JA3 Fingerprints

You can find further information about the JA3 fingerprint 44dab16d680ef93487bc16ad23b3ffb1, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:44dab16d680ef93487bc16ad23b3ffb1
First seen:2019-06-09 22:55:29 UTC
Last seen:2020-09-21 18:40:14 UTC
Status:Blacklisted
Malware samples:662
Destination IPs:25
Malware:Tofsee -
Listing date:2020-01-09 14:27:11

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-09-21 18:40:1422d0478156eedc2336f51ac4bc901fc4Virustotal results 52 / 67 (77.61%) 157.240.194.35:443
2020-09-21 11:32:36d929687a05828f5c3bb458d893ca6409Virustotal results 43 / 70 (61.43%) 157.240.194.35:443
2020-09-21 11:32:36d929687a05828f5c3bb458d893ca6409Virustotal results 43 / 70 (61.43%) 157.240.194.18:443
2020-09-21 11:32:35d929687a05828f5c3bb458d893ca6409Virustotal results 43 / 70 (61.43%) 31.13.72.36:443
2020-09-21 10:49:13d3f509413a3dbdc992676ae0ac29e571Virustotal results 52 / 67 (77.61%) 31.13.72.8:443
2020-09-21 10:49:12d3f509413a3dbdc992676ae0ac29e571Virustotal results 52 / 67 (77.61%) 31.13.72.36:443
2020-09-20 21:13:28b4a61eb127e53b2bc4ea59bb4206257fVirustotal results 50 / 67 (74.63%) 31.13.72.36:443
2020-09-20 21:13:28b4a61eb127e53b2bc4ea59bb4206257fVirustotal results 50 / 67 (74.63%) 31.13.72.8:443
2020-09-20 21:13:27b4a61eb127e53b2bc4ea59bb4206257fVirustotal results 50 / 67 (74.63%) 157.240.194.35:443
2020-09-20 20:10:13b385f11aef6f8c466681cccd374d3befVirustotal results 45 / 68 (66.18%) 31.13.72.8:443
2020-09-20 20:10:13b385f11aef6f8c466681cccd374d3befVirustotal results 45 / 68 (66.18%) 157.240.194.35:443
2020-09-20 20:10:12b385f11aef6f8c466681cccd374d3befVirustotal results 45 / 68 (66.18%) 31.13.72.36:443
2020-09-20 07:22:19a969cf2ae03b415af3776d622b16b1cfVirustotal results 57 / 68 (83.82%) 31.13.72.8:443
2020-09-20 07:22:18a969cf2ae03b415af3776d622b16b1cfVirustotal results 57 / 68 (83.82%) 31.13.72.36:443
2020-09-20 02:52:5332169d1542f68c8d7a8b7b9c2e3f77c6Virustotal results 51 / 67 (76.12%) 31.13.72.8:443
2020-09-20 02:52:5332169d1542f68c8d7a8b7b9c2e3f77c6Virustotal results 51 / 67 (76.12%) 31.13.72.36:443
2020-09-19 07:51:2815e1c93f717b1f6467420e6b63aa4e0aVirustotal results 47 / 69 (68.12%) 31.13.72.36:443
2020-09-19 07:51:2715e1c93f717b1f6467420e6b63aa4e0aVirustotal results 47 / 69 (68.12%) 31.13.72.8:443
2020-09-19 07:51:2715e1c93f717b1f6467420e6b63aa4e0aVirustotal results 47 / 69 (68.12%) 157.240.194.35:443
2020-09-19 00:52:011eccd59c79d0d78b06e788930596915aVirustotal results 47 / 67 (70.15%) 31.13.72.8:443
2020-09-19 00:52:011eccd59c79d0d78b06e788930596915aVirustotal results 47 / 67 (70.15%) 31.13.72.36:443
2020-09-19 00:09:490746c5c64e614f197db6581e5934f1a9Virustotal results 57 / 67 (85.07%) 157.240.194.35:443
2020-09-19 00:09:480746c5c64e614f197db6581e5934f1a9Virustotal results 57 / 67 (85.07%) 31.13.72.8:443
2020-09-19 00:09:480746c5c64e614f197db6581e5934f1a9Virustotal results 57 / 67 (85.07%) 31.13.72.36:443
2020-09-18 05:36:54a7495f27cc8783a94b03628e0160aebfVirustotal results 29 / 68 (42.65%) 31.13.72.8:443
2020-09-18 05:36:53a7495f27cc8783a94b03628e0160aebfVirustotal results 29 / 68 (42.65%) 31.13.72.36:443
2020-09-18 03:38:3385708349ac5add571d697b0589a95d1an/a31.13.72.8:443
2020-09-18 03:38:3285708349ac5add571d697b0589a95d1an/a31.13.72.36:443
