JA3 Fingerprints

You can find further information about the JA3 fingerprint fd80fa9c6120cdeea8520510f3c644ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:fd80fa9c6120cdeea8520510f3c644ac
First seen:2018-03-11 09:34:30 UTC
Last seen:2021-05-08 02:49:53 UTC
Status:Blacklisted
Malware samples:4'552
Destination IPs:340
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2021-05-08 02:49:539423ada143858307aa28fdde2928a27fVirustotal results 41 / 69 (59.42%) 172.67.193.175:443
2021-05-08 01:17:346a1e645cde48cc1f2907cca4e37a998dVirustotal results 31 / 70 (44.29%) 172.67.222.98:443
2021-05-08 00:43:4558dd01494ddd3319be408c2f638b58d8Virustotal results 38 / 69 (55.07%) 104.21.47.238:443
2021-05-08 00:06:104d572d2468dbae64c41adc4833919decVirustotal results 38 / 69 (55.07%) 172.67.174.126:443
2021-05-07 23:17:333954599dfa409668000e44e1c85d351bVirustotal results 49 / 72 (68.06%) 104.21.12.54:443
2021-05-07 22:59:183866a870c87ad509fb0f8fb4e9e67b12Virustotal results 13 / 68 (19.12%) 104.21.55.114:443
2021-05-07 21:08:511fe9cfadc9520d710e2be46c97f123a9Virustotal results 41 / 70 (58.57%) 172.67.174.126:443
2021-05-07 14:24:26f627dffa98c33fa08872449e4711a04fVirustotal results 42 / 70 (60.00%) 104.21.47.238:443
2021-05-07 14:02:50f496c645d8ee1e59da729b6015a28940n/a172.67.171.32:443
2021-05-07 13:35:48f1ec7b0e8e774bed2ab04ed59c8b962en/a172.67.171.32:443
2021-05-07 11:56:51e5bf3794980c82b1101226989aa3dbfen/a104.21.55.114:443
2021-05-07 09:19:48d9e8603434e575c2d011f3f663b78018Virustotal results 13 / 69 (18.84%) 104.21.55.114:443
2021-05-07 09:01:25d818c2ef4466baf709815237e25dda80n/a172.67.171.32:443
2021-05-07 05:33:04c0417551b77db1487235f1e6db045aean/a104.21.55.114:443
2021-05-07 05:26:27bed73f1661559a112ab4b06ec1145013Virustotal results 44 / 70 (62.86%) 172.67.193.175:443
2021-05-07 03:06:019340f8911ea4e724b63b24ef6b4b5bfaVirustotal results 13 / 67 (19.40%) 172.67.171.32:443
2021-05-07 02:33:568763fe97ad794ee0f3eea486a124f476Virustotal results 15 / 70 (21.43%) 172.67.171.32:443
2021-05-07 01:21:076c3ba47ac0a504b6b23d65e1c24f192bVirustotal results 33 / 70 (47.14%) 104.21.12.54:443
2021-05-06 23:38:5740cdd90b044ca0635b7df677d81721d7Virustotal results 39 / 70 (55.71%) 104.21.12.54:443
2021-05-06 23:38:5740cdd90b044ca0635b7df677d81721d7Virustotal results 39 / 70 (55.71%) 172.67.193.175:443
2021-05-06 21:20:2754414fc6a5b4b3dbb7173af5591cd5a9Virustotal results 41 / 67 (61.19%) 104.21.4.81:443
2021-05-06 20:35:0844a7ae60b13c1ca48603e05f6670bed3Virustotal results 4 / 69 (5.80%) 104.21.55.114:443
2021-05-06 19:37:074c8dbfdbc2a3a6f6e7a2a68c86483215n/a104.21.55.114:443
2021-05-06 14:48:17bd4e56d9ead6b027a72489528279f2e8Virustotal results 13 / 69 (18.84%) 172.67.171.32:443
2021-05-06 09:42:13b0e5406a8c17018d5da481e53589f7ceVirustotal results 11 / 70 (15.71%) 172.67.171.32:443
2021-05-06 03:46:177b3d503ff4350b750bb6394fc9b3ce23n/a172.67.171.32:443
2021-05-06 03:25:015a1ea4723c91ba83a4a18dfda7dc0c93n/a104.21.55.114:443
2021-05-06 02:02:1244554dbf5155134221645d9f49b428cdVirustotal results 45 / 69 (65.22%) 104.21.4.81:443
2021-05-06 01:59:12516ad2f5a91bafb5debfa3cec49bd7aaVirustotal results 39 / 69 (56.52%) 172.67.174.126:443
2021-05-06 01:52:463e4c3e8ff8d1915b8e933d8716d9f2bcVirustotal results 42 / 69 (60.87%) 104.21.4.81:443
