JA3 Fingerprints

You can find further information about the JA3 fingerprint 590a232d04d56409fab72e752a8a2634, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:590a232d04d56409fab72e752a8a2634
First seen:2017-07-18 18:53:24 UTC
Last seen:2020-10-11 20:48:33 UTC
Status:Blacklisted
Malware samples:880
Destination IPs:195
Malware:Tofsee -
Listing date:2018-11-14 11:56:37

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2024-08-22 04:40:317a23b56a8dfde2eb517e05a8398fad4bn/a157.240.17.63:443
2024-05-05 15:20:15199c72692df756e09d9dec72b21f4affn/a157.240.0.63:443
2024-05-05 12:31:530046af331753811bf5181746a12fd117n/a157.240.17.63:443
2024-05-04 11:03:39eea2ad0e9d9f61c65f233d20b0f7578bn/a157.240.17.63:443
2024-05-04 08:31:31d81dc8d95985f78b9211971b69c9a143n/a157.240.0.63:443
2024-05-04 00:04:35a485d7607f7c8d3038b75f40524300c4n/a157.240.17.63:443
2024-05-04 00:04:35a485d7607f7c8d3038b75f40524300c4n/a157.240.17.63:443
2024-05-03 17:33:037aa89d5d7cc3c99e829fdf8017790d28n/a157.240.196.63:443
2024-05-02 04:13:5628d6e14f891cbb4066f9a4bce42d3b6fn/a157.240.247.63:443
2024-05-02 02:11:420fe7caf5275d6b28861e5d362248e5d9n/a157.240.17.63:443
2024-05-01 23:25:02f18900a73d6961fef2dd76cf19f254can/a157.240.0.63:443
2024-05-01 22:04:25e0711ffe2d584af91dc6a6bbd5399504n/a157.240.17.63:443
2024-05-01 22:03:08e043d992aceedb978777013d4a03bfcbn/a157.240.201.63:443
2024-05-01 21:57:49dd0db99733ef7c758f609a54e0bf6552n/a157.240.247.63:443
2024-05-01 21:44:26db12d5c4db04584d36b2e03cfc676846n/a157.240.251.63:443
2024-05-01 18:07:06b0d90cf19fd28070302825e741dfd065n/a157.240.0.63:443
2024-05-01 18:00:42af9fc7accfd8cc9dcc30bd4638db6f85n/a157.240.201.63:443
2024-05-01 17:35:27aa61b19ca54ded96cc68360b6fa9484bn/a157.240.0.63:443
2024-05-01 17:21:52a7803dcb8dd701ef5e5fee24bf44676en/a157.240.0.63:443
2024-05-01 16:41:21a0b9cd352eac16e8332c50e7b6b9876bn/a157.240.17.63:443
2024-05-01 16:41:21a0b9cd352eac16e8332c50e7b6b9876bn/a157.240.196.63:443
2024-05-01 14:04:22846ffd2f63a58450e85eff8630a9ab5bn/a163.70.147.63:443
2024-05-01 14:04:21846ffd2f63a58450e85eff8630a9ab5bn/a157.240.17.63:443
2024-05-01 14:04:21846ffd2f63a58450e85eff8630a9ab5bn/a157.240.195.63:443
2024-04-13 16:28:37d1f8c0c7eaf024f84b11d7f19c9920c9n/a157.240.247.63:443
2024-04-08 19:58:08e0fe012f1b4e9cc9bc2d1f2c093f0221Virustotal results 3 / 71 (4.23%) 157.240.201.63:443
2024-04-08 19:58:06e0fe012f1b4e9cc9bc2d1f2c093f0221Virustotal results 3 / 71 (4.23%) 10.0.14.149:49872
2022-07-24 09:42:55e7a857c8e423b6d57586c4f41a8e8dafn/a157.240.17.63:443
2022-06-06 13:54:28b04521e5f983a4fa03e87206ec173ec9n/a157.240.21.63:443
2022-05-29 00:23:12a8d567d420d53eb5b5eba1a459ab81b9n/a31.13.70.52:443
2022-05-29 00:23:12a8d567d420d53eb5b5eba1a459ab81b9n/a157.240.11.52:443