2020-09-17 23:38:4825c209e6ec88aebd18b6abaed697d334Virustotal results 58 / 69 (84.06%) 157.240.194.35:443
2020-09-17 23:38:4625c209e6ec88aebd18b6abaed697d334Virustotal results 58 / 69 (84.06%) 31.13.72.8:443
2020-09-15 21:03:5557251beb5c8855bb7a570323517823b4Virustotal results 42 / 68 (61.76%) 31.13.72.36:443
2020-09-15 21:03:5457251beb5c8855bb7a570323517823b4Virustotal results 42 / 68 (61.76%) 157.240.194.18:443
2020-09-15 21:03:5457251beb5c8855bb7a570323517823b4Virustotal results 42 / 68 (61.76%) 157.240.201.15:443
2020-09-15 20:31:0251cc966a1add0cf363c86a2d901a2f38Virustotal results 52 / 69 (75.36%) 31.13.72.8:443
2020-09-15 19:38:2814fd93aab64d4c567ca88b5c28bb8535n/a31.13.72.36:443
2020-09-15 19:38:2814fd93aab64d4c567ca88b5c28bb8535n/a31.13.72.8:443
2020-09-14 23:26:39a02488c102196adb92a86a947a65b7fcVirustotal results 33 / 67 (49.25%) 157.240.194.35:443
2020-09-14 23:26:39a02488c102196adb92a86a947a65b7fcVirustotal results 33 / 67 (49.25%) 31.13.72.8:443
2020-09-14 23:26:39a02488c102196adb92a86a947a65b7fcVirustotal results 33 / 67 (49.25%) 31.13.72.36:443
2020-09-13 07:28:53ae5ea6b9e86e5d20a2baac784f868d0fVirustotal results 43 / 68 (63.24%) 31.13.72.8:443
2020-09-13 07:28:53ae5ea6b9e86e5d20a2baac784f868d0fVirustotal results 43 / 68 (63.24%) 31.13.72.36:443
2020-09-13 06:00:59ac62c5a952ceeb4619a43da53a594a98Virustotal results 35 / 63 (55.56%) 31.13.72.8:443
2020-09-13 06:00:59ac62c5a952ceeb4619a43da53a594a98Virustotal results 35 / 63 (55.56%) 31.13.72.36:443
2020-09-13 06:00:59ac62c5a952ceeb4619a43da53a594a98Virustotal results 35 / 63 (55.56%) 157.240.194.35:443
2020-09-13 01:55:02a5d74ff4edb8695fac66500947ba8e7dn/a31.13.72.36:443
2020-09-13 01:55:00a5d74ff4edb8695fac66500947ba8e7dn/a31.13.72.8:443
2020-09-12 23:12:26a1fececf74d64d08bc4093349ab787cdVirustotal results 45 / 70 (64.29%) 31.13.72.36:443
2020-09-12 23:12:26a1fececf74d64d08bc4093349ab787cdVirustotal results 45 / 70 (64.29%) 31.13.72.8:443
2020-09-12 16:22:31b1148522506ea57b5140ed4cec256368n/a31.13.72.36:443
2020-09-12 16:22:31b1148522506ea57b5140ed4cec256368n/a31.13.72.8:443
2020-09-12 02:32:16a65cf37a9b90aeb237e50c5f6044aaafn/a31.13.72.8:443
2020-09-12 02:32:16a65cf37a9b90aeb237e50c5f6044aaafn/a31.13.72.36:443
2020-09-12 02:32:16a65cf37a9b90aeb237e50c5f6044aaafn/a31.13.64.21:443
2020-09-06 22:06:136d1275a2a7371d6547048e7abc9dccb7Virustotal results 56 / 68 (82.35%) 185.60.216.15:443
2020-09-06 22:06:136d1275a2a7371d6547048e7abc9dccb7Virustotal results 56 / 68 (82.35%) 157.240.20.35:443
2020-09-06 22:06:136d1275a2a7371d6547048e7abc9dccb7Virustotal results 56 / 68 (82.35%) 157.240.17.15:443
2020-09-06 22:06:126d1275a2a7371d6547048e7abc9dccb7Virustotal results 56 / 68 (82.35%) 185.60.216.35:443
2020-09-06 16:15:1344401bab64b93a16fb2871e1666f03edVirustotal results 47 / 74 (63.51%) 157.240.194.35:443
2020-09-06 16:15:1344401bab64b93a16fb2871e1666f03edVirustotal results 47 / 74 (63.51%) 31.13.72.36:443
2020-09-06 16:15:1244401bab64b93a16fb2871e1666f03edVirustotal results 47 / 74 (63.51%) 31.13.72.8:443
2020-08-30 20:22:00404c1523c56001e0d68664c09a94f603Virustotal results 49 / 69 (71.01%) 157.240.194.18:443
2020-08-30 16:45:07a67377174cfbc777c264bbb64baf2434Virustotal results 43 / 67 (64.18%) 31.13.72.36:443
2020-08-30 16:45:07a67377174cfbc777c264bbb64baf2434Virustotal results 43 / 67 (64.18%) 31.13.72.8:443
