JA3 Fingerprints

You can find further information about the JA3 fingerprint 57f3642b4e37e28f5cbe3020c9331b4c, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:57f3642b4e37e28f5cbe3020c9331b4c
First seen:2018-08-28 15:54:53 UTC
Last seen:2020-01-26 08:41:14 UTC
Status:Blacklisted
Malware samples:3'600
Destination IPs:279
Malware:Gozi -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-01-26 08:41:14b40bc9f70fbfd55201bedde326b6bb59Virustotal results 53 / 73 (72.60%) 152.199.19.161:443
2020-01-26 08:41:12b40bc9f70fbfd55201bedde326b6bb59Virustotal results 53 / 73 (72.60%) 67.202.110.21:443
2020-01-26 07:44:24b864caa13f74cfcdcaac044d018de455Virustotal results 54 / 73 (73.97%) 67.202.110.24:443
2020-01-26 07:44:24b864caa13f74cfcdcaac044d018de455Virustotal results 54 / 73 (73.97%) 152.199.19.161:443
2020-01-26 07:32:03a59b96662e382521c72a313eb3601e1eVirustotal results 53 / 73 (72.60%) 67.202.110.21:443
2020-01-26 07:32:01a59b96662e382521c72a313eb3601e1eVirustotal results 53 / 73 (72.60%) 152.199.19.161:443
2020-01-26 06:59:59ae24b986074c68fc2aa1a8875bb3d2fbVirustotal results 62 / 73 (84.93%) 152.199.19.161:443
2020-01-26 06:59:57ae24b986074c68fc2aa1a8875bb3d2fbVirustotal results 62 / 73 (84.93%) 67.202.110.21:443
2020-01-26 01:25:18b2051df9511ba700bdd485d834abe40bVirustotal results 49 / 72 (68.06%) 208.100.17.178:443
2020-01-26 01:25:16b2051df9511ba700bdd485d834abe40bVirustotal results 49 / 72 (68.06%) 152.199.19.161:443
2020-01-25 23:36:11b9fe29c09f913f889a56b777875e61b7Virustotal results 51 / 72 (70.83%) 152.199.19.161:443
2020-01-25 20:59:41aaecdf13dc3903d1bcae3b69a1bfea00n/a72.21.81.200:443
2020-01-25 20:23:57a25787a8c1d90dba6da442a72c31e30bVirustotal results 48 / 71 (67.61%) 67.202.110.21:443
2020-01-25 20:23:56a25787a8c1d90dba6da442a72c31e30bVirustotal results 48 / 71 (67.61%) 152.199.19.161:443
2020-01-25 17:34:104db6ddcf7197e671703fa9b8cb7d0e87n/a67.202.110.21:443
2020-01-25 17:34:094db6ddcf7197e671703fa9b8cb7d0e87n/a152.199.19.161:443
2020-01-25 17:32:10192d75e2bd7f441d1c29b382bb26c25cn/a18.208.86.167:443
2020-01-25 17:32:10192d75e2bd7f441d1c29b382bb26c25cn/a152.199.19.161:443
2020-01-25 15:09:33b8d61d0223a73764538704bdb772b5a4n/a152.199.19.161:443
2020-01-25 15:09:33b8d61d0223a73764538704bdb772b5a4n/a67.202.110.22:443
2020-01-25 13:59:50bdb979655f323000342bbc2fcd1c0ae7Virustotal results 65 / 72 (90.28%) 67.202.110.22:443
2020-01-25 13:59:49bdb979655f323000342bbc2fcd1c0ae7Virustotal results 65 / 72 (90.28%) 152.199.19.161:443
2020-01-25 12:43:59ba4ba7f258c180463afdb733a6839868Virustotal results 62 / 73 (84.93%) 208.100.17.174:443
2020-01-25 12:43:58ba4ba7f258c180463afdb733a6839868Virustotal results 62 / 73 (84.93%) 152.199.19.161:443
2020-01-25 09:30:12b6bb25da302939cc37256a2768bb73ddn/a152.199.19.161:443
2020-01-25 09:30:11b6bb25da302939cc37256a2768bb73ddn/a208.100.17.177:443
2020-01-25 08:28:34b4a24c002f74c439cac6c6b6d2b12483n/a152.199.19.161:443
2020-01-25 08:28:34b4a24c002f74c439cac6c6b6d2b12483n/a67.202.110.24:443
2020-01-25 08:21:01b25ab7cfda18760c4bb71348f58e936an/a152.199.19.161:443
2020-01-25 08:21:01b25ab7cfda18760c4bb71348f58e936an/a67.202.110.24:443
2020-01-25 05:12:02a99874f9a9cee15c6700354483b95750Virustotal results 39 / 73 (53.42%) 208.93.230.204:8081
