SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 095bd6463cd2d1f6fb0880e314c651bcb6cedba6.

Database Entry


SHA1 Fingerprint:095bd6463cd2d1f6fb0880e314c651bcb6cedba6
Certificate Common Name (CN):isfjiaaodwsoi.com
Issuer Distinguished Name (DN):isfjiaaodwsoi.com
TLS Version:TLS 1.2
First seen:2020-01-19 20:58:32 UTC
Last seen:2020-01-27 20:56:44 UTC
Status:Blacklisted
Listing reason:ZLoader C&C
Listing date:2020-01-20 07:33:42
Malware samples:7
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-01-27 20:56:4425a6e0d7a09a5a1954113611050b3655Virustotal results 40 / 70 (57.14%) ZLoader 47.252.11.17:443
2020-01-20 19:53:26f584de1a457ebdfb399a82999bd1f7d7Virustotal results 41 / 73 (56.16%) ZLoader 49.51.136.157:443
2020-01-20 17:05:17ccbca3143707a91c13550ec0d9661cabVirustotal results 16 / 70 (22.86%) ZLoader 49.51.136.157:443
2020-01-20 16:17:35013b1afda2da16e7c85dcd7f86d7c563Virustotal results 39 / 68 (57.35%) Amadey49.51.136.157:443
2020-01-20 16:17:1395d0dbae82bb1ab794853f9cdb195735Virustotal results 29 / 71 (40.85%) PredatorStealer49.51.136.157:443
2020-01-20 15:16:335e0d4e2d4826e9392a4d962f5581921aVirustotal results 32 / 70 (45.71%) ZLoader 49.51.136.157:443
2020-01-19 20:58:328595883391af642f40c6a4e63a632404Virustotal results 21 / 68 (30.88%) ZLoader 49.51.136.157:443

# of entries: 7 (max: 100)