JA3 Fingerprints

You can find further information about the JA3 fingerprint 590a232d04d56409fab72e752a8a2634, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:590a232d04d56409fab72e752a8a2634
First seen:2017-07-18 18:53:24 UTC
Last seen:2019-03-12 13:08:27 UTC
Status:Blacklisted
Malware samples:642
Destination IPs:114
Malware:Tofsee -
Listing date:2018-11-14 11:56:37

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-03-12 13:08:27e0f76b90905ec73d159f3b0054a681a5n/a2.17.235.211:443
2019-03-12 13:08:27e0f76b90905ec73d159f3b0054a681a5n/a2.20.176.57:443
2019-03-12 13:08:25e0f76b90905ec73d159f3b0054a681a5n/a23.34.180.129:443
2019-03-07 06:59:47ab4464a4f5dfec027247e5ae73fb92e0Virustotal results 35/65 (53.85%) 74.208.232.7:443
2019-03-07 05:29:29b62618eb2f8f91d03e70d69972c60550Virustotal results 34/63 (53.97%) 74.208.232.7:443
2019-03-07 05:29:28b62618eb2f8f91d03e70d69972c60550Virustotal results 34/63 (53.97%) 82.165.229.15:443
2019-03-06 04:36:49260329e2b1c9706bca357ff89bcff35dVirustotal results 30/65 (46.15%) 74.208.232.7:443
2019-02-28 19:02:17a470a522cba5594e96437cac02e7e1a5Virustotal results 37/70 (52.86%) 74.208.232.7:443
2019-02-22 09:25:263f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 82.165.229.15:443
2019-02-22 09:25:143f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 82.165.230.105:443
2019-02-21 04:01:48fe673a99043c6c17be2bd8773bb2da42Virustotal results 38/70 (54.29%) 82.165.229.15:443
2019-02-19 00:05:38c040d204e45df8379e5820a7029a3172Virustotal results 40/69 (57.97%) 74.208.232.7:443
2019-02-13 11:53:32745f5b721c66915eecc831b3430e9136Virustotal results 23/71 (32.39%) 82.165.229.15:443
2019-02-12 01:34:486ec711bccc0ecc02197d3f8534bc445bVirustotal results 46/70 (65.71%) 82.165.229.15:443
2019-02-12 01:34:476ec711bccc0ecc02197d3f8534bc445bVirustotal results 46/70 (65.71%) 74.208.232.7:443
2019-02-10 01:40:089c3e69b6aca6a7b7e6885650f0af5a61Virustotal results 45/70 (64.29%) 82.165.229.15:443
2019-02-09 12:37:268eda4ccf6653b2346f649fee746209bbVirustotal results 43/69 (62.32%) 82.165.229.15:443
2019-02-08 22:48:56cdedf9892b1cf43ae83999e3f4351131Virustotal results 31/71 (43.66%) 82.165.229.15:443
2019-02-08 22:48:56cdedf9892b1cf43ae83999e3f4351131Virustotal results 31/71 (43.66%) 82.165.229.105:443
2019-02-08 22:48:56cdedf9892b1cf43ae83999e3f4351131Virustotal results 31/71 (43.66%) 82.165.229.84:443
2019-02-03 00:49:325e71ab1980441770e0ead4683337afb6Virustotal results 40/67 (59.70%) 82.165.229.15:443
2019-02-02 12:40:09f4f08e7b86c1e77c890b78fb5ff94e6an/a82.165.229.15:443
2019-02-02 12:40:09f4f08e7b86c1e77c890b78fb5ff94e6an/a82.165.230.62:443
2019-02-02 12:40:09f4f08e7b86c1e77c890b78fb5ff94e6an/a82.165.229.105:443
2019-01-30 18:32:165439f456945e6afec4147fe678975fd2Virustotal results 48/70 (68.57%) 74.208.232.2:443
2019-01-30 18:32:165439f456945e6afec4147fe678975fd2Virustotal results 48/70 (68.57%) 74.208.232.3:443
2019-01-30 18:32:165439f456945e6afec4147fe678975fd2Virustotal results 48/70 (68.57%) 74.208.232.7:443
2019-01-22 14:23:0838295c84ee9cf761fc486143613f6f75Virustotal results 33/70 (47.14%) 82.165.229.15:443
2019-01-20 14:31:399e6df0e4d260e0e5bf7f23c150e82a4bVirustotal results 34/71 (47.89%) 74.208.232.7:443
2019-01-14 14:36:2547d980700322d3005dbfafeebc9e41feVirustotal results 34/70 (48.57%) 74.208.232.7:443
2019-01-13 11:15:379de56070017d8a3f08d96259d3dbc4e9Virustotal results 36/71 (50.70%) 54.77.108.2:443
