JA3 Fingerprints

You can find further information about the JA3 fingerprint ffefafdb86336d057eda5fdf02b3d5ce, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:ffefafdb86336d057eda5fdf02b3d5ce
First seen:2019-10-26 07:31:49 UTC
Last seen:2020-07-25 00:14:09 UTC
Status:Blacklisted
Malware samples:216
Destination IPs:1
Malware:Tofsee -
Listing date:2020-01-09 14:30:05

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-07-25 00:14:09ab42b14a93386100a6d3c22c58bf65f6Virustotal results 39 / 71 (54.93%) 87.250.250.22:443
2020-06-29 02:39:09ab37b193771e8c4535b64ebbe0f7993cVirustotal results 47 / 72 (65.28%) 87.250.250.22:443
2020-06-28 23:57:46a83933ec31b7222ae33a469c45b4da9dVirustotal results 44 / 72 (61.11%) 87.250.250.22:443
2020-06-28 21:41:49a2fa9719e7360b92020071de01a4ead6n/a87.250.250.22:443
2020-06-28 19:43:04904f2390d3a4d10eeb19447b2e9e485cVirustotal results 37 / 72 (51.39%) 87.250.250.22:443
2020-06-28 14:48:192f9d49672caecf4678107dd141929d32Virustotal results 48 / 71 (67.61%) 87.250.250.22:443
2020-06-28 14:25:492e4f9a841ba39bfe8f179d5a51f1763eVirustotal results 45 / 71 (63.38%) 87.250.250.22:443
2020-06-28 12:02:2425c6518c27bddeb20d75722a5cd7478eVirustotal results 40 / 73 (54.79%) 87.250.250.22:443
2020-06-28 09:20:551d52c78c55e79394792d67acb028d86aVirustotal results 49 / 72 (68.06%) 87.250.250.22:443
2020-06-28 02:36:39088c33298b69677f9be20e8c97342336Virustotal results 49 / 72 (68.06%) 87.250.250.22:443
2020-06-28 01:11:30044be4366976a7f0f82572f998fea8b1Virustotal results 49 / 74 (66.22%) 87.250.250.22:443
2020-06-27 23:41:47040a89540e3eb35355fff47775577056Virustotal results 44 / 73 (60.27%) 87.250.250.22:443
2020-06-27 22:57:5101662a8183933774c4683405d9e59926Virustotal results 44 / 72 (61.11%) 87.250.250.22:443
2020-06-27 21:56:44abd4b505ef79f27e304b7c5620b5d30fVirustotal results 44 / 73 (60.27%) 87.250.250.22:443
2020-06-27 21:46:04ac46ae93a3ee6a471c96a7110ead1116Virustotal results 42 / 73 (57.53%) 87.250.250.22:443
2020-06-26 23:07:28110eb97222da8732c72c87659dd6d30dVirustotal results 53 / 73 (72.60%) 87.250.250.22:443
2020-06-26 16:00:28a2495891cd198c95d448127926f95924Virustotal results 45 / 73 (61.64%) 87.250.250.22:443
2020-06-26 14:44:029f72b4f85ec7f2ae6f4b30ed08830e6aVirustotal results 38 / 74 (51.35%) 87.250.250.22:443
2020-06-26 14:16:549d119e6aa5c3f7adb2abdd231bd6992bVirustotal results 49 / 74 (66.22%) 87.250.250.22:443
2020-06-26 14:10:099ccb0f26bef0707bdf02e72d6d31ac5cVirustotal results 44 / 74 (59.46%) 87.250.250.22:443
2020-06-26 13:43:429aa7da2842bda3f1a17cf1a2a97d0e9cVirustotal results 47 / 72 (65.28%) 87.250.250.22:443
2020-06-26 11:50:269141f6e8ca1b9b774eab72134d950ae5Virustotal results 31 / 72 (43.06%) 87.250.250.22:443
2020-06-26 11:42:4590cc729ffbfa93996e708437954e427fVirustotal results 40 / 73 (54.79%) 87.250.250.22:443
2020-06-26 11:30:308fcd0c491909c23995838a12c2093672Virustotal results 45 / 73 (61.64%) 87.250.250.22:443
2020-06-26 10:58:098d2bf866e1cb2920d507f7fdf907919dVirustotal results 52 / 73 (71.23%) 87.250.250.22:443
2020-06-26 10:08:1188f767ca0ee519a416a43025ea4ae00eVirustotal results 47 / 74 (63.51%) 87.250.250.22:443
2020-06-26 09:43:48878cd909faa553c52d10eec5eea0ed7dVirustotal results 44 / 73 (60.27%) 87.250.250.22:443
2020-06-26 09:33:5686e4f8f1bb1992f0d9533f57af8a6196Virustotal results 45 / 74 (60.81%) 87.250.250.22:443
2020-06-26 07:42:523db29510963233ca740957bca7204a47Virustotal results 49 / 74 (66.22%) 87.250.250.22:443
