JA3 Fingerprints

You can find further information about the JA3 fingerprint 57f3642b4e37e28f5cbe3020c9331b4c, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:57f3642b4e37e28f5cbe3020c9331b4c
First seen:2018-08-28 15:54:53 UTC
Last seen:2020-03-29 10:49:33 UTC
Status:Blacklisted
Malware samples:4'400
Destination IPs:306
Malware:Gozi -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-03-29 10:49:33c7efc35952329e7ee48c91f66a03fb63Virustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-03-29 03:42:47b08690f6defe8e5db71e8ee7edbae09bVirustotal results 51 / 72 (70.83%) 152.199.19.161:443
2020-03-29 03:37:35c719191d5c9abade5d456f45d9624609Virustotal results 55 / 73 (75.34%) 152.199.19.161:443
2020-03-28 17:49:252d9238a3527a5695044b5b3ef66f0834Virustotal results 44 / 73 (60.27%) 72.21.81.200:443
2020-03-28 09:31:28c30209d257276f76a6a1ea50ee1af04aVirustotal results 54 / 72 (75.00%) 152.199.19.161:443
2020-03-28 09:20:56c0ba4577227e40ec6175db2dc4c0cdedVirustotal results 63 / 73 (86.30%) 152.199.19.161:443
2020-03-28 04:51:58c02f75c47221f323e848e9d4f3ad0e19Virustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-03-27 03:58:08afc2137fe9bb5d922e5b10069c585c1dVirustotal results 52 / 72 (72.22%) 152.199.19.161:443
2020-03-26 19:00:044a4596e13b6e0bf5160020f09bacf557Virustotal results 59 / 73 (80.82%) 152.199.19.161:443
2020-03-26 18:35:2884fb8e23c81e3b742f64a7de037ac1e5Virustotal results 57 / 72 (79.17%) 72.21.81.200:443
2020-03-26 08:26:42d58ef05bdd9230efe456c16d41864989n/a152.199.19.161:443
2020-03-26 07:51:5300f958c573fa0e0be4155e2fde8a9fb9n/a152.199.19.161:443
2020-03-26 06:53:129a6bc8640f3b82094d3410b992cb41b2n/a152.199.19.161:443
2020-03-26 06:21:2597e51b5b7bf92823331773b02d5bd487Virustotal results 57 / 73 (78.08%) 152.199.19.161:443
2020-03-26 05:55:302f4c01e04f79c15b955b1c2d8c6ea8e2Virustotal results 56 / 72 (77.78%) 152.199.19.161:443
2020-03-26 05:32:46257b9f64b3b1a58d44141c38c8779ce5n/a152.199.19.161:443
2020-03-26 03:53:59a165399d57e3c56dcc62665898d919f2Virustotal results 57 / 72 (79.17%) 152.199.19.161:443
2020-03-26 02:32:027b9d610be5c217875d527498dbd2dab0Virustotal results 58 / 73 (79.45%) 152.199.19.161:443
2020-03-25 19:04:42cabdf9de9d6290aea42505d83b56ef0eVirustotal results 43 / 71 (60.56%) 165.22.207.20:443
2020-03-25 16:40:437587f76687bccebcf4b8df56d24ca081Virustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-03-25 16:34:475b8ce1c73dc5191d5db84f9c55e1afa7n/a72.21.81.200:443
2020-03-25 14:35:19426fc6e9b05c7500936ec90a5edab00en/a152.199.19.161:443
2020-03-25 13:53:31b210928d17fa45bc59ab725451650221n/a152.199.19.161:443
2020-03-25 13:26:4540127dbcb98eea81f3a6994a135dfb0fn/a152.199.19.161:443
2020-03-25 12:08:08bf4557952f0f0002bb96ff2a0ebe8d75n/a152.199.19.161:443
2020-03-25 11:55:352fe18127086336a43b665dc50b14fe12Virustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-03-25 11:45:0669cd066e74ddead121aef7cc069be8a8Virustotal results 52 / 72 (72.22%) 152.199.19.161:443
2020-03-25 11:05:11088774c4adc0e2664efd19fab36b960aVirustotal results 56 / 73 (76.71%) 72.21.81.200:443
2020-03-25 10:35:58332d4f0a242d143e17a02a72f726028en/a152.199.19.161:443
2020-03-25 10:28:53c4b3c8b76c9c54fdd15350cf36573c2dVirustotal results 56 / 72 (77.78%) 152.199.19.161:443
2020-03-25 10:02:210eeaca8998ca976f1afd2fada213b4ffVirustotal results 58 / 73 (79.45%) 152.199.19.161:443
2020-03-25 09:52:12c2e4cb3987b8793bf0f017b400e1e0f3n/a152.199.19.161:443
