SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 004f0b18d62f5329a9b7f5548c87409efd408517.

Database Entry


SHA1 Fingerprint:004f0b18d62f5329a9b7f5548c87409efd408517
Certificate Common Name (CN):dasfogy4hgag.xyz
Issuer Distinguished Name (DN):R3
TLS Version:TLS 1.2
First seen:2021-04-12 13:53:25 UTC
Last seen:2021-04-18 02:59:43 UTC
Status:Blacklisted
Listing reason:ServHelper C&C
Listing date:2021-04-12 18:44:47
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-04-18 02:59:4316ca3f90a786fb432780f82cbd5f463bVirustotal results 26 / 66 (39.39%) FickerStealer5.181.156.75:443
2021-04-18 02:59:4316ca3f90a786fb432780f82cbd5f463bVirustotal results 26 / 66 (39.39%) FickerStealer5.181.156.75:443
2021-04-12 13:53:25f78a379ee9cc836cd89aeec0cce871fbn/aServHelper5.181.156.75:443
2021-04-12 13:53:25f78a379ee9cc836cd89aeec0cce871fbn/aServHelper5.181.156.75:443

# of entries: 4 (max: 100)