2020-06-26 07:37:1126c79e6a10217fd183be6a9c81c893f0Virustotal results 44 / 68 (64.71%) 87.250.250.22:443
2020-06-26 07:18:373b9af528bf2193ef27d2a8f627b7a7efVirustotal results 46 / 73 (63.01%) 87.250.250.22:443
2020-06-26 07:17:552067cd66f1ea6df62868d4c2dbd35b3dVirustotal results 41 / 73 (56.16%) 87.250.250.22:443
2020-06-26 07:10:09288cdba34601be0edc5c06d271ace832Virustotal results 49 / 74 (66.22%) 87.250.250.22:443
2020-06-25 22:09:57173ea84d6f2b6fac96efa9b69a31056dVirustotal results 44 / 73 (60.27%) 87.250.250.22:443
2020-06-25 19:47:00070b5f96822729d572a1a690ba4cdc23Virustotal results 48 / 74 (64.86%) 87.250.250.22:443
2020-06-25 13:14:477e91f6c58840d22df9278cb00a96c60cVirustotal results 41 / 67 (61.19%) 87.250.250.22:443
2020-06-25 11:00:047128d615c570558e48a016438512612dVirustotal results 46 / 74 (62.16%) 87.250.250.22:443
2020-06-25 10:59:3371c9a9dbcf6531635511bbd909bbdad2Virustotal results 47 / 74 (63.51%) 87.250.250.22:443
2020-06-25 10:51:577186cd4a6e8e08ede9e07b672d9f2bbcVirustotal results 49 / 73 (67.12%) 87.250.250.22:443
2020-06-25 10:24:026f0ed58bb85df2c82f959b8727094aebVirustotal results 50 / 73 (68.49%) 87.250.250.22:443
2020-06-25 08:41:5665f1bd3547814ee716d08fcc829dbd1cVirustotal results 45 / 74 (60.81%) 87.250.250.22:443
2020-06-25 08:37:0265372bc6ebd15ba611463d03831e2c9eVirustotal results 49 / 74 (66.22%) 87.250.250.22:443
2020-06-25 08:28:046433de7ce840d126f5e1e6fc4a11d932Virustotal results 51 / 73 (69.86%) 87.250.250.22:443
2020-06-25 08:14:206387aa03f2d7e44d0d2c76d49ac3213aVirustotal results 46 / 74 (62.16%) 87.250.250.22:443
2020-06-25 08:00:46625964abb316f2d1bd5c9a3c88baf443Virustotal results 48 / 73 (65.75%) 87.250.250.22:443
2020-06-25 07:49:336165c03ba4a7d9a6abb6ddd5b8eb69bdVirustotal results 45 / 73 (61.64%) 87.250.250.22:443
2020-06-25 07:43:3060b13febc9aafab4dafe749daca50aedVirustotal results 49 / 73 (67.12%) 87.250.250.22:443
2020-06-25 07:38:38602fea1e45422f55dbb5a61066bb3410Virustotal results 45 / 74 (60.81%) 87.250.250.22:443
2020-06-25 07:11:195dc9c7fa960255f99977e6ef484d017cVirustotal results 47 / 74 (63.51%) 87.250.250.22:443
2020-06-25 05:48:095487d6ed4a373309397eecb2b205731dVirustotal results 46 / 74 (62.16%) 87.250.250.22:443
2020-06-25 05:30:305338e7c20ddee130b0e57f9942e28ee3Virustotal results 44 / 74 (59.46%) 87.250.250.22:443
2020-06-25 05:20:584dac3a1811fed084757a0facb52668f6Virustotal results 47 / 74 (63.51%) 87.250.250.22:443
2020-06-25 05:15:534e04b9b72b5ef8f73497f8e6b1c28bbfVirustotal results 45 / 70 (64.29%) 87.250.250.22:443
2020-06-25 04:15:294b966e8cd4aa0f1e2455b5092a219c47Virustotal results 46 / 74 (62.16%) 87.250.250.22:443
2020-06-25 03:18:5944f538e2a9d1bf7c6418abda1cadbd65Virustotal results 44 / 74 (59.46%) 87.250.250.22:443
2020-06-25 03:05:02427d1a509c34a2efab5db2d2a5de2a74Virustotal results 48 / 73 (65.75%) 87.250.250.22:443
2020-06-25 02:03:123c85c9880a83593bb32ea28b387303fbVirustotal results 44 / 72 (61.11%) 87.250.250.22:443
2020-06-25 01:53:143ba1c5f0d503012e552c15d29c71c435Virustotal results 48 / 73 (65.75%) 87.250.250.22:443
2020-06-25 01:42:2539dfc8e879107686deda156928cd0719Virustotal results 46 / 74 (62.16%) 87.250.250.22:443
2020-06-25 01:14:0435c857b87069341f04c1a01492ca48acVirustotal results 47 / 74 (63.51%) 87.250.250.22:443
2020-06-25 01:04:0435836bdc35c8913c7f21ca6a39741c65Virustotal results 43 / 73 (58.90%) 87.250.250.22:443
2020-06-24 22:04:5001347b802c083f672b79294e474daa8cVirustotal results 46 / 74 (62.16%) 87.250.250.22:443