2020-01-25 04:52:13b015bdff1887f81beb58300decb1a0c6n/a152.199.19.161:443
2020-01-25 04:08:47af968525941dd0cabf5eb6e2da42e7e0n/a67.202.110.21:443
2020-01-25 04:08:44af968525941dd0cabf5eb6e2da42e7e0n/a152.199.19.161:443
2020-01-25 02:47:59bfb7e5e0518800f544e7cd9a53bcccd5n/a152.199.19.161:443
2020-01-24 20:40:02aa3e8484145512d153fdfa9df97ccd9an/a208.100.17.177:443
2020-01-24 20:40:02aa3e8484145512d153fdfa9df97ccd9an/a152.199.19.161:443
2020-01-24 19:49:38a824df82974213b0664b88438b0e41dfn/a72.21.81.200:443
2020-01-24 07:27:03b2a1511f1304115f45f3fa55f946f3e3n/a152.199.19.161:443
2020-01-24 07:27:02b2a1511f1304115f45f3fa55f946f3e3n/a67.202.110.22:443
2020-01-24 06:41:26c33c997b09ee144b8d98e52912724f56Virustotal results 61 / 72 (84.72%) 152.199.19.161:443
2020-01-24 06:41:26c33c997b09ee144b8d98e52912724f56Virustotal results 61 / 72 (84.72%) 208.100.17.177:443
2020-01-24 05:56:01b45bb08906a63bb79579cb12327f268eVirustotal results 56 / 73 (76.71%) 208.100.17.176:443
2020-01-24 05:56:00b45bb08906a63bb79579cb12327f268eVirustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-01-24 03:23:24bec55b8c06f3883714e31426207afeccVirustotal results 61 / 73 (83.56%) 152.199.19.161:443
2020-01-24 03:23:23bec55b8c06f3883714e31426207afeccVirustotal results 61 / 73 (83.56%) 67.202.110.21:443
2020-01-24 03:07:42af739ee616cc9a51816ccd2342da2824Virustotal results 59 / 70 (84.29%) 67.202.110.24:443
2020-01-24 03:07:40af739ee616cc9a51816ccd2342da2824Virustotal results 59 / 70 (84.29%) 152.199.19.161:443
2020-01-24 02:06:51a8e1daabe84add5b69c411d7f2bc3ed0n/a152.199.19.161:443
2020-01-24 02:06:51a8e1daabe84add5b69c411d7f2bc3ed0n/a67.202.110.21:443
2020-01-24 01:18:45c6576d563bcc5e17a328ae800f394173n/a152.199.19.161:443
2020-01-24 01:18:45c6576d563bcc5e17a328ae800f394173n/a67.202.110.21:443
2020-01-24 01:00:48a0ee27e582a19158e4fa1b31c4e11968Virustotal results 52 / 72 (72.22%) 208.100.17.175:443
2020-01-24 01:00:46a0ee27e582a19158e4fa1b31c4e11968Virustotal results 52 / 72 (72.22%) 152.199.19.161:443
2020-01-24 00:35:39b33f36f11532d3ba811b0fb41bb6fc80Virustotal results 54 / 72 (75.00%) 67.202.110.22:443
2020-01-24 00:35:37b33f36f11532d3ba811b0fb41bb6fc80Virustotal results 54 / 72 (75.00%) 152.199.19.161:443
2020-01-23 19:34:36abb738eebbc644e52f915998683ca59cVirustotal results 51 / 71 (71.83%) 34.192.225.148:443
2020-01-23 19:34:36abb738eebbc644e52f915998683ca59cVirustotal results 51 / 71 (71.83%) 152.199.19.161:443
2020-01-23 19:14:37acb44ade4df8f232cf0f4dca5d2b0690Virustotal results 60 / 71 (84.51%) 152.199.19.161:443
2020-01-23 17:57:24a878f6d15c0baff242b78bcb06fb3730Virustotal results 66 / 73 (90.41%) 152.199.19.161:443
2020-01-23 17:45:24b8fa620411a05dd1062a63a16c73cd2cVirustotal results 63 / 72 (87.50%) 152.199.19.161:443
2020-01-23 16:42:30a4abd4fc1e9b1f6abb8b67852bdac3f3Virustotal results 52 / 72 (72.22%) 152.199.19.161:443
2020-01-23 14:26:50a8196b88dfd119963e9acf6cd5eb25d6Virustotal results 54 / 72 (75.00%) 152.199.19.161:443
2020-01-23 10:53:37af0b3ae824354db4118e5a2618e6cf3bVirustotal results 64 / 72 (88.89%) 152.199.19.161:443
2020-01-23 10:30:58b1e6d72854968dfbad676d5104593b61Virustotal results 54 / 72 (75.00%) 72.21.81.200:443