2021-05-06 00:50:062486779ccbed2c93fd149a815005f960Virustotal results 41 / 68 (60.29%) 104.21.12.54:443
2021-05-05 22:59:381250088d9165d7456382275c7f47ba7aVirustotal results 22 / 69 (31.88%) 172.67.171.32:443
2021-05-05 22:55:151d6caf0d77fb9d74e2db2315e07bf0a8Virustotal results 39 / 71 (54.93%) 172.67.174.126:443
2021-05-05 11:28:5118f16e778d91ef0cd466873b19fd8be4Virustotal results 15 / 69 (21.74%) 172.67.171.32:443
2021-05-05 09:31:51020ba176a4926a41a411ebc869424c92Virustotal results 42 / 70 (60.00%) 172.67.222.98:443
2021-05-05 07:43:072c0b80d5c660be518d18719be59ba381n/a172.67.171.32:443
2021-05-05 06:08:534d032f919af66db8a3e3520a6f7f2757Virustotal results 37 / 64 (57.81%) 104.21.12.54:443
2021-05-05 01:19:12394b23de98208b6e144074aa31c0f1a2n/a104.21.55.114:443
2021-05-04 12:47:41ff780acadff8dc77da676e3b66aeae2aVirustotal results 45 / 70 (64.29%) 104.21.86.166:443
2021-05-04 11:53:36f944d186288f17ddfd38c69574ba783dVirustotal results 48 / 70 (68.57%) 172.67.222.98:443
2021-05-04 07:57:57e0e7ddd64a6ae22e8e09a637d9b2d5d4n/a172.67.131.206:443
2021-05-04 07:13:45dc78fff041e2b1d440c0edf3278c1728n/a172.67.193.175:443
2021-05-04 06:59:24d982d18831771be09ed85738bbb23c01n/a172.67.171.32:443
2021-05-04 06:07:45d587b9799a5fef506b6487e766fe7b05n/a104.21.55.114:443
2021-05-03 22:47:434c91a49867541a9f5fc850c0d476be32n/a172.67.171.32:443
2021-05-03 16:01:44b476a5354702eafac0dbd888a7174c1dn/a172.67.171.32:443
2021-05-03 15:01:38abe322a965505231f52b28564198e292n/a198.54.117.244:443
2021-05-03 13:14:05a709b9afb89a71a0127807afeefbe43cVirustotal results 38 / 71 (53.52%) 172.67.222.98:443
2021-05-03 13:11:29a0b9cde89b09356c1831ca614c41b6b5Virustotal results 48 / 69 (69.57%) 172.67.193.175:443
2021-05-03 12:57:479a49c2e2fc6ad84641078eae3e6f72a7Virustotal results 40 / 70 (57.14%) 172.67.193.175:443
2021-05-03 12:40:33959f942b1da18f4416c4caf2458eb137Virustotal results 49 / 71 (69.01%) 172.67.131.206:443
2021-05-03 00:14:5964688c736e25e50fc859b6766b6ed0e9Virustotal results 28 / 70 (40.00%) 172.67.131.206:443
2021-05-02 22:30:203f20ebc94f30236b230bc440ddaf0c14n/a172.67.193.175:443
2021-05-02 22:30:203f20ebc94f30236b230bc440ddaf0c14n/a104.21.12.54:443
2021-05-02 21:31:44263ef08c96feb34cdacec1e555b0bf23n/a104.21.10.190:443
2021-05-02 18:45:547b59cd9ef8a72c6537a3b7b37e16dd65n/a172.67.174.126:443
2021-05-01 20:26:287e7da4e8f56c93813e3e208a45f10586Virustotal results 42 / 70 (60.00%) 172.67.174.126:443
2021-05-01 13:57:45e56aa7acd20e11d46a8e4bc5e5c6a1feVirustotal results 50 / 68 (73.53%) 172.67.131.206:443
2021-05-01 12:16:39b8d66f4cc2bfb3e64e6388f117cb47a4Virustotal results 42 / 70 (60.00%) 104.21.12.54:443
2021-05-01 12:16:39b8d66f4cc2bfb3e64e6388f117cb47a4Virustotal results 42 / 70 (60.00%) 172.67.193.175:443
2021-05-01 09:04:58534ce2c6ac787f5dd26a3b06660de603Virustotal results 35 / 69 (50.72%) 104.21.4.81:443
2021-05-01 09:01:29594ee829bce76dbe67d6d9f2c633ed91Virustotal results 32 / 72 (44.44%) 198.54.117.244:443
2021-04-30 10:20:19e474bb6965a55a30845c0821445d6b0bn/a172.67.174.126:443
2021-04-30 06:07:29fbf370ffcda40172e489e4cb64c3cc0cn/a172.67.174.126:443
2021-04-30 05:32:21eafa77dfc4ef5b5165dc80f865b8b74an/a104.21.86.166:443
2021-04-30 05:24:54e7acaccca43eef84dc609e242f7f0ff1Virustotal results 11 / 70 (15.71%) 172.67.171.32:443
