JA3 Fingerprints

You can find further information about the JA3 fingerprint fd80fa9c6120cdeea8520510f3c644ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:fd80fa9c6120cdeea8520510f3c644ac
First seen:2018-03-11 09:34:30 UTC
Last seen:2021-08-11 12:34:00 UTC
Status:Blacklisted
Malware samples:10'139
Destination IPs:665
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-07-26 23:02:311f0a78af0091b6fb2a4ca253c92eea34n/a159.253.43.125:443
2024-07-26 21:33:54215ff881f4fbdc02f76646c6ec2b1d35n/a223.6.6.6:443
2024-07-16 19:24:3681272757b28dbc6a6cfc3c947149e9c3n/a10.0.16.137:50058
2024-07-16 19:24:3281272757b28dbc6a6cfc3c947149e9c3n/a10.0.16.137:49974
2024-07-16 19:24:3181272757b28dbc6a6cfc3c947149e9c3n/a157.240.247.63:443
2024-07-16 19:24:2981272757b28dbc6a6cfc3c947149e9c3n/a10.0.16.137:50152
2024-07-16 19:24:2881272757b28dbc6a6cfc3c947149e9c3n/a157.240.201.63:443
2024-07-16 19:24:2381272757b28dbc6a6cfc3c947149e9c3n/a10.0.16.137:49984
2024-07-16 06:45:021eb4916eb61ff70dd38e1c30c4a2a4e1n/a23.44.69.220:443
2024-07-11 10:39:1934f671122ce4374a47905e0681b8f6fcn/a178.218.166.219:443
2024-06-23 18:49:3940723b28cc176da57f299bbe8fbb9541n/a119.188.174.59:443
2024-06-20 03:05:22888cbe280bd1aa39d249149d850d7795n/a54.243.122.21:443
2024-06-20 03:05:22888cbe280bd1aa39d249149d850d7795n/a10.0.14.122:50004
2024-06-20 03:05:22888cbe280bd1aa39d249149d850d7795n/a18.210.41.96:443
2024-06-20 03:05:15888cbe280bd1aa39d249149d850d7795n/a10.0.14.122:50012
2024-05-30 21:41:483e2a1aec80ff6769adc92a336c540c92n/a185.15.58.224:443
2024-05-28 21:41:37d02e65b1677f7525f8a48f01f36a1e29n/a104.21.30.56:443
2024-05-28 16:02:13b4d8b9ea4ed9158c571197282bff177cn/a204.152.214.30:443
2024-05-28 14:14:24b245bc229c94f444671aa77abd69f04cn/a188.114.97.7:443
2024-05-24 22:08:549ac213fccdac495178b2006a968c4c5fn/a185.15.59.224:443
2024-05-23 22:57:381064f3c816fe9fd38b29ba9cea8f16f3n/a223.6.6.6:443
2024-05-23 09:22:2824d15c67481de31e5d6b70bc4047d83bn/a74.125.128.108:587
2024-05-23 06:11:011efd7557d0e066fb1bf260b2319d5386n/a223.6.6.6:443
2024-05-02 04:13:5628d6e14f891cbb4066f9a4bce42d3b6fn/a185.15.59.224:443
2024-05-01 14:04:21846ffd2f63a58450e85eff8630a9ab5bn/a185.15.58.224:443
2024-05-01 12:49:2572ec10a13b84c0ef4683f3bbf2061ba9n/a185.15.58.224:443
2024-05-01 09:53:415ceaff3f39f35f349cbeba1c190d6c08n/a185.15.58.224:443
2024-04-09 09:25:46c3a9f9976323d71d4ce991fac2865d47n/a185.15.59.224:443
2024-04-02 05:27:44e2f42f63293cd92bed0e4eeb448b1c08Virustotal results 1 / 71 (1.41%) 129.152.18.210:443
2024-03-19 17:53:03412c2bb2d0bcca618439dc392f183101n/a158.178.196.104:443
2024-03-19 17:53:03412c2bb2d0bcca618439dc392f183101n/a129.152.12.230:443
2024-03-17 00:17:3617611d6061c18519a160dad3d2316b63Virustotal results 41 / 73 (56.16%) 185.199.108.133:443
2024-03-13 21:53:2300727e03073d7f9996e84208fe0db687Virustotal results 27 / 71 (38.03%) 77.88.21.158:587
2024-03-13 11:04:31cdbde6fd857d07e827984443486bddf5n/a185.199.108.133:443
2024-03-09 05:29:30e8bdcf8257251bcff20360f549c6b7e8n/a188.114.97.3:443
2024-03-03 18:36:13a8cd0364ae554990297c1021287489e8n/a104.26.3.27:443
2024-03-03 18:36:13a8cd0364ae554990297c1021287489e8n/a31.192.214.3:443
2024-03-02 17:05:0513c0b0d696cbce1bb4ea4f527b2cf61cVirustotal results 52 / 70 (74.29%) 104.26.2.27:443
2024-02-29 15:53:40dceb53d6eb43861b9a48d349b7d4aec2n/a172.67.74.82:443
2024-02-29 15:53:40dceb53d6eb43861b9a48d349b7d4aec2n/a35.224.177.189:443
2024-02-24 18:58:0876559f5d95e5e4bda490a66f54e46b50n/a34.149.36.179:443
2024-02-24 18:58:0776559f5d95e5e4bda490a66f54e46b50n/a172.67.74.82:443
2024-02-24 18:58:0676559f5d95e5e4bda490a66f54e46b50n/a104.26.2.27:443
2024-02-24 18:58:0576559f5d95e5e4bda490a66f54e46b50n/a35.212.7.114:443
2024-02-21 09:17:14a831c00ec364bbb438b91466de9e18cdn/a198.12.216.33:443
2024-02-21 09:17:14a831c00ec364bbb438b91466de9e18cdn/a198.12.216.33:443
2024-02-21 09:17:14a831c00ec364bbb438b91466de9e18cdn/a198.12.216.33:443
2024-02-17 03:52:05b667bdd4c1a17f525ea8e090b6e40ffcn/a104.26.3.27:443
