JA3 Fingerprints

You can find further information about the JA3 fingerprint 44dab16d680ef93487bc16ad23b3ffb1, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:44dab16d680ef93487bc16ad23b3ffb1
First seen:2019-06-09 22:55:29 UTC
Last seen:2020-04-05 05:48:26 UTC
Status:Blacklisted
Malware samples:339
Destination IPs:23
Malware:Tofsee -
Listing date:2020-01-09 14:27:11

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-04-05 05:48:26b4356e66d34b310f0e007d80d7244081Virustotal results 40 / 71 (56.34%) 31.13.72.36:443
2020-04-05 05:48:25b4356e66d34b310f0e007d80d7244081Virustotal results 40 / 71 (56.34%) 193.135.136.212:443
2020-04-05 05:48:25b4356e66d34b310f0e007d80d7244081Virustotal results 40 / 71 (56.34%) 157.240.194.35:443
2020-04-05 05:48:25b4356e66d34b310f0e007d80d7244081Virustotal results 40 / 71 (56.34%) 31.13.72.8:443
2020-04-03 22:01:303f8474528ca3cb2887e4686ee403906en/a31.13.72.36:443
2020-04-03 22:01:283f8474528ca3cb2887e4686ee403906en/a157.240.194.35:443
2020-04-03 22:01:273f8474528ca3cb2887e4686ee403906en/a31.13.72.8:443
2020-04-03 21:24:563dc79f9ef9b3020de8df734864f9648fn/a193.135.136.212:443
2020-04-03 21:24:553dc79f9ef9b3020de8df734864f9648fn/a157.240.194.18:443
2020-04-03 21:24:553dc79f9ef9b3020de8df734864f9648fn/a157.240.194.35:443
2020-04-03 21:24:543dc79f9ef9b3020de8df734864f9648fn/a31.13.72.36:443
2020-04-03 21:03:09114473afba7b60488dd1f3e141fbd888n/a185.60.216.35:443
2020-04-03 19:34:38eb834b42b7493884ac06f148f51fde0bn/a31.13.72.36:443
2020-04-03 19:34:38eb834b42b7493884ac06f148f51fde0bn/a31.13.64.21:443
2020-04-03 19:34:37eb834b42b7493884ac06f148f51fde0bn/a31.13.72.8:443
2020-04-03 19:29:01768a4e253da69ffa972dc1b0b9728993n/a185.60.216.35:443
2020-04-03 19:29:00768a4e253da69ffa972dc1b0b9728993n/a185.60.216.15:443
2020-04-03 07:31:006b33274e91e72a4b716cfc807baedd14n/a31.13.72.36:443
2020-04-01 23:08:0304bf1c2794a8e0ea112dfa93f3374644n/a31.13.72.36:443
2020-04-01 23:08:0104bf1c2794a8e0ea112dfa93f3374644n/a31.13.72.8:443
2020-04-01 10:08:28903ab15f54e124fca2aa46a615d58905n/a157.240.194.35:443
2020-03-31 08:38:35142e93b0e744a05d54382eb5675beeean/a31.13.72.36:443
2020-03-31 07:05:5613567cdcf5c49887a0aef719a8a6357en/a31.13.72.36:443
2020-03-29 20:02:23326f2c90f50530e51ae7dc5458fe5d1en/a31.13.72.36:443
2020-03-29 20:02:22326f2c90f50530e51ae7dc5458fe5d1en/a31.13.72.8:443
2020-03-29 20:02:22326f2c90f50530e51ae7dc5458fe5d1en/a157.240.194.18:443
2020-03-29 19:59:493fbdd253b9cf04880b507036cf4f7006n/a31.13.72.36:443
2020-03-29 19:59:493fbdd253b9cf04880b507036cf4f7006n/a31.13.72.8:443
2020-03-29 19:45:25ff913329af3b334debcebc2e85adc713n/a193.135.136.212:443
2020-03-29 19:45:25ff913329af3b334debcebc2e85adc713n/a31.13.72.8:443
2020-03-29 19:45:24ff913329af3b334debcebc2e85adc713n/a31.13.72.36:443
2020-03-29 19:27:4483c6fa49c906279907c4d1a8096acd10n/a31.13.92.14:443
2020-03-29 19:27:4383c6fa49c906279907c4d1a8096acd10n/a31.13.72.36:443