2021-04-30 01:54:50d9df6855825ba6cbc8357c652cae925dn/a104.21.47.238:443
2021-04-30 00:03:51c90a7f91cbe0f2e3cff93e2c6a6571eaVirustotal results 40 / 70 (57.14%) 104.21.86.166:443
2021-04-29 18:07:52bcb57f7efa231a9a2b265d69f6b33dabn/a104.21.55.114:443
2021-04-29 14:17:5289fd2152dda51a19db69c39c034b1259Virustotal results 46 / 70 (65.71%) 172.67.131.206:443
2021-04-29 14:17:42896bd9720fd443e9534a15eb451cb8c1Virustotal results 49 / 66 (74.24%) 172.67.174.126:443
2021-04-29 12:02:57486fe0073766bc15f30e203fb246729fn/a172.67.174.126:443
2021-04-29 12:01:063087902812533eff7f072c387bb5146eVirustotal results 38 / 69 (55.07%) 104.21.86.166:443
2021-04-29 11:06:054222c1696198d9944dbd7a60325cece2Virustotal results 40 / 70 (57.14%) 104.21.47.238:443
2021-04-29 09:40:18224f6a997aa2b1b4bc9304062dd6908cn/a172.67.131.206:443
2021-04-29 05:02:00f21d63e5f5e33c98bd6efa3e3b8b6a3aVirustotal results 40 / 70 (57.14%) 172.67.174.126:443
2021-04-29 05:02:00f21d63e5f5e33c98bd6efa3e3b8b6a3aVirustotal results 40 / 70 (57.14%) 104.21.47.238:443
2021-04-28 05:48:5578777b3d8ac23076f569b453eedea765n/a104.21.55.114:443
2021-04-27 23:05:5289ce1e4a08e138e9bc7e74063e8a50a7n/a104.21.55.114:443
2021-04-26 16:03:096d29244d5c88c3ac929ad2f09953ca4fVirustotal results 24 / 70 (34.29%) 104.21.10.190:443
2021-04-26 15:30:121c1def6679e2ab492d6d0664a93ba4f1Virustotal results 49 / 72 (68.06%) 172.67.193.175:443
2021-04-26 14:40:49e7774c77f13997aa9ef9e43fa6a8b238Virustotal results 41 / 71 (57.75%) 104.21.4.81:443
2021-04-26 14:40:49e7774c77f13997aa9ef9e43fa6a8b238Virustotal results 41 / 71 (57.75%) 172.67.131.206:443
2021-04-26 14:31:57e4ab953208fcb9778205758725825cceVirustotal results 54 / 73 (73.97%) 104.21.10.190:443
2021-04-26 13:22:09b2773ada1c0b1fcefba90ed5a7fcc184Virustotal results 39 / 69 (56.52%) 172.67.222.98:443
2021-04-26 12:03:304f3d27b250454ca1097e0f7b7e175495Virustotal results 40 / 66 (60.61%) 172.67.131.206:443
2021-04-26 08:01:355c72da4f983917abf73e7901a791b1c6Virustotal results 39 / 68 (57.35%) 104.21.47.238:443
2021-04-26 08:01:355c72da4f983917abf73e7901a791b1c6Virustotal results 39 / 68 (57.35%) 172.67.174.126:443
2021-04-26 05:59:34c035e84ba8d23cc989f6321eb3749f19Virustotal results 34 / 71 (47.89%) 104.21.86.166:443
2021-04-25 10:13:148eac16fe0acc66197f1f67259881179fn/a172.67.193.175:443
2021-04-25 10:13:148eac16fe0acc66197f1f67259881179fn/a104.21.12.54:443
2021-04-25 08:04:2346f5e014d7a374360b4f2ca28e951945Virustotal results 35 / 70 (50.00%) 172.67.131.206:443
2021-04-25 07:17:352e5589565c5a9a23948733e138988638Virustotal results 43 / 69 (62.32%) 104.21.86.166:443
2021-04-24 13:31:30ffeae52dbc5d6e9c45283df3d0ffcd02Virustotal results 39 / 67 (58.21%) 172.67.174.126:443
2021-04-24 12:41:37f310a078639de07c01c07fc904e44091Virustotal results 37 / 69 (53.62%) 172.67.222.98:443
2021-04-23 21:00:26fef6cc469625b7234aae41b7fc81afc0Virustotal results 50 / 68 (73.53%) 104.21.4.81:443
2021-04-23 21:00:26fef6cc469625b7234aae41b7fc81afc0Virustotal results 50 / 68 (73.53%) 172.67.131.206:443
2021-04-23 18:33:209215628fbcd78541691c49656cf5164eVirustotal results 37 / 70 (52.86%) 104.21.47.238:443
2021-04-23 18:33:209215628fbcd78541691c49656cf5164eVirustotal results 37 / 70 (52.86%) 172.67.174.126:443
2021-04-23 17:28:1363d03a540e47eb2ff2b6cb4096be357dn/a104.21.86.166:443

# of entries: 100 (max: 100)