2020-03-25 09:36:5239d68ff70c2e0b8e97b2eaa6ff5b02d8Virustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-03-25 08:12:0867c0a1f4d19c99d6f28aee080dff0946Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-25 07:27:045554469bd7568e8a7684b28375521e0fn/a152.199.19.161:443
2020-03-24 16:27:37269836415acd5f93b5320c2fe2929f40n/a152.199.19.161:443
2020-03-24 16:13:38d3031facce8d104778a13ae22e51c410Virustotal results 58 / 73 (79.45%) 72.21.81.200:443
2020-03-24 16:12:30e2aa991ca47fa4aec17cb8af9b5521cbVirustotal results 53 / 72 (73.61%) 152.199.19.161:443
2020-03-24 16:07:25bc34e8e7b4ea11acdb4884223a00c42eVirustotal results 54 / 72 (75.00%) 152.199.19.161:443
2020-03-24 15:43:0539e1ac7c62c18538e8d6d9bf4df912afVirustotal results 55 / 73 (75.34%) 152.199.19.161:443
2020-03-24 15:35:409e3da1aa1004d8177c18cbb11d430d62Virustotal results 56 / 72 (77.78%) 152.199.19.161:443
2020-03-24 15:32:39ec1d7582d71cc4335eb6252fa53ecc74Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-24 15:22:1580483dbdfe45cb7d2b82afa394e26714Virustotal results 56 / 72 (77.78%) 72.21.81.200:443
2020-03-24 14:07:292b9d23ee00455367e795372e2478456cVirustotal results 54 / 73 (73.97%) 152.199.19.161:443
2020-03-24 13:31:09a6aeea057ae6811f20f7f4baad5858f9n/a152.199.19.161:443
2020-03-24 13:21:106dd666eca28e53156790945e6f9bf423Virustotal results 55 / 73 (75.34%) 152.199.19.161:443
2020-03-24 10:58:05c0586f945eac8f7dfe95426339201a02Virustotal results 59 / 72 (81.94%) 152.199.19.161:443
2020-03-24 09:48:35ad3b1a12662e4b5b71b593840e466eddVirustotal results 54 / 73 (73.97%) 152.199.19.161:443
2020-03-24 09:45:24e7a1c7773e8d090f7014d50f886fae28Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-24 08:44:05904601c444170fe913b5c57ef5d12813Virustotal results 59 / 73 (80.82%) 152.199.19.161:443
2020-03-24 08:05:49c6f0365c18ba7d005d420af9c1de4cb2Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-24 06:30:55e9aaf22b3b808c24179a00eec96b41a0Virustotal results 53 / 72 (73.61%) 152.199.19.161:443
2020-03-24 05:38:11c07e59fd70c39e831b49502fce4c9e48Virustotal results 55 / 73 (75.34%) 152.199.19.161:443
2020-03-24 04:53:5394815fe1e99aaac6e4214a65394ec6e1Virustotal results 57 / 72 (79.17%) 152.199.19.161:443
2020-03-24 04:26:2564c5226094ba5d60a1dceca00137aeeeVirustotal results 55 / 71 (77.46%) 152.199.19.161:443
2020-03-24 02:55:584862433efc50874cb107d7479fadfbc6Virustotal results 57 / 73 (78.08%) 152.199.19.161:443
2020-03-24 02:50:4223a7fed09048a6c8c342d5974a0d04f1Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-24 02:16:55ade1fce26a20f2985301677912bd0114Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-24 01:34:1139a3aaa8723c21b5a4c19e30cede0e16Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-24 00:26:52055a844b609960f8d4d035902e906b04Virustotal results 51 / 71 (71.83%) 152.199.19.161:443
2020-03-23 23:16:13dc54cd7531f368e87860dcfba66bdd25Virustotal results 56 / 73 (76.71%) 72.21.81.200:443
2020-03-23 20:28:148b9842e131b698c9b8c9c464d678a0e6n/a152.199.19.161:443
2020-03-22 19:53:09bb38fe9af67b31b1599203461b64b229n/a93.184.221.189:443
2020-03-22 08:08:21bbb86a199a0c6fb7742f41acd95e4b90Virustotal results 56 / 72 (77.78%) 152.199.19.161:443
2020-03-22 02:28:01597184757c930333d7857062c510d3cen/a152.199.19.161:443
2020-03-21 13:11:52b0a39a4d9e06a3ee084912696724cd80Virustotal results 52 / 73 (71.23%) 152.199.19.161:443
