JA3 Fingerprints

You can find further information about the JA3 fingerprint 590a232d04d56409fab72e752a8a2634, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:590a232d04d56409fab72e752a8a2634
First seen:2017-07-18 18:53:24 UTC
Last seen:2020-10-11 20:48:33 UTC
Status:Blacklisted
Malware samples:681
Destination IPs:159
Malware:Tofsee -
Listing date:2018-11-14 11:56:37

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2020-10-11 20:48:33a334ca9dbf35f343a11e37d5d24ee621n/a157.240.201.63:443
2020-10-11 18:13:17299dbbd70e5142ff8e2f495cc997c949Virustotal results 53 / 70 (75.71%) 185.60.216.52:443
2020-08-29 18:43:541d4461b24a77875698862b775b745f74Virustotal results 44 / 69 (63.77%) 3.219.59.31:443
2020-08-29 09:45:04cbd3eeb50e8b63bc5e624ca4047582a5n/a54.145.254.16:443
2020-08-29 06:05:13b63c917a274f9c94eb9369bd99fbe2b8n/a54.163.211.139:443
2020-03-31 20:44:3508b63686a1d689d6de2c1308c3a90020Virustotal results 20 / 73 (27.40%) 40.101.121.34:993
2020-03-31 16:35:26caa1d097a72080532cf8ba9f9546432an/a195.4.92.211:993
2020-03-27 15:13:38926941535345db23a2f45b3995939b80Virustotal results 22 / 72 (30.56%) 217.74.64.236:993
2020-03-26 19:49:33cdf6c5b37844378a0f1dfd0fcb89cda1Virustotal results 33 / 72 (45.83%) 217.146.190.234:993
2020-03-26 19:49:32cdf6c5b37844378a0f1dfd0fcb89cda1Virustotal results 33 / 72 (45.83%) 52.97.144.178:993
2020-03-26 19:49:30cdf6c5b37844378a0f1dfd0fcb89cda1Virustotal results 33 / 72 (45.83%) 77.238.185.51:993
2020-03-26 19:49:26cdf6c5b37844378a0f1dfd0fcb89cda1Virustotal results 33 / 72 (45.83%) 212.27.48.2:993
2020-03-26 17:04:385945c16ba0edda8a3a618de9e6ac71a3Virustotal results 20 / 71 (28.17%) 173.194.76.109:993
2020-03-26 13:57:59d86b5aad90c5c2928fdff9718cb8ef24Virustotal results 21 / 71 (29.58%) 217.74.64.236:993
2020-03-26 12:27:215a372fae95b828405954a558e723fd26n/a34.248.221.206:443
2020-03-26 07:32:2781b286b254c3c554023c886765aa57b0Virustotal results 17 / 72 (23.61%) 217.74.64.236:993
2020-03-25 21:42:52a00af9729eff3c313db18914f9db4be4Virustotal results 23 / 73 (31.51%) 217.74.64.236:993
2020-03-25 16:19:5039b961c13850e7910d07c9d1993b47a7Virustotal results 20 / 72 (27.78%) 104.70.85.207:443
2020-03-17 19:42:38d72f006e6640ec62ddaf405fec7fd370Virustotal results 50 / 72 (69.44%) 212.227.17.178:993
2020-03-13 16:47:47d8fe16e62f27ba7d966b7a474a1e436bVirustotal results 19 / 73 (26.03%) 66.135.201.93:443
2020-03-13 16:47:47d8fe16e62f27ba7d966b7a474a1e436bVirustotal results 19 / 73 (26.03%) 66.211.182.235:443
2020-03-13 11:02:46d10b4ad3735f76f877eb0c07d8167c98Virustotal results 18 / 72 (25.00%) 188.125.73.109:993
2020-03-13 09:49:44c868debc819139e60a7623828e393bcdVirustotal results 19 / 73 (26.03%) 66.135.201.93:443
2020-03-13 09:49:42c868debc819139e60a7623828e393bcdVirustotal results 19 / 73 (26.03%) 85.119.249.110:993
2020-03-13 09:49:40c868debc819139e60a7623828e393bcdVirustotal results 19 / 73 (26.03%) 52.97.188.66:993
2020-03-13 04:42:012e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 213.205.33.10:993
2020-03-13 04:42:002e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 104.111.230.235:443
2020-03-13 04:41:562e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 2.21.38.12:443
2020-03-13 04:41:462e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 52.97.186.114:993
2020-03-13 04:41:432e3249d404e1785a1bfa1914a75effcfVirustotal results 24 / 73 (32.88%) 64.233.184.109:993
