JA3 Fingerprints

You can find further information about the JA3 fingerprint ffefafdb86336d057eda5fdf02b3d5ce, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:ffefafdb86336d057eda5fdf02b3d5ce
First seen:2019-10-26 07:31:49 UTC
Last seen:2020-03-29 08:34:03 UTC
Status:Blacklisted
Malware samples:136
Destination IPs:1
Malware:Tofsee -
Listing date:2020-01-09 14:30:05

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-03-29 08:34:03c260b388b3a0a6a42d1dc18f67eb1b5eVirustotal results 31 / 72 (43.06%) 87.250.250.22:443
2020-03-26 06:40:49ce5cc15fd1d4421d551f0d834807c8e2n/a87.250.250.22:443
2020-03-25 17:48:467d99738ae0fbfe01e9b4e0b2734505b9n/a87.250.250.22:443
2020-03-24 02:30:22bccbe9a729c1266b744b2474206cb1b5n/a87.250.250.22:443
2020-03-14 15:43:295d5b0279c5e9c756a5de74d956ac323fn/a87.250.250.22:443
2020-03-04 14:30:56300b04c5dab0fbb309e4dd55b16858e3n/a87.250.250.22:443
2020-03-03 12:19:17d787aea2e991f264244579dad834af54n/a87.250.250.22:443
2020-03-03 08:22:017b02a20c401dade64b39201628050d92n/a87.250.250.22:443
2020-02-29 21:21:35b480b7991a57cba5c4461baad95bfdd6n/a87.250.250.22:443
2020-02-29 04:02:00298cbe4c3068f250d389eb93463d7ec6n/a87.250.250.22:443
2020-02-28 23:57:249b44ebbaf69ff3b4577f80fb93debebbn/a87.250.250.22:443
2020-02-20 06:08:2634af2870135e323c332fa5f4a5005d62n/a87.250.250.22:443
2020-02-19 17:08:12720b4736807181e9bb82fe627840368fn/a87.250.250.22:443
2020-02-18 09:53:3450c45a318bbba209a61b47337c7afb7en/a87.250.250.22:443
2020-02-17 08:36:26754915d44a3ce1ba2a8ad42fc60c98d9Virustotal results 53 / 70 (75.71%) 87.250.250.22:443
2020-02-17 06:08:21b2dabd3cb7faae949bb8fecedf4946f4n/a87.250.250.22:443
2020-02-16 09:19:46071dad8b2ee5427bba3a8900dfc5612eVirustotal results 43 / 72 (59.72%) 87.250.250.22:443
2020-02-16 08:34:1222f1eb15681bf506b366814a031f857bn/a87.250.250.22:443
2020-02-15 08:00:133bbb164ea0b3792144a204d83f5ae2e3n/a87.250.250.22:443
2020-02-14 08:15:05c96fb3be03b74cf4f86cfc00fd6e3973Virustotal results 25 / 73 (34.25%) 87.250.250.22:443
2020-02-07 09:50:28bdcf0b98628fbd22d5a9f9c16e449d78Virustotal results 37 / 71 (52.11%) 87.250.250.22:443
2020-02-07 08:38:123e1e565bb7c0956b775dffd30c804144n/a87.250.250.22:443
2020-02-04 03:16:51a8b088a745e208725df14f66abb2f023Virustotal results 25 / 70 (35.71%) 87.250.250.22:443
2020-02-02 15:18:49a7f12b9a22f7e78160790ee40d3e56deVirustotal results 35 / 72 (48.61%) 87.250.250.22:443
2020-01-31 19:51:34b97f0d72761c57c650617233d753e01eVirustotal results 52 / 72 (72.22%) 87.250.250.22:443
2020-01-30 04:35:42aefc32064b7f2cbe3f07c4d3282ecd84Virustotal results 32 / 73 (43.84%) 87.250.250.22:443
2020-01-26 20:49:54f53c9ce711009763e5349dd7ccce67aan/a87.250.250.22:443
2020-01-23 19:55:49f13765f9ab6aec309168ce366aa89c6dn/a87.250.250.22:443
2020-01-23 15:19:2461da72161828b7c95cd760e63d5d990bn/a87.250.250.22:443
2020-01-22 13:09:181d132c71c4a3a30bf3bbcf8d71ee4388n/a87.250.250.22:443
2020-01-06 02:50:45a4879f7c0309197bc2f65b9066a129d8Virustotal results 56 / 73 (76.71%) 87.250.250.22:443