2019-01-13 11:15:369de56070017d8a3f08d96259d3dbc4e9Virustotal results 36/71 (50.70%) 74.208.232.7:443
2019-01-13 11:15:369de56070017d8a3f08d96259d3dbc4e9Virustotal results 36/71 (50.70%) 34.252.68.166:443
2019-01-13 11:15:369de56070017d8a3f08d96259d3dbc4e9Virustotal results 36/71 (50.70%) 52.31.45.232:443
2019-01-05 19:56:33a26dd9ab29f62033ad37ebc874a20a7cn/a82.165.229.15:443
2019-01-02 09:30:536a27b1eaaa1a56377a0a1fd0a14fdd57n/a82.165.229.15:443
2018-12-29 01:46:47b27e2573f4fcae368b9104f0912d3edfVirustotal results 45/71 (63.38%) 82.165.229.15:443
2018-12-29 01:46:46b27e2573f4fcae368b9104f0912d3edfVirustotal results 45/71 (63.38%) 217.72.196.44:443
2018-12-28 22:25:37eca69a3720188063a81202928b808af0n/a82.165.229.105:443
2018-12-28 22:25:37eca69a3720188063a81202928b808af0n/a74.208.232.7:443
2018-12-28 22:25:37eca69a3720188063a81202928b808af0n/a82.165.230.62:443
2018-12-28 22:25:37eca69a3720188063a81202928b808af0n/a82.165.229.15:443
2018-12-24 22:19:08424f7b8edf5d150c7a248ad789512bc4Virustotal results 39/69 (56.52%) 82.165.229.15:443
2018-12-24 22:19:08424f7b8edf5d150c7a248ad789512bc4Virustotal results 39/69 (56.52%) 217.72.196.44:443
2018-12-24 22:19:08424f7b8edf5d150c7a248ad789512bc4Virustotal results 39/69 (56.52%) 74.208.232.3:443
2018-12-24 22:19:08424f7b8edf5d150c7a248ad789512bc4Virustotal results 39/69 (56.52%) 74.208.232.7:443
2018-12-24 22:19:08424f7b8edf5d150c7a248ad789512bc4Virustotal results 39/69 (56.52%) 74.208.232.2:443
2018-12-19 20:54:5861f4fa70b33c54bb2e9e049359c3a03en/a82.165.229.15:443
2018-12-17 21:30:18c84fdb9bf81240c39381022530c0cdd0Virustotal results 24/68 (35.29%) 82.165.229.15:443
2018-12-16 20:17:5678c050980246f58ecc5dfc373d81c6f8Virustotal results 37/71 (52.11%) 82.165.229.15:443
2018-12-15 23:29:4806ab498eb864a937fc7f0ea4908e0731Virustotal results 37/71 (52.11%) 74.208.232.36:443
2018-12-15 23:29:4806ab498eb864a937fc7f0ea4908e0731Virustotal results 37/71 (52.11%) 82.165.229.15:443
2018-12-13 20:12:454b2405676f726333a5ad5754ae3af6b4Virustotal results 36/68 (52.94%) 217.72.196.44:443
2018-12-13 20:12:454b2405676f726333a5ad5754ae3af6b4Virustotal results 36/68 (52.94%) 82.165.229.15:443
2018-11-30 04:59:53f103fceb4d81aa1ff904dcd8a28fcc04Virustotal results 34/68 (50.00%) 82.165.229.15:443
2018-11-30 04:59:53f103fceb4d81aa1ff904dcd8a28fcc04Virustotal results 34/68 (50.00%) 74.208.232.36:443
2018-11-30 04:59:52f103fceb4d81aa1ff904dcd8a28fcc04Virustotal results 34/68 (50.00%) 213.165.64.204:443
2018-11-29 20:46:04020b08c9f4ece0ca858b702b57b5b6eeVirustotal results 37/69 (53.62%) 217.72.196.44:443
2018-11-29 20:46:03020b08c9f4ece0ca858b702b57b5b6eeVirustotal results 37/69 (53.62%) 82.165.229.15:443
2018-11-29 20:46:03020b08c9f4ece0ca858b702b57b5b6eeVirustotal results 37/69 (53.62%) 213.165.64.8:443
2018-11-29 20:46:03020b08c9f4ece0ca858b702b57b5b6eeVirustotal results 37/69 (53.62%) 217.72.196.118:443
2018-11-29 20:46:03020b08c9f4ece0ca858b702b57b5b6eeVirustotal results 37/69 (53.62%) 82.165.230.19:443
2018-11-26 08:28:448c2a233173810d4f53df1cc5de624d50Virustotal results 35/70 (50.00%) 74.125.206.104:443
2018-11-25 16:01:2205754754e9926dfc92751235f56f1fd8Virustotal results 36/69 (52.17%) 104.85.53.110:443
2018-11-25 16:01:2005754754e9926dfc92751235f56f1fd8Virustotal results 36/69 (52.17%) 172.217.22.132:443
2018-11-24 21:53:196b6a43af4478cad774e6703bf3f54813Virustotal results 39/69 (56.52%) 82.165.229.15:443