2020-03-29 19:27:4383c6fa49c906279907c4d1a8096acd10n/a31.13.72.8:443
2020-03-29 19:27:4283c6fa49c906279907c4d1a8096acd10n/a157.240.194.35:443
2020-03-29 19:22:58ada0c02090b54a98136b7c5caee43380Virustotal results 55 / 73 (75.34%) 157.240.194.18:443
2020-03-29 19:22:58ada0c02090b54a98136b7c5caee43380Virustotal results 55 / 73 (75.34%) 31.13.72.36:443
2020-03-29 19:13:384f49bd76e941bfda0f2f44d06df8c855n/a157.240.194.35:443
2020-03-29 19:13:384f49bd76e941bfda0f2f44d06df8c855n/a31.13.72.8:443
2020-03-29 08:34:05c260b388b3a0a6a42d1dc18f67eb1b5eVirustotal results 31 / 72 (43.06%) 31.13.64.21:443
2020-03-29 08:34:05c260b388b3a0a6a42d1dc18f67eb1b5eVirustotal results 31 / 72 (43.06%) 31.13.72.8:443
2020-03-29 08:34:05c260b388b3a0a6a42d1dc18f67eb1b5eVirustotal results 31 / 72 (43.06%) 31.13.72.36:443
2020-03-29 00:54:10aabf7a7dfd185f1e3969712068f359a8Virustotal results 38 / 73 (52.05%) 31.13.72.36:443
2020-03-29 00:54:10aabf7a7dfd185f1e3969712068f359a8Virustotal results 38 / 73 (52.05%) 31.13.72.8:443
2020-03-29 00:54:09aabf7a7dfd185f1e3969712068f359a8Virustotal results 38 / 73 (52.05%) 157.240.30.27:443
2020-03-28 18:48:281f5a136b42a01c263022e9b7288080d5n/a157.240.20.35:443
2020-03-28 18:48:271f5a136b42a01c263022e9b7288080d5n/a31.13.92.36:443
2020-03-28 18:48:271f5a136b42a01c263022e9b7288080d5n/a31.13.92.10:443
2020-03-28 18:27:4029bab3886add948bb6983c0a74ddde81n/a31.13.92.36:443
2020-03-28 18:27:4029bab3886add948bb6983c0a74ddde81n/a31.13.92.10:443
2020-03-28 18:27:3929bab3886add948bb6983c0a74ddde81n/a157.240.20.35:443
2020-03-28 18:27:3929bab3886add948bb6983c0a74ddde81n/a157.240.201.15:443
2020-03-27 08:00:53cd0f9d101208331d0682a14607fb8935Virustotal results 55 / 73 (75.34%) 31.13.72.36:443
2020-03-27 08:00:52cd0f9d101208331d0682a14607fb8935Virustotal results 55 / 73 (75.34%) 157.240.194.35:443
2020-03-27 08:00:51cd0f9d101208331d0682a14607fb8935Virustotal results 55 / 73 (75.34%) 31.13.72.8:443
2020-03-25 19:14:13283379943f74ca13f4b8b68ce5555e34Virustotal results 55 / 73 (75.34%) 157.240.17.15:443
2020-03-25 19:14:11283379943f74ca13f4b8b68ce5555e34Virustotal results 55 / 73 (75.34%) 157.240.194.18:443
2020-03-25 19:14:10283379943f74ca13f4b8b68ce5555e34Virustotal results 55 / 73 (75.34%) 157.240.194.35:443
2020-03-25 19:14:10283379943f74ca13f4b8b68ce5555e34Virustotal results 55 / 73 (75.34%) 31.13.72.36:443
2020-03-25 18:08:07617757adfdd08f4de7bb1a7c763e1354n/a157.240.194.35:443
2020-03-25 18:08:07617757adfdd08f4de7bb1a7c763e1354n/a31.13.72.8:443
2020-03-25 18:08:05617757adfdd08f4de7bb1a7c763e1354n/a193.135.136.212:443
2020-03-25 18:08:05617757adfdd08f4de7bb1a7c763e1354n/a31.13.72.36:443
2020-03-25 17:48:467d99738ae0fbfe01e9b4e0b2734505b9n/a157.240.194.18:443
2020-03-25 17:48:467d99738ae0fbfe01e9b4e0b2734505b9n/a31.13.64.21:443
2020-03-25 17:48:447d99738ae0fbfe01e9b4e0b2734505b9n/a31.13.72.36:443
