JA3 Fingerprints

You can find further information about the JA3 fingerprint fd80fa9c6120cdeea8520510f3c644ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:fd80fa9c6120cdeea8520510f3c644ac
First seen:2018-03-11 09:34:30 UTC
Last seen:2021-02-27 07:13:47 UTC
Status:Blacklisted
Malware samples:3'825
Destination IPs:320
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-02-27 07:13:47a7336dd7c2f9fc62a60934b8f5cc29c9n/a104.21.47.238:443
2021-02-27 00:39:032c7a7029940e302a50978c624feaa077Virustotal results 43 / 71 (60.56%) 172.67.174.126:443
2021-02-27 00:23:177f6992012a1e12c03b1d9240ee35bc3aVirustotal results 41 / 71 (57.75%) 104.21.47.238:443
2021-02-27 00:13:465c9dec539c10ba7e9284f1b3963e2675Virustotal results 28 / 71 (39.44%) 172.67.174.126:443
2021-02-26 23:43:33999613cece619485aff0d887981f6072n/a172.67.222.98:443
2021-02-26 22:51:496e112af1361cb56127e604effc1aeb0dn/a172.67.222.98:443
2021-02-26 22:46:1583ba08a98d9d75de7944c1319e439665n/a104.21.86.166:443
2021-02-26 22:41:416b7ae35197eb9f1d3d5f783eeb7503b5n/a104.21.86.166:443
2021-02-26 22:41:416b7ae35197eb9f1d3d5f783eeb7503b5n/a172.67.222.98:443
2021-02-26 20:32:54636159690719bef3cceaad7124bd612cVirustotal results 43 / 71 (60.56%) 172.67.174.126:443
2021-02-26 20:32:54636159690719bef3cceaad7124bd612cVirustotal results 43 / 71 (60.56%) 104.21.47.238:443
2021-02-26 20:11:084710a6ee5a6603f68b7a286f31678a01Virustotal results 40 / 71 (56.34%) 172.67.174.126:443
2021-02-26 19:45:011386d0f0757f8bc6f01d86306de5ebfcVirustotal results 41 / 69 (59.42%) 172.67.174.126:443
2021-02-26 17:46:18ae9567a02879555e66ef42d4c2dea06en/a104.21.47.238:443
2021-02-26 14:12:18abe95a48165792c3671de227dd4c0f81Virustotal results 20 / 71 (28.17%) 172.67.222.98:443
2021-02-26 09:55:17a9adaaf411ea923e86a026f49cf11c67Virustotal results 43 / 71 (60.56%) 104.21.12.54:443
2021-02-26 05:35:19a6cf567fbfbfc3442ac404925837c645n/a104.21.47.238:443
2021-02-26 04:35:45a62dfeb8580faf196b46393ee1593a79Virustotal results 41 / 71 (57.75%) 104.21.47.238:443
2021-02-26 03:02:00a24ea825eb6de3468c6aa287ab9e1070n/a104.21.12.54:443
2021-02-26 03:02:00a24ea825eb6de3468c6aa287ab9e1070n/a172.67.193.175:443
2021-02-26 02:35:53948d6015b3234b9c451afb4b3eb067abn/a172.67.131.206:443
2021-02-26 01:50:326abfad6fe6d8180d938c7f4d90732378n/a172.67.222.98:443
2021-02-26 01:43:5993b4886dc8c19b597cbe43899286fb05Virustotal results 40 / 71 (56.34%) 104.21.86.166:443
2021-02-26 00:48:018a9c348648e0f5b39c4d97a6ceb75b3eVirustotal results 18 / 72 (25.00%) 172.67.131.179:443
2021-02-26 00:09:1796febf499eee29fbe7da8ce45ee3c967n/a104.21.47.238:443
2021-02-26 00:03:19898c84f59ed68a97e87ec8cf1e12dd78n/a172.67.222.98:443
2021-02-25 20:22:496ffda3d9c53a84ad9ff900f5cd9ce61eVirustotal results 37 / 71 (52.11%) 104.21.86.166:443
2021-02-25 20:22:496ffda3d9c53a84ad9ff900f5cd9ce61eVirustotal results 37 / 71 (52.11%) 172.67.222.98:443
2021-02-25 20:19:1065df36950666a5c1659207eed15d0baaVirustotal results 36 / 71 (50.70%) 104.21.86.166:443
2021-02-25 19:03:32791343e80568a402f2b7fdfb8a1a4843n/a104.21.47.238:443
