JA3 Fingerprints

You can find further information about the JA3 fingerprint fd80fa9c6120cdeea8520510f3c644ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:fd80fa9c6120cdeea8520510f3c644ac
First seen:2018-03-11 09:34:30 UTC
Last seen:2021-08-11 12:34:00 UTC
Status:Blacklisted
Malware samples:10'042
Destination IPs:598
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-06-03 14:47:0830573eb4aff70bf8bd8a1232a4f477b8Virustotal results 45 / 69 (65.22%) 172.67.150.157:443
2023-06-01 08:21:16cb1363c3d036a0c0a4a1004b33e18e9en/a163.181.92.229:443
2023-05-27 00:30:2625705b717c327734400c09c83d350a90n/a163.181.92.230:443
2023-05-25 09:14:361d7804e2d720b5a6ee8f33e467bc7a32n/a47.246.48.210:443
2023-05-24 19:58:510ef4b4837bac6a4ea51804182b2857ecVirustotal results 58 / 71 (81.69%) 163.181.92.231:443
2023-05-23 20:56:28a69175631a8b476f657c044566c2738cn/a163.181.92.230:443
2023-05-22 06:39:24052d5c88455df4088dbe8a736fbaddecn/a47.246.48.209:443
2023-05-22 04:58:01aef891e0ab5190459c5cc9844ca25dddn/a163.181.92.225:443
2023-05-22 02:35:33a9a8c8070e293b0f3897f54200adf076n/a47.246.48.207:443
2023-05-22 02:35:33a9a8c8070e293b0f3897f54200adf076n/a47.246.48.207:443
2023-05-21 07:13:37fd052ac5b308bb570a38fee8d24a33aen/a3.64.163.50:443
2023-05-21 06:18:30f9a4f94bd472444004148a4d6e95fc34n/a188.114.96.0:443
2023-05-21 06:15:33fb3dad5ec0119d4d85410a402dc57c7dn/a188.114.97.7:443
2023-05-19 08:50:58c9668f9e36188c279dcef78aa202c04an/a163.181.92.230:443
2023-05-18 03:35:07a89da0e319e8180517ec7b18de7925a6n/a129.146.39.65:443
2023-05-17 02:02:26c5e01937816655fa52a88cd0d8e251b9n/a163.181.57.208:443
2023-05-15 20:32:53a3744e893d622db09a9d1f22c7b2e683Virustotal results 55 / 70 (78.57%) 163.181.57.212:443
2023-05-14 23:55:58ad8d785cd68af53a6d4dbaa7aebcaeecVirustotal results 60 / 71 (84.51%) 47.246.48.205:443
2023-05-11 02:59:452aa3da7ebe29956ec5e5670370a801f8n/a188.114.96.3:443
2023-05-10 19:17:4508bfd22dd88d08758f4a0cd447670d6bn/a47.246.50.224:443
2023-05-09 16:06:2846fb7cafdf2dbb555201cfaaf104c1d3Virustotal results 18 / 67 (26.87%) 185.58.223.169:587
2023-05-08 19:55:390eadcf2f819e1e469696b90c572a854cVirustotal results 61 / 70 (87.14%) 163.181.57.214:443
2023-05-08 12:45:03aa2b37ffc59774a38a558ce19c6c1564n/a47.246.23.104:443
2023-05-08 12:40:37aa09fc4d9a4dfc2d35591fce3923a7bbn/a163.181.57.210:443
2023-05-07 15:58:3906c5f62a6c358cfe2e4df12bea5a32e7Virustotal results 57 / 70 (81.43%) 163.181.57.207:443
2023-05-05 20:27:223fc864f92f06b974b0c31ddee104e94an/a172.67.152.176:443
2023-05-05 17:16:2503fbbcbb9a98aac1dc6c2bea0c64589cVirustotal results 52 / 70 (74.29%) 188.114.97.0:443
2023-05-05 17:16:2503fbbcbb9a98aac1dc6c2bea0c64589cVirustotal results 52 / 70 (74.29%) 104.21.72.158:443
2023-05-05 06:46:14c351aa48e4217019ffc4d48495b38d0dn/a163.181.92.227:443
2023-05-04 22:00:47bd0e6ce6aeaa5d341994a6c3e5706ebfn/a172.67.152.176:443
