JA3 Fingerprints

You can find further information about the JA3 fingerprint 57f3642b4e37e28f5cbe3020c9331b4c, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:57f3642b4e37e28f5cbe3020c9331b4c
First seen:2018-08-28 15:54:53 UTC
Last seen:2021-08-11 13:05:18 UTC
Status:Blacklisted
Malware samples:31'319
Destination IPs:1'405
Malware:Gozi -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2023-09-23 06:07:32a97747335a12076f7742e1e9679701f5n/a152.199.19.161:443
2023-09-23 00:20:0904ca06095de3a0202add391626fab8c0Virustotal results 63 / 71 (88.73%) 152.199.19.161:443
2023-09-23 00:16:570159757400d8f100d86d3f8c9764db39Virustotal results 59 / 70 (84.29%) 152.199.19.161:443
2023-09-22 23:06:12002c4e93745c2631db9c052ec59146f1Virustotal results 62 / 71 (87.32%) 152.199.19.161:443
2023-09-22 17:53:521472cbd7969866e287a5024b230face3Virustotal results 65 / 71 (91.55%) 152.199.19.161:443
2023-09-22 16:07:3350cb7e856b78fd15b410cbe1f35e0bc1Virustotal results 64 / 71 (90.14%) 37.230.104.89:443
2023-09-22 15:47:58737b27ed751baf5b0131c9d8ea8db501n/a152.199.19.161:443
2023-09-22 15:36:034bbf33d0636e76c318f644104011655fn/a152.199.19.161:443
2023-09-22 13:22:03acb3330bbc9340f70627cb912a8b04f8n/a104.18.29.126:443
2023-09-22 13:12:02abfaf6c28abdd78d886e685d7fba76fbn/a152.199.19.161:443
2023-09-22 12:53:33ab34e680d3c86ac0545fed0c4b3650fen/a152.199.19.161:443
2023-09-22 12:40:16aaccbeaa180f5c41198d7a7561d366f4n/a152.199.19.161:443
2023-09-22 12:36:04aa8fdd709fa797a51a6c5caaf422bf82n/a152.199.19.161:443
2023-09-22 11:38:11a7c79e71b3c6e0cd23e2c73554500d6cn/a152.199.19.161:443
2023-09-22 11:01:26a6696823b120b68bf53755163eed0d2bn/a152.199.19.161:443
2023-09-22 10:09:41a34faee5851040f332b5ebe1df430fe6n/a152.199.19.161:443
2023-09-22 08:30:350b499e0e97c0533dd9e28e85fb5ff05cn/a152.199.19.161:443
2023-09-22 08:20:510ad02e2e0e4b8bef522cfdf47a87795dn/a152.199.19.161:443
2023-09-22 08:11:180a1bb462a5501b1b00550528bff9c0a3n/a152.199.19.161:443
2023-09-22 07:01:29057f9e0a8691deb3a70c5a1ce44c70e5n/a59.82.34.234:443
2023-09-21 20:23:290c8f6df88c5e7b14e959f2fb93def7d5Virustotal results 65 / 71 (91.55%) 152.199.19.161:443
2023-09-21 18:21:260d614310ba0d8400bfce4be573e7d47fVirustotal results 39 / 71 (54.93%) 203.107.41.32:9030
2023-09-21 14:53:00b99bdec45dd21e18e7dcc6cc3fd7eaa7n/a152.199.19.161:443
2023-09-21 14:14:52b3da2486eb7f40bf549059d939466bc2n/a152.199.19.161:443
2023-09-21 14:08:58b7bde44acbc6a7b4e179a92fd982b0b7n/a152.199.19.161:443
2023-09-21 13:46:43b5cc37c394083b719b589ef92ada4978n/a152.199.19.161:443
2023-09-21 12:22:48b18ae10a999ea0e10065ea98b4a89fa3n/a152.199.19.161:443
2023-09-21 12:11:21af10cb5439f11089e79765d4d65a77c1n/a152.199.19.161:443
2023-09-21 11:32:10aeffa5ab468ce904b5ac8f0c5430e7b5n/a152.199.19.161:443
2023-09-21 09:39:44ac81ef571059139ccf8fdc022e7d45bfn/a152.199.19.161:443
2023-09-21 08:32:12a97c7128efd86c45a05664e78b36fbecn/a152.199.19.161:443
