JA3 Fingerprints

You can find further information about the JA3 fingerprint fd80fa9c6120cdeea8520510f3c644ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:fd80fa9c6120cdeea8520510f3c644ac
First seen:2018-03-11 09:34:30 UTC
Last seen:2021-08-11 12:34:00 UTC
Status:Blacklisted
Malware samples:9'019
Destination IPs:524
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2022-07-04 05:04:02c3134e29b9e2e52234f845c4b08c7d49n/a3.64.163.50:443
2022-07-02 01:57:28a728f1d3f8dbaa20c161d58853480296n/a188.114.96.0:443
2022-07-01 23:16:25716243300912b563f77270ee7552791cn/a3.64.163.50:443
2022-07-01 22:04:39421a9ddd774db204d9be8a4a7545a610Virustotal results 39 / 68 (57.35%) 188.114.97.7:443
2022-07-01 22:02:43371203f56ee4dc2de522349d031c91e2Virustotal results 41 / 69 (59.42%) 104.21.30.56:443
2022-07-01 21:59:211bd332946d6873e8c3d14a13bd2fb29fVirustotal results 41 / 68 (60.29%) 188.114.97.7:443
2022-07-01 03:37:48a5544c3c4784969e6a732ebb5a4e5677n/a104.21.30.56:443
2022-06-30 22:09:579eff9a8e66ea61fdcc7d2e9c1cba08edn/a188.114.96.7:443
2022-06-30 22:09:579eff9a8e66ea61fdcc7d2e9c1cba08edn/a188.114.97.7:443
2022-06-29 22:19:082cdbf03d5eed9a723e2a573994048e85Virustotal results 34 / 68 (50.00%) 188.114.97.7:443
2022-06-29 20:36:27f36947690a9e7ab1350177a8da5050ddn/a104.21.30.56:443
2022-06-29 20:26:06f2f09e900132a32930fdc47ed224fca1n/a104.21.30.56:443
2022-06-29 16:25:29e9e969b27ca6275f7835dbb9f4df1eb3n/a188.114.97.3:443
2022-06-29 15:47:47e57dcc4ff51f83c280c89f98a8f16cdfn/a104.21.30.56:443
2022-06-29 14:25:57dd73a24997af1e0e5fdf76e6bad0963bn/a188.114.97.0:443
2022-06-29 07:47:11c92a8606387c76d2a5a59a770588bfe9n/a104.21.30.56:443
2022-06-29 06:06:57c7cfd9681c7d2ff4f54245e7a0dc7593n/a188.114.96.7:443
2022-06-29 05:41:28c758e6010168e1f64f37fb3286324cfan/a188.114.97.7:443
2022-06-29 03:29:27c56a092e298e897eb00bd82fef96ec69n/a8.45.52.210:443
2022-06-29 03:25:31c5657f54899dd18d155bfaba5120cafen/a104.21.30.56:443
2022-06-28 18:59:25530266f512df89a0b7c56ab242e6ad04n/a192.185.121.62:587
2022-06-28 18:28:43138c9650bad311f085d9ea27c5fb7202Virustotal results 31 / 65 (47.69%) 188.114.97.7:443
2022-06-28 18:11:2416ca1d162b3090085515ebb9456f0a66Virustotal results 38 / 67 (56.72%) 188.114.97.0:443
2022-06-28 15:26:59c22a05fa9ec00fc50aa2049c9d0157c5n/a188.114.96.0:443
2022-06-27 20:00:43b162ce2e58996d0cdf9a742d25e6622en/a188.114.97.7:443
2022-06-26 23:43:23a025736dd7a93f00dd5fc0ed48e0b162n/a188.114.97.0:443
2022-06-26 12:57:25bf58ad6c93a7f766a6246e8d9ecc3550n/a79.133.177.218:443
2022-06-26 03:00:28b625598f15e77bde66377846d5420dben/a104.21.30.56:443
2022-06-25 20:33:49af77e4a1b1d9613efc6a984f14faef70n/a104.21.72.158:443
2022-06-25 18:54:59adb072a182b7c19d036270dda5f42283n/a188.114.96.0:443
