SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 0cc206dbb15e1bd656861252c200ee36d42017af.

Database Entry


SHA1 Fingerprint:0cc206dbb15e1bd656861252c200ee36d42017af
Certificate Common Name (CN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:TLS 1.2
First seen:2020-08-10 17:36:52 UTC
Last seen:2020-08-13 18:05:59 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2020-08-14 07:13:12
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-08-13 18:05:59f4cd7fe7a4c000093afced795aac3497Virustotal results 11 / 60 (18.33%) IcedID 64.227.103.18:443
2020-08-13 18:05:59f4cd7fe7a4c000093afced795aac3497Virustotal results 11 / 60 (18.33%) IcedID 64.227.103.18:443
2020-08-11 17:19:03093c448f91ae9524ff4e9a8079475cc7Virustotal results 8 / 62 (12.90%) 64.227.103.18:443
2020-08-11 17:19:03093c448f91ae9524ff4e9a8079475cc7Virustotal results 8 / 62 (12.90%) 64.227.103.18:443
2020-08-10 17:36:528269bd79988b7628391650ae63a0f39bVirustotal results 8 / 62 (12.90%) 64.227.103.18:443
2020-08-10 17:36:528269bd79988b7628391650ae63a0f39bVirustotal results 8 / 62 (12.90%) 64.227.103.18:443

# of entries: 6 (max: 100)