2020-03-20 20:56:28b9b03035e34c5fc32eed7a9baa9f8a73Virustotal results 54 / 72 (75.00%) 152.199.19.161:443
2020-03-20 18:59:24bdbc74695a71c0ae0fa5e7b8b3d36d74n/a152.199.19.161:443
2020-03-20 17:43:18c2b1dd26c241b3fa0c1f540abdc49c62n/a152.199.19.161:443
2020-03-20 16:17:46de41a38673359fa4e95031a275b59020Virustotal results 47 / 72 (65.28%) 5.226.180.27:443
2020-03-20 16:17:46de41a38673359fa4e95031a275b59020Virustotal results 47 / 72 (65.28%) 5.226.180.67:443
2020-03-20 13:18:3440370c3dfbdb3d7db9c6beb37c8223f4Virustotal results 48 / 73 (65.75%) 152.199.19.161:443
2020-03-20 06:16:06afc195132f2feb402422673470c5c14bVirustotal results 57 / 74 (77.03%) 152.199.19.161:443
2020-03-19 18:46:39c2f47ac40ad1300b39a8e7deded39a83n/a152.199.19.161:443
2020-03-19 18:37:00a15748ae49cbc2de7cd097db2b4566deVirustotal results 53 / 73 (72.60%) 152.199.19.161:443
2020-03-19 18:26:49190a29f245895f280938e85b271f0361Virustotal results 62 / 72 (86.11%) 152.199.19.161:443
2020-03-19 03:07:35c04e6c59bfc4b6ee34111d40667e9642Virustotal results 64 / 72 (88.89%) 152.199.19.161:443
2020-03-19 02:16:22c2993dd223fe4d68af4e8bcd6e5dcb97Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-18 13:58:03a6d40a3e458bc87260047b13d2158843Virustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-03-18 11:54:241d5b1abccddd691d386f55fbd469d62fVirustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-03-18 10:23:08bebc89cabae77fa9fc07fc94b2ebab4eVirustotal results 56 / 73 (76.71%) 152.199.19.161:443
2020-03-18 09:10:0816590957e86c950a450a0894ff52abeen/a93.184.221.189:443
2020-03-17 22:13:3418625a54268584bfa37c9dffd1ae9097Virustotal results 55 / 72 (76.39%) 152.199.19.161:443
2020-03-17 20:54:24b29476429c73901560382ea55dc3eccbVirustotal results 46 / 71 (64.79%) 72.21.81.200:443
2020-03-17 19:39:352071068b4e30a0d5c289dbfa25bdc09dVirustotal results 29 / 73 (39.73%) 165.22.207.20:443
2020-03-17 18:13:02c1fad167f7b52f68d2e97ba68657563an/a152.199.19.161:443
2020-03-17 15:54:58b7d1237cbe799d487ce9dd6d06043e6dn/a152.199.19.161:443
2020-03-17 10:20:17b425ae6f7642b539b2e90a66bea103edVirustotal results 63 / 73 (86.30%) 152.199.19.161:443
2020-03-17 00:50:42df8a3c69fdb858acc31d3fed60e246c0Virustotal results 35 / 70 (50.00%) 52.78.17.162:443
2020-03-15 16:42:33c455b06d645f13724f54a87138125f83Virustotal results 63 / 73 (86.30%) 72.21.81.200:443
2020-03-15 06:30:43c5fdb8ee1e8c9a0bd1c577c7a686a8e4Virustotal results 56 / 70 (80.00%) 152.199.19.161:443
2020-03-15 03:31:348f6eb2ec5ba21c68608bc808b0eae932Virustotal results 57 / 72 (79.17%) 152.199.19.161:443
2020-03-14 00:14:47b6031f68081f81b5df6a1de841da053fVirustotal results 47 / 73 (64.38%) 152.199.19.161:443
2020-03-13 22:37:15f5eaf9d9398898e5b661d170535f7ec2Virustotal results 17 / 71 (23.94%) 104.31.86.73:443
2020-03-13 22:37:15f5eaf9d9398898e5b661d170535f7ec2Virustotal results 17 / 71 (23.94%) 193.187.90.18:443
2020-03-13 18:01:51bd5b5a1be2b95dbfe702b6c483e2174aVirustotal results 8 / 73 (10.96%) 152.199.19.161:443
2020-03-13 17:29:45aef8f331f04301a5a03d300cbc7385b1Virustotal results 62 / 71 (87.32%) 152.199.19.161:443
2020-03-13 17:08:2119bf4f3b2ed0ed503dfab67948dde078n/a152.199.19.161:443
2020-03-13 13:20:342b5fed7cbfeeeb4f923fa224178eac0eVirustotal results 62 / 72 (86.11%) 152.199.19.161:443
2020-03-13 12:48:131dab281576253746b5dde5b0f003a540Virustotal results 52 / 70 (74.29%) 152.199.19.161:443

# of entries: 100 (max: 100)