2021-02-25 17:55:0065330ebf37a960477278a6310208ca57n/a172.67.222.98:443
2021-02-25 17:13:025ab14f70543fcd5e754d0d9f2ab62d8bn/a104.21.86.166:443
2021-02-25 17:13:025ab14f70543fcd5e754d0d9f2ab62d8bn/a172.67.222.98:443
2021-02-25 16:42:13569f63b4e2c33703a137c940ad83c759n/a172.67.222.98:443
2021-02-25 16:14:562a2a81e54119b00b18edd5c4b33a4cddn/a104.21.86.166:443
2021-02-25 16:13:282cfd796c6736d99736b73697103f5834n/a172.67.222.98:443
2021-02-25 16:13:282cfd796c6736d99736b73697103f5834n/a104.21.86.166:443
2021-02-25 13:30:124e747a9999068efe36f549b1ac5b9402n/a172.67.193.175:443
2021-02-25 13:27:494a84135c80f90fc02673b324691ade44n/a104.21.86.166:443
2021-02-25 13:19:1344b74c682294c6d61da8cbf3fa54ace4n/a172.67.174.126:443
2021-02-25 13:18:07017f89185edbcc03f9e5843937e6fea1n/a172.67.222.98:443
2021-02-25 13:12:530898d8066c368456668fc392b35fe39an/a172.67.222.98:443
2021-02-25 13:12:530898d8066c368456668fc392b35fe39an/a104.21.86.166:443
2021-02-25 12:42:1406f838a0457cdf0512ae9d194b36f030n/a104.21.47.238:443
2021-02-25 12:23:1525da49b61a2850c2d047c9759ff1b3cdn/a172.67.174.126:443
2021-02-25 10:39:263458fbe6e44def1dbc8641db61fd0ab9Virustotal results 51 / 70 (72.86%) 104.21.86.166:443
2021-02-25 08:39:27722d974eb16f1e3831c876f071620c5dn/a104.21.4.81:443
2021-02-25 08:39:27722d974eb16f1e3831c876f071620c5dn/a172.67.131.206:443
2021-02-25 02:42:15fb88e1ea4f1dea0d420d99f452b9fd47Virustotal results 40 / 70 (57.14%) 172.67.222.98:443
2021-02-24 23:11:57f685893633b74a093eaacc7354ef15a6Virustotal results 27 / 69 (39.13%) 104.21.86.166:443
2021-02-24 22:57:09f5c51b2bc6287f70c7c82742e64f2369Virustotal results 44 / 71 (61.97%) 104.21.86.166:443
2021-02-24 22:15:08f375a4f8597c29afd3ea4f43c1ab7066n/a104.21.86.166:443
2021-02-24 21:35:07f25d37ba84bfe69faabf050124a58c14n/a104.21.4.81:443
2021-02-24 14:40:5562a26454f334748eb5c46ceac78a1c77Virustotal results 30 / 66 (45.45%) 172.67.193.175:443
2021-02-24 14:00:29cc9df4df452c3da924f5e2c3ee004f99n/a172.67.222.98:443
2021-02-24 13:45:232cb8b5cc5f8ac454f70d54d5eca100f8n/a172.67.222.98:443
2021-02-24 13:45:232cb8b5cc5f8ac454f70d54d5eca100f8n/a104.21.86.166:443
2021-02-24 12:29:33cec3d1a2398e1f669d1499e6d307b74cn/a104.21.86.166:443
2021-02-24 12:26:498eff99a6e8368a7bd48008fd7251e6f9n/a172.67.222.98:443
2021-02-24 12:12:02f0dbd5a4aeb0b099c153006582933182Virustotal results 47 / 71 (66.20%) 172.67.222.98:443
2021-02-24 10:53:45e9a87fea267a281bf7b34a0041d00f2an/a172.67.131.206:443
2021-02-24 10:53:45e9a87fea267a281bf7b34a0041d00f2an/a104.21.4.81:443
2021-02-24 10:46:11e921e5be398572e7616638cf62db8a46Virustotal results 18 / 71 (25.35%) 172.67.222.98:443
2021-02-24 10:45:31e928b408d68ea072c282f17f5864e1efVirustotal results 35 / 71 (49.30%) 172.67.222.98:443
2021-02-24 10:19:44dd81fd9271285b50a2702d12f4674086n/a172.67.222.98:443
2021-02-24 09:45:32cfdeb97c0fbec1a60883964b2d8d1271n/a104.21.4.81:443
2021-02-24 09:18:21bebabed925b6943df7b06a10d81c3207Virustotal results 37 / 71 (52.11%) 172.67.222.98:443
2021-02-24 06:54:245ad85dedb350b9f8915c309fa5d8fa4bVirustotal results 40 / 71 (56.34%) 172.67.222.98:443
