152n/a188.114.97.12:443
2024-08-27 03:40:534949fb17ffad8f7b164e2c353dad8533n/a188.114.97.0:443
2024-08-27 01:58:27dfbb73473df7e7ce474dd7c95e0d7439n/a104.21.65.98:443
2024-08-27 01:58:27dfbb73473df7e7ce474dd7c95e0d7439n/a104.21.65.98:443
2024-08-18 18:59:1236d8650bb8cbc1fbdef228aaed55875bn/a142.250.203.100:443
2024-08-18 10:49:2665b3746b1bd2928ab5053338a62bd398n/a142.250.203.100:443
2024-08-18 10:49:2465b3746b1bd2928ab5053338a62bd398n/a104.192.110.226:443
2024-08-17 05:55:344f41f1bec3b304620b8bf185c28ccbf4n/a47.110.177.0:443
2024-07-30 13:48:14f8758928f2591948677446e2af7287cdn/a223.6.6.6:443
2024-07-30 00:19:196cce3ef5573613c8d5e4c2a95ef3dec0n/a223.6.6.6:443
2024-07-28 02:29:03967594c6ff1ecf1801a4e1b2a9c2a2dbn/a223.6.6.6:443
2024-07-27 08:47:053b873dbfc4ffeadfefb3b4126b099770n/a159.253.43.125:443
2024-07-27 02:46:11041a9861dfa809780908ef495e419f54n/a159.253.43.125:443
2024-07-26 23:02:311f0a78af0091b6fb2a4ca253c92eea34n/a159.253.43.125:443
2024-07-26 21:33:54215ff881f4fbdc02f76646c6ec2b1d35n/a223.6.6.6:443
2024-07-16 19:24:3681272757b28dbc6a6cfc3c947149e9c3n/a10.0.16.137:50058
2024-07-16 19:24:3281272757b28dbc6a6cfc3c947149e9c3n/a10.0.16.137:49974
2024-07-16 19:24:3181272757b28dbc6a6cfc3c947149e9c3n/a157.240.247.63:443
2024-07-16 19:24:2981272757b28dbc6a6cfc3c947149e9c3n/a10.0.16.137:50152
2024-07-16 19:24:2881272757b28dbc6a6cfc3c947149e9c3n/a157.240.201.63:443
2024-07-16 19:24:2381272757b28dbc6a6cfc3c947149e9c3n/a10.0.16.137:49984
2024-07-16 06:45:021eb4916eb61ff70dd38e1c30c4a2a4e1n/a23.44.69.220:443
2024-07-11 10:39:1934f671122ce4374a47905e0681b8f6fcn/a178.218.166.219:443
2024-06-23 18:49:3940723b28cc176da57f299bbe8fbb9541n/a119.188.174.59:443
2024-06-20 03:05:22888cbe280bd1aa39d249149d850d7795n/a54.243.122.21:443
2024-06-20 03:05:22888cbe280bd1aa39d249149d850d7795n/a10.0.14.122:50004
2024-06-20 03:05:22888cbe280bd1aa39d249149d850d7795n/a18.210.41.96:443
2024-06-20 03:05:15888cbe280bd1aa39d249149d850d7795n/a10.0.14.122:50012
2024-05-30 21:41:483e2a1aec80ff6769adc92a336c540c92n/a185.15.58.224:443
2024-05-28 21:41:37d02e65b1677f7525f8a48f01f36a1e29n/a104.21.30.56:443
2024-05-28 16:02:13b4d8b9ea4ed9158c571197282bff177cn/a204.152.214.30:443
2024-05-28 14:14:24b245bc229c94f444671aa77abd69f04cn/a188.114.97.7:443
2024-05-24 22:08:549ac213fccdac495178b2006a968c4c5fn/a185.15.59.224:443
2024-05-23 22:57:381064f3c816fe9fd38b29ba9cea8f16f3n/a223.6.6.6:443
2024-05-23 09:22:2824d15c67481de31e5d6b70bc4047d83bn/a74.125.128.108:587
2024-05-23 06:11:011efd7557d0e066fb1bf260b2319d5386n/a223.6.6.6:443
2024-05-02 04:13:5628d6e14f891cbb4066f9a4bce42d3b6fn/a185.15.59.224:443
2024-05-01 14:04:21846ffd2f63a58450e85eff8630a9ab5bn/a185.15.58.224:443
2024-05-01 12:49:2572ec10a13b84c0ef4683f3bbf2061ba9n/a185.15.58.224:443
2024-05-01 09:53:415ceaff3f39f35f349cbeba1c190d6c08n/a185.15.58.224:443
2024-04-09 09:25:46c3a9f9976323d71d4ce991fac2865d47n/a185.15.59.224:443
2024-04-02 05:27:44e2f42f63293cd92bed0e4eeb448b1c08Virustotal results 1 / 71 (1.41%) 129.152.18.210:443
