JA3 Fingerprints

You can find further information about the JA3 fingerprint 44dab16d680ef93487bc16ad23b3ffb1, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:44dab16d680ef93487bc16ad23b3ffb1
First seen:2019-06-09 22:55:29 UTC
Last seen:2020-07-10 06:24:33 UTC
Status:Blacklisted
Malware samples:570
Destination IPs:25
Malware:Tofsee -
Listing date:2020-01-09 14:27:11

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-07-10 06:24:33cb035105ca6e1c44577d8c84848686a4Virustotal results 49 / 73 (67.12%) 31.13.72.36:443
2020-07-10 06:24:33cb035105ca6e1c44577d8c84848686a4Virustotal results 49 / 73 (67.12%) 193.135.136.17:443
2020-07-10 06:24:31cb035105ca6e1c44577d8c84848686a4Virustotal results 49 / 73 (67.12%) 157.240.194.18:443
2020-07-07 06:39:20a85fc964618438fcf78952f64608358eVirustotal results 50 / 73 (68.49%) 31.13.72.36:443
2020-07-05 14:45:10bc82008785e4f059b0a71fddf764dcc7Virustotal results 42 / 73 (57.53%) 31.13.72.36:443
2020-07-05 14:45:09bc82008785e4f059b0a71fddf764dcc7Virustotal results 42 / 73 (57.53%) 31.13.72.8:443
2020-07-04 22:25:33aa85739ecb1af7b6d36a5c45ecac7f1fVirustotal results 45 / 73 (61.64%) 31.13.72.36:443
2020-07-04 22:25:33aa85739ecb1af7b6d36a5c45ecac7f1fVirustotal results 45 / 73 (61.64%) 31.13.72.8:443
2020-07-04 10:17:0278d1c03dc95ea6a922f337ac26cf038bn/a157.240.194.18:443
2020-07-04 10:17:0278d1c03dc95ea6a922f337ac26cf038bn/a31.13.72.36:443
2020-07-04 10:08:0172442ec5821cdba9b1532da8737cf266Virustotal results 43 / 69 (62.32%) 31.13.72.8:443
2020-07-04 10:08:0072442ec5821cdba9b1532da8737cf266Virustotal results 43 / 69 (62.32%) 31.13.72.36:443
2020-07-03 15:11:03d7333fc36b17b96a0a09b5b616466604Virustotal results 48 / 73 (65.75%) 31.13.72.36:443
2020-07-03 15:11:02d7333fc36b17b96a0a09b5b616466604Virustotal results 48 / 73 (65.75%) 193.135.136.17:443
2020-07-03 15:11:02d7333fc36b17b96a0a09b5b616466604Virustotal results 48 / 73 (65.75%) 31.13.72.8:443
2020-07-03 12:38:27c27f104e6575d1b551ded5e88d93cb30Virustotal results 46 / 73 (63.01%) 31.13.72.36:443
2020-07-03 12:24:56c252698643c12ba4c4d7324e730806cdVirustotal results 50 / 73 (68.49%) 31.13.72.8:443
2020-07-03 12:24:55c252698643c12ba4c4d7324e730806cdVirustotal results 50 / 73 (68.49%) 31.13.72.36:443
2020-07-03 07:07:53bbaef49ef5bb882ae792fc493d857610Virustotal results 48 / 71 (67.61%) 31.13.72.8:443
2020-07-03 07:07:52bbaef49ef5bb882ae792fc493d857610Virustotal results 48 / 71 (67.61%) 31.13.72.36:443
2020-07-03 06:50:03bbcfc2e81282b25760d33f889199a9e7Virustotal results 55 / 73 (75.34%) 193.135.136.17:443
2020-07-03 06:50:02bbcfc2e81282b25760d33f889199a9e7Virustotal results 55 / 73 (75.34%) 31.13.72.36:443
