JA3 Fingerprints

You can find further information about the JA3 fingerprint 590a232d04d56409fab72e752a8a2634, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:590a232d04d56409fab72e752a8a2634
First seen:2017-07-18 18:53:24 UTC
Last seen:2020-10-11 20:48:33 UTC
Status:Blacklisted
Malware samples:858
Destination IPs:188
Malware:Tofsee -
Listing date:2018-11-14 11:56:37

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2022-07-24 09:42:55e7a857c8e423b6d57586c4f41a8e8dafn/a157.240.17.63:443
2022-06-06 13:54:28b04521e5f983a4fa03e87206ec173ec9n/a157.240.21.63:443
2022-05-29 00:23:12a8d567d420d53eb5b5eba1a459ab81b9n/a31.13.70.52:443
2022-05-29 00:23:12a8d567d420d53eb5b5eba1a459ab81b9n/a157.240.11.52:443
2022-04-27 15:38:4270d619331e4e2e454ea491708d5f7ea8n/a157.240.201.63:443
2022-04-27 15:16:35195e5e4ae2b1044dababaf22395476ffn/a157.240.17.63:443
2022-04-07 15:43:20191b4bbb57fdc45abc15eb6de7503ad9n/a157.240.17.63:443
2022-04-07 15:32:524b291df60bee7a549a47cbe666622380n/a157.240.17.63:443
2022-04-06 01:11:5247a7a37aaf5190295dc980fc44b0bea7n/a185.60.216.52:443
2022-04-04 16:55:11660f40e3fd562c695173c093bce909adVirustotal results 24 / 70 (34.29%) 157.240.27.63:443
2022-04-04 16:55:11660f40e3fd562c695173c093bce909adVirustotal results 24 / 70 (34.29%) 157.240.21.63:443
2022-04-04 16:07:44cfcd600072fc5559acaa5d7cf80aaec3n/a157.240.21.63:443
2022-04-04 16:07:44cfcd600072fc5559acaa5d7cf80aaec3n/a157.240.27.63:443
2022-04-04 15:19:2806a4e39a8e1835fbe6e5ba364516eb61n/a157.240.21.63:443
2022-04-04 13:18:55c0150524308e7f4f4a01f83d4d1a658an/a157.240.21.63:443
2022-04-03 22:34:43abb9d33d70b6c12ba801bae8172b9995n/a157.240.21.63:443
2022-04-03 22:34:43abb9d33d70b6c12ba801bae8172b9995n/a157.240.27.63:443
2022-04-02 17:01:52669d757ed134ca4f0a5dae88aabcb3a5n/a157.240.21.63:443
2022-04-02 16:22:484e7ee197e36dfc1393c54c3bd9d85413n/a157.240.27.63:443
2022-04-02 16:22:484e7ee197e36dfc1393c54c3bd9d85413n/a157.240.21.63:443
2022-04-02 12:37:23a204aa1ccad7261951a79ce3351ebb77n/a157.240.21.63:443
2022-04-02 12:37:23a204aa1ccad7261951a79ce3351ebb77n/a157.240.27.63:443
2022-04-02 04:20:418e8a41ffb4a02fdf8292793e204a2ba5n/a157.240.27.63:443
2022-04-02 04:20:418e8a41ffb4a02fdf8292793e204a2ba5n/a157.240.21.63:443
2022-04-02 02:43:3171a448a3fc76b819c9eda6f66a88f0ben/a157.240.21.63:443
2022-04-02 02:43:3071a448a3fc76b819c9eda6f66a88f0ben/a157.240.210.63:443
2022-04-01 23:31:10d82d4aec1a7586eccca554391ef102c8n/a157.240.21.63:443
2022-04-01 23:31:10d82d4aec1a7586eccca554391ef102c8n/a157.240.210.63:443
2022-04-01 23:31:09d82d4aec1a7586eccca554391ef102c8n/a157.240.27.63:443
2022-04-01 22:13:33ba9b3b5408d012f2d26b889b4a7e2468n/a157.240.21.63:443
2022-04-01 22:13:33ba9b3b5408d012f2d26b889b4a7e2468n/a157.240.27.63:443