2024-02-17 03:52:02b667bdd4c1a17f525ea8e090b6e40ffcn/a31.186.86.189:443
2024-02-03 22:21:393bd2d3dae2d3937d0bb42d99111b797an/a209.222.0.52:443
2024-01-29 10:00:59d37334f21a264c220e69b9dc580970e5n/a185.98.5.230:443
2024-01-29 10:00:59d37334f21a264c220e69b9dc580970e5n/a77.222.62.138:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a94.73.147.54:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a188.114.96.3:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a31.31.198.54:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a172.67.218.42:443
2024-01-29 09:41:465d16bd079f2862a44395260a04873a2bn/a31.31.198.123:443
2024-01-29 07:54:01a6e1827a5305bbc26cf3ade5a00eaa45n/a79.98.29.33:443
2024-01-28 21:13:53e566ec98fd094eac611ee7f52bf5ad5cn/a192.124.249.67:443
2024-01-28 21:13:53e566ec98fd094eac611ee7f52bf5ad5cn/a23.227.38.74:443
2024-01-28 21:13:53e566ec98fd094eac611ee7f52bf5ad5cn/a198.49.23.144:443
2024-01-28 21:13:53e566ec98fd094eac611ee7f52bf5ad5cn/a45.56.114.190:443
2024-01-28 21:13:52e566ec98fd094eac611ee7f52bf5ad5cn/a176.9.64.230:443
2024-01-28 21:13:52e566ec98fd094eac611ee7f52bf5ad5cn/a23.227.38.33:443
2024-01-28 17:52:30a1fa3413660030d7d473433712d740fdn/a172.67.202.60:443
2024-01-25 22:42:345453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51922
2024-01-25 22:42:345453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51845
2024-01-25 22:42:345453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51922
2024-01-25 22:42:345453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51845
2024-01-25 22:42:335453173994ff3cb7b094c009e22dea6fn/a54.86.173.244:443
2024-01-25 22:42:335453173994ff3cb7b094c009e22dea6fn/a54.86.173.244:443
2024-01-25 22:42:325453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51900
2024-01-25 22:42:325453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51900
2024-01-25 22:42:315453173994ff3cb7b094c009e22dea6fn/a172.67.133.148:443
2024-01-25 22:42:315453173994ff3cb7b094c009e22dea6fn/a172.67.133.148:443
2024-01-25 22:42:215453173994ff3cb7b094c009e22dea6fn/a91.236.136.108:443
2024-01-25 22:42:215453173994ff3cb7b094c009e22dea6fn/a91.236.136.108:443
2024-01-25 22:42:165453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51819
2024-01-25 22:42:165453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51819
2024-01-25 22:42:125453173994ff3cb7b094c009e22dea6fn/a104.21.14.2:443
2024-01-25 22:42:125453173994ff3cb7b094c009e22dea6fn/a104.21.14.2:443
2024-01-25 22:42:105453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51788
2024-01-25 22:42:105453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51788
2024-01-25 22:41:585453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51895
2024-01-25 22:41:585453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51895
2024-01-25 22:41:565453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51748
2024-01-25 22:41:565453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51763
2024-01-25 22:41:565453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51748
2024-01-25 22:41:565453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51763
2024-01-25 22:41:525453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51915
2024-01-25 22:41:525453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51915
2024-01-25 22:41:495453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51586
2024-01-25 22:41:495453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51586
2024-01-25 22:41:465453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51856
2024-01-25 22:41:465453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51856
2024-01-25 22:41:435453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51822
2024-01-25 22:41:435453173994ff3cb7b094c009e22dea6fn/a10.0.7.79:51822
2024-01-17 00:53:07313bee7bf5a4d9c0c966e65123e9d2cbn/a104.26.3.27:443
2024-01-14 23:23:2090d047019c018e2188352f9aeee97192n/a104.26.2.27:443
2024-01-06 08:39:00a7cc99cbbbe27675f11dcdb4573ffa71n/a74.125.128.108:587

# of entries: 100 (max: 100)