SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 08ebb003d3dda16bc81d7bb2f65b2e58be1ab971.

Database Entry


SHA1 Fingerprint:08ebb003d3dda16bc81d7bb2f65b2e58be1ab971
Certificate Common Name (CN):badlands's.org
Issuer Distinguished Name (DN):badlands's.org
TLS Version:TLS 1.2
First seen:2019-11-06 17:31:17 UTC
Last seen:2019-12-18 06:57:59 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2019-11-07 05:55:21
Malware samples:106
Botnet C&Cs:10

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-12-18 06:57:59cf97ce471657a21e73f2b322b316eb00n/aIcedID 46.8.208.36:443
2019-12-18 06:57:59cf97ce471657a21e73f2b322b316eb00n/aIcedID 46.8.208.36:443
2019-12-13 11:57:49f28504d38c59321a1fa571ce6836aa14Virustotal results 14 / 70 (20.00%) IcedID 46.8.208.36:443
2019-12-13 11:57:49f28504d38c59321a1fa571ce6836aa14Virustotal results 14 / 70 (20.00%) IcedID 46.8.208.36:443
2019-12-11 18:42:5530f052e1201656c5ec7db54c0dfcb856n/aIcedID 46.8.208.36:443
2019-12-11 18:42:5530f052e1201656c5ec7db54c0dfcb856n/aIcedID 46.8.208.36:443
2019-12-10 20:47:53e79623d287cd17e5a295bbf535ee4c51Virustotal results 3 / 72 (4.17%) IcedID 46.8.208.36:443
2019-12-10 20:47:53e79623d287cd17e5a295bbf535ee4c51Virustotal results 3 / 72 (4.17%) IcedID 46.8.208.36:443
2019-12-10 07:18:4262cded0437f557ff49530a9201f4cc53Virustotal results 16 / 68 (23.53%) IcedID 195.69.187.118:443
2019-12-10 07:18:4262cded0437f557ff49530a9201f4cc53Virustotal results 16 / 68 (23.53%) IcedID 195.69.187.118:443
2019-12-07 21:33:368432cb59f0ebaf4f7ca6e4f1e1b04ff4Virustotal results 15 / 70 (21.43%) IcedID 91.214.119.30:443
2019-12-07 21:33:368432cb59f0ebaf4f7ca6e4f1e1b04ff4Virustotal results 15 / 70 (21.43%) IcedID 91.214.119.30:443
2019-12-05 19:05:082d67d85e4c57aaa73c437993fcc31c2eVirustotal results 20 / 68 (29.41%) IcedID 149.154.159.226:443
2019-12-05 19:05:082d67d85e4c57aaa73c437993fcc31c2eVirustotal results 20 / 68 (29.41%) IcedID 149.154.159.226:443
2019-12-03 22:58:2431df0d320dc32241587cd4a1a84061bcn/aIcedID 149.154.159.226:443
2019-12-03 22:58:2431df0d320dc32241587cd4a1a84061bcn/aIcedID 149.154.159.226:443
2019-11-27 15:44:394d8ad52fb78f107d9cc256b87fe9a9c3n/aIcedID 193.109.69.17:443
2019-11-27 15:44:394d8ad52fb78f107d9cc256b87fe9a9c3n/aIcedID 193.109.69.17:443
2019-11-24 04:52:0559f91e5d553d7824dda3f890347d438an/aHeodo94.103.82.67:443
2019-11-24 04:52:0559f91e5d553d7824dda3f890347d438an/aHeodo94.103.82.67:443
2019-11-24 04:36:3684278db4f87bbd25868a3cf29dd4fcf4n/aIcedID 94.103.82.67:443
2019-11-24 04:36:3684278db4f87bbd25868a3cf29dd4fcf4n/aIcedID 94.103.82.67:443
2019-11-24 04:34:5461fabe61b2360e6c7162d9091e9590dan/aIcedID 94.103.82.67:443
2019-11-24 04:34:5461fabe61b2360e6c7162d9091e9590dan/aIcedID 94.103.82.67:443
2019-11-24 04:11:3557911d72a94be424da5607f24f5024bfn/aIcedID 94.103.82.67:443
2019-11-24 04:11:3557911d72a94be424da5607f24f5024bfn/aIcedID 94.103.82.67:443
2019-11-24 04:03:106ebff0bb2c213a4e4a7384714efd5395n/aIcedID 94.103.82.67:443
2019-11-24 04:03:106ebff0bb2c213a4e4a7384714efd5395n/aIcedID 94.103.82.67:443
2019-11-24 03:56:20101b65aa0a2e44f057dc3a4cd9cc9617n/aHeodo94.103.82.67:443
