JA3 Fingerprints

You can find further information about the JA3 fingerprint fd80fa9c6120cdeea8520510f3c644ac, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:fd80fa9c6120cdeea8520510f3c644ac
First seen:2018-03-11 09:34:30 UTC
Last seen:2021-08-11 12:34:00 UTC
Status:Blacklisted
Malware samples:10'079
Destination IPs:612
Malware:Tofsee -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-08-31 08:14:49b6567163ca102b8829646ab0f6c3f82bn/a95.216.2.172:443
2023-08-27 04:30:333a4cd873a95b5be72a8ae601a415fef2n/a195.20.236.37:443
2023-08-27 04:30:333a4cd873a95b5be72a8ae601a415fef2n/a195.20.236.37:7086
2023-08-25 20:12:234a7b99378154d6be39982b4e3c8b26e3Virustotal results 55 / 71 (77.46%) 188.114.97.0:443
2023-08-25 07:18:521775ab38f493734968c1148df56d8019n/a77.88.21.158:587
2023-08-24 16:00:151ec988fc6993a5d898a4cc90abfeeb3cVirustotal results 52 / 71 (73.24%) 199.59.243.224:443
2023-08-15 09:29:055d9a28edb623321fe9fbd1b4ae671ad1n/a209.142.64.45:443
2023-08-15 09:29:055d9a28edb623321fe9fbd1b4ae671ad1n/a185.170.215.151:443
2023-08-11 12:07:21ad3136ff82e37af9702002b8bb544326n/a185.15.58.224:443
2023-08-10 16:43:56651d0b7783399c16d0bec3dbb4aacde0n/a199.59.243.224:443
2023-08-10 00:52:42b36551cd7f3bcd4332a02cd4ef3b3d07Virustotal results 52 / 71 (73.24%) 199.59.243.224:443
2023-08-09 01:41:560d0bfd18b1f781fcbd4cfba622693c6cn/a193.123.57.252:443
2023-08-09 00:41:0613b688571f1e9027edc14b5304bd3589n/a140.238.208.99:443
2023-08-04 15:28:3237c3ab28623b3862dc976f25d713dd2fVirustotal results 50 / 71 (70.42%) 76.223.54.146:443
2023-07-31 07:05:20a75736202c4097cebd22a3f2953d0c77n/a94.100.180.160:587
2023-07-30 01:51:5903c9176d85eb82465fbecf6f45f3b7d2Virustotal results 4 / 71 (5.63%) 172.66.43.116:443
2023-07-28 09:21:115543ec7918879f075e2714ba2aa7995bn/a77.161.25.182:587
2023-07-28 06:48:584f3be194cd04b5c1b1f800ead796b545n/a199.59.243.224:443
2023-07-27 23:45:231672e57782e0ba84fb657d6476b3e4dfVirustotal results 47 / 70 (67.14%) 199.59.243.224:443
2023-07-25 18:01:24077e00d2f55f82e4c3918ec3a43d2072Virustotal results 47 / 71 (66.20%) 13.248.169.48:443
2023-07-24 14:29:382570b189010cb923098a0a34daaa1b94n/a104.21.12.54:443
2023-07-24 13:30:520c5795bff20c1120bd9ba27d6f5356bcVirustotal results 45 / 68 (66.18%) 199.59.243.224:443
2023-07-21 07:14:03a98b4edca547fd55a9292832784f7234n/a172.66.40.140:443
2023-07-20 02:41:57ff3c201aafe8e4fc565612797a783259n/a188.114.96.14:443
2023-07-18 18:20:300335e8fc68cb4570bdcc9c8a35d5b44aVirustotal results 1 / 70 (1.43%) 140.238.208.99:443
2023-07-08 22:21:440940e70bb67a23c671cbb9c374a8d40eVirustotal results 56 / 71 (78.87%) 163.181.92.227:443
2023-07-02 13:48:45b70e84377bd0d52c2c7a91e7d0dcd94an/a163.181.92.225:443
2023-06-30 14:13:53b9ffb5d49d5a1bcaf4091e8bfc9b1599n/a163.181.92.225:443
2023-06-30 11:10:36b68c9d52c4280d2faa4089069e774b53n/a47.246.48.209:443