2022-04-01 20:24:499c2abbb293d9a0e0120cddc31c99d622n/a157.240.21.63:443
2022-04-01 20:24:499c2abbb293d9a0e0120cddc31c99d622n/a157.240.27.63:443
2022-04-01 19:11:27ca21e6eb6a08690c388341c647575c50n/a157.240.21.63:443
2022-04-01 19:11:27ca21e6eb6a08690c388341c647575c50n/a157.240.27.63:443
2022-04-01 15:32:48e44168839e43380693a70a9878c773ddVirustotal results 25 / 70 (35.71%) 157.240.21.63:443
2022-04-01 15:32:48e44168839e43380693a70a9878c773ddVirustotal results 25 / 70 (35.71%) 179.60.195.52:443
2022-04-01 12:19:50ffc6c63516e597f8d5de4a520b7151fan/a157.240.21.63:443
2022-04-01 08:11:063b57e74d364daee92bf6728131c0b828n/a157.240.21.63:443
2022-04-01 08:07:317b847954f2768fa9f44ae9e94851f480n/a157.240.21.63:443
2022-04-01 08:07:317b847954f2768fa9f44ae9e94851f480n/a179.60.192.52:443
2022-04-01 08:07:297b847954f2768fa9f44ae9e94851f480n/a179.60.195.52:443
2022-04-01 07:56:482e1bad140ea3a08eb396832f727f7d3cn/a157.240.21.63:443
2022-04-01 07:56:472e1bad140ea3a08eb396832f727f7d3cn/a179.60.195.52:443
2022-04-01 07:34:34d0c4482aa496448cffe006b3e9e19707n/a179.60.195.52:443
2022-04-01 06:13:5502ad9238dd836c4be35e3eb9c06612c0n/a157.240.21.63:443
2022-03-31 21:50:12b708231c4ce074847198a2dc9c92c8a4n/a179.60.195.52:443
2022-03-31 21:50:12b708231c4ce074847198a2dc9c92c8a4n/a157.240.21.63:443
2022-03-31 20:22:126789aeafa8c448b749e98b32a00d72b8n/a157.240.11.52:443
2022-03-31 19:00:1083704f14bc0799874d7122044c46ac4bn/a157.240.21.63:443
2022-03-31 17:49:1138172a5487314fe10f1ce2fc5262ddc4n/a157.240.21.63:443
2022-03-31 16:02:07263cbcb040571a2a02590f6be4382ed5n/a157.240.21.63:443
2022-03-31 16:02:06263cbcb040571a2a02590f6be4382ed5n/a179.60.192.52:443
2022-03-31 14:17:21eb1bfbc4b81697fea572880066112ed6Virustotal results 26 / 68 (38.24%) 157.240.21.63:443
2022-03-31 14:17:21eb1bfbc4b81697fea572880066112ed6Virustotal results 26 / 68 (38.24%) 179.60.192.52:443
2022-03-31 09:52:40720a43fa09b223e98328c8a173b1160an/a157.240.21.63:443
2022-03-31 08:31:23aadacef75b81fa87d622e24f59247270n/a157.240.21.63:443
2022-03-31 08:31:23aadacef75b81fa87d622e24f59247270n/a179.60.192.52:443
2022-03-31 06:47:41109c38df0111bcedbc343cbed66dc00cn/a157.240.21.63:443
2022-03-31 02:55:240f19d589e1e6502c5554eb2a091c5a37n/a179.60.192.52:443
2022-03-31 02:55:240f19d589e1e6502c5554eb2a091c5a37n/a157.240.21.63:443
2022-03-31 01:38:135be4e34a2128ff84596c7bddc42ae289n/a179.60.192.52:443
2022-03-31 01:38:135be4e34a2128ff84596c7bddc42ae289n/a157.240.21.63:443
2022-03-31 00:12:226337bf50d35711b9fcc4fefc638362fbn/a179.60.192.52:443
2022-03-28 17:42:032aceeab2958273a3efb3f6494ef75cb5n/a157.240.21.63:443
2022-03-28 17:42:032aceeab2958273a3efb3f6494ef75cb5n/a185.60.216.52:443
2022-03-28 16:09:381acf0fc62865d5a317285836d7390126n/a157.240.21.63:443