2020-07-03 06:50:02bbcfc2e81282b25760d33f889199a9e7Virustotal results 55 / 73 (75.34%) 31.13.72.8:443
2020-07-02 23:55:05b3ad65faeafacea5d2731c09f4f2f4ceVirustotal results 39 / 72 (54.17%) 157.240.201.15:443
2020-07-02 23:55:04b3ad65faeafacea5d2731c09f4f2f4ceVirustotal results 39 / 72 (54.17%) 31.13.72.36:443
2020-07-02 23:55:04b3ad65faeafacea5d2731c09f4f2f4ceVirustotal results 39 / 72 (54.17%) 31.13.72.8:443
2020-07-02 23:55:04b3ad65faeafacea5d2731c09f4f2f4ceVirustotal results 39 / 72 (54.17%) 157.240.194.35:443
2020-07-02 18:41:3499d883d5f2b6cddfa4c94ed20c02c46bVirustotal results 37 / 73 (50.68%) 31.13.72.8:443
2020-07-02 18:41:3499d883d5f2b6cddfa4c94ed20c02c46bVirustotal results 37 / 73 (50.68%) 31.13.72.36:443
2020-07-02 06:53:07a8ceedc4e7e79da06fdb4e7ba8d62140n/a31.13.72.36:443
2020-07-02 06:53:07a8ceedc4e7e79da06fdb4e7ba8d62140n/a157.240.194.18:443
2020-07-01 21:05:00870d3c832ff4490f357041c6058b9475Virustotal results 42 / 72 (58.33%) 157.240.194.18:443
2020-07-01 21:05:00870d3c832ff4490f357041c6058b9475Virustotal results 42 / 72 (58.33%) 31.13.72.36:443
2020-07-01 17:38:578f495a4e18c762b17b88c90a26dd390dVirustotal results 40 / 72 (55.56%) 31.13.72.8:443
2020-07-01 17:38:578f495a4e18c762b17b88c90a26dd390dVirustotal results 40 / 72 (55.56%) 31.13.72.36:443
2020-07-01 13:10:5614b9da694542b86fc1eb9d058eb9e307Virustotal results 37 / 58 (63.79%) 157.240.194.35:443
2020-07-01 04:13:0406711b56d5c57076ac2ecb990f0b6845Virustotal results 52 / 73 (71.23%) 157.240.194.18:443
2020-07-01 04:13:0406711b56d5c57076ac2ecb990f0b6845Virustotal results 52 / 73 (71.23%) 31.13.72.36:443
2020-06-30 23:00:2700c8c5175eeb1048ab05f72796126818Virustotal results 54 / 71 (76.06%) 31.13.72.36:443
2020-06-30 20:42:4050c1f1bfcc4edb0f54594210d5650ba6Virustotal results 39 / 73 (53.42%) 157.240.194.18:443
2020-06-30 20:42:3950c1f1bfcc4edb0f54594210d5650ba6Virustotal results 39 / 73 (53.42%) 31.13.72.36:443
2020-06-30 20:29:424e227065c847e73e87a2d34e51f1ab82Virustotal results 38 / 72 (52.78%) 31.13.72.8:443
2020-06-30 20:29:414e227065c847e73e87a2d34e51f1ab82Virustotal results 38 / 72 (52.78%) 157.240.201.15:443
2020-06-30 20:29:414e227065c847e73e87a2d34e51f1ab82Virustotal results 38 / 72 (52.78%) 31.13.72.36:443
2020-06-30 06:27:09b301cd05d728bfad9a6d19ad922fe943Virustotal results 49 / 74 (66.22%) 31.13.72.8:443
2020-06-30 06:03:43b03a1af8a85068822a5ed79f5d692fefVirustotal results 46 / 73 (63.01%) 31.13.72.8:443
2020-06-30 06:03:43b03a1af8a85068822a5ed79f5d692fefVirustotal results 46 / 73 (63.01%) 31.13.72.36:443
2020-06-30 05:30:14b906f4a2291810a3a82bbb8f3e7af609Virustotal results 42 / 74 (56.76%) 31.13.72.36:443