2020-03-12 17:39:39976a090d05150678c5c42d68838d5b68Virustotal results 23 / 73 (31.51%) 212.82.101.50:993
2020-03-05 13:59:27d61df703814d13c53a0907b267b6d169Virustotal results 51 / 71 (71.83%) 23.239.20.137:443
2020-03-05 13:59:25d61df703814d13c53a0907b267b6d169Virustotal results 51 / 71 (71.83%) 23.15.94.46:443
2019-12-09 21:14:547563449ba6a1e4ec920fa25410b9f0d7Virustotal results 55 / 72 (76.39%) 23.62.138.76:443
2019-12-09 11:48:20481d71aed93eab747a96f5d335c119d9Virustotal results 54 / 69 (78.26%) 23.72.107.24:443
2019-12-09 11:41:143f5b867e8f0e81c68715e46a8d2a5cfdVirustotal results 55 / 72 (76.39%) 23.72.107.24:443
2019-12-09 11:37:238a8422558e904b709d49eb153cb7ecb7Virustotal results 57 / 70 (81.43%) 23.62.138.76:443
2019-09-25 07:07:09c0bae140d6ff2ed1a7debc53fa1ff9fdVirustotal results 25 / 69 (36.23%) 31.13.64.52:443
2019-09-25 06:05:0026db6a6f05ecf8fcf06e3b4006d0abc2n/a31.13.86.52:443
2019-09-25 05:07:419266211940a6efe8c5983c8ec1c35a33Virustotal results 47 / 69 (68.12%) 157.240.11.52:443
2019-09-25 00:32:38bb0b53e7584898e86b150b6e0aa85a24n/a185.60.216.52:443
2019-09-25 00:03:0052ccfeed5c5d613d2a08deb7c8990a57n/a157.240.20.63:443
2019-09-24 23:41:28ed89e203c188ede3ed504fc47a5928edn/a31.13.86.52:443
2019-09-24 23:18:36edb1cf9feca641b41bcdef9bc9d68d4an/a185.60.216.52:443
2019-05-19 03:23:046b3656c5adf8f094f252455982c7f546Virustotal results 42/73 (57.53%) 54.187.140.176:443
2019-04-27 13:18:5204189c076555294cb7bf7968927b5444n/a23.34.201.4:443
2019-04-07 13:36:0096f8471a20fc9d665fc3e444dca25b69Virustotal results 36/67 (53.73%) 151.101.1.140:443
2019-04-03 06:34:300fba4b08cce1ba318e281253d25fcb8eVirustotal results 44/67 (65.67%) 23.201.248.208:443
2019-03-30 13:16:0932af06c16db062c54d91523b9373266eVirustotal results 44/65 (67.69%) 172.217.17.36:443
2019-03-30 13:16:0932af06c16db062c54d91523b9373266eVirustotal results 44/65 (67.69%) 172.217.17.35:443
2019-03-30 13:16:0432af06c16db062c54d91523b9373266eVirustotal results 44/65 (67.69%) 88.221.68.200:443
2019-03-27 22:11:048352f19171d93ddb3cd4d5f5c49cab6bVirustotal results 41/65 (63.08%) 23.206.82.189:443
2019-03-27 22:11:048352f19171d93ddb3cd4d5f5c49cab6bVirustotal results 41/65 (63.08%) 172.217.17.68:443
2019-03-27 22:11:038352f19171d93ddb3cd4d5f5c49cab6bVirustotal results 41/65 (63.08%) 172.217.17.67:443
2019-03-27 22:11:038352f19171d93ddb3cd4d5f5c49cab6bVirustotal results 41/65 (63.08%) 172.217.17.36:443
2019-03-12 13:08:27e0f76b90905ec73d159f3b0054a681a5n/a2.17.235.211:443
2019-03-12 13:08:27e0f76b90905ec73d159f3b0054a681a5n/a2.20.176.57:443
2019-03-12 13:08:25e0f76b90905ec73d159f3b0054a681a5n/a23.34.180.129:443
2019-03-07 06:59:47ab4464a4f5dfec027247e5ae73fb92e0Virustotal results 35/65 (53.85%) 74.208.232.7:443
2019-03-07 05:29:29b62618eb2f8f91d03e70d69972c60550Virustotal results 34/63 (53.97%) 74.208.232.7:443
2019-03-07 05:29:28b62618eb2f8f91d03e70d69972c60550Virustotal results 34/63 (53.97%) 82.165.229.15:443
2019-03-06 04:36:49260329e2b1c9706bca357ff89bcff35dVirustotal results 30/65 (46.15%) 74.208.232.7:443
2019-02-28 19:02:17a470a522cba5594e96437cac02e7e1a5Virustotal results 37/70 (52.86%) 74.208.232.7:443
2019-02-22 09:25:263f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 82.165.229.15:443
2019-02-22 09:25:143f0d1fddc1f0c1d2f95737b369afdc3aVirustotal results 33/70 (47.14%) 82.165.230.105:443