2024-03-19 17:53:03412c2bb2d0bcca618439dc392f183101n/a158.178.196.104:443
2024-03-19 17:53:03412c2bb2d0bcca618439dc392f183101n/a129.152.12.230:443
2024-03-17 00:17:3617611d6061c18519a160dad3d2316b63Virustotal results 41 / 73 (56.16%) 185.199.108.133:443
2024-03-13 21:53:2300727e03073d7f9996e84208fe0db687Virustotal results 27 / 71 (38.03%) 77.88.21.158:587
2024-03-13 11:04:31cdbde6fd857d07e827984443486bddf5n/a185.199.108.133:443
2024-03-09 05:29:30e8bdcf8257251bcff20360f549c6b7e8n/a188.114.97.3:443
2024-03-03 18:36:13a8cd0364ae554990297c1021287489e8n/a104.26.3.27:443
2024-03-03 18:36:13a8cd0364ae554990297c1021287489e8n/a31.192.214.3:443
2024-03-02 17:05:0513c0b0d696cbce1bb4ea4f527b2cf61cVirustotal results 52 / 70 (74.29%) 104.26.2.27:443
2024-02-29 15:53:40dceb53d6eb43861b9a48d349b7d4aec2n/a172.67.74.82:443
2024-02-29 15:53:40dceb53d6eb43861b9a48d349b7d4aec2n/a35.224.177.189:443
2024-02-24 18:58:0876559f5d95e5e4bda490a66f54e46b50n/a34.149.36.179:443
2024-02-24 18:58:0776559f5d95e5e4bda490a66f54e46b50n/a172.67.74.82:443
2024-02-24 18:58:0676559f5d95e5e4bda490a66f54e46b50n/a104.26.2.27:443
2024-02-24 18:58:0576559f5d95e5e4bda490a66f54e46b50n/a35.212.7.114:443
2024-02-21 09:17:14a831c00ec364bbb438b91466de9e18cdn/a198.12.216.33:443
2024-02-21 09:17:14a831c00ec364bbb438b91466de9e18cdn/a198.12.216.33:443
2024-02-21 09:17:14a831c00ec364bbb438b91466de9e18cdn/a198.12.216.33:443
2024-02-17 03:52:05b667bdd4c1a17f525ea8e090b6e40ffcn/a104.26.3.27:443
2024-02-17 03:52:02b667bdd4c1a17f525ea8e090b6e40ffcn/a31.186.86.189:443
2024-02-03 22:21:393bd2d3dae2d3937d0bb42d99111b797an/a209.222.0.52:443
2024-01-29 10:00:59d37334f21a264c220e69b9dc580970e5n/a185.98.5.230:443
2024-01-29 10:00:59d37334f21a264c220e69b9dc580970e5n/a77.222.62.138:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a94.73.147.54:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a188.114.96.3:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a31.31.198.54:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a172.67.218.42:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a31.31.198.123:443
2024-01-29 07:54:01a6e1827a5305bbc26cf3ade5a00eaa45n/a79.98.29.33:443
2024-01-28 21:13:53e566ec98fd094eac611ee7f52bf5ad5cn/a192.124.249.67:443
2024-01-28 21:13:53e566ec98fd094eac611ee7f52bf5ad5cn/a23.227.38.74:443
2024-01-28 21:13:53e566ec98fd094eac611ee7f52bf5ad5cn/a198.49.23.144:443
2024-01-28 21:13:53e566ec98fd094eac611ee7f52bf5ad5cn/a45.56.114.190:443
2024-01-28 21:13:52e566ec98fd094eac611ee7f52bf5ad5cn/a176.9.64.230:443
2024-01-28 21:13:52e566ec98fd094eac611ee7f52bf5ad5cn/a23.227.38.33:443
2024-01-28 17:52:30a1fa3413660030d7d473433712d740fdn/a172.67.202.60:443
2024-01-25 22:42:345453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51922
2024-01-25 22:42:345453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51845
2024-01-25 22:42:345453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51922

# of entries: 100 (max: 100)