2022-06-25 15:52:4917b44e2b384e5caab48c150de7f7746eVirustotal results 45 / 68 (66.18%) 188.114.96.2:443
2022-06-25 15:34:021ca7ce5ae5d0f372c2c80974d0b63af8Virustotal results 38 / 62 (61.29%) 172.67.152.176:443
2022-06-25 15:20:14121fd64a1cb81f1175e28a3435725f14Virustotal results 31 / 68 (45.59%) 188.114.96.7:443
2022-06-25 02:55:35a538ffb01eff535c36cdeb6b537010b8n/a47.246.48.206:443
2022-06-24 21:32:1983474b76033ddbea1069ea08e0b3c735n/a172.67.152.176:443
2022-06-24 19:40:1619a68f75818519abcbc1dc4719291791n/a104.21.30.56:443
2022-06-24 19:34:274709e531eb70c21c66c39652e8ef0eafVirustotal results 41 / 67 (61.19%) 188.114.96.7:443
2022-06-24 18:57:1426b109f41573ee042229fdf82c367adcVirustotal results 39 / 67 (58.21%) 188.114.96.7:443
2022-06-24 18:49:29350e0068ac103d5925d9a40678af892fVirustotal results 50 / 70 (71.43%) 188.114.97.2:443
2022-06-24 17:40:36f32a109b592f4cf95c9f03bd4bd58685n/a104.21.30.56:443
2022-06-24 17:21:34f281397b74ab4db7f2ccbbbfa35ad7b6n/a104.21.30.56:443
2022-06-24 17:13:34f26660436fd0a6ce4a7d39611fad7fa3n/a188.114.96.3:443
2022-06-24 16:50:18f13a4f01d46cd592f80a2550688f2b49n/a188.114.96.7:443
2022-06-24 16:43:54f0cfbc3641e0f78e99f675b0ae70d5aen/a172.67.222.123:443
2022-06-24 15:54:29eed40743eaaefe5e8556d8936ebd8414n/a188.114.97.7:443
2022-06-24 15:51:41ee9f079dff1e42b0c639bfbfba8b10b5n/a188.114.96.14:443
2022-06-24 14:49:57ec4de02f9e0bbd4354a850b81d6846bcn/a188.114.96.7:443
2022-06-24 14:35:44eb9e59387c5ab435200ac615e66fe0b3n/a188.114.97.7:443
2022-06-24 13:49:40e9b10674b9521fa8b821846787adeeccn/a172.67.152.176:443
2022-06-24 13:49:38e9ada2a84ae6778215dfddcd563bf45an/a188.114.97.0:443
2022-06-24 13:19:05e78d6933cbd73c039c5afb6ce91f2e1an/a188.114.97.7:443
2022-06-24 13:19:05e78d6933cbd73c039c5afb6ce91f2e1an/a188.114.96.7:443
2022-06-24 13:01:10e7903598f3e59933c098b297650bc23fn/a188.114.97.7:443
2022-06-24 12:37:09e696a633218c7ff7ce702e968408db49n/a104.21.30.56:443
2022-06-24 09:22:03df1f1f7c00a2ad4472fa1964a6cb55edn/a3.64.163.50:443
2022-06-24 09:18:02def3206b36ca0510158f549aaafb8146n/a188.114.96.7:443
2022-06-24 06:50:29d90949419d133c7d08289a0f4b1c964bn/a188.114.97.7:443
2022-06-24 06:50:29d90949419d133c7d08289a0f4b1c964bn/a188.114.96.7:443
2022-06-24 04:16:27d03b4ad3d826cb81b29487158058a0a2n/a188.114.96.7:443
2022-06-23 22:48:09c6bacf27166e7aca28f65ec25578e33an/a104.21.12.54:443
2022-06-23 20:56:56a0b738c55c6c24da27830b52824f7067n/a188.114.96.2:443
2022-06-23 20:13:198310fce3b77c5214ebdd2de934335e35n/a172.67.150.157:443
2022-06-23 19:28:17699680f2a9810e9a22db14f183cfc7bdn/a188.114.96.7:443
2022-06-23 19:26:1468d1512db172235d5341600befa84af6n/a188.114.96.7:443
2022-06-23 19:26:1468d1512db172235d5341600befa84af6n/a188.114.97.7:443
2022-06-23 18:33:32031381c14d29d147b03d6ea275d4003aVirustotal results 53 / 71 (74.65%) 172.67.193.175:443
