JA3 Fingerprints

You can find further information about the JA3 fingerprint c201b92f8b483fa388be174d6689f534, including the corresponding malware samples as well as the associated botnet C&Cs.

Database Entry


JA3 Fingerprint:c201b92f8b483fa388be174d6689f534
First seen:2018-03-12 13:43:52 UTC
Last seen:2019-04-24 16:54:08 UTC
Status:Blacklisted
Malware samples:42
Destination IPs:1'028
Malware:Gozi -
Listing date:2018-11-14 00:00:00

Malware Samples


The table below documents all malware samples associated with this JA3 Fingerprint.

Timestamp (UTC)Malware Sample (MD5 hash)VTBotnet C&C (IP:port)
2019-04-24 16:54:08a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 93.90.206.129:9001
2019-04-24 16:54:08a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 109.70.100.17:443
2019-04-24 16:54:08a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 51.15.89.36:9000
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 193.23.244.244:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 5.196.213.56:21001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 217.79.181.90:9001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 185.227.82.56:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 62.210.177.181:8080
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 93.180.157.154:9001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 51.158.70.1:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 163.172.133.54:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 116.203.64.212:8080
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 73.211.181.17:9001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 83.227.87.11:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 77.68.11.42:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 51.68.205.181:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 62.210.213.17:9001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 82.165.247.47:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 178.63.97.34:9001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 178.254.19.101:9001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 173.212.244.108:9001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 37.123.132.154:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 178.63.26.116:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 85.17.65.21:13866
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 163.172.191.108:9001
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 95.211.136.23:443
2019-04-24 16:54:07a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 78.35.76.4:443
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 54.39.67.242:9001
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 104.167.102.164:443
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 145.239.6.188:9001
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 91.194.84.89:9001
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 85.10.202.207:443
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 194.55.13.50:9001
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 185.77.129.35:443
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 137.74.19.202:20000
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 192.87.28.28:9001
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 77.87.49.6:9002
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 45.79.218.205:9001
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 159.69.21.196:443
2019-04-24 16:54:06a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 46.4.105.166:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 54.36.237.163:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 82.181.190.22:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 195.154.240.145:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 46.19.143.139:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 78.46.217.214:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 134.19.177.109:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 163.172.194.53:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 37.187.98.35:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 176.9.92.102:20001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 51.75.32.173:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 85.235.66.146:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 51.75.254.22:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 148.251.51.66:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 45.62.246.155:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 198.98.58.88:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 94.155.49.47:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 128.31.0.39:9101
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 95.211.138.7:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 5.79.79.133:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 140.82.23.70:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 213.163.70.234:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 5.9.9.18:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 136.243.149.82:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 212.237.100.250:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 195.128.103.196:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 185.165.240.126:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 94.130.40.100:443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 88.198.17.248:8443
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 78.129.180.14:9001
2019-04-24 16:54:05a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 192.99.34.48:443
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 72.49.91.92:443
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 70.23.16.31:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 37.191.172.198:443
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 144.76.107.124:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 137.74.19.202:20001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 51.15.54.71:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 51.15.174.186:53
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 5.103.58.29:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 66.70.211.20:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 62.210.177.181:8443
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 153.92.126.234:443
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 5.79.66.4:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 83.212.72.189:443
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 185.107.83.1:443
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 45.77.224.85:20001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 54.37.136.45:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 167.114.144.152:9002
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 195.170.63.164:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 193.31.27.93:9001
2019-04-24 16:54:04a3c3aedcc4537aa44745e686a8204458Virustotal results 30/69 (43.48%) 172.107.96.70:443
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a128.31.0.39:9101
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a66.23.227.135:443
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a37.120.167.175:993
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a185.61.149.67:443
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a193.108.117.59:9001
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a185.61.148.142:443
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a51.15.47.139:443
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a77.87.49.6:8080
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a109.70.100.15:443
2019-04-20 10:03:525b35f8161f08608bd4d83743c85af0c7n/a185.165.240.126:443

# of entries: 100 (max: 100)