2020-06-29 21:26:43a7b09133ecb60b0bf50fddfd189689e4n/a31.13.72.36:443
2020-06-29 21:26:43a7b09133ecb60b0bf50fddfd189689e4n/a31.13.72.8:443
2020-06-29 03:49:33ad0897f1da1b116f6a8885d13c717e13Virustotal results 50 / 73 (68.49%) 157.240.194.18:443
2020-06-29 03:49:32ad0897f1da1b116f6a8885d13c717e13Virustotal results 50 / 73 (68.49%) 157.240.194.35:443
2020-06-29 03:49:32ad0897f1da1b116f6a8885d13c717e13Virustotal results 50 / 73 (68.49%) 31.13.72.36:443
2020-06-29 02:39:10ab37b193771e8c4535b64ebbe0f7993cVirustotal results 47 / 72 (65.28%) 31.13.72.36:443
2020-06-29 02:39:10ab37b193771e8c4535b64ebbe0f7993cVirustotal results 47 / 72 (65.28%) 193.135.136.17:443
2020-06-29 02:39:09ab37b193771e8c4535b64ebbe0f7993cVirustotal results 47 / 72 (65.28%) 157.240.194.18:443
2020-06-29 00:27:56a9393c9670854f80c664263e9aa5c307Virustotal results 48 / 72 (66.67%) 31.13.72.36:443
2020-06-28 23:51:27a82dc66addf8a41d8ab6e539a2fe7fa6Virustotal results 43 / 73 (58.90%) 31.13.72.36:443
2020-06-28 23:51:26a82dc66addf8a41d8ab6e539a2fe7fa6Virustotal results 43 / 73 (58.90%) 31.13.72.8:443
2020-06-28 23:50:20a78f713c3af88e5a8a9804e7f9e26a7aVirustotal results 46 / 72 (63.89%) 31.13.72.36:443
2020-06-28 23:50:19a78f713c3af88e5a8a9804e7f9e26a7aVirustotal results 46 / 72 (63.89%) 31.13.72.8:443
2020-06-28 19:28:198cbeb2d8998bee4d27e9d753e1e583fdn/a31.13.72.36:443
2020-06-28 19:28:188cbeb2d8998bee4d27e9d753e1e583fdn/a31.13.72.8:443
2020-06-28 19:07:3683c5a1cfa385c474593795875a0d13c5Virustotal results 54 / 73 (73.97%) 31.13.72.36:443
2020-06-28 19:07:3583c5a1cfa385c474593795875a0d13c5Virustotal results 54 / 73 (73.97%) 157.240.194.18:443
2020-06-28 12:02:2425c6518c27bddeb20d75722a5cd7478eVirustotal results 40 / 73 (54.79%) 31.13.72.36:443
2020-06-28 12:02:2425c6518c27bddeb20d75722a5cd7478eVirustotal results 40 / 73 (54.79%) 31.13.72.8:443
2020-06-28 11:50:3124a38736cb3cf34f75219ef80c036e34Virustotal results 45 / 74 (60.81%) 31.13.72.36:443
2020-06-28 11:50:3024a38736cb3cf34f75219ef80c036e34Virustotal results 45 / 74 (60.81%) 31.13.72.8:443
2020-06-28 11:28:0323f5b8965247227ae4123d2ef1a714c3Virustotal results 46 / 73 (63.01%) 31.13.72.8:443
2020-06-28 11:28:0223f5b8965247227ae4123d2ef1a714c3Virustotal results 46 / 73 (63.01%) 31.13.72.36:443
2020-06-28 11:28:0223f5b8965247227ae4123d2ef1a714c3Virustotal results 46 / 73 (63.01%) 31.13.64.21:443
2020-06-28 09:20:551d52c78c55e79394792d67acb028d86aVirustotal results 49 / 72 (68.06%) 31.13.72.8:443
2020-06-28 09:20:541d52c78c55e79394792d67acb028d86aVirustotal results 49 / 72 (68.06%) 31.13.72.36:443
2020-06-28 05:42:48134b0aae2b43e2be2c247a6591954f5eVirustotal results 22 / 72 (30.56%) 31.13.72.36:443