2023-09-21 06:46:40a45cb31aaa4c1d8b1706412915fbfe45n/a152.199.19.161:443
2023-09-21 06:00:40a24c798356593dc8f45835ed28800002n/a152.199.19.161:443
2023-09-21 05:01:118d9267e021be8caf0d52fd9dcb7c183fn/a152.199.19.161:443
2023-09-21 04:13:524e2da8c47cc935adfb3bbe8094ea7fbcn/a152.199.19.161:443
2023-09-21 01:29:29010a7059a9cbf263224a171052c6d306n/a152.199.19.161:443
2023-09-20 22:43:4103fe80904664b4aff010e00b314be7cdVirustotal results 63 / 71 (88.73%) 152.199.19.161:443
2023-09-20 22:43:4103fe80904664b4aff010e00b314be7cdVirustotal results 63 / 71 (88.73%) 152.199.19.161:443
2023-09-20 21:36:5711a184419436487a96c05b48bc31f1e4Virustotal results 63 / 71 (88.73%) 152.199.19.161:443
2023-09-20 20:35:4615708b60845e738b830baba6a2171f25Virustotal results 67 / 71 (94.37%) 152.199.19.161:443
2023-09-20 19:05:42091b1f32c91c8a871bb1b18fad48eeb8Virustotal results 65 / 71 (91.55%) 152.199.19.161:443
2023-09-20 19:02:31044d3ee548a9290bc54838e9476344c0Virustotal results 64 / 70 (91.43%) 152.199.19.161:443
2023-09-20 15:55:070af3a335f340662cf4a392708ff4be20Virustotal results 41 / 71 (57.75%) 152.199.19.161:443
2023-09-20 10:38:29c625e171a4ba4d0aa40e3191ce4fa08dn/a152.199.19.161:443
2023-09-20 10:04:31c476e3beed6c1a7c1bbfebd2a6dbb037n/a152.199.19.161:443
2023-09-20 09:13:55c1f071a4404235c04ce1ab78b402cf23n/a101.227.134.49:443
2023-09-20 09:13:55c1f071a4404235c04ce1ab78b402cf23n/a103.235.46.40:443
2023-09-20 07:46:46bcd7e272343bd02978d07499848f571cn/a35.172.94.1:443
2023-09-20 07:46:46bcd7e272343bd02978d07499848f571cn/a104.20.18.8:443
2023-09-20 04:21:38b3b26706ca5825dd4644d731c5d580a3n/a152.199.19.161:443
2023-09-20 01:57:10ac4d6bacbc7c5bd3bce1ceec1eaa6550n/a152.199.19.161:443
2023-09-20 01:54:04ac33edfaaa5f0799a19806459ec28a32n/a152.199.19.161:443
2023-09-20 00:51:01a8fde9b9fc6861a5f3aad4ae06107b5en/a152.199.19.161:443
2023-09-19 21:34:070ecb4473d1ab41108dd1318a8f7b7bf6n/a152.199.19.161:443
2023-09-19 14:57:295d3139f39330f4c938f3aacf182edcd4n/a23.210.122.61:443
2023-09-19 14:57:295d3139f39330f4c938f3aacf182edcd4n/a149.154.167.99:443
2023-09-19 13:51:042fba6c14252a26cd5ebd758d383e55e1n/a206.233.252.17:443
2023-09-19 06:54:20b5112a60a32c275024698645958009f3n/a152.199.19.161:443
2023-09-19 04:56:59ae59dd636c93047540b369e5e531faadn/a152.199.19.161:443
2023-09-19 04:29:35acfbd01307ad168ea179da2e2571512an/a152.199.19.161:443
2023-09-19 04:15:27ac56b70028042b34074c10564e4c8af5n/a152.199.19.161:443
2023-09-19 03:52:23ab01b48e293cb4b64262be5764c6b3dfn/a152.199.19.161:443
2023-09-19 01:01:0013d7db6bd318b8b4807b55fb2ef76dffVirustotal results 64 / 71 (90.14%) 152.199.19.161:443
2023-09-19 00:46:470b7623710918f35690d459528369d65cn/a152.199.19.161:443
2023-09-18 23:17:0810b6a0a3fd0dee8fdc1470ad233e7bb6Virustotal results 62 / 71 (87.32%) 152.199.19.161:443
2023-09-18 21:26:5303c3f9fc762aab5dce5446758af2b09bVirustotal results 66 / 71 (92.96%) 152.199.19.161:443
2023-09-18 17:06:0227d629b4d00d9f7f8268ad08ef0b6470Virustotal results 64 / 71 (90.14%) 152.199.19.161:443