2020-01-05 19:15:3179a43ed5e2edf32d2efe526e8b76f375n/a87.250.250.22:443
2020-01-04 23:31:15a96922e59a7ff8328adbcbd3ce3be259Virustotal results 52 / 72 (72.22%) 87.250.250.22:443
2020-01-03 17:37:12a17eaa36226f9c9de599110550b5e5a1n/a87.250.250.22:443
2020-01-01 05:19:02a40ba0bcd7a2c8cb0eefd96c6cedc891Virustotal results 54 / 72 (75.00%) 87.250.250.22:443
2019-12-30 11:14:56a102a979e0af9eda56cb891834290244Virustotal results 51 / 72 (70.83%) 87.250.250.22:443
2019-12-28 13:47:11ac2b03d8bfb341c1853f449095b6fb83Virustotal results 39 / 73 (53.42%) 87.250.250.22:443
2019-12-28 11:41:1585f3875d93d5b5b78f775f3afecfd7bbn/a87.250.250.22:443
2019-12-23 00:22:13a0caa87a47ff826e5b864cbfca4517a4Virustotal results 52 / 72 (72.22%) 87.250.250.22:443
2019-12-21 12:41:23fe32b5fa183032462804206f917b134dn/a87.250.250.22:443
2019-12-20 15:12:56a1a4ee31efa4b052014b1c7a508a13e3n/a87.250.250.22:443
2019-12-20 12:30:29ab571d63c7404ba8ef547ed4431d38a8n/a87.250.250.22:443
2019-12-17 19:40:12106a994acc30417e2a96a42738c38068n/a87.250.250.22:443
2019-12-17 18:51:45a233f53bc6793f73806000bec5cd89fbVirustotal results 52 / 71 (73.24%) 87.250.250.22:443
2019-12-13 06:06:011bf15eac4e692769a03649584de4cd32n/a87.250.250.22:443
2019-12-11 16:53:22246426abc4c393625af25ddb802253a0Virustotal results 56 / 72 (77.78%) 87.250.250.22:443
2019-12-08 07:21:5348dea4522e5f794e98e44d5a0e98a927n/a87.250.250.22:443
2019-12-05 01:27:4038a1f66a9d2dea25e3fbb42ba9a8d7dan/a87.250.250.22:443
2019-12-04 13:03:33fff59129d507fe509247a1003f79cc15n/a87.250.250.22:443
2019-12-03 22:25:200b5b0405aff606d5a14ef119dc453898n/a87.250.250.22:443
2019-12-03 22:24:019fe226f4033cfb25b4193da42ac0d32en/a87.250.250.22:443
2019-11-30 14:55:03fbff1f58a33520456968912c31279676n/a87.250.250.22:443
2019-11-30 14:42:51afc3ab26f90bbafe80890aca109d3909n/a87.250.250.22:443
2019-11-30 06:32:23d4e6a9f6af6bf446691288af3da6abd5n/a87.250.250.22:443
2019-11-30 03:50:27de4af8b4fe1a9bc66353db08db52e06cVirustotal results 59 / 69 (85.51%) 87.250.250.22:443
2019-11-30 03:11:16a37fd110ff7a58ea0002c43d1e4ef689Virustotal results 50 / 67 (74.63%) 87.250.250.22:443
2019-11-30 00:19:302360ac447f1db136f46618336b9fdb52Virustotal results 39 / 70 (55.71%) 87.250.250.22:443
2019-11-28 22:11:23bf8ad740edce8a652ae0d2eac604a86bn/a87.250.250.22:443
2019-11-28 10:03:33b99704036a2fabfd9322d7d9e412cb76n/a87.250.250.22:443
2019-11-28 08:43:21b087e75231409b7bed0885badc6cd443n/a87.250.250.22:443
2019-11-28 08:28:2525149b3acaf846be16087c51174316f5Virustotal results 49 / 66 (74.24%) 87.250.250.22:443
2019-11-28 08:25:3316d29a6cf7b687881c1f748462c97814n/a87.250.250.22:443
2019-11-28 01:44:29764b4ef73f3dbb3a71cd3be9317ea9ban/a87.250.250.22:443
2019-11-27 18:32:55d34756aa7776d5b4516a2cbfe46bfa46n/a87.250.250.22:443
2019-11-27 16:58:32328d08e49c2fb776b9a2b4cc5b1f2549n/a87.250.250.22:443
2019-11-27 15:21:441b5572948187e75f310e5ab6f9639c8an/a87.250.250.22:443
2019-11-27 13:42:14946a12ffa15488fef4ba53c81de39968n/a87.250.250.22:443