2022-04-27 15:38:4270d619331e4e2e454ea491708d5f7ea8n/a157.240.201.63:443
2022-04-27 15:16:35195e5e4ae2b1044dababaf22395476ffn/a157.240.17.63:443
2022-04-07 15:43:20191b4bbb57fdc45abc15eb6de7503ad9n/a157.240.17.63:443
2022-04-07 15:32:524b291df60bee7a549a47cbe666622380n/a157.240.17.63:443
2022-04-06 01:11:5247a7a37aaf5190295dc980fc44b0bea7n/a185.60.216.52:443
2022-04-04 16:55:11660f40e3fd562c695173c093bce909adVirustotal results 24 / 70 (34.29%) 157.240.27.63:443
2022-04-04 16:55:11660f40e3fd562c695173c093bce909adVirustotal results 24 / 70 (34.29%) 157.240.21.63:443
2022-04-04 16:07:44cfcd600072fc5559acaa5d7cf80aaec3n/a157.240.21.63:443
2022-04-04 16:07:44cfcd600072fc5559acaa5d7cf80aaec3n/a157.240.27.63:443
2022-04-04 15:19:2806a4e39a8e1835fbe6e5ba364516eb61n/a157.240.21.63:443
2022-04-04 13:18:55c0150524308e7f4f4a01f83d4d1a658an/a157.240.21.63:443
2022-04-03 22:34:43abb9d33d70b6c12ba801bae8172b9995n/a157.240.21.63:443
2022-04-03 22:34:43abb9d33d70b6c12ba801bae8172b9995n/a157.240.27.63:443
2022-04-02 17:01:52669d757ed134ca4f0a5dae88aabcb3a5n/a157.240.21.63:443
2022-04-02 16:22:484e7ee197e36dfc1393c54c3bd9d85413n/a157.240.21.63:443
2022-04-02 16:22:484e7ee197e36dfc1393c54c3bd9d85413n/a157.240.27.63:443
2022-04-02 12:37:23a204aa1ccad7261951a79ce3351ebb77n/a157.240.21.63:443
2022-04-02 12:37:23a204aa1ccad7261951a79ce3351ebb77n/a157.240.27.63:443
2022-04-02 04:20:418e8a41ffb4a02fdf8292793e204a2ba5n/a157.240.27.63:443
2022-04-02 04:20:418e8a41ffb4a02fdf8292793e204a2ba5n/a157.240.21.63:443
2022-04-02 02:43:3171a448a3fc76b819c9eda6f66a88f0ben/a157.240.21.63:443
2022-04-02 02:43:3071a448a3fc76b819c9eda6f66a88f0ben/a157.240.210.63:443
2022-04-01 23:31:10d82d4aec1a7586eccca554391ef102c8n/a157.240.210.63:443
2022-04-01 23:31:10d82d4aec1a7586eccca554391ef102c8n/a157.240.21.63:443
2022-04-01 23:31:09d82d4aec1a7586eccca554391ef102c8n/a157.240.27.63:443
2022-04-01 22:13:33ba9b3b5408d012f2d26b889b4a7e2468n/a157.240.21.63:443
2022-04-01 22:13:33ba9b3b5408d012f2d26b889b4a7e2468n/a157.240.27.63:443
2022-04-01 20:24:499c2abbb293d9a0e0120cddc31c99d622n/a157.240.27.63:443
2022-04-01 20:24:499c2abbb293d9a0e0120cddc31c99d622n/a157.240.21.63:443
2022-04-01 19:11:27ca21e6eb6a08690c388341c647575c50n/a157.240.27.63:443
2022-04-01 19:11:27ca21e6eb6a08690c388341c647575c50n/a157.240.21.63:443
2022-04-01 15:32:48e44168839e43380693a70a9878c773ddVirustotal results 25 / 70 (35.71%) 157.240.21.63:443
2022-04-01 15:32:48e44168839e43380693a70a9878c773ddVirustotal results 25 / 70 (35.71%) 179.60.195.52:443
2022-04-01 12:19:50ffc6c63516e597f8d5de4a520b7151fan/a157.240.21.63:443
2022-04-01 08:11:063b57e74d364daee92bf6728131c0b828n/a157.240.21.63:443