2023-06-30 08:10:11b37fef759791a30cc9974dabff1db782n/a163.181.92.232:443
2023-06-25 13:36:23158db266af6dafb232c2be20b5e1e79an/a172.67.150.157:443
2023-06-25 00:37:21ce1142b34afc636d1ece92d3d9524830n/a163.181.92.228:443
2023-06-21 19:48:1804f36c5b8dee49949ec64c119d057566n/a172.67.150.157:443
2023-06-17 12:11:122206e0acbc89feac7f74029c86255434Virustotal results 45 / 70 (64.29%) 185.107.56.209:443
2023-06-15 09:36:48073fcb5fcfacf37fb9980208ef0e9440n/a163.181.92.232:443
2023-06-09 18:32:43a10e30790b76c99b38b5fc5b29666c21n/a163.181.92.232:443
2023-06-06 10:25:31a53143a7b25e66afddf599122e69c862n/a47.246.48.211:443
2023-06-06 06:28:171d7fd88cf592999def92469f213afc8an/a47.246.48.205:443
2023-06-03 18:41:573b4d476a171388fea45b295a20c0cbf4n/a172.67.150.157:443
2023-06-03 14:47:0830573eb4aff70bf8bd8a1232a4f477b8Virustotal results 45 / 69 (65.22%) 172.67.150.157:443
2023-06-01 08:21:16cb1363c3d036a0c0a4a1004b33e18e9en/a163.181.92.229:443
2023-05-27 00:30:2625705b717c327734400c09c83d350a90n/a163.181.92.230:443
2023-05-25 09:14:361d7804e2d720b5a6ee8f33e467bc7a32n/a47.246.48.210:443
2023-05-24 19:58:510ef4b4837bac6a4ea51804182b2857ecVirustotal results 58 / 71 (81.69%) 163.181.92.231:443
2023-05-23 20:56:28a69175631a8b476f657c044566c2738cn/a163.181.92.230:443
2023-05-22 06:39:24052d5c88455df4088dbe8a736fbaddecn/a47.246.48.209:443
2023-05-22 04:58:01aef891e0ab5190459c5cc9844ca25dddn/a163.181.92.225:443
2023-05-22 02:35:33a9a8c8070e293b0f3897f54200adf076n/a47.246.48.207:443
2023-05-22 02:35:33a9a8c8070e293b0f3897f54200adf076n/a47.246.48.207:443
2023-05-21 07:13:37fd052ac5b308bb570a38fee8d24a33aen/a3.64.163.50:443
2023-05-21 06:18:30f9a4f94bd472444004148a4d6e95fc34n/a188.114.96.0:443
2023-05-21 06:15:33fb3dad5ec0119d4d85410a402dc57c7dn/a188.114.97.7:443
2023-05-19 08:50:58c9668f9e36188c279dcef78aa202c04an/a163.181.92.230:443
2023-05-18 03:35:07a89da0e319e8180517ec7b18de7925a6n/a129.146.39.65:443
2023-05-17 02:02:26c5e01937816655fa52a88cd0d8e251b9n/a163.181.57.208:443
2023-05-15 20:32:53a3744e893d622db09a9d1f22c7b2e683Virustotal results 55 / 70 (78.57%) 163.181.57.212:443
2023-05-14 23:55:58ad8d785cd68af53a6d4dbaa7aebcaeecVirustotal results 60 / 71 (84.51%) 47.246.48.205:443
2023-05-11 02:59:452aa3da7ebe29956ec5e5670370a801f8n/a188.114.96.3:443
2023-05-10 19:17:4508bfd22dd88d08758f4a0cd447670d6bn/a47.246.50.224:443
2023-05-09 16:06:2846fb7cafdf2dbb555201cfaaf104c1d3Virustotal results 18 / 67 (26.87%) 185.58.223.169:587
2023-05-08 19:55:390eadcf2f819e1e469696b90c572a854cVirustotal results 61 / 70 (87.14%) 163.181.57.214:443
2023-05-08 12:45:03aa2b37ffc59774a38a558ce19c6c1564n/a47.246.23.104:443
2023-05-08 12:40:37aa09fc4d9a4dfc2d35591fce3923a7bbn/a163.181.57.210:443
2023-05-07 15:58:3906c5f62a6c358cfe2e4df12bea5a32e7Virustotal results 57 / 70 (81.43%) 163.181.57.207:443