2019-11-27 12:55:492d4e2446ed6f0cc824b81f3f92ca22a8n/a87.250.250.22:443
2019-11-26 22:39:34d658a2b85f4b7cbf748679ab728b6770n/a87.250.250.22:443
2019-11-26 22:35:36bb124109837137cc2346a926130fedden/a87.250.250.22:443
2019-11-18 00:45:19683707292f48af81a477b6775d904632Virustotal results 11 / 71 (15.49%) 87.250.250.22:443
2019-11-17 20:34:396b1f6104d51e3a9700fb1d929517c1c1Virustotal results 16 / 71 (22.54%) 87.250.250.22:443
2019-11-16 04:03:44eb7c6ee0e545f4ba51ec00ff14abdfddn/a87.250.250.22:443
2019-11-16 03:21:26c5f91c571bf49c4bc5f8da5918989f63n/a87.250.250.22:443
2019-11-16 03:08:36e724810d07ea66629825c1fc3377aae3n/a87.250.250.22:443
2019-11-16 02:08:39b07ab12a3611bce9fdc7bb446c52a287n/a87.250.250.22:443
2019-11-12 09:56:0042f4260b3342c1e95d1969f8156117ffVirustotal results 48 / 70 (68.57%) 87.250.250.22:443
2019-11-12 08:05:14d31fecffed24166d81fc9fd4eccf6ef1Virustotal results 35 / 71 (49.30%) 87.250.250.22:443
2019-11-11 11:37:19983f49128dc34c9f4210a32904fd4cf8n/a87.250.250.22:443
2019-11-11 11:32:51fb71f79fefbc5e75418a9abf30c6f6a5n/a87.250.250.22:443
2019-11-10 12:22:585b9e6ed5334e7cdd296822be4bfd65f5Virustotal results 35 / 72 (48.61%) 87.250.250.22:443
2019-11-10 02:09:306384575fd6b749ddd0c5cef02bd078e7n/a87.250.250.22:443
2019-11-09 11:23:00835f5e5daa378169373f5dcfbfe087bcn/a87.250.250.22:443
2019-11-08 09:00:5567f7dcd4782b25fbd9f43b7a84cd8eccVirustotal results 47 / 69 (68.12%) 87.250.250.22:443
2019-11-07 20:05:48aa1134e88d0118a445ea5871eabf01d7Virustotal results 37 / 71 (52.11%) 87.250.250.22:443
2019-11-07 13:14:30833bf54e58259b697de8e23d91db18f6n/a87.250.250.22:443
2019-11-07 12:45:57ad6fa5556d2eda02385d4ae6fc4f860cn/a87.250.250.22:443
2019-11-06 09:24:446ecf7bf73e2ec703990cbe2b2c587d19n/a87.250.250.22:443
2019-11-06 09:20:079501ebd1284fb771286514230965120fn/a87.250.250.22:443
2019-11-06 09:18:46a587c4521dc2056c4a4d8ab009247d66n/a87.250.250.22:443
2019-11-06 09:10:372f2347cfc3573bb3cde73e1b2be91254n/a87.250.250.22:443
2019-11-05 21:15:1727c57a82a0e759721f48aae98754e171Virustotal results 31 / 63 (49.21%) 87.250.250.22:443
2019-11-04 00:25:016b640f0359620b6fd2e1502afa891ddaVirustotal results 24 / 70 (34.29%) 87.250.250.22:443
2019-11-03 22:33:48bf2677fde026bddb0eecfa312d510d75Virustotal results 25 / 68 (36.76%) 87.250.250.22:443
2019-11-03 21:13:1842de00e7372eab50e9f1f7b4feed2ad4Virustotal results 25 / 69 (36.23%) 87.250.250.22:443
2019-11-03 14:15:15f7f1b08e4e687d5d85fb1ede4f71801eVirustotal results 27 / 70 (38.57%) 87.250.250.22:443
2019-11-03 06:38:34a90776593139a2f29f1cf59e69f0bdaeVirustotal results 28 / 68 (41.18%) 87.250.250.22:443
2019-11-03 01:13:11a397c4ff7e1eeb88a8bb0f2e7bac08f5Virustotal results 28 / 71 (39.44%) 87.250.250.22:443
2019-11-02 20:29:20b8d2a607af88aad031532206e30d582cVirustotal results 46 / 69 (66.67%) 87.250.250.22:443
2019-11-02 18:34:5805f7a164b90ab970a3434c4b43986e8aVirustotal results 36 / 67 (53.73%) 87.250.250.22:443

# of entries: 100 (max: 100)