2020-06-28 05:42:48134b0aae2b43e2be2c247a6591954f5eVirustotal results 22 / 72 (30.56%) 31.13.72.8:443
2020-06-28 05:42:48134b0aae2b43e2be2c247a6591954f5eVirustotal results 22 / 72 (30.56%) 157.240.194.35:443
2020-06-28 05:42:47134b0aae2b43e2be2c247a6591954f5eVirustotal results 22 / 72 (30.56%) 193.135.136.17:443
2020-06-28 01:11:31044be4366976a7f0f82572f998fea8b1Virustotal results 49 / 74 (66.22%) 31.13.72.36:443
2020-06-27 21:45:07a84d45153a04369f93aaf5e48d49eb31Virustotal results 52 / 72 (72.22%) 193.135.136.17:443
2020-06-27 21:45:06a84d45153a04369f93aaf5e48d49eb31Virustotal results 52 / 72 (72.22%) 31.13.72.36:443
2020-06-27 21:45:06a84d45153a04369f93aaf5e48d49eb31Virustotal results 52 / 72 (72.22%) 31.13.72.8:443
2020-06-27 21:26:10a505c538e7e19514666120a0d30b675eVirustotal results 47 / 73 (64.38%) 31.13.72.36:443
2020-06-27 21:26:10a505c538e7e19514666120a0d30b675eVirustotal results 47 / 73 (64.38%) 31.13.72.8:443
2020-06-27 20:41:04a376c2e013a2676dfdcd6ad8720da2e0Virustotal results 49 / 74 (66.22%) 31.13.72.8:443
2020-06-27 20:41:03a376c2e013a2676dfdcd6ad8720da2e0Virustotal results 49 / 74 (66.22%) 31.13.72.36:443
2020-06-27 20:18:15ac1379cf6a98885e9e80eee9adb397dfVirustotal results 48 / 73 (65.75%) 31.13.72.8:443
2020-06-27 19:50:21ac35d5b788dedd16fff326530258674aVirustotal results 48 / 73 (65.75%) 157.240.194.35:443
2020-06-27 19:50:21ac35d5b788dedd16fff326530258674aVirustotal results 48 / 73 (65.75%) 31.13.72.8:443
2020-06-27 19:50:20ac35d5b788dedd16fff326530258674aVirustotal results 48 / 73 (65.75%) 31.13.72.36:443
2020-06-27 05:21:5225236757db8139ce5c1a343cc461b5e3Virustotal results 49 / 73 (67.12%) 31.13.72.36:443
2020-06-27 05:21:5225236757db8139ce5c1a343cc461b5e3Virustotal results 49 / 73 (67.12%) 31.13.72.8:443
2020-06-27 01:09:0416c521d4c723ccd14e31564a012aa29cVirustotal results 53 / 74 (71.62%) 157.240.194.18:443
2020-06-27 01:09:0416c521d4c723ccd14e31564a012aa29cVirustotal results 53 / 74 (71.62%) 31.13.72.36:443
2020-06-26 23:07:151168b43a4874a9004c32cc968981d583Virustotal results 49 / 73 (67.12%) 31.13.72.36:443
2020-06-26 23:07:131168b43a4874a9004c32cc968981d583Virustotal results 49 / 73 (67.12%) 31.13.72.8:443
2020-06-26 23:07:131168b43a4874a9004c32cc968981d583Virustotal results 49 / 73 (67.12%) 157.240.194.35:443
2020-06-26 14:53:58a01691b45baeffdb7bf91a09c35ce387Virustotal results 47 / 74 (63.51%) 31.13.72.8:443
2020-06-26 14:53:57a01691b45baeffdb7bf91a09c35ce387Virustotal results 47 / 74 (63.51%) 31.13.72.36:443
2020-06-26 14:44:019f72b4f85ec7f2ae6f4b30ed08830e6aVirustotal results 38 / 74 (51.35%) 157.240.194.35:443

# of entries: 100 (max: 100)