JA3 Fingerprints

You can find further information about the JA3 fingerprint 57f3642b4e37e28f5cbe3020c9331b4c, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:57f3642b4e37e28f5cbe3020c9331b4c
First seen:2018-08-28 15:54:53 UTC
Last seen:2021-08-11 13:05:18 UTC
Status:Blacklisted
Malware samples:34'502
Destination IPs:1'465
Malware:Gozi -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-04-23 13:47:3900d5b234cc6206e5c8f51a1786c54197n/a152.199.19.161:443
2024-04-23 07:26:270ce7d8582886f95a3d60993b0530e2fan/a152.199.19.161:443
2024-04-23 07:20:0915777bc243833f76f16f7b52c63edaa5n/a152.199.19.161:443
2024-04-23 02:07:220b42b33001d379348725dc2fd2544d9en/a152.199.19.161:443
2024-04-22 23:11:5019c460a46b875224372af0c5f1805ed8n/a152.199.19.161:443
2024-04-22 21:31:419d6b4a612e26dd4e2b44d4a329bf6ce9n/a152.199.19.161:443
2024-04-22 19:44:02ff320a804ffee8f813eef348910a378an/a152.199.19.161:443
2024-04-22 19:41:18ff02d6dd787f7a4196133a9982c6eaccn/a152.199.19.161:443
2024-04-22 19:17:45fd62f2d501e13aa369ac556e90465030n/a152.199.19.161:443
2024-04-22 18:47:01fb6cf022d6f38a3debe79de109a155dbn/a152.199.19.161:443
2024-04-22 18:41:59fb64702d26bdc7ea2d1c5523b3f9e2edn/a152.199.19.161:443
2024-04-22 17:46:01f80e0539cb8ccbaede46bbe942240d0en/a152.199.19.161:443
2024-04-22 17:26:12f6f3e4701d22345c2f23036d83400a44n/a152.199.19.161:443
2024-04-22 15:25:222e3ea6c9ce0bee13798abfc1316f109dn/a152.199.19.161:443
2024-04-22 14:36:11f1fa069a0bb288589a14ae61d3cee71cn/a152.199.19.161:443
2024-04-22 13:24:33ed6d8a474a5fd49dbda6dcf5c0b28434n/a152.199.19.161:443
2024-04-22 12:18:09e943251d5df3dcb3113de3bfa1d3d0bdn/a152.199.19.161:443
2024-04-22 11:45:25e70d2b1572a1f243803cc1a01e5794een/a152.199.19.161:443
2024-04-22 11:30:41e6580b2c68fd47b33bb3791be920c28bn/a152.199.19.161:443
2024-04-22 11:27:29e600c9d13e1ab5c2d77c18e2ceb7d8c2n/a152.199.19.161:443
2024-04-22 10:28:26e1ff2b2145800d4d3df5edab3c0d2383n/a152.199.19.161:443
2024-04-22 08:27:43d9e60b55555ddb9c263490fac07f02e7n/a152.199.19.161:443
2024-04-22 08:27:43d9e60b55555ddb9c263490fac07f02e7n/a152.199.19.161:443
2024-04-22 07:57:03d7c03fcd0a3f95317a2b4cb03a7ea910n/a152.199.19.161:443
2024-04-22 07:57:03d7c03fcd0a3f95317a2b4cb03a7ea910n/a152.199.19.161:443
2024-04-22 04:30:33c9eb5a9f76cb8506606975c8adb5d2dbn/a152.199.19.161:443
2024-04-22 03:55:23c78c7534f76aa46fd65530c7665f4c42n/a152.199.19.161:443
2024-04-22 00:55:59b8a9af64dc773e8e9b3e6e36e55bd154n/a152.199.19.161:443
2024-04-22 00:28:29b392e93c4e58e4413149af20d0330e5fn/a152.199.19.161:443
2024-04-22 00:17:43b31b26c02cd46d9df8b0bdcd638036aen/a152.199.19.161:443
2024-04-21 23:11:53b1256cf496e0494dd0593372b77abf41n/a152.199.19.161:443
2024-04-21 20:29:48ab9e79f1f687bbd5e68627e1e31c965bn/a152.199.19.161:443
2024-04-21 18:18:04a71f186b6b6671d1dc494dab30c5d2aen/a152.199.19.161:443