2022-03-28 15:05:5613e9640abbbd2fcf64625a20fdcb3125Virustotal results 24 / 69 (34.78%) 157.240.21.63:443
2022-03-28 15:05:5613e9640abbbd2fcf64625a20fdcb3125Virustotal results 24 / 69 (34.78%) 185.60.216.52:443
2022-03-27 23:29:3114d68edff01c373ce2696e6890a0622eVirustotal results 26 / 69 (37.68%) 157.240.21.63:443
2022-03-27 23:29:3114d68edff01c373ce2696e6890a0622eVirustotal results 26 / 69 (37.68%) 185.60.216.52:443
2022-03-27 23:25:18455e79b51f2f0a5cff4eb412069bef43Virustotal results 25 / 70 (35.71%) 157.240.21.63:443
2022-03-27 23:25:18455e79b51f2f0a5cff4eb412069bef43Virustotal results 25 / 70 (35.71%) 185.60.216.52:443
2022-03-27 23:24:526caf8509e5f20d6587a406ed938a8ae7n/a185.60.216.52:443
2022-03-27 23:24:526caf8509e5f20d6587a406ed938a8ae7n/a157.240.21.63:443
2022-03-27 23:18:415ada2ab8043352f1b81295f65653f4ean/a185.60.216.52:443
2022-03-27 23:18:415ada2ab8043352f1b81295f65653f4ean/a157.240.21.63:443
2022-03-27 23:04:4258b3b5b75f0f0f6a10aa583c5cda45daVirustotal results 26 / 70 (37.14%) 157.240.21.63:443
2022-03-26 19:02:1585628379ff6464e9889f42a9532c5952n/a157.240.21.63:443
2022-03-26 19:02:1585628379ff6464e9889f42a9532c5952n/a179.60.192.52:443
2022-03-26 10:29:066b1540bc6373b7b374a9f279cdf09a56n/a157.240.21.63:443
2022-03-26 10:29:066b1540bc6373b7b374a9f279cdf09a56n/a179.60.192.52:443
2022-03-26 10:08:111f6abed9e11bb7a5cf01824955acf813n/a179.60.192.52:443
2022-03-26 10:08:101f6abed9e11bb7a5cf01824955acf813n/a157.240.21.63:443
2022-03-26 08:01:55b8aefdce16c8e6f2b6cd0c2f48b5c57cn/a157.240.21.63:443
2022-03-26 08:01:54b8aefdce16c8e6f2b6cd0c2f48b5c57cn/a179.60.192.52:443
2022-03-26 07:43:0784b8e713a880bc7de9eef1cb0cadef1an/a179.60.192.52:443
2022-03-25 23:33:47d8f5699e92adf8541371900c206f2836n/a179.60.192.52:443
2022-03-25 23:33:47d8f5699e92adf8541371900c206f2836n/a157.240.21.63:443
2022-03-25 23:27:33b819f5916a62a4927ad832fa33c65f62n/a157.240.21.63:443
2022-03-25 23:27:33b819f5916a62a4927ad832fa33c65f62n/a179.60.192.52:443
2022-03-25 22:22:016f1a851fb82bdd6fe736bc167746a888n/a157.240.21.63:443
2022-03-25 22:22:016f1a851fb82bdd6fe736bc167746a888n/a179.60.192.52:443
2022-03-25 22:13:09f51178581306544fcb6f65cd70d8cc27n/a157.240.21.63:443
2022-03-25 18:56:0231b7a36eca0cd4375ee5aa6f50a670efn/a157.240.21.63:443
2022-03-20 15:48:45ad486354abffb7bfdea5c3ba88eb8891Virustotal results 25 / 68 (36.76%) 185.60.216.52:443
2022-03-20 10:41:37a658a0dc6cf4623828022e04ff2449ecn/a157.240.17.63:443
2022-03-20 07:06:40052db26546037e244b3e2fae97c53f53Virustotal results 50 / 69 (72.46%) 157.240.17.63:443
2022-03-14 19:43:0889e2f4ad9915acdee14457785dcb71a6n/a157.240.21.63:443
2022-03-14 19:43:0889e2f4ad9915acdee14457785dcb71a6n/a157.240.203.63:443

# of entries: 100 (max: 100)