2019-02-21 04:01:48fe673a99043c6c17be2bd8773bb2da42Virustotal results 38/70 (54.29%) 82.165.229.15:443
2019-02-19 00:05:38c040d204e45df8379e5820a7029a3172Virustotal results 40/69 (57.97%) 74.208.232.7:443
2019-02-13 11:53:32745f5b721c66915eecc831b3430e9136Virustotal results 23/71 (32.39%) 82.165.229.15:443
2019-02-12 01:34:486ec711bccc0ecc02197d3f8534bc445bVirustotal results 46/70 (65.71%) 82.165.229.15:443
2019-02-12 01:34:476ec711bccc0ecc02197d3f8534bc445bVirustotal results 46/70 (65.71%) 74.208.232.7:443
2019-02-10 01:40:089c3e69b6aca6a7b7e6885650f0af5a61Virustotal results 45/70 (64.29%) 82.165.229.15:443
2019-02-09 12:37:268eda4ccf6653b2346f649fee746209bbVirustotal results 43/69 (62.32%) 82.165.229.15:443
2019-02-08 22:48:56cdedf9892b1cf43ae83999e3f4351131Virustotal results 31/71 (43.66%) 82.165.229.15:443
2019-02-08 22:48:56cdedf9892b1cf43ae83999e3f4351131Virustotal results 31/71 (43.66%) 82.165.229.105:443
2019-02-08 22:48:56cdedf9892b1cf43ae83999e3f4351131Virustotal results 31/71 (43.66%) 82.165.229.84:443
2019-02-03 00:49:325e71ab1980441770e0ead4683337afb6Virustotal results 40/67 (59.70%) 82.165.229.15:443
2019-02-02 12:40:09f4f08e7b86c1e77c890b78fb5ff94e6an/a82.165.229.15:443
2019-02-02 12:40:09f4f08e7b86c1e77c890b78fb5ff94e6an/a82.165.230.62:443
2019-02-02 12:40:09f4f08e7b86c1e77c890b78fb5ff94e6an/a82.165.229.105:443
2019-01-30 18:32:165439f456945e6afec4147fe678975fd2Virustotal results 48/70 (68.57%) 74.208.232.2:443
2019-01-30 18:32:165439f456945e6afec4147fe678975fd2Virustotal results 48/70 (68.57%) 74.208.232.3:443
2019-01-30 18:32:165439f456945e6afec4147fe678975fd2Virustotal results 48/70 (68.57%) 74.208.232.7:443
2019-01-22 14:23:0838295c84ee9cf761fc486143613f6f75Virustotal results 33/70 (47.14%) 82.165.229.15:443
2019-01-20 14:31:399e6df0e4d260e0e5bf7f23c150e82a4bVirustotal results 34/71 (47.89%) 74.208.232.7:443
2019-01-14 14:36:2547d980700322d3005dbfafeebc9e41feVirustotal results 34/70 (48.57%) 74.208.232.7:443
2019-01-13 11:15:379de56070017d8a3f08d96259d3dbc4e9Virustotal results 36/71 (50.70%) 54.77.108.2:443
2019-01-13 11:15:369de56070017d8a3f08d96259d3dbc4e9Virustotal results 36/71 (50.70%) 74.208.232.7:443
2019-01-13 11:15:369de56070017d8a3f08d96259d3dbc4e9Virustotal results 36/71 (50.70%) 34.252.68.166:443
2019-01-13 11:15:369de56070017d8a3f08d96259d3dbc4e9Virustotal results 36/71 (50.70%) 52.31.45.232:443
2019-01-05 19:56:33a26dd9ab29f62033ad37ebc874a20a7cn/a82.165.229.15:443
2019-01-02 09:30:536a27b1eaaa1a56377a0a1fd0a14fdd57n/a82.165.229.15:443
2018-12-29 01:46:47b27e2573f4fcae368b9104f0912d3edfVirustotal results 45/71 (63.38%) 82.165.229.15:443
2018-12-29 01:46:46b27e2573f4fcae368b9104f0912d3edfVirustotal results 45/71 (63.38%) 217.72.196.44:443
2018-12-28 22:25:37eca69a3720188063a81202928b808af0n/a82.165.229.105:443
2018-12-28 22:25:37eca69a3720188063a81202928b808af0n/a74.208.232.7:443
2018-12-28 22:25:37eca69a3720188063a81202928b808af0n/a82.165.230.62:443
2018-12-28 22:25:37eca69a3720188063a81202928b808af0n/a82.165.229.15:443
2018-12-24 22:19:08424f7b8edf5d150c7a248ad789512bc4Virustotal results 39/69 (56.52%) 82.165.229.15:443
2018-12-24 22:19:08424f7b8edf5d150c7a248ad789512bc4Virustotal results 39/69 (56.52%) 217.72.196.44:443
2018-12-24 22:19:08424f7b8edf5d150c7a248ad789512bc4Virustotal results 39/69 (56.52%) 74.208.232.3:443

# of entries: 100 (max: 100)