SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 08ebb003d3dda16bc81d7bb2f65b2e58be1ab971.

Database Entry


SHA1 Fingerprint:08ebb003d3dda16bc81d7bb2f65b2e58be1ab971
Certificate Common Name (CN):badlands's.org
Issuer Distinguished Name (DN):badlands's.org
TLS Version:TLS 1.2
First seen:2019-11-06 17:31:17 UTC
Last seen:2019-11-14 13:34:31 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2019-11-07 05:55:21
Malware samples:82
Botnet C&Cs:5

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-11-14 13:34:316e9beb70949e08edb764bec70d8c280cn/aIcedID 94.103.82.67:443
2019-11-14 10:51:365c9613f8ac257a9bee5af6a81f4836ban/aIcedID 93.189.149.187:443
2019-11-14 10:35:43b40cb860400d862c778d927651f7f851n/aIcedID 93.189.149.187:443
2019-11-14 10:11:07691f3876e471fb15541f4bcd70e6aa6fn/aIcedID 93.189.149.187:443
2019-11-14 09:48:0847ea3a7421ac2c492b01078a851c6930n/aIcedID 93.189.149.187:443
2019-11-14 09:02:19405556da91a67d1eceac46366f9099een/aIcedID 93.189.149.187:443
2019-11-14 08:42:2074dba77f880301820e6d9f30377baeb5n/aIcedID 93.189.149.187:443
2019-11-14 08:06:15fb8ec56a0fae20634df9332182bbebe1n/aIcedID 93.189.149.187:443
2019-11-14 06:15:009308bafce2db8f75b4b92c0b453fe1d8Virustotal results 7 / 62 (11.29%) IcedID 93.189.149.187:443
2019-11-14 05:56:013dbf8106dffac2fc35b5498f30bb2ed1Virustotal results 7 / 62 (11.29%) IcedID 93.189.149.187:443
2019-11-14 05:41:56f332efbecb6772883bbbe3b89f79c504n/aIcedID 93.189.149.187:443
2019-11-14 05:34:3625dc697c4ccb9d453fc14765a3c917e7n/aIcedID 93.189.149.187:443
2019-11-14 05:22:35c889762110f76724c0ce9d2d22017eeen/aIcedID 93.189.149.187:443
2019-11-14 05:00:034aba7591bcf6bcb45cf1d9807141e546n/aIcedID 93.189.149.187:443
2019-11-14 04:31:4447e72dada11f2bc3830c5833dad6f84en/aIcedID 93.189.149.187:443
2019-11-14 04:05:142200c43b5d09f537abdc4ed2944db3d7Virustotal results 15 / 70 (21.43%) IcedID 93.189.149.187:443
2019-11-14 04:01:076a57fedf7c5839741fe7f0f5c06e964dVirustotal results 24 / 71 (33.80%) IcedID 93.189.149.187:443
2019-11-14 00:47:4786d586822dfdd591a9b4ba8f59c979e4n/aIcedID 93.189.149.187:443
2019-11-13 22:10:13ce708c5b73c2705053e9790e9560f675n/aIcedID 93.189.149.187:443
2019-11-13 21:09:250652aff51579e30ac46e1354e0df9b46n/aIcedID 93.189.149.187:443
2019-11-13 20:57:34c2c0eb03b6b3c0ce5a53fdd1c55f3d3an/aIcedID 93.189.149.187:443
2019-11-13 15:04:297d8ef38c496ff7ffb1321e0a5b443e08Virustotal results 10 / 68 (14.71%) IcedID 93.189.149.187:443
2019-11-13 08:04:10be0bd7e536166998d35c5c41c319533fVirustotal results 19 / 70 (27.14%) IcedID 138.201.6.195:443
2019-11-13 05:53:07b0dddf8d62bd01b9dc723c790cd88100n/aIcedID 138.201.6.195:443
2019-11-13 05:23:287989caed69913d68c02514213bc29359n/aIcedID 138.201.6.195:443
2019-11-13 04:32:308291865dc0efd9d3dd789bbf13f777fan/aIcedID 138.201.6.195:443
2019-11-13 03:59:30dae052fff9afde30027e6bd4dad9d52cn/aIcedID 138.201.6.195:443
2019-11-13 03:09:234b196b2aecbf5fbd2f3db06461d53e70Virustotal results 6 / 61 (9.84%) IcedID 138.201.6.195:443
2019-11-13 02:48:372fd3ed36bbd89b417ff32fce6b2d95d0n/aIcedID 138.201.6.195:443
2019-11-12 19:24:17ec1dd23e384de752606ff9ba8973a7fbn/aIcedID 138.201.6.195:443
2019-11-12 19:20:0228a9596a235987afba9d6063c2098b95n/aIcedID 138.201.6.195:443
2019-11-12 17:55:50d69fc68ce7f624a34f05b019529352c1n/aIcedID 138.201.6.195:443
2019-11-12 17:48:53416a673d738e9ff9f91657a6bcf33ae9n/aIcedID 138.201.6.195:443
2019-11-12 17:48:013a97816ac2647f75655475823ff99bd1n/aIcedID 138.201.6.195:443
2019-11-12 17:13:505666a63062442de723185684b5fcc0c2n/aIcedID 138.201.6.195:443
2019-11-12 17:08:352f58b40a3d13e1c29fba9493d40fd87en/aIcedID 138.201.6.195:443
2019-11-12 17:07:44501f8a48845e753d8fbb8b6215898a4cn/aIcedID 138.201.6.195:443
2019-11-12 15:57:5925812f1fbe38a61265e35a20efee3aadn/aIcedID 138.201.6.195:443