2020-01-23 09:30:49a2e9879fcb421ed6dfc1db07c03c0a4cVirustotal results 55 / 73 (75.34%) 152.199.19.161:443
2020-01-23 08:14:08ad439074f0fc7a58517432fd0e19f1aaVirustotal results 53 / 72 (73.61%) 152.199.19.161:443
2020-01-23 07:38:00bc65cbaeedbc62dbe1cc8f3ab6bef7aaVirustotal results 61 / 72 (84.72%) 152.199.19.161:443
2020-01-23 05:22:57b4af0d435ae56849a4ccb9b72015283dVirustotal results 51 / 72 (70.83%) 152.199.19.161:443
2020-01-23 03:13:32c8609074872b0a1c6bf344ccd50d986fVirustotal results 53 / 72 (73.61%) 152.199.19.161:443
2020-01-23 02:48:28c6731f366734b062b6716439bb6434dcVirustotal results 53 / 72 (73.61%) 152.199.19.161:443
2020-01-23 01:42:59a48da20e843157899471d833778c1166Virustotal results 60 / 72 (83.33%) 152.199.19.161:443
2020-01-23 01:10:43a0b87481430a7a0953ba3e5541286e7bVirustotal results 50 / 71 (70.42%) 152.199.19.161:443
2020-01-23 00:55:17ae99f748b64a17b02d331d524129f934Virustotal results 61 / 72 (84.72%) 152.199.19.161:443
2020-01-22 23:08:43c433245d0f0b7e2d2ed78c44055def14n/a152.199.19.161:443
2020-01-22 22:54:13c189968e92e6a66a9ed3b7767cb3fce2Virustotal results 54 / 72 (75.00%) 152.199.19.161:443
2020-01-22 22:33:46c35331f7a1a7e4c8c8e51f6dbd833afen/a152.199.19.161:443
2020-01-22 19:30:10c7109bfd7c4cda76d8c23077218534d9Virustotal results 62 / 73 (84.93%) 152.199.19.161:443
2020-01-22 15:15:57b1f02f407409e0fbaf2cdc67085cb7e9n/a152.199.19.161:443
2020-01-22 15:15:13a0fb49526dd4384eadccf9b91ee2469an/a152.199.19.161:443
2020-01-22 13:53:10a792f170b6d3bb3fa171b583eb1b4d44n/a152.199.19.161:443
2020-01-22 12:53:3571f888cfc7fa160b40e216780d0205aan/a152.199.19.161:443
2020-01-22 08:13:26acdd8d20865b62fc3039f01972b598bbVirustotal results 59 / 71 (83.10%) 152.199.19.161:443
2020-01-22 08:03:51a29cc7b0bc5c967550f22150acef8b12n/a152.199.19.161:443
2020-01-22 05:04:25a613e5c98ed0d6cd16bcfa7830ed768en/a152.199.19.161:443
2020-01-22 03:22:40b03618f33b1bc5228578137b71dc8a12n/a152.199.19.161:443
2020-01-22 01:45:45a5e7834b9f03705f463990c75ba28344n/a152.199.19.161:443
2020-01-21 21:51:05bca12b622f40f34a4aa82a9fdf72a9a4Virustotal results 58 / 69 (84.06%) 72.21.81.200:443
2020-01-21 20:34:45b665fe6393dd32d3d14c7617119c20efVirustotal results 62 / 73 (84.93%) 152.199.19.161:443
2020-01-21 19:24:23b8de8908ea0907e1245cc0d624987d82n/a152.199.19.161:443
2020-01-21 18:45:57aa0ccf071e8fb01282535c4642a6ecd2n/a152.199.19.161:443
2020-01-21 17:32:51af90f052b68f22660ef17461be436679n/a152.199.19.161:443
2020-01-21 16:39:26b5630d88d10c96b8dbd95906d124b8e3Virustotal results 62 / 71 (87.32%) 152.199.19.161:443
2020-01-21 11:23:27afe04db3c54d6bf24d812ee68f235a7cn/a207.38.89.115:443
2020-01-21 07:20:476ff666583d42bfdc1abb58c79280b03bVirustotal results 55 / 71 (77.46%) 152.199.19.161:443
2020-01-21 06:10:59184cd5d130f2040e645817d6d17198c8Virustotal results 59 / 71 (83.10%) 152.199.19.161:443
2020-01-21 06:02:2289043574bc6891dbc474052fa8100ab7Virustotal results 60 / 71 (84.51%) 152.199.19.161:443
2020-01-21 05:31:2815146fe04d7de3464e01833fda326d51Virustotal results 63 / 72 (87.50%) 152.199.19.161:443
2020-01-21 04:09:352417470aedb5185f7973ef0374741e03Virustotal results 58 / 73 (79.45%) 152.199.19.161:443
2020-01-21 03:29:28178ce700a7507a5ace27db3169875b61Virustotal results 59 / 72 (81.94%) 152.199.19.161:443

# of entries: 100 (max: 100)