SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 0870506a75dd2e4a920fdf39f5b3de164993df1f.

Database Entry


SHA1 Fingerprint:0870506a75dd2e4a920fdf39f5b3de164993df1f
Certificate Common Name (CN):catapult.space
Issuer Distinguished Name (DN):catapult.space
TLS Version:TLS 1.2
First seen:2019-04-20 14:00:56 UTC
Last seen:2019-06-06 04:05:09 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2019-04-23 06:40:29
Malware samples:40
Botnet C&Cs:8

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-06-06 04:05:0921bd289bf969b243f5613164473af416Virustotal results 11/73 (15.07%) IcedID 185.143.145.90:443
2019-06-05 23:24:189b01368d4b0afe15e75e6c243059ef0bn/aIcedID 185.143.145.90:443
2019-05-29 05:48:34302932d26437ab98fcd7733242102353Virustotal results 27/72 (37.50%) 185.143.145.90:443
2019-05-29 01:07:598bdc942ce2ca234b8d762645612aabc9Virustotal results 47/73 (64.38%) IcedID 185.143.145.90:443
2019-05-26 22:57:208b935cedde130fe2a56ba0860ce6148aVirustotal results 42/72 (58.33%) IcedID 185.143.145.90:443
2019-05-26 21:48:288814c90ed6b79b43030503e5fc2e5b3cVirustotal results 55/70 (78.57%) IcedID 185.143.145.90:443
2019-05-26 21:25:04d9474e56dbb0fc28fa9763e3cb9e4033Virustotal results 29/71 (40.85%) 185.143.145.90:443
2019-05-25 09:54:47750655c422858f44bc85498207f1d6bbVirustotal results 32/71 (45.07%) IcedID 185.143.145.90:443
2019-05-24 10:44:5665621e5fbb69031c7a8e0dcd2346a3afVirustotal results 45/71 (63.38%) IcedID 185.143.145.90:443
2019-05-23 23:54:45c1e60805e2a84cdfd1b94e408d5f00e6Virustotal results 25/70 (35.71%) IcedID 185.143.145.90:443
2019-05-20 23:11:3830e0c8c279c3459226abaa1ab960c465Virustotal results 46/70 (65.71%) IcedID 185.143.145.90:443
2019-05-20 05:47:05da27c9a60f396e457ccc8d658c7f395dn/aIcedID 185.143.145.90:443
2019-05-16 18:04:06696476ed7eb046ed01ff9e0647f4829an/aIcedID 185.143.145.90:443
2019-05-16 16:47:208a45bf5ba3e4541de2417f0801c1dc17n/aIcedID 185.143.145.90:443
2019-05-15 22:10:11febbc8db7e74c5a35c3499248e696e72n/aIcedID 109.248.222.98:443
2019-05-11 04:52:40339c3eddccedb19c109b02e3d1fd8e5bVirustotal results 43/73 (58.90%) 109.248.222.237:443
2019-05-11 02:08:378ffea1067cc2073b609daf5c85239b06Virustotal results 36/69 (52.17%) 109.248.222.237:443
2019-05-09 05:01:582380bd3e9fbce98d26d8676f9d3a3b16n/aIcedID 188.120.226.212:443
2019-05-08 22:00:04723bff3748b8d57ff52bdb2862118302n/aIcedID 188.120.226.212:443
2019-05-07 13:00:45fbc0ab3016cced9e860bfb583a9321d8n/aIcedID 185.103.110.32:443
2019-05-06 23:09:15a7dbd01d2275d1e0acad324c39007efeVirustotal results 31/71 (43.66%) IcedID 93.170.129.78:443
2019-05-02 08:00:54ad07a4e3a3b0f0f5bb1a7489487df984n/aIcedID 88.119.179.177:443
2019-05-02 00:20:187e2a9dd6c6977c942275a922c0ef3eb5n/aIcedID 88.119.179.177:443
2019-05-01 21:33:29e1fac94d75e6b6246b09e28f7e0f2624Virustotal results 16/72 (22.22%) IcedID 88.119.179.177:443
2019-05-01 20:36:09f3fed6662c7f339c387da1c9766fb0a5n/aIcedID 88.119.179.177:443
2019-05-01 20:20:246443b8767f0fcbc05f911136d75eb609n/aIcedID 88.119.179.177:443
2019-05-01 20:17:402d07a474e9ac1ac60936ac36f3dd9789Virustotal results 16/70 (22.86%) IcedID 88.119.179.177:443
2019-05-01 20:14:352206073c0a64ae49c6dba5809563bed9Virustotal results 16/71 (22.54%) IcedID 88.119.179.177:443
2019-05-01 20:09:43fc2826e28390202c825fcd5b644939dan/aIcedID 88.119.179.177:443
2019-05-01 18:00:56978bd199e1ebadc8a8f37f7c86ecdffeVirustotal results 16/70 (22.86%) IcedID 88.119.179.177:443
2019-04-25 07:40:512b4959740ee8d133ccd02d16c689eb18Virustotal results 40/70 (57.14%) IcedID 194.28.84.254:443
2019-04-24 20:38:16aa6f0691f63387d70279de7766ed8d83Virustotal results 26/69 (37.68%) 194.28.84.254:443
2019-04-24 19:55:4408de8e4af3f43abe0dede26fcc8f72c2n/a194.28.84.254:443
2019-04-24 17:37:30443a49e60df2a3a2250be2df713e3a2bVirustotal results 31/69 (44.93%) IcedID 194.28.84.254:443
2019-04-23 07:59:20a3582d9319591070411b589e08ea371fVirustotal results 40/70 (57.14%) IcedID 194.28.84.254:443
2019-04-23 05:16:182bbeb43e93888abce192ba341cc8ac4eVirustotal results 33/73 (45.21%) IcedID 194.28.84.254:443
2019-04-22 14:27:5503cb934cf2f67b9379a7972d9f3771d9Virustotal results 30/68 (44.12%) IcedID 194.28.84.254:443
2019-04-22 13:08:59d8d901a1b0e0f909cd2ddeb0302fff67Virustotal results 30/68 (44.12%) IcedID 194.28.84.254:443
2019-04-22 09:52:18689e683698df12b2e39986f0b4d99734Virustotal results 30/66 (45.45%) IcedID 194.28.84.254:443
2019-04-20 14:00:56de29c49e6cb782692b8091e4c1ac17a2Virustotal results 24/72 (33.33%) IcedID 194.28.84.254:443

# of entries: 40 (max: 100)