2023-05-04 14:39:32afc0d1baab01cbb273945d097e005decn/a188.114.97.7:443
2023-05-04 10:52:4814e20591f1841c052eecf65e54e4fbfdn/a188.114.96.3:443
2023-05-03 16:51:497f8363f15b2be3e10368f041281ba9a0n/a188.114.97.7:443
2023-05-03 15:01:2624b73b7b1d4318335b29bf6a45e2b2aaVirustotal results 45 / 69 (65.22%) 104.21.30.56:443
2023-05-03 14:56:2308e712d803a49a35a6951041dc30d793Virustotal results 36 / 70 (51.43%) 188.114.97.7:443
2023-05-02 17:58:53810b2914fff62597eec2f06befd2c9d4n/a104.21.30.56:443
2023-05-02 17:01:44561593fe189734d4b1c7f8870c0b4e75Virustotal results 44 / 67 (65.67%) 172.67.150.157:443
2023-05-02 14:14:47b9e7154f414152c37e56a8a892c8452dn/a199.59.243.223:443
2023-05-01 20:36:214a510a033ab1e0869ddb36d82687d160n/a188.114.96.3:443
2023-05-01 07:06:10800a00b7397d80a8f0065878fd6d82f3n/a104.21.72.158:443
2023-05-01 02:28:32b4041cf8281d0d2e6dd5e6b7bbd5ab62n/a47.246.48.210:443
2023-04-30 21:57:582f81f3711f29d22b9252ac781ed3bd40n/a104.21.30.56:443
2023-04-30 20:39:2303a86d17d0dcced6754c568dc15b8375n/a188.114.96.3:443
2023-04-30 17:56:28834dea13dde743913f5ed90f6fbcceb7n/a104.21.30.56:443
2023-04-30 16:44:43c3aa3563d767d2047baf224cf84ec93fn/a47.246.48.205:443
2023-04-30 12:10:22b9c0b30525b4d0261604b43b254a0b75n/a188.114.96.0:443
2023-04-30 09:00:44aafca5165eac1153a976858f683f04can/a47.246.23.101:443
2023-04-30 07:56:49aa71aef140e738f333e5ab138e907773n/a47.246.23.104:443
2023-04-29 06:55:09a7e4c70ee6603d003005e106036d681an/a129.152.2.199:443
2023-04-29 04:26:37a6d5bb4e7313c84f27431e7fac7c7116n/a47.246.48.210:443
2023-04-28 17:02:4494902f02cef1dee9351d746cbb558e36n/a104.21.30.56:443
2023-04-28 15:16:340557ec48852ca256ca5b3fd08561e50dVirustotal results 56 / 70 (80.00%) 163.181.57.213:443
2023-04-27 08:15:120dca769db9f67f8895854ccf7d5f0ab2n/a163.181.57.214:443
2023-04-26 22:25:341f16a225b9a0827636b4864af97fb570n/a47.246.23.101:443
2023-04-26 00:41:012fc5fa4a8728ac2fe77c5b2140108c61n/a163.181.57.211:443
2023-04-25 12:08:36b6d73a5be9feb25d94262f824d5fdcd4n/a47.246.48.211:443
2023-04-24 16:10:0508b2dc273d488c2345b8ff9a6bf9ba1cn/a47.246.48.205:443
2023-04-24 11:54:34b8bf74197304ead22d413f20d165f739n/a54.241.188.167:443
2023-04-24 09:13:0376389e5a5691c504aa175c002135398bn/a188.114.96.3:443
2023-04-23 13:58:246b7d90168f4e1e61831473f3f94ad151n/a104.21.30.56:443
2023-04-23 07:38:35075cb60ea7f11743963683999b89dc60n/a104.21.30.56:443
2023-04-23 07:10:483b7876b32152073b490ae255686fce5aVirustotal results 42 / 68 (61.76%) 188.114.96.7:443
2023-04-23 06:59:310aabe80182c291b3655637efcfbfda98Virustotal results 52 / 70 (74.29%) 199.59.243.223:443
2023-04-22 00:11:15ab3156fe05b9fb9a092ae49e67f11c67n/a188.114.97.0:443
2023-04-21 21:55:207596110b4695e71339b45f7f4b0145a9n/a199.59.243.223:443
2023-04-20 17:37:260fee2a085ba96f61646b621e203ed08en/a163.181.57.213:443