2020-08-26 18:54:4623a791cb79d763c6c5445778d1b83bd5n/a31.13.64.21:443
2020-08-26 18:54:4623a791cb79d763c6c5445778d1b83bd5n/a157.240.194.18:443
2020-08-26 18:54:4623a791cb79d763c6c5445778d1b83bd5n/a31.13.72.36:443
2020-08-26 17:45:571e4af12a91c2090d29ce1f5277432a1en/a31.13.72.36:443
2020-08-14 19:03:290717071eddb2cd7941e9bd20f90cda7aVirustotal results 49 / 70 (70.00%) 31.13.72.8:443
2020-08-14 19:03:290717071eddb2cd7941e9bd20f90cda7aVirustotal results 49 / 70 (70.00%) 31.13.72.36:443
2020-08-13 22:59:429cd17daf10ffcec751b134ba18ab7196Virustotal results 59 / 72 (81.94%) 31.13.72.36:443
2020-08-13 21:50:488daf18be0f88191e984842a813aa1330Virustotal results 48 / 69 (69.57%) 31.13.72.8:443
2020-08-13 21:50:478daf18be0f88191e984842a813aa1330Virustotal results 48 / 69 (69.57%) 31.13.72.36:443
2020-08-13 20:23:57657cf77cc89b5dc478c580801d07c66cn/a31.13.72.36:443
2020-08-13 20:23:57657cf77cc89b5dc478c580801d07c66cn/a31.13.72.8:443
2020-08-12 23:37:1076c0445a38676f843014c8deda18979dVirustotal results 56 / 72 (77.78%) 31.13.72.8:443
2020-08-12 23:37:1076c0445a38676f843014c8deda18979dVirustotal results 56 / 72 (77.78%) 31.13.72.36:443
2020-08-12 23:23:077176beb941e6a4be3de3c9e875a615cbn/a31.13.72.36:443
2020-08-12 23:23:067176beb941e6a4be3de3c9e875a615cbn/a31.13.72.8:443
2020-08-12 20:52:09092b9f5493f5f3501a9b92b038ba47a0n/a31.13.72.8:443
2020-08-12 20:52:08092b9f5493f5f3501a9b92b038ba47a0n/a31.13.72.36:443
2020-08-12 03:42:19b6a642f56bd637625b159479d6d2125an/a31.13.72.8:443
2020-08-12 03:42:19b6a642f56bd637625b159479d6d2125an/a31.13.72.36:443
2020-08-12 03:35:14b34bc8d36dac983f8941f7a348fd92a8Virustotal results 54 / 68 (79.41%) 157.240.194.35:443
2020-08-12 03:35:12b34bc8d36dac983f8941f7a348fd92a8Virustotal results 54 / 68 (79.41%) 31.13.72.8:443
2020-08-12 03:35:12b34bc8d36dac983f8941f7a348fd92a8Virustotal results 54 / 68 (79.41%) 31.13.72.36:443
2020-08-12 03:22:13b04e4c2eeedee902fdd9d2f028f92c74Virustotal results 55 / 72 (76.39%) 157.240.194.18:443
2020-08-12 03:22:13b04e4c2eeedee902fdd9d2f028f92c74Virustotal results 55 / 72 (76.39%) 31.13.72.36:443
2020-08-12 00:09:488b6d1f17c42b06726beeba887996fabeVirustotal results 60 / 73 (82.19%) 31.13.72.8:443
2020-08-12 00:09:488b6d1f17c42b06726beeba887996fabeVirustotal results 60 / 73 (82.19%) 31.13.72.36:443
2020-08-12 00:09:478b6d1f17c42b06726beeba887996fabeVirustotal results 60 / 73 (82.19%) 157.240.194.35:443
2020-08-11 21:16:227449c4bb34091ac3941d6b0850401500n/a31.13.72.36:443
2020-08-11 21:16:217449c4bb34091ac3941d6b0850401500n/a157.240.194.18:443
2020-08-11 19:21:345c137670220181b87c5cc6ac470d907dn/a31.13.72.8:443
2020-08-11 19:21:335c137670220181b87c5cc6ac470d907dn/a31.13.72.36:443
2020-08-11 19:05:215851e23eb6c62315f01400a4b2072533n/a31.13.72.36:443
2020-08-11 19:05:205851e23eb6c62315f01400a4b2072533n/a31.13.72.8:443
2020-08-11 13:41:023876f19debdbdca3277b5fe1be459528n/a31.13.72.8:443
2020-08-09 23:07:15b683342bcae3177226621dc116c19085Virustotal results 55 / 73 (75.34%) 31.13.72.8:443
2020-08-09 23:07:15b683342bcae3177226621dc116c19085Virustotal results 55 / 73 (75.34%) 31.13.72.36:443
2020-08-09 00:59:29aca80219d5a2f629120edba24e5d9950Virustotal results 55 / 72 (76.39%) 31.13.72.8:443

# of entries: 100 (max: 100)