2023-09-18 16:18:10154830d22ab40d846d717d736398a1b9Virustotal results 62 / 71 (87.32%) 152.199.19.161:443
2023-09-18 15:13:461b3f2e44a774369a1213df00bd7159c2Virustotal results 59 / 71 (83.10%) 152.199.19.161:443
2023-09-18 11:33:18bf0ed9f162fde18fa051fbf53bd69a51n/a152.199.19.161:443
2023-09-18 08:40:24b6f46e3473fd5fd8968ce002adf1348cn/a152.199.19.161:443
2023-09-18 06:47:58b20ed485ed56ad794cec280c02b1e956n/a152.199.19.161:443
2023-09-18 05:48:59af4784f94358967157488a6cb507cc23n/a152.199.19.161:443
2023-09-18 03:12:25a7ce0f3da9e0fc008a0c60aa1374602fn/a152.199.19.161:443
2023-09-18 02:53:10a6f5fa12110aa21dccfc0ab82d140aabn/a152.199.19.161:443
2023-09-17 23:11:590194f038ad3fdfea10e8d5533ab55dbfVirustotal results 62 / 71 (87.32%) 152.199.19.161:443
2023-09-17 23:08:41014dd82a546c921590cf5755e6c131b7Virustotal results 67 / 71 (94.37%) 152.199.19.161:443
2023-09-17 22:56:5811cd36cc4b5a803de204552f16403b21Virustotal results 64 / 71 (90.14%) 152.199.19.161:443
2023-09-17 22:54:121a08aeb2cd56e6f6c7653c0728ea06fcVirustotal results 59 / 71 (83.10%) 152.199.19.161:443
2023-09-17 22:42:0414ae6cbba03d7ca7c5b0b382a0468511Virustotal results 27 / 70 (38.57%) 152.199.19.161:443
2023-09-17 22:42:0414ae6cbba03d7ca7c5b0b382a0468511Virustotal results 27 / 70 (38.57%) 152.199.19.161:443
2023-09-17 22:14:060b47c920f10e5a7a4b6f586b85df24d4Virustotal results 63 / 71 (88.73%) 152.199.19.161:443
2023-09-17 21:51:46058a89de8a6e937138be41cc21a26d24n/a152.199.19.161:443
2023-09-17 18:42:081f595892af02fd0f01b64b9261f79aafn/a152.199.19.161:443
2023-09-17 17:18:450e9806b6d940ccc7cadc5ef0cd792f57Virustotal results 54 / 71 (76.06%) 101.227.134.27:443
2023-09-17 17:18:450e9806b6d940ccc7cadc5ef0cd792f57Virustotal results 54 / 71 (76.06%) 103.235.46.40:443
2023-09-17 17:14:1106e6b9d5c3c2a1e89b7f6aa6f0cb0ab0Virustotal results 67 / 71 (94.37%) 152.199.19.161:443
2023-09-17 17:08:27114db7af65d0718ec877ce044d81ce10Virustotal results 62 / 71 (87.32%) 152.199.19.161:443
2023-09-17 17:04:2100267024c5147a259a173d13cfc4c710Virustotal results 64 / 71 (90.14%) 152.199.19.161:443
2023-09-17 16:40:41a2f6b6c9a5f2160c16185ae14d7cd7cen/a152.199.19.161:443
2023-09-17 13:32:329ae2818174fd66f37f82017ab80c0240n/a152.199.19.161:443
2023-09-16 23:06:58ec906aa92b78aa2c4bd75be7e9a7fd1en/a152.199.19.161:443
2023-09-16 22:05:08df177ed427bb33c4933eed2776d854a9n/a152.199.19.161:443
2023-09-16 20:50:42cdc697e7132958be2601528d2cab4209n/a152.199.19.161:443
2023-09-16 18:49:38bde15181708e024e34b270e1f1bf50b0n/a152.199.19.161:443
2023-09-16 17:43:56ba31ee83e22f5f728e3c9ddbf9915925n/a152.199.19.161:443
2023-09-16 16:26:31b7229a3f17a84adec05f6597f59ce987n/a152.199.19.161:443
2023-09-16 16:22:05b6f61a51fdd5aed51d49fd6017349f6an/a152.199.19.161:443
2023-09-16 15:59:34b6475ecdbbe7c6b9a67aea3638df2c3fn/a152.199.19.161:443
2023-09-16 14:18:26b35a7ce848d451ef255e578e857ee1dan/a152.199.19.161:443

# of entries: 100 (max: 100)