2023-04-20 13:23:117cccbda7fbbcd18e9ee1036a8acbd696n/a199.59.243.223:443
2023-04-20 04:23:44c20046a690bff19c4e8bb879d58d5f8dn/a163.181.57.210:443
2023-04-18 23:57:05a64bae88b1209635729c880c417a6154n/a163.181.56.158:443
2023-04-18 20:10:001befca12f57a30929510ed141a9682cen/a163.181.57.212:443
2023-04-17 18:22:08121712cfcb01aa3a02d9d73fae1b9e7eVirustotal results 19 / 70 (27.14%) 211.110.195.25:443
2023-04-17 18:22:08121712cfcb01aa3a02d9d73fae1b9e7eVirustotal results 19 / 70 (27.14%) 211.110.195.28:443
2023-04-17 18:22:08121712cfcb01aa3a02d9d73fae1b9e7eVirustotal results 19 / 70 (27.14%) 211.49.225.10:443
2023-04-15 20:47:35b484836f777234232573ba63d887f29bn/a188.114.97.7:443
2023-04-15 16:38:21693a024bb143d940be6cf02863fec917n/a199.59.243.223:443
2023-04-15 12:55:50aa8fcf4cc6e22312952109c2930e0696n/a172.67.150.157:443
2023-04-15 06:10:06be3bb32dd26d8f417d14a3349e867f19n/a188.114.97.7:443
2023-04-14 18:58:4440d702b8b8cd7dad3661718a2998532bn/a188.114.97.7:443
2023-04-14 12:03:21fc633619c9ed8cc023c3333edc2b97f0n/a188.114.97.3:443
2023-04-14 11:31:10f8bb33dce946e23290a488b2d99ee268n/a188.114.96.3:443
2023-04-14 05:11:22d15e0c0c6a12d5257f08b0b2856ddadbn/a188.114.96.7:443
2023-04-12 23:17:089c7d4368642b9ade9239bbe1e0d4e874n/a188.114.97.7:443
2023-04-12 19:18:4287cc98f659683b2fd7f15b9139772f12n/a172.67.150.157:443
2023-04-12 18:08:595110fab0f213833cb0a839c149ababf0Virustotal results 40 / 69 (57.97%) 188.114.97.0:443
2023-04-12 14:23:55accd6f3100c2b9d0a7c1c9c917892467n/a163.181.57.213:443
2023-04-11 21:28:47b2d2fbfadead927804dbb529e3dd1650n/a47.246.48.206:443
2023-04-11 15:54:00567c4abdd9e6cd4112a1f6138de06b08n/a104.21.72.158:443
2023-04-11 00:14:24b30fcf22566c4fb9d2247fb174238b69n/a199.59.243.223:443
2023-04-10 23:04:59b18b4442a26e8d5afade4554b5da32e6n/a47.246.48.205:443
2023-04-10 04:58:16d5713542c9d1cb1390de6d2db90b2157n/a199.59.243.223:443
2023-04-10 04:38:29d3dbb57888cf6ce493bceb1b8450adc7n/a199.59.243.223:443
2023-04-09 18:39:38a11e538fd16f460869610fb4b04bf37an/a47.246.48.206:443
2023-04-08 13:59:441b7902fa57527d4d46fdf03e84f24856Virustotal results 37 / 69 (53.62%) 188.114.96.3:443
2023-04-08 13:53:1563b04f8485cb2488b172b74282019e78Virustotal results 50 / 70 (71.43%) 10.0.16.202:50461
2023-04-08 13:53:1363b04f8485cb2488b172b74282019e78Virustotal results 50 / 70 (71.43%) 95.181.181.87:443
2023-04-08 13:52:5863b04f8485cb2488b172b74282019e78Virustotal results 50 / 70 (71.43%) 10.0.16.202:50456
2023-04-07 16:35:45698fb25737c29ce3585a49e83d439c7cn/a104.21.30.56:443
2023-04-06 19:47:46243f34b30bf19a47e7c295a83be2caa6Virustotal results 36 / 70 (51.43%) 188.114.96.0:443
2023-04-06 03:00:29bce53fe614de36fca796a28b8a9b35d2n/a188.114.96.7:443
2023-04-05 19:16:3242bd5464490c10cfa56be5123baae9efVirustotal results 36 / 68 (52.94%) 172.67.150.157:443

# of entries: 100 (max: 100)