2019-11-24 03:56:20101b65aa0a2e44f057dc3a4cd9cc9617n/aHeodo94.103.82.67:443
2019-11-24 03:46:49b5d6f7fc1c4890eec8c0d2de254b8700n/aIcedID 94.103.82.67:443
2019-11-24 03:46:49b5d6f7fc1c4890eec8c0d2de254b8700n/aIcedID 94.103.82.67:443
2019-11-24 03:43:25ab5f97fc794b713f82bbd6f987ae0224n/aIcedID 94.103.82.67:443
2019-11-24 03:43:25ab5f97fc794b713f82bbd6f987ae0224n/aIcedID 94.103.82.67:443
2019-11-24 03:33:470c36412d9bd9f4258addeaec49bd6effn/aHeodo94.103.82.67:443
2019-11-24 03:33:470c36412d9bd9f4258addeaec49bd6effn/aHeodo94.103.82.67:443
2019-11-24 03:30:395f7d8a8e5c58e2cf1e675604939a8168n/aIcedID 94.103.82.67:443
2019-11-24 03:30:395f7d8a8e5c58e2cf1e675604939a8168n/aIcedID 94.103.82.67:443
2019-11-24 03:27:4307762c5d320b2f7ce0b94869158f1472n/aIcedID 94.103.82.67:443
2019-11-24 03:27:4307762c5d320b2f7ce0b94869158f1472n/aIcedID 94.103.82.67:443
2019-11-24 03:21:4686c2723b7757fb92d1bc63836e36814an/aIcedID 94.103.82.67:443
2019-11-24 03:21:4686c2723b7757fb92d1bc63836e36814an/aIcedID 94.103.82.67:443
2019-11-24 03:20:365c60218601c99d3d0d7d820ed032e10cn/aIcedID 94.103.82.67:443
2019-11-24 03:20:365c60218601c99d3d0d7d820ed032e10cn/aIcedID 94.103.82.67:443
2019-11-24 03:11:00885e5fcc1a11bcacb674f8b0b54212dbn/aIcedID 94.103.82.67:443
2019-11-24 03:11:00885e5fcc1a11bcacb674f8b0b54212dbn/aIcedID 94.103.82.67:443
2019-11-24 02:50:2683a019cb623862935a82ef7db839115cn/aHeodo94.103.82.67:443
2019-11-24 02:50:2683a019cb623862935a82ef7db839115cn/aHeodo94.103.82.67:443
2019-11-14 13:34:316e9beb70949e08edb764bec70d8c280cVirustotal results 50/67 (74.63%) IcedID 94.103.82.67:443
2019-11-14 13:34:316e9beb70949e08edb764bec70d8c280cVirustotal results 50/67 (74.63%) IcedID 94.103.82.67:443
2019-11-14 10:51:365c9613f8ac257a9bee5af6a81f4836ban/aIcedID 93.189.149.187:443
2019-11-14 10:51:365c9613f8ac257a9bee5af6a81f4836ban/aIcedID 93.189.149.187:443
2019-11-14 10:35:43b40cb860400d862c778d927651f7f851n/aIcedID 93.189.149.187:443
2019-11-14 10:35:43b40cb860400d862c778d927651f7f851n/aIcedID 93.189.149.187:443
2019-11-14 10:11:07691f3876e471fb15541f4bcd70e6aa6fn/aIcedID 93.189.149.187:443
2019-11-14 10:11:07691f3876e471fb15541f4bcd70e6aa6fn/aIcedID 93.189.149.187:443
2019-11-14 09:48:0847ea3a7421ac2c492b01078a851c6930n/aIcedID 93.189.149.187:443
2019-11-14 09:48:0847ea3a7421ac2c492b01078a851c6930n/aIcedID 93.189.149.187:443
2019-11-14 09:02:19405556da91a67d1eceac46366f9099een/aIcedID 93.189.149.187:443
2019-11-14 09:02:19405556da91a67d1eceac46366f9099een/aIcedID 93.189.149.187:443
2019-11-14 08:42:2074dba77f880301820e6d9f30377baeb5n/aIcedID 93.189.149.187:443
2019-11-14 08:42:2074dba77f880301820e6d9f30377baeb5n/aIcedID 93.189.149.187:443
2019-11-14 08:06:15fb8ec56a0fae20634df9332182bbebe1n/aIcedID 93.189.149.187:443
2019-11-14 08:06:15fb8ec56a0fae20634df9332182bbebe1n/aIcedID 93.189.149.187:443
2019-11-14 06:15:009308bafce2db8f75b4b92c0b453fe1d8Virustotal results 7 / 62 (11.29%) IcedID 93.189.149.187:443
2019-11-14 06:15:009308bafce2db8f75b4b92c0b453fe1d8Virustotal results 7 / 62 (11.29%) IcedID 93.189.149.187:443