2022-06-23 18:16:0949900009256e85c46e3435668f6244a8n/a188.114.96.2:443
2022-06-23 18:08:493bbbc132dc811b7e39df639cae05607dVirustotal results 34 / 64 (53.12%) 188.114.96.0:443
2022-06-23 18:07:40157e934e7b2119d6e197bda121feadadVirustotal results 36 / 69 (52.17%) 188.114.97.2:443
2022-06-23 18:07:40157e934e7b2119d6e197bda121feadadVirustotal results 36 / 69 (52.17%) 188.114.97.14:443
2022-06-23 18:01:19153766d05c13fc2f5403ca85fbf0b67bVirustotal results 44 / 62 (70.97%) 172.67.193.175:443
2022-06-23 17:11:16214954e0d109af5121813bc57d705592Virustotal results 39 / 67 (58.21%) 188.114.97.3:443
2022-06-22 21:17:48adb7c0fa6d11a96d72ea5d2c8e14d11dn/a47.246.48.206:443
2022-06-22 16:14:37aa4a2010def8646fe7b2ea61328e7dcbn/a163.181.92.232:443
2022-06-22 15:00:11a69179223dda9d98e88f998ae8a88cf5n/a47.246.48.211:443
2022-06-22 10:32:52a24fe8b07cd0e2b041bf87ed2476b21en/a188.114.97.0:443
2022-06-21 19:27:32995a5fd01d434d5a9756045fbbc00a40n/a188.114.97.3:443
2022-06-21 16:53:5811787bf87577126393ec5cbca32d44bdVirustotal results 36 / 67 (53.73%) 188.114.97.7:443
2022-06-21 16:39:273a5f495b271a5b772b59443a997a5d96n/a104.21.30.56:443
2022-06-21 02:03:18c0930096749775d75544bf67eee067b2n/a188.114.96.0:443
2022-06-20 21:49:089fe5f1f5af1e3185fea992c48661ac35n/a104.21.72.158:443
2022-06-20 21:12:0684af1f64ea5fc9108e01d06488e13a8an/a188.114.97.7:443
2022-06-20 19:31:3342f5d189f98ff2c4917d04fd541a2b30Virustotal results 43 / 68 (63.24%) 188.114.97.3:443
2022-06-20 18:46:5125a8ba41711100789f91b9e427ded43eVirustotal results 45 / 69 (65.22%) 172.67.150.157:443
2022-06-20 18:40:220678dfa2db63847551acc8c9d60b0432n/a188.114.97.0:443
2022-06-19 21:33:017e61be61cb1e5cfb2b5977fde5d9d2efn/a188.114.96.3:443
2022-06-19 19:43:1247e787a6ae4568275a53c22edce35ff0n/a172.67.150.157:443
2022-06-18 21:30:188fb955753d5adda6f36ee2b39a338668n/a188.114.97.3:443
2022-06-18 20:31:056e43eba6e0551b078fa168ab3cf8cb0an/a188.114.96.7:443
2022-06-18 20:09:2259be0b0557f03202cd7a1f2c6902f6aan/a188.114.97.2:443
2022-06-18 18:54:485300638f0c1005b9cfea2647f367b559n/a188.114.96.3:443
2022-06-18 18:43:4651e718455072a83e5552a38f4de2c04dn/a188.114.97.0:443
2022-06-18 18:32:471b37fc60b62605999fd6331d654a3f30Virustotal results 47 / 68 (69.12%) 172.67.152.176:443
2022-06-18 16:48:32d1f2f634432756095857987aa353bfa5n/a188.114.96.14:443
2022-06-18 16:13:44ce70ad85f71161b81f87d59b76712f46n/a104.21.30.56:443
2022-06-18 14:35:48bea524c566866916d91244fb3b8d07b2n/a188.114.97.7:443
2022-06-18 13:34:03b2e56aa717220a43fbdf2db54e7b9b9an/a172.67.222.123:443
2022-06-18 12:31:54a7b933606f10589bc748d0db45aff76en/a104.21.30.56:443
2022-06-18 10:49:2295c6f4585bf779550f911fc9d31e8913n/a188.114.96.0:443
2022-06-18 03:27:4583f7d27ff96e3320a77b5bf90946d880n/a47.246.48.209:443

# of entries: 100 (max: 100)