JA3 Fingerprints

You can find further information about the JA3 fingerprint fd80fa9c6120cdeea8520510f3c644ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:fd80fa9c6120cdeea8520510f3c644ac
First seen:2018-03-11 09:34:30 UTC
Last seen:2021-08-11 12:34:00 UTC
Status:Blacklisted
Malware samples:9'805
Destination IPs:569
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-02-07 19:45:19319599612854ade77325b4c38b50c369n/a104.21.70.96:443
2023-02-07 01:08:34b9b85cb4f2289b18962f98812cb53e43Virustotal results 54 / 70 (77.14%) 79.133.177.218:443
2023-02-06 20:45:32b17059134213c81ca244f62efa98ce17Virustotal results 54 / 70 (77.14%) 79.133.177.213:443
2023-02-06 15:05:263eca55aa30b97f4c87c3662e849b7064Virustotal results 47 / 68 (69.12%) 199.59.243.222:443
2023-02-05 19:19:15b4266e0e77db85dca5049f660e922be9n/a142.250.27.109:587
2023-02-05 16:50:529aa5fb46f2b263f54f637911134e4ee7n/a199.59.243.222:443
2023-02-04 23:11:45955ac1f812744598abc0f93b2e0ceb05n/a199.59.243.222:443
2023-02-04 21:57:596a25810b043917a650aee8c95f755a91n/a77.88.21.158:587
2023-02-04 08:56:52be5f5bcca25760fd2719e1c77dde1b52n/a79.133.177.212:443
2023-02-04 07:48:00b65fd78011b300f3522a8e8a6fddf48dVirustotal results 54 / 70 (77.14%) 79.133.177.218:443
2023-02-04 07:18:080f0e052c2192ecf2af973000e2a26c7dVirustotal results 27 / 70 (38.57%) 142.250.68.110:443
2023-02-04 07:18:080f0e052c2192ecf2af973000e2a26c7dVirustotal results 27 / 70 (38.57%) 93.99.2.84:443
2023-02-04 07:18:080f0e052c2192ecf2af973000e2a26c7dVirustotal results 27 / 70 (38.57%) 93.99.2.4:443
2023-02-04 07:08:430d44a8d382e3e63e83ef415c7b3da467Virustotal results 53 / 69 (76.81%) 79.133.177.214:443
2023-02-04 03:41:44950f21d800eb40e5169c2e600b65457fn/a104.21.30.56:443
2023-02-04 01:42:4180fd63b8c7a7d36a01d78842dcc54efbn/a188.114.97.14:443
2023-02-03 18:38:34061f66655f84183309086ef53cc550a0n/a188.114.97.0:443
2023-02-03 05:27:49ad7890a988fe1a3f8e769085242c48e5Virustotal results 50 / 70 (71.43%) 79.133.177.211:443
2023-02-03 02:08:07c386ba04a8bde47abf79620a37ccbcdfVirustotal results 39 / 70 (55.71%) 188.114.97.14:443
2023-02-02 22:14:0117aebd19b39f32d67cf86231ce7bbf7an/a188.114.97.0:443
2023-02-02 22:08:19b58be660ec3defa926e90a0a6ffee67bVirustotal results 31 / 67 (46.27%) 199.59.243.222:443
2023-02-02 22:02:00c3506cd41852f6b75ddaa024c8573ffbVirustotal results 54 / 67 (80.60%) 47.246.48.210:443
2023-02-02 17:14:14fb2efcb256e054a7c324df10f8717c38n/a104.21.30.56:443
2023-02-02 15:27:065af3c1e2600dc869384fc6e8c4bdac78Virustotal results 49 / 71 (69.01%) 199.59.243.222:443
2023-02-02 10:32:14ca000c8c4cf8882a6d40d01ac2e11189n/a188.114.97.0:443
2023-02-02 09:42:44c432ab6cd250343d3278cf93e11476f5n/a188.114.97.7:443
2023-02-02 00:10:46a7cdab3eacc367b0c078f5a51a70a411n/a104.20.207.62:443
2023-02-01 13:57:582077e74154e03917dfd83e1d1b3ea3fcVirustotal results 41 / 69 (59.42%) 104.21.70.96:443