2022-04-01 08:07:317b847954f2768fa9f44ae9e94851f480n/a157.240.21.63:443
2022-04-01 08:07:317b847954f2768fa9f44ae9e94851f480n/a179.60.192.52:443
2022-04-01 08:07:297b847954f2768fa9f44ae9e94851f480n/a179.60.195.52:443
2022-04-01 07:56:482e1bad140ea3a08eb396832f727f7d3cn/a157.240.21.63:443
2022-04-01 07:56:472e1bad140ea3a08eb396832f727f7d3cn/a179.60.195.52:443
2022-04-01 07:34:34d0c4482aa496448cffe006b3e9e19707n/a179.60.195.52:443
2022-04-01 06:13:5502ad9238dd836c4be35e3eb9c06612c0n/a157.240.21.63:443
2022-03-31 21:50:12b708231c4ce074847198a2dc9c92c8a4n/a179.60.195.52:443
2022-03-31 21:50:12b708231c4ce074847198a2dc9c92c8a4n/a157.240.21.63:443
2022-03-31 20:22:126789aeafa8c448b749e98b32a00d72b8n/a157.240.11.52:443
2022-03-31 19:00:1083704f14bc0799874d7122044c46ac4bn/a157.240.21.63:443
2022-03-31 17:49:1138172a5487314fe10f1ce2fc5262ddc4n/a157.240.21.63:443
2022-03-31 16:02:07263cbcb040571a2a02590f6be4382ed5n/a157.240.21.63:443
2022-03-31 16:02:06263cbcb040571a2a02590f6be4382ed5n/a179.60.192.52:443
2022-03-31 14:17:21eb1bfbc4b81697fea572880066112ed6Virustotal results 26 / 68 (38.24%) 179.60.192.52:443
2022-03-31 14:17:21eb1bfbc4b81697fea572880066112ed6Virustotal results 26 / 68 (38.24%) 157.240.21.63:443
2022-03-31 09:52:40720a43fa09b223e98328c8a173b1160an/a157.240.21.63:443
2022-03-31 08:31:23aadacef75b81fa87d622e24f59247270n/a179.60.192.52:443
2022-03-31 08:31:23aadacef75b81fa87d622e24f59247270n/a157.240.21.63:443
2022-03-31 06:47:41109c38df0111bcedbc343cbed66dc00cn/a157.240.21.63:443
2022-03-31 02:55:240f19d589e1e6502c5554eb2a091c5a37n/a179.60.192.52:443
2022-03-31 02:55:240f19d589e1e6502c5554eb2a091c5a37n/a157.240.21.63:443
2022-03-31 01:38:135be4e34a2128ff84596c7bddc42ae289n/a179.60.192.52:443
2022-03-31 01:38:135be4e34a2128ff84596c7bddc42ae289n/a157.240.21.63:443
2022-03-31 00:12:226337bf50d35711b9fcc4fefc638362fbn/a179.60.192.52:443
2022-03-28 17:42:032aceeab2958273a3efb3f6494ef75cb5n/a157.240.21.63:443
2022-03-28 17:42:032aceeab2958273a3efb3f6494ef75cb5n/a185.60.216.52:443
2022-03-28 16:09:381acf0fc62865d5a317285836d7390126n/a157.240.21.63:443
2022-03-28 15:05:5613e9640abbbd2fcf64625a20fdcb3125Virustotal results 24 / 69 (34.78%) 157.240.21.63:443
2022-03-28 15:05:5613e9640abbbd2fcf64625a20fdcb3125Virustotal results 24 / 69 (34.78%) 185.60.216.52:443
2022-03-27 23:29:3114d68edff01c373ce2696e6890a0622eVirustotal results 26 / 69 (37.68%) 185.60.216.52:443
2022-03-27 23:29:3114d68edff01c373ce2696e6890a0622eVirustotal results 26 / 69 (37.68%) 157.240.21.63:443
2022-03-27 23:25:18455e79b51f2f0a5cff4eb412069bef43Virustotal results 25 / 70 (35.71%) 157.240.21.63:443
2022-03-27 23:25:18455e79b51f2f0a5cff4eb412069bef43Virustotal results 25 / 70 (35.71%) 185.60.216.52:443

# of entries: 100 (max: 100)