2019-11-12 14:20:41cd209a0f67804406a91339df253545e1Virustotal results 38 / 71 (53.52%) IcedID 138.201.6.195:443
2019-11-12 14:18:21f4906dc6593ee9ff004a93235e3d662bVirustotal results 9 / 70 (12.86%) IcedID 138.201.6.195:443
2019-11-11 12:27:490a4c6c5a33f61afb57c70bc793953827Virustotal results 21 / 70 (30.00%) IcedID 138.201.6.195:443
2019-11-07 18:49:54d50ed520e13ae1bcc86e2c8be3fbbf1dVirustotal results 16 / 70 (22.86%) IcedID 185.253.219.43:443
2019-11-07 18:37:10f600190786141caf39f744ec4941bf2cVirustotal results 9 / 60 (15.00%) IcedID 185.253.219.43:443
2019-11-07 18:26:3077bcec66474fe445778d2e0dbbef1472n/aIcedID 185.253.219.43:443
2019-11-07 18:23:3510185f805917f29c8a6b532c3c84c9den/aIcedID 185.253.219.43:443
2019-11-07 17:56:08781764b598e0017f0a9efa19ffc82830n/aIcedID 185.253.219.43:443
2019-11-07 17:13:163980c987e8c0b0cc675fbafc8bb95c0bn/aIcedID 185.253.219.43:443
2019-11-07 17:12:53ffdb81e1ac5f342cbd44af4618cb08aen/aIcedID 185.253.219.43:443
2019-11-07 17:09:361b587155398f3552eca1202978b4f537n/aIcedID 185.253.219.43:443
2019-11-07 16:59:36564bb41108dc5d580a35a05ae0915ae2n/aIcedID 185.253.219.43:443
2019-11-07 16:45:31def41d6ffdfbfcc4df07ad1dec1ed6afn/aIcedID 185.253.219.43:443
2019-11-07 16:41:343d69fb4cedfee88c3c62c22ef2b9abdbn/aIcedID 185.253.219.43:443
2019-11-07 16:35:4100b04186f3dbfac258237c326d2cf8c5n/aIcedID 185.253.219.43:443
2019-11-07 16:30:28accf7bb141f84f94f3e10cc1563426e8n/aIcedID 185.253.219.43:443
2019-11-07 16:25:58d92291e112eb505e55872a4cf7a76c46n/aIcedID 185.253.219.43:443
2019-11-07 16:18:50e49ac1b683b96b94458840d9119435den/aIcedID 185.253.219.43:443
2019-11-07 16:18:48411d2eb6ea9ee6bdd1c3c6a181e874a0n/aIcedID 185.253.219.43:443
2019-11-07 16:09:2982e5bd091fbcfa01ea743da4a5fa85e0n/aIcedID 185.253.219.43:443
2019-11-07 15:52:58f8540e0975959d64021f1f9ed4d7677en/aIcedID 185.253.219.43:443
2019-11-07 15:52:37ac96eea0058563a51acdfa278173e0a0n/aIcedID 185.253.219.43:443
2019-11-07 15:44:520e8d861b00aba1aaf4bbb2084ee7c414n/aIcedID 185.253.219.43:443
2019-11-07 15:37:46f4c29cba2912927f5c182747b8376b2eVirustotal results 8 / 70 (11.43%) IcedID 185.253.219.43:443
2019-11-07 15:18:328ad14b59f4a9abc2fd423f2beef84a3en/aIcedID 185.253.219.43:443
2019-11-07 15:11:446aa4d4c8ca1e5ed1f6547948a34b0509n/aIcedID 185.253.219.43:443
2019-11-07 15:03:16c3982076c4e98d583d8622ab340b08c6n/aIcedID 185.253.219.43:443
2019-11-07 14:40:18cb6d3caf8403a11bb234eb166b42ed0an/aIcedID 185.253.219.43:443
2019-11-07 14:29:33ea5d3e4971dab21fea427d962e80e64fn/aIcedID 185.253.219.43:443
2019-11-07 14:14:070735c07a0998e408ac1d0fb115f4a329n/aIcedID 185.253.219.43:443
2019-11-07 13:57:43f6b0d54d0b3a5d06c5eecc6cff34edb9n/aIcedID 185.253.219.43:443
2019-11-07 07:40:25535c15efbb4b25133403df4059740a0dn/aIcedID 95.213.139.105:443
2019-11-07 07:27:538199dcdcdcb5087e62bddbe40ab3f59cn/aIcedID 95.213.139.105:443
2019-11-07 06:56:06574963cf66b0ff2190bc8b8d94fa9581n/aIcedID 95.213.139.105:443
2019-11-07 05:06:29b0c6e4cb0829c5532f25838776bc71f8n/aIcedID 95.213.139.105:443
2019-11-07 04:07:579c0305bde85cfc7c791dbd30d1f70730n/aIcedID 95.213.139.105:443
2019-11-07 04:02:54a6603cc605849f2cef3c4c1982dc9015n/aIcedID 95.213.139.105:443
2019-11-07 03:20:22b1e298fca24aac4b741a6917905fb070n/aIcedID 95.213.139.105:443
2019-11-07 02:57:123e783d628a599ef2832f37c08e534028n/aIcedID 95.213.139.105:443
2019-11-06 20:44:000e4a8f02600b195e105692e910e45546n/aIcedID 95.213.139.105:443
2019-11-06 19:15:56a03626d37f5ce0dee5376ca17a13214en/aIcedID 95.213.139.105:443
2019-11-06 18:23:474784aa29b3108a6654b3447d2fc35279n/aIcedID 95.213.139.105:443
2019-11-06 17:56:181d0bc054d6ec5b9ccc85b1b6c8ddff87Virustotal results 8 / 68 (11.76%) IcedID 95.213.139.105:443
2019-11-06 17:31:177666f2208bf15800b080fe25ed27178fn/aIcedID 95.213.139.105:443

# of entries: 82 (max: 100)