2019-11-14 05:56:013dbf8106dffac2fc35b5498f30bb2ed1Virustotal results 7 / 62 (11.29%) IcedID 93.189.149.187:443
2019-11-14 05:56:013dbf8106dffac2fc35b5498f30bb2ed1Virustotal results 7 / 62 (11.29%) IcedID 93.189.149.187:443
2019-11-14 05:41:56f332efbecb6772883bbbe3b89f79c504n/aIcedID 93.189.149.187:443
2019-11-14 05:41:56f332efbecb6772883bbbe3b89f79c504n/aIcedID 93.189.149.187:443
2019-11-14 05:34:3625dc697c4ccb9d453fc14765a3c917e7n/aIcedID 93.189.149.187:443
2019-11-14 05:34:3625dc697c4ccb9d453fc14765a3c917e7n/aIcedID 93.189.149.187:443
2019-11-14 05:22:35c889762110f76724c0ce9d2d22017eeen/aIcedID 93.189.149.187:443
2019-11-14 05:22:35c889762110f76724c0ce9d2d22017eeen/aIcedID 93.189.149.187:443
2019-11-14 05:00:034aba7591bcf6bcb45cf1d9807141e546n/aIcedID 93.189.149.187:443
2019-11-14 05:00:034aba7591bcf6bcb45cf1d9807141e546n/aIcedID 93.189.149.187:443
2019-11-14 04:31:4447e72dada11f2bc3830c5833dad6f84en/aIcedID 93.189.149.187:443
2019-11-14 04:31:4447e72dada11f2bc3830c5833dad6f84en/aIcedID 93.189.149.187:443
2019-11-14 04:05:142200c43b5d09f537abdc4ed2944db3d7Virustotal results 15 / 70 (21.43%) IcedID 93.189.149.187:443
2019-11-14 04:05:142200c43b5d09f537abdc4ed2944db3d7Virustotal results 15 / 70 (21.43%) IcedID 93.189.149.187:443
2019-11-14 04:01:076a57fedf7c5839741fe7f0f5c06e964dVirustotal results 24 / 71 (33.80%) IcedID 93.189.149.187:443
2019-11-14 04:01:076a57fedf7c5839741fe7f0f5c06e964dVirustotal results 24 / 71 (33.80%) IcedID 93.189.149.187:443
2019-11-14 00:47:4786d586822dfdd591a9b4ba8f59c979e4n/aIcedID 93.189.149.187:443
2019-11-14 00:47:4786d586822dfdd591a9b4ba8f59c979e4n/aIcedID 93.189.149.187:443
2019-11-13 22:10:13ce708c5b73c2705053e9790e9560f675n/aIcedID 93.189.149.187:443
2019-11-13 22:10:13ce708c5b73c2705053e9790e9560f675n/aIcedID 93.189.149.187:443
2019-11-13 21:09:250652aff51579e30ac46e1354e0df9b46n/aIcedID 93.189.149.187:443
2019-11-13 21:09:250652aff51579e30ac46e1354e0df9b46n/aIcedID 93.189.149.187:443
2019-11-13 20:57:34c2c0eb03b6b3c0ce5a53fdd1c55f3d3an/aTrickBot 93.189.149.187:443
2019-11-13 20:57:34c2c0eb03b6b3c0ce5a53fdd1c55f3d3an/aTrickBot 93.189.149.187:443
2019-11-13 20:57:34c2c0eb03b6b3c0ce5a53fdd1c55f3d3an/aTrickBot 93.189.149.187:443
2019-11-13 20:57:34c2c0eb03b6b3c0ce5a53fdd1c55f3d3an/aTrickBot 93.189.149.187:443
2019-11-13 15:04:297d8ef38c496ff7ffb1321e0a5b443e08Virustotal results 10 / 68 (14.71%) IcedID 93.189.149.187:443
2019-11-13 15:04:297d8ef38c496ff7ffb1321e0a5b443e08Virustotal results 10 / 68 (14.71%) IcedID 93.189.149.187:443
2019-11-13 08:04:10be0bd7e536166998d35c5c41c319533fVirustotal results 19 / 70 (27.14%) IcedID 138.201.6.195:443
2019-11-13 08:04:10be0bd7e536166998d35c5c41c319533fVirustotal results 19 / 70 (27.14%) IcedID 138.201.6.195:443
2019-11-13 05:53:07b0dddf8d62bd01b9dc723c790cd88100n/aIcedID 138.201.6.195:443
2019-11-13 05:53:07b0dddf8d62bd01b9dc723c790cd88100n/aIcedID 138.201.6.195:443
2019-11-13 05:23:287989caed69913d68c02514213bc29359Virustotal results 19/63 (30.16%) IcedID 138.201.6.195:443
2019-11-13 05:23:287989caed69913d68c02514213bc29359Virustotal results 19/63 (30.16%) IcedID 138.201.6.195:443

# of entries: 100 (max: 100)