2023-05-05 20:27:223fc864f92f06b974b0c31ddee104e94an/a172.67.152.176:443
2023-05-05 17:16:2503fbbcbb9a98aac1dc6c2bea0c64589cVirustotal results 52 / 70 (74.29%) 188.114.97.0:443
2023-05-05 17:16:2503fbbcbb9a98aac1dc6c2bea0c64589cVirustotal results 52 / 70 (74.29%) 104.21.72.158:443
2023-05-05 06:46:14c351aa48e4217019ffc4d48495b38d0dn/a163.181.92.227:443
2023-05-04 22:00:47bd0e6ce6aeaa5d341994a6c3e5706ebfn/a172.67.152.176:443
2023-05-04 14:39:32afc0d1baab01cbb273945d097e005decn/a188.114.97.7:443
2023-05-04 10:52:4814e20591f1841c052eecf65e54e4fbfdn/a188.114.96.3:443
2023-05-03 16:51:497f8363f15b2be3e10368f041281ba9a0n/a188.114.97.7:443
2023-05-03 15:01:2624b73b7b1d4318335b29bf6a45e2b2aaVirustotal results 45 / 69 (65.22%) 104.21.30.56:443
2023-05-03 14:56:2308e712d803a49a35a6951041dc30d793Virustotal results 36 / 70 (51.43%) 188.114.97.7:443
2023-05-02 17:58:53810b2914fff62597eec2f06befd2c9d4n/a104.21.30.56:443
2023-05-02 17:01:44561593fe189734d4b1c7f8870c0b4e75Virustotal results 44 / 67 (65.67%) 172.67.150.157:443
2023-05-02 14:14:47b9e7154f414152c37e56a8a892c8452dn/a199.59.243.223:443
2023-05-01 20:36:214a510a033ab1e0869ddb36d82687d160n/a188.114.96.3:443
2023-05-01 07:06:10800a00b7397d80a8f0065878fd6d82f3n/a104.21.72.158:443
2023-05-01 02:28:32b4041cf8281d0d2e6dd5e6b7bbd5ab62n/a47.246.48.210:443
2023-04-30 21:57:582f81f3711f29d22b9252ac781ed3bd40n/a104.21.30.56:443
2023-04-30 20:39:2303a86d17d0dcced6754c568dc15b8375n/a188.114.96.3:443
2023-04-30 17:56:28834dea13dde743913f5ed90f6fbcceb7n/a104.21.30.56:443
2023-04-30 16:44:43c3aa3563d767d2047baf224cf84ec93fn/a47.246.48.205:443
2023-04-30 12:10:22b9c0b30525b4d0261604b43b254a0b75n/a188.114.96.0:443
2023-04-30 09:00:44aafca5165eac1153a976858f683f04can/a47.246.23.101:443
2023-04-30 07:56:49aa71aef140e738f333e5ab138e907773n/a47.246.23.104:443
2023-04-29 06:55:09a7e4c70ee6603d003005e106036d681an/a129.152.2.199:443
2023-04-29 04:26:37a6d5bb4e7313c84f27431e7fac7c7116n/a47.246.48.210:443
2023-04-28 17:02:4494902f02cef1dee9351d746cbb558e36n/a104.21.30.56:443
2023-04-28 15:16:340557ec48852ca256ca5b3fd08561e50dVirustotal results 56 / 70 (80.00%) 163.181.57.213:443
2023-04-27 08:15:120dca769db9f67f8895854ccf7d5f0ab2n/a163.181.57.214:443
2023-04-26 22:25:341f16a225b9a0827636b4864af97fb570n/a47.246.23.101:443
2023-04-26 00:41:012fc5fa4a8728ac2fe77c5b2140108c61n/a163.181.57.211:443
2023-04-25 12:08:36b6d73a5be9feb25d94262f824d5fdcd4n/a47.246.48.211:443
2023-04-24 16:10:0508b2dc273d488c2345b8ff9a6bf9ba1cn/a47.246.48.205:443
2023-04-24 11:54:34b8bf74197304ead22d413f20d165f739n/a54.241.188.167:443
2023-04-24 09:13:0376389e5a5691c504aa175c002135398bn/a188.114.96.3:443
2023-04-23 13:58:246b7d90168f4e1e61831473f3f94ad151n/a104.21.30.56:443
2023-04-23 07:38:35075cb60ea7f11743963683999b89dc60n/a104.21.30.56:443

# of entries: 100 (max: 100)