2018-11-24 11:53:37526d0aa2e3d2980f6f66c4dd4106c8c5Virustotal results 41/70 (58.57%) 82.165.229.15:443
2018-11-23 04:28:05162c6f6b1e73f0733e3a932d8b07dc2eVirustotal results 37/68 (54.41%) 82.165.229.15:443
2018-11-23 04:28:04162c6f6b1e73f0733e3a932d8b07dc2eVirustotal results 37/68 (54.41%) 217.72.196.44:443
2018-11-22 16:18:12a3f0d4f18f1b20f8931f07a2658edcf7Virustotal results 34/67 (50.75%) 23.75.204.115:443
2018-11-18 19:19:39bc95c3f699cea00f31cc288e669d9bd3Virustotal results 18/67 (26.87%) 213.165.64.204:443
2018-11-18 19:19:34bc95c3f699cea00f31cc288e669d9bd3Virustotal results 18/67 (26.87%) 82.165.229.15:443
2018-11-17 05:17:201eeae4203ca29b93116321481964bafeVirustotal results 28/68 (41.18%) 217.72.196.44:443
2018-11-17 05:17:191eeae4203ca29b93116321481964bafeVirustotal results 28/68 (41.18%) 82.165.229.15:443
2018-11-16 13:26:410d0e3832ff519b3ce734f8f122debcf4Virustotal results 27/67 (40.30%) 217.72.196.44:443
2018-11-16 13:26:380d0e3832ff519b3ce734f8f122debcf4Virustotal results 27/67 (40.30%) 82.165.229.15:443
2018-11-11 10:31:253159bed9fa80ab6ca9f84f960fbb5af5Virustotal results 20/67 (29.85%) 82.165.229.15:443
2018-11-03 12:33:5685993c66a193d6d8d3b8d79d9a95dd0cVirustotal results 35/68 (51.47%) 217.72.196.44:443
2018-11-03 12:33:5685993c66a193d6d8d3b8d79d9a95dd0cVirustotal results 35/68 (51.47%) 217.72.196.118:443
2018-11-03 12:33:5585993c66a193d6d8d3b8d79d9a95dd0cVirustotal results 35/68 (51.47%) 213.165.64.8:443
2018-11-03 12:33:5585993c66a193d6d8d3b8d79d9a95dd0cVirustotal results 35/68 (51.47%) 82.165.230.19:443
2018-11-03 12:33:5585993c66a193d6d8d3b8d79d9a95dd0cVirustotal results 35/68 (51.47%) 82.165.229.15:443
2018-10-31 04:52:284dcdd6a025d22d53faccd9ab4bf4e85eVirustotal results 36/67 (53.73%) 217.72.196.44:443
2018-10-31 04:52:254dcdd6a025d22d53faccd9ab4bf4e85eVirustotal results 36/67 (53.73%) 217.72.196.118:443
2018-10-22 20:09:20e63aeeb471128809fb6551c6af96a5e0Virustotal results 43/69 (62.32%) 212.227.111.53:443
2018-10-22 20:09:19e63aeeb471128809fb6551c6af96a5e0Virustotal results 43/69 (62.32%) 217.72.201.130:443
2018-10-16 12:58:414f6f5da4c09d1d1fcc279837a59265e5Virustotal results 43/67 (64.18%) 104.111.230.177:443
2018-08-04 23:26:51d407e629d933030739dfc629142ff8deVirustotal results 35/68 (51.47%) 66.135.213.135:443
2018-08-04 23:26:51d407e629d933030739dfc629142ff8deVirustotal results 35/68 (51.47%) 66.135.223.243:443
2018-08-04 20:10:201c3fca8e3015013020f4bbc131e55c83Virustotal results 41/68 (60.29%) 66.135.223.243:443
2018-07-22 19:54:058f3b2b5ea644ff0df6b560bc9dffa5d6Virustotal results 36/68 (52.94%) 23.72.123.92:443
2018-07-22 19:54:058f3b2b5ea644ff0df6b560bc9dffa5d6Virustotal results 36/68 (52.94%) 23.75.197.164:443
2018-07-22 19:54:058f3b2b5ea644ff0df6b560bc9dffa5d6Virustotal results 36/68 (52.94%) 104.120.176.228:443
2018-07-22 19:54:058f3b2b5ea644ff0df6b560bc9dffa5d6Virustotal results 36/68 (52.94%) 23.203.56.156:443
2018-07-22 17:34:1232dbd0f5ec4aa9337caaa1de4d40647dn/a23.72.123.92:443
2018-07-22 17:34:1232dbd0f5ec4aa9337caaa1de4d40647dn/a23.75.197.164:443
2018-07-22 17:34:1232dbd0f5ec4aa9337caaa1de4d40647dn/a104.120.176.228:443
2018-06-28 00:12:39735300e6d74aee8cd4645a72a8310e63Virustotal results 15/69 (21.74%) 2.23.131.93:443
2018-06-28 00:12:39735300e6d74aee8cd4645a72a8310e63Virustotal results 15/69 (21.74%) 2.23.143.113:443
2018-06-28 00:12:39735300e6d74aee8cd4645a72a8310e63Virustotal results 15/69 (21.74%) 2.23.135.221:443

# of entries: 100 (max: 100)