2020-06-24 21:34:4521a395e89a28b493578b40de2d75fcfcVirustotal results 49 / 73 (67.12%) 87.250.250.22:443
2020-06-22 06:57:21418b31c799c3fd8225a5e225ede122f6Virustotal results 44 / 73 (60.27%) 87.250.250.22:443
2020-06-21 09:59:3805d9403ac0efb30a5f9d699edf6cc748n/a87.250.250.22:443
2020-06-18 11:30:40480a692ccbd7b0c0725842170b94700fVirustotal results 50 / 73 (68.49%) 87.250.250.22:443
2020-06-18 09:51:47402ead4d5511f8765e1a9587cfe09b03Virustotal results 50 / 73 (68.49%) 87.250.250.22:443
2020-06-18 04:04:15262417506731076f2f17736ac8742c5aVirustotal results 34 / 71 (47.89%) 87.250.250.22:443
2020-06-18 03:06:23219a1e43f27ff7f429b5e69f3cbbeb78Virustotal results 41 / 73 (56.16%) 87.250.250.22:443
2020-06-18 01:56:451bc2d55648c53fe5d168acea1391e5cfVirustotal results 38 / 73 (52.05%) 87.250.250.22:443
2020-06-18 00:46:090c20647f3ed09ae49b112d1d459cb925Virustotal results 38 / 73 (52.05%) 87.250.250.22:443
2020-06-17 22:09:250ad32a2e22a671b0fd5c72a5f6a2b806Virustotal results 42 / 74 (56.76%) 87.250.250.22:443
2020-06-17 19:50:52025822703b7c903a693d4ef40595987bVirustotal results 45 / 73 (61.64%) 87.250.250.22:443
2020-06-16 22:21:260f9b566f67152e1b3f1a08d8f11e280bVirustotal results 38 / 71 (53.52%) 87.250.250.22:443
2020-06-15 20:27:260655dc8227cd70db929b295da985910eVirustotal results 43 / 73 (58.90%) 87.250.250.22:443
2020-06-15 06:02:44b776af9c03fb6680856182d43fd104dbVirustotal results 49 / 73 (67.12%) 87.250.250.22:443
2020-06-13 23:39:270a5653b4f8236b0f234eae883f47c6c1Virustotal results 48 / 73 (65.75%) 87.250.250.22:443
2020-06-12 05:04:54058cda9e4d9970637ba42fa9d5be6c79Virustotal results 35 / 67 (52.24%) 87.250.250.22:443
2020-06-08 09:33:402b5340f3e4d241883f63d71a8679b783Virustotal results 43 / 72 (59.72%) 87.250.250.22:443
2020-06-03 19:39:284225dcd67205fb22c7a52abbcd7c063cVirustotal results 43 / 73 (58.90%) 87.250.250.22:443
2020-03-29 08:34:03c260b388b3a0a6a42d1dc18f67eb1b5eVirustotal results 31 / 72 (43.06%) 87.250.250.22:443
2020-03-26 06:40:49ce5cc15fd1d4421d551f0d834807c8e2n/a87.250.250.22:443
2020-03-25 17:48:467d99738ae0fbfe01e9b4e0b2734505b9n/a87.250.250.22:443
2020-03-24 02:30:22bccbe9a729c1266b744b2474206cb1b5n/a87.250.250.22:443
2020-03-14 15:43:295d5b0279c5e9c756a5de74d956ac323fn/a87.250.250.22:443
2020-03-04 14:30:56300b04c5dab0fbb309e4dd55b16858e3n/a87.250.250.22:443
2020-03-03 12:19:17d787aea2e991f264244579dad834af54n/a87.250.250.22:443
2020-03-03 08:22:017b02a20c401dade64b39201628050d92n/a87.250.250.22:443
2020-02-29 21:21:35b480b7991a57cba5c4461baad95bfdd6n/a87.250.250.22:443
2020-02-29 04:02:00298cbe4c3068f250d389eb93463d7ec6n/a87.250.250.22:443
2020-02-28 23:57:249b44ebbaf69ff3b4577f80fb93debebbn/a87.250.250.22:443
2020-02-20 06:08:2634af2870135e323c332fa5f4a5005d62n/a87.250.250.22:443
2020-02-19 17:08:12720b4736807181e9bb82fe627840368fn/a87.250.250.22:443
2020-02-18 09:53:3450c45a318bbba209a61b47337c7afb7en/a87.250.250.22:443
2020-02-17 08:36:26754915d44a3ce1ba2a8ad42fc60c98d9Virustotal results 53 / 70 (75.71%) 87.250.250.22:443
2020-02-17 06:08:21b2dabd3cb7faae949bb8fecedf4946f4n/a87.250.250.22:443
2020-02-16 09:19:46071dad8b2ee5427bba3a8900dfc5612eVirustotal results 43 / 72 (59.72%) 87.250.250.22:443
2020-02-16 08:34:1222f1eb15681bf506b366814a031f857bn/a87.250.250.22:443
2020-02-15 08:00:133bbb164ea0b3792144a204d83f5ae2e3n/a87.250.250.22:443
2020-02-14 08:15:05c96fb3be03b74cf4f86cfc00fd6e3973Virustotal results 25 / 73 (34.25%) 87.250.250.22:443

# of entries: 100 (max: 100)