2021-02-24 04:29:43ac9376a5ebdc6e3cb68c14ff4bd05f82Virustotal results 44 / 71 (61.97%) 104.21.86.166:443
2021-02-23 23:03:426a16aab7648144ccfb2c54008eb86b44n/a104.21.86.166:443
2021-02-23 21:37:5119195535e57b9adf0b6293184ab3c9d7n/a172.67.222.98:443
2021-02-23 19:25:39a87cc66b434cedc47bba9f8127b3ae46Virustotal results 41 / 68 (60.29%) 172.67.222.98:443
2021-02-23 19:08:054f037b6724774879ae15640017ce0d68Virustotal results 37 / 71 (52.11%) 104.21.86.166:443
2021-02-23 18:56:531767127a2a4223eec1d2ae514781cc55Virustotal results 37 / 71 (52.11%) 172.67.222.98:443
2021-02-23 09:50:27a4bbb6f2c74d9e6f6996d04a6dcbd1aaVirustotal results 41 / 71 (57.75%) 104.21.86.166:443
2021-02-23 08:29:04acb268b8a6ca42008a629cadddc87207Virustotal results 6 / 70 (8.57%) 77.88.21.158:587
2021-02-23 08:19:59a65ab436f519ab4c9b64d2467b8efbb9Virustotal results 5 / 70 (7.14%) 77.88.21.158:587
2021-02-23 00:51:18a1b70445ef3bebe5564490bdac297734Virustotal results 17 / 71 (23.94%) 104.21.86.166:443
2021-02-22 23:28:409199e1f32de1519871ad03befcb20b0dn/a104.21.86.166:443
2021-02-22 23:17:14767f110e6edf199e506c4570178ce7b2n/a104.21.86.166:443
2021-02-22 23:17:14767f110e6edf199e506c4570178ce7b2n/a172.67.222.98:443
2021-02-22 22:50:345f1fcd8c05c98ed1e9eb138e486c8423n/a172.67.222.98:443
2021-02-22 20:59:58e74eaaec725ff790d39f08cdcc518e54Virustotal results 38 / 70 (54.29%) 104.21.86.166:443
2021-02-22 20:59:39e741cd2c59c83b8141df8ba91ca93a07n/a172.67.222.98:443
2021-02-22 20:54:56e6977dcba74a90effdba5b565a336010Virustotal results 18 / 70 (25.71%) 104.21.86.166:443
2021-02-22 20:54:01e6e89693e1023bbd4794b141886e6d5cVirustotal results 41 / 71 (57.75%) 104.21.86.166:443
2021-02-22 20:31:34e41cea1cb6ade38b5bea60b231087c76Virustotal results 38 / 71 (53.52%) 172.67.222.98:443
2021-02-22 20:14:21e1de89cc89f9027e1018d4becd140a58n/a104.21.86.166:443
2021-02-22 20:10:47e0ebec8211a8ec646ac570163092db36Virustotal results 40 / 71 (56.34%) 104.21.86.166:443
2021-02-22 19:20:18dd9737438d67d9368e1e7a3727a35d8an/a104.21.86.166:443
2021-02-22 18:55:35db64dcb96bca437727e7024a2dfb1f35n/a104.21.86.166:443
2021-02-22 18:19:11d590b3bc377cb92dcd247df7bad5b261n/a104.21.86.166:443
2021-02-22 18:14:52d4fbb7c3323939e1d51345d2ca16e72eVirustotal results 45 / 61 (73.77%) 104.21.12.54:443
2021-02-22 18:14:52d4fbb7c3323939e1d51345d2ca16e72eVirustotal results 45 / 61 (73.77%) 172.67.193.175:443
2021-02-22 18:14:47d3d56b611d703fdb87c496eab5f8c12bVirustotal results 41 / 70 (58.57%) 172.67.222.98:443
2021-02-22 18:09:48d3db4fe178f027b85063c6f2069e1a2dVirustotal results 38 / 69 (55.07%) 104.21.86.166:443
2021-02-22 17:14:52c2e1abc1e2f0d7eb44991ffc18ff6d05n/a104.21.10.190:443
2021-02-22 16:07:48c116f9c730bd3f0b8a89336e9bf04b66Virustotal results 50 / 70 (71.43%) 104.21.4.81:443
2021-02-22 16:07:48c116f9c730bd3f0b8a89336e9bf04b66Virustotal results 50 / 70 (71.43%) 172.67.131.206:443
2021-02-22 15:57:17c17fa2b73196e1ca682b520ccb401403Virustotal results 41 / 71 (57.75%) 104.21.86.166:443

# of entries: 100 (max: 100)