2020-03-25 08:25:53e4927c69ab20efd10f8ad729a209001cn/a157.240.17.15:443
2020-03-25 08:25:52e4927c69ab20efd10f8ad729a209001cn/a157.240.194.18:443
2020-03-25 08:25:52e4927c69ab20efd10f8ad729a209001cn/a31.13.72.36:443
2020-03-24 10:47:17015cf6ea89bb81b627974c9285d383a0Virustotal results 54 / 72 (75.00%) 31.13.72.8:443
2020-03-24 10:47:17015cf6ea89bb81b627974c9285d383a0Virustotal results 54 / 72 (75.00%) 31.13.72.36:443
2020-03-24 07:22:05fb5d99056bbec8b5c63a601e354fc338n/a31.13.72.36:443
2020-03-24 07:22:04fb5d99056bbec8b5c63a601e354fc338n/a157.240.17.15:443
2020-03-24 07:22:04fb5d99056bbec8b5c63a601e354fc338n/a31.13.72.8:443
2020-03-24 07:14:34f9838b48b76cd2e54b8a23f97eccd07fn/a31.13.72.8:443
2020-03-24 07:14:34f9838b48b76cd2e54b8a23f97eccd07fn/a193.135.136.212:443
2020-03-24 07:14:33f9838b48b76cd2e54b8a23f97eccd07fn/a31.13.72.36:443
2020-03-24 04:36:17b485bc0512c504cb7bbbc7376718970eVirustotal results 55 / 73 (75.34%) 31.13.72.8:443
2020-03-24 00:43:17498712c2e86e43156e61b25b00ff4391n/a157.240.194.35:443
2020-03-24 00:43:17498712c2e86e43156e61b25b00ff4391n/a31.13.72.36:443
2020-03-24 00:43:17498712c2e86e43156e61b25b00ff4391n/a185.60.216.19:443
2020-03-24 00:43:16498712c2e86e43156e61b25b00ff4391n/a31.13.72.8:443
2020-03-23 22:48:428d2e93b7521a348c90a0e3b24c3863e5n/a31.13.72.36:443
2020-03-23 22:48:408d2e93b7521a348c90a0e3b24c3863e5n/a31.13.72.8:443
2020-03-22 12:32:34a61d1763c317f2f43e45ce868087c921Virustotal results 53 / 72 (73.61%) 31.13.72.36:443
2020-03-22 12:32:34a61d1763c317f2f43e45ce868087c921Virustotal results 53 / 72 (73.61%) 157.240.194.18:443
2020-03-22 06:52:441e2b1f625c92dd88611fc31bfa9e2b85n/a31.13.72.36:443
2020-03-22 06:52:441e2b1f625c92dd88611fc31bfa9e2b85n/a31.13.72.8:443
2020-03-21 20:25:119a03c4f9e25dbfa5ac78054e57cfa2f2Virustotal results 37 / 71 (52.11%) 157.240.194.35:443
2020-03-21 20:25:099a03c4f9e25dbfa5ac78054e57cfa2f2Virustotal results 37 / 71 (52.11%) 31.13.72.8:443
2020-03-21 20:25:089a03c4f9e25dbfa5ac78054e57cfa2f2Virustotal results 37 / 71 (52.11%) 157.240.17.15:443
2020-03-21 20:25:089a03c4f9e25dbfa5ac78054e57cfa2f2Virustotal results 37 / 71 (52.11%) 31.13.72.36:443
2020-03-21 17:31:17f2ec44dad34a8f0f3bd34b33d91989fbn/a31.13.72.8:443
2020-03-21 17:31:17f2ec44dad34a8f0f3bd34b33d91989fbn/a31.13.72.36:443
2020-03-21 06:04:17a4bf21a69fb30c57ec8688cbd7e3cf89Virustotal results 54 / 73 (73.97%) 157.240.194.35:443
2020-03-21 06:04:16a4bf21a69fb30c57ec8688cbd7e3cf89Virustotal results 54 / 73 (73.97%) 31.13.72.8:443
2020-03-20 20:16:29ae411dc63a6870e14d9a70460c5bf6c7Virustotal results 54 / 71 (76.06%) 31.13.72.36:443
2020-03-20 20:16:29ae411dc63a6870e14d9a70460c5bf6c7Virustotal results 54 / 71 (76.06%) 31.13.81.13:443
2020-03-20 20:15:56c4ad4b3e50d79114b98d52de20df0c00Virustotal results 54 / 72 (75.00%) 31.13.72.8:443
2020-03-20 20:15:54c4ad4b3e50d79114b98d52de20df0c00Virustotal results 54 / 72 (75.00%) 31.13.72.36:443

# of entries: 100 (max: 100)