2024-04-21 15:33:14a1f2a3bec0ffe626fe54d00ceadc4e1fn/a152.199.19.161:443
2024-04-21 14:21:109d6d401f4c2cc4076d1f7e7ef84993dan/a152.199.19.161:443
2024-04-21 13:58:22998216fa6fd6faba064a3fff28cffb92n/a152.199.19.161:443
2024-04-21 13:52:5498606ceec51ad19031f7d9008fd9b8fdn/a152.199.19.161:443
2024-04-21 13:49:1397d87be6e6ac10da417d82f74e83e101n/a152.199.19.161:443
2024-04-21 10:21:2772c8cfaf510d0cbe5a41f14d8e9b29f3n/a152.199.19.161:443
2024-04-21 10:14:0371cbf76a63d071adc7b5e897a1215482n/a152.199.19.161:443
2024-04-21 06:27:3047f991c79694d5e704359b54fa1d80f3n/a47.101.43.5:443
2024-04-21 06:14:0945527d5de3a1caed6af9aa86420ade9en/a152.199.19.161:443
2024-04-21 05:42:523f5fe7c941c27eb01b603fdc47b4b66dn/a152.199.19.161:443
2024-04-21 05:40:383f123324d662462d3060474603b9cf15n/a152.199.19.161:443
2024-04-21 02:58:183534782ee28428117046365dc0a38f23n/a152.199.19.161:443
2024-04-20 22:42:482a19cf4c128ef8fc83d796df8f8e5a6bn/a152.199.19.161:443
2024-04-20 21:38:26280d9732369a3e5bf94319878d1ae180n/a152.199.19.161:443
2024-04-20 21:01:251701660ce1bba2a1fb58d079e5a8f7c6Virustotal results 56 / 70 (80.00%) 152.199.19.161:443
2024-04-20 19:20:021f4ed740bd0ce01b0db936bc77c0df9fVirustotal results 55 / 70 (78.57%) 104.193.88.125:443
2024-04-20 18:47:450351d5402fe26ed4a648c2d47ee4b85cn/a152.199.19.161:443
2024-04-20 17:29:33042a775c5ca9093681575edcda6945aeVirustotal results 53 / 71 (74.65%) 152.199.19.161:443
2024-04-20 17:29:33042a775c5ca9093681575edcda6945aeVirustotal results 53 / 71 (74.65%) 152.199.19.161:443
2024-04-20 16:49:2626ee158343385269c319f933077c6556n/a72.21.81.200:443
2024-04-20 11:17:241c905fc496a773aedf61de9e0ce83cfbVirustotal results 56 / 70 (80.00%) 152.199.19.161:443
2024-04-20 08:47:14009030f2959cc6ce26875bb3b354f20dVirustotal results 56 / 71 (78.87%) 152.199.19.161:443
2024-04-20 06:47:5814c60084a61e257d157896e576a7073aVirustotal results 61 / 71 (85.92%) 152.199.19.161:443
2024-04-20 06:24:580d115bbed25d4fbc2e5d7ca0b1c88ff2Virustotal results 58 / 70 (82.86%) 72.21.81.200:443
2024-04-20 04:38:3001b352c5dd4cc712baf435b7a0c822d7Virustotal results 57 / 71 (80.28%) 104.193.88.126:443
2024-04-20 02:28:510f18958a9dac02358f441979bd67a74aVirustotal results 15 / 70 (21.43%) 88.221.24.88:443
2024-04-20 00:58:2017de3b0b228f3ae7a8adc830c7e48be0Virustotal results 60 / 71 (84.51%) 152.199.19.161:443
2024-04-19 23:36:0213465841ac613462a58c2dd989055a56Virustotal results 64 / 70 (91.43%) 152.199.19.161:443
2024-04-19 22:37:17b8630b7a9cf92fd09078c4337b08f286n/a152.199.19.161:443
2024-04-19 22:22:58b71c4b654e006b18129807016eed1206n/a47.101.43.5:443
2024-04-19 22:16:02b65192ee948766de927a11de7799d598n/a152.199.19.161:443
2024-04-19 22:02:16b35ad5e4e63c9de0b67b95451d1e182dn/a152.199.19.161:443
2024-04-19 21:42:52b265d26e694f9c4c567edf7d59f17f3fn/a152.199.19.161:443