2023-02-01 12:27:4145351ba074a9e06bf55cc0579db73386Virustotal results 36 / 70 (51.43%) 188.114.96.0:443
2023-01-31 23:40:55be533c35eea313dc933db955c1ed8171n/a47.246.23.102:443
2023-01-31 21:20:26c3dc6bb8b7c799e9eadd0c9d8843e49cn/a104.21.70.96:443
2023-01-31 03:19:19c7b8ec6212a89dfde0556eb008c1e1d9n/a47.246.48.207:443
2023-01-30 23:58:27adac79c688ec4353cc47aaca328b5956Virustotal results 52 / 70 (74.29%) 47.246.48.205:443
2023-01-30 09:15:55d2367ad6988bb88f1b03cc7352f9696aVirustotal results 54 / 70 (77.14%) 163.181.92.225:443
2023-01-29 21:19:320b9b0754468017f869932178f9c43248Virustotal results 45 / 70 (64.29%) 188.114.97.3:443
2023-01-28 19:13:2889d9b8d565a77067fedf1fcf9d6c2d80n/a172.67.150.157:443
2023-01-27 15:39:454f18d8ff806d41980fa9737d27103f26n/a188.114.97.7:443
2023-01-27 08:44:13acff1fc0fbeab604fbf08e27197e58a8n/a163.181.92.232:443
2023-01-27 04:23:14c630dc7a5306d4484d4e249c8b979503n/a79.133.177.215:443
2023-01-26 22:29:46a96b608c24e0cc0ad5a3b060b1dd2c16Virustotal results 44 / 70 (62.86%) 188.114.96.14:443
2023-01-26 18:51:5808fa3854870af7dbad8b6c5e65cd5185n/a188.114.96.3:443
2023-01-26 11:02:31bfc57c5bb56a73bbbd2ffa27da88acc7Virustotal results 53 / 69 (76.81%) 163.181.92.228:443
2023-01-26 09:25:36adecc96b859d88a5605a996c156c6452n/a47.246.48.211:443
2023-01-25 21:33:3177a982de0d3e4e1b8f468e1a7c7f9eb1n/a188.114.97.7:443
2023-01-25 20:34:55575b0c9e7f9c7a6b88336b814eca8a0fn/a199.59.243.222:443
2023-01-25 01:11:03e365b355690a2dd1f147f9df0b5ad1bbn/a3.64.163.50:443
2023-01-24 19:19:353953a1fb4e98df19e05dcfb4ce93f40cVirustotal results 35 / 67 (52.24%) 188.114.97.7:443
2023-01-24 18:59:5138764360ca51c46192844afe8e55d209Virustotal results 46 / 67 (68.66%) 188.114.96.14:443
2023-01-24 18:38:0101bb5d1f24c7cfc0e2cd3dee4dbc2f03n/a188.114.96.7:443
2023-01-24 16:50:42cdc0b29101795e193102022a50b14609n/a172.67.150.157:443
2023-01-24 12:08:19c3d61c8c92133420b110562ab2f56b93Virustotal results 51 / 70 (72.86%) 163.181.92.225:443
2023-01-24 03:34:28c487c0da1e4dd428020bd96e01a62038n/a163.181.92.228:443
2023-01-23 21:35:26ad7ec7bd67db08f41d23994dd0763fe9n/a163.181.92.226:443
2023-01-23 17:54:26327e49e753a7d3a5c28752062e756955Virustotal results 50 / 64 (78.12%) 188.114.97.0:443
2023-01-23 13:28:44bb2716187792d2bc1cf762ce94b3a318n/a163.181.92.230:443
2023-01-23 12:18:25b8c315151b54d3819174c83b5897ebfen/a188.114.96.0:443
2023-01-23 08:41:29a83fb75b5c21adf4beb1a8bd10793266n/a163.181.92.229:443
2023-01-23 04:04:239e4d9d285c62f57f198137525487259fn/a188.114.97.7:443
2023-01-22 20:55:2367ca36c51a284cf5f124e95aafa65cabn/a51.81.210.44:443
2023-01-22 20:17:3962366bfa89dbe6c5ef641294e068c822n/a188.114.97.7:443
2023-01-22 19:09:05576514bc59662e14c89d8c3aea96cc46n/a188.114.97.7:443
2023-01-22 18:10:15149d58e6b5a963ba32131fb4754aeae7Virustotal results 42 / 69 (60.87%) 199.59.243.222:443
2023-01-21 18:26:042fdc9d6ff0a458c5082370f9d52d5467Virustotal results 48 / 68 (70.59%) 172.67.193.175:443