2024-04-19 21:12:56afab700a45a81b8cb9a457052443a1bfn/a152.199.19.161:443
2024-04-19 21:04:52aefcfe8b58ff5302c90e0b4099b5192cn/a152.199.19.161:443
2024-04-19 21:00:23ae923c1c773005581a910657e0e3195cn/a152.199.19.161:443
2024-04-19 20:53:56ade06fa806a05c05aa1b03e3489ac601n/a152.199.19.161:443
2024-04-19 19:05:23a88ce86ede3ea916d5709e5eda9d9961n/a152.199.19.161:443
2024-04-19 14:53:13a45b9d8a888d2c4fda632ab69f2d44e0n/a152.199.19.161:443
2024-04-19 12:14:409849f399907eecaa03da862b528686e8n/a152.199.19.161:443
2024-04-19 11:43:11909c1e4f2f4b55fd64b63178e62e47e2n/a152.199.19.161:443
2024-04-19 11:17:228ae4fe4ef80881775caea9b595a7a9cen/a152.199.19.161:443
2024-04-19 10:26:087ee83f2c86ef6b4b119bedd194740af7n/a152.199.19.161:443
2024-04-19 10:19:237c96bbc839c0bc45733e2667665939f1n/a152.199.19.161:443
2024-04-19 07:54:445c45b087602340a463631270cb9c9122n/a152.199.19.161:443
2024-04-19 07:48:475a52f5367033b26816224ab24542585fn/a152.199.19.161:443
2024-04-19 07:22:495350b72e600a7bc950552b5f6a6e8fd0n/a152.199.19.161:443
2024-04-19 00:15:4938bfa18f7bbc69d0d4f3658146bcfc95n/a152.199.19.161:443
2024-04-18 22:47:023567eefd94437b21bf0b355fbecb8ebdn/a152.199.19.161:443
2024-04-18 19:18:072d8ed3ee14cc3f298c35cc78fbd5243en/a152.199.19.161:443
2024-04-18 18:30:342bafb3af75c85374e216eb31e78e7687n/a152.199.19.161:443
2024-04-18 17:28:5129595f107ccd6600689e6004249c340an/a152.199.19.161:443
2024-04-18 16:37:36275dc32f5926a82ec167498f8296bed0n/a152.199.19.161:443
2024-04-18 10:58:071738638ce00adc4ed1650011b054a1f0Virustotal results 55 / 69 (79.71%) 152.199.19.161:443
2024-04-18 04:18:54113905c949497fd5809a83d3cfa11ef9Virustotal results 64 / 71 (90.14%) 152.199.19.161:443
2024-04-18 03:29:0405c75f11a33b8b641eefb9618afb4d08Virustotal results 60 / 69 (86.96%) 152.199.19.161:443
2024-04-18 02:50:370a0025abba0711990e620c88788d5280Virustotal results 58 / 72 (80.56%) 152.199.19.161:443
2024-04-18 02:05:301712a1a2cd23352b27ea97b7086378f8Virustotal results 57 / 70 (81.43%) 152.199.19.161:443
2024-04-18 01:24:3418096c091132aa38ce5ff457004b052aVirustotal results 58 / 70 (82.86%) 104.193.88.125:443
2024-04-18 01:24:3418096c091132aa38ce5ff457004b052aVirustotal results 58 / 70 (82.86%) 104.193.88.125:443
2024-04-17 22:50:470b830ee94d16cfcfe1758de65d54445dVirustotal results 55 / 71 (77.46%) 152.199.19.161:443
2024-04-17 22:40:07347d16931e88e22f7c83125d574140ccVirustotal results 52 / 70 (74.29%) 152.199.19.161:443
2024-04-17 21:43:181a6effbcbe58848445ac06b62e9484c9Virustotal results 56 / 71 (78.87%) 152.199.19.161:443
2024-04-17 21:30:35ab3ffa70bd7b4a7d8f813eec067a19adn/a152.199.19.161:443
2024-04-17 21:08:03a61d3b3c76bf907b2afaae2c0c3a2938n/a152.199.19.161:443
2024-04-17 18:37:24a0694987dba33b83b03d6dc583f779a6n/a152.199.19.161:443
2024-04-17 18:10:119c94f51fb5c18c68c4433e5c9aa85a7an/a152.199.19.161:443

# of entries: 100 (max: 100)