2023-01-20 22:39:13ff5ae3071020bf5a3426e83fd878964bn/a104.21.72.158:443
2023-01-20 09:00:5917113c7572b468158986e597a61b2c2cn/a163.181.92.226:443
2023-01-20 01:21:292e6dbc149bed7f541e5840d4c5a85c2bVirustotal results 51 / 70 (72.86%) 79.133.177.216:443
2023-01-20 01:15:442eb65f082286746050a25b1d55b8f318Virustotal results 50 / 70 (71.43%) 163.181.92.226:443
2023-01-19 21:58:35c8185fcec0871c6423978a499a64b57en/a188.114.96.3:443
2023-01-19 21:29:59abdb2792446ecaa09171551775f14571n/a199.59.243.222:443
2023-01-19 19:49:42491dad4ecd020cdae0289f3ff726b3bfn/a104.21.30.56:443
2023-01-19 03:38:353af26bf2ea2cd7b731feb930165bf8c6n/a47.246.48.209:443
2023-01-18 15:39:393e872351fefbc15c4aeed3a274f23287n/a104.21.30.56:443
2023-01-18 11:47:39e2321e19a7a610beaff4123ca8aecfdfn/a199.59.243.222:443
2023-01-17 20:16:09c01515e9e22d5e251937aadadbd2513fn/a163.181.92.230:443
2023-01-17 14:15:06b718890407ccdab2a2e45c9ebccfced8n/a3.125.8.40:443
2023-01-17 10:44:310694053713294dd1287fcbe035c6b4adn/a163.181.92.229:443
2023-01-17 04:04:06895b1295351c5a6c9a853be85c1865e6n/a188.114.97.7:443
2023-01-14 18:14:386a190bdec8d15028e3d22361baae1240n/a188.114.96.7:443
2023-01-14 16:16:453c90adb04676d1bc77eb888904edff7dVirustotal results 42 / 71 (59.15%) 104.21.30.56:443
2023-01-13 22:12:02b65849f9ed78e1c02d692966ab1779e2n/a163.181.92.230:443
2023-01-13 17:40:550e317b8c42403bb381b0c9dd3e756a83n/a188.114.97.7:443
2023-01-12 19:12:43e04f7bbbf4c31407d8d332a97674d4aan/a188.114.96.3:443
2023-01-12 18:41:369d13dbaaf55a819be25f8163d6529b81n/a188.114.97.0:443
2023-01-12 06:47:33ce5aee7bfecfcbd7ef18baf013dd4b04n/a199.59.243.222:443
2023-01-12 06:10:06b1f9e156b63693e5c20264173e8424dan/a188.114.97.14:443
2023-01-12 05:34:558dc65ad2f61a4a644a23c35e50c8422en/a199.59.243.222:443
2023-01-12 03:33:016d9b67e69004fab28c6443b07a7778fan/a64.34.156.151:587
2023-01-12 02:05:426238968187f3ca059ab2e8e5f1b01c67n/a172.67.150.157:443
2023-01-12 00:47:09582303b4d19e794f5eee98cb4828c60dn/a163.181.92.225:443
2023-01-11 14:43:421a381daff35b3080874c743866bb4948Virustotal results 43 / 70 (61.43%) 199.59.243.222:443
2023-01-11 09:11:10e84b65e865a2cc88773d297d1b7dfcf8n/a188.114.97.14:443
2023-01-11 08:39:22e1f6af7be7c7a8bbd46666aa53c0f39en/a188.114.97.3:443
2023-01-10 21:12:17a8495a2003d84766280ae222f3c85e12Virustotal results 54 / 70 (77.14%) 47.246.48.205:443
2023-01-10 18:18:114d34afe74d985039fce359d2c588ab95Virustotal results 45 / 69 (65.22%) 188.114.97.3:443
2023-01-10 13:36:57e378c0148f0d5af5ab4edd8357048075n/a188.114.97.2:443
2023-01-10 12:39:17e88fd1fdeecc17aa72df9bc41c7aed5dn/a188.114.97.14:443
2023-01-10 04:42:35c517504ee023dc3398583bbd10bd6738n/a8.45.52.237:443
2023-01-10 01:56:030f9b167b0c5624c0405b608ba22bd963Virustotal results 52 / 71 (73.24%) 163.181.92.230:443
2023-01-09 21:59:43ab4f928b2d747ea035f06eaa6846384en/a79.133.177.216:443
2023-01-09 20:47:57b54f17ecfdc6a5b2cc3671706c827823n/a199.59.243.222:443

# of entries: 100 (max: 100)