SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 0df1b6e7514fb4e728144d9b2abf684238b1000b.

Database Entry


SHA1 Fingerprint:0df1b6e7514fb4e728144d9b2abf684238b1000b
Certificate Common Name (CN):unfrocked.info
Issuer Distinguished Name (DN):unfrocked.info
TLS Version:TLS 1.2
First seen:2019-06-07 07:29:19 UTC
Last seen:2019-06-28 02:34:51 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2019-06-15 08:37:02
Malware samples:35
Botnet C&Cs:5

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-06-28 02:34:51c8e01b42092c1033de1ff4860f959a16Virustotal results 22/72 (30.56%) IcedID 141.255.166.157:443
2019-06-28 00:15:01a9f6f71531ac70004c4b855f5ac2d934Virustotal results 40/72 (55.56%) IcedID 141.255.166.157:443
2019-06-27 23:58:178b341a95b63bac403a6f8e7936357526Virustotal results 39/72 (54.17%) IcedID 141.255.166.157:443
2019-06-24 13:54:5382f777fc93dfecb8aaad875b35b9af72Virustotal results 31/73 (42.47%) IcedID 46.17.44.67:443
2019-06-24 13:00:032e631b5fc439e5c01d3c4099c000fd1dVirustotal results 28/71 (39.44%) IcedID 46.17.44.67:443
2019-06-24 11:08:1703941a13a80051c11bf10fb82d35bc1cVirustotal results 30/70 (42.86%) IcedID 46.17.44.67:443
2019-06-21 18:38:23a606664e73830860a26beab27c58a913Virustotal results 22/69 (31.88%) IcedID 94.130.156.219:443
2019-06-21 16:31:23c446419c29ec4608866d60c046aa9ff1Virustotal results 20/72 (27.78%) TrickBot 94.130.156.219:443
2019-06-21 16:31:23c446419c29ec4608866d60c046aa9ff1Virustotal results 20/72 (27.78%) TrickBot 94.130.156.219:443
2019-06-21 07:29:5420686a6e0965f8560781315d41bc71ean/aTrickBot 94.130.156.219:443
2019-06-21 07:29:5420686a6e0965f8560781315d41bc71ean/aTrickBot 94.130.156.219:443
2019-06-21 04:47:41b8d0524db093501174a84dc52b3a19afVirustotal results 7/71 (9.86%) TrickBot 94.130.156.219:443
2019-06-21 04:47:41b8d0524db093501174a84dc52b3a19afVirustotal results 7/71 (9.86%) TrickBot 94.130.156.219:443
2019-06-20 14:01:48ef40a8647ea2fd4c9b0c0c242a6081f1Virustotal results 37/71 (52.11%) TrickBot 94.130.156.219:443
2019-06-20 14:01:48ef40a8647ea2fd4c9b0c0c242a6081f1Virustotal results 37/71 (52.11%) TrickBot 94.130.156.219:443
2019-06-18 13:06:46f8d65a1b72f73d53c9e254aa12ccc0fcVirustotal results 38/71 (53.52%) IcedID 62.109.24.227:443
2019-06-18 06:12:041bfcb749af02c84d6e7c455ac9d21ba8Virustotal results 51/70 (72.86%) IcedID 195.69.187.86:443
2019-06-18 04:30:2189e0d86c2830f4d0ac861d620ec62638Virustotal results 38/70 (54.29%) IcedID 195.69.187.86:443
2019-06-18 04:21:423feac8f7f36149eef4e559ffb9d1dcefVirustotal results 38/70 (54.29%) IcedID 195.69.187.86:443
2019-06-18 02:02:35dda7582918d3200aff488c145a209fe5Virustotal results 38/70 (54.29%) IcedID 195.69.187.86:443
2019-06-17 15:02:1158f6f47da54a9a03a9950c61f6d59391Virustotal results 38/70 (54.29%) IcedID 195.69.187.86:443
2019-06-17 09:33:1182ae9f3fd2d6445fdd56330468fc7e4bVirustotal results 48/69 (69.57%) IcedID 195.69.187.86:443
2019-06-17 08:42:355f1438cd9139f1aeab147baff9015e8dVirustotal results 50/70 (71.43%) IcedID 195.69.187.86:443
2019-06-17 04:51:26a185b95957ea7a1b616195684fcf3fa3Virustotal results 38/71 (53.52%) IcedID 195.69.187.86:443
2019-06-17 03:39:443a1a399a48dd164d80d7d3e8d921e05bVirustotal results 48/70 (68.57%) IcedID 195.69.187.86:443
2019-06-17 00:36:3275ed42dece236282f0678583147313e6Virustotal results 48/71 (67.61%) IcedID 195.69.187.86:443
2019-06-16 19:51:3277acd61c46780789f31363166482b117Virustotal results 50/70 (71.43%) IcedID 195.69.187.86:443
2019-06-16 13:08:3035c9260ee131b49bd1cce986408a6f89Virustotal results 48/70 (68.57%) IcedID 195.69.187.86:443
2019-06-16 07:00:34e66829cf13a8274fe908cac27db2e0bfVirustotal results 48/70 (68.57%) IcedID 195.69.187.86:443
2019-06-16 02:17:2222a9f599fa8eac6225746161152b01d5Virustotal results 48/71 (67.61%) 195.69.187.86:443
2019-06-15 23:38:38ce698372575f3164dd9aa1630e89e5e6Virustotal results 48/69 (69.57%) TrickBot 195.69.187.86:443
2019-06-15 23:38:38ce698372575f3164dd9aa1630e89e5e6Virustotal results 48/69 (69.57%) TrickBot 195.69.187.86:443
2019-06-15 23:12:20d0339ba3e9db99ced1194038c3873cedVirustotal results 48/70 (68.57%) 195.69.187.86:443
2019-06-15 20:37:17cff96e76d6160f8ed8bc3e89f820d645Virustotal results 48/70 (68.57%) 195.69.187.86:443
2019-06-15 20:19:45655f6535fe3c89de18f6560328c5b76aVirustotal results 47/70 (67.14%) 195.69.187.86:443
2019-06-15 04:42:40644dfda803760f21a9daaf20ac5e6f0cVirustotal results 30/70 (42.86%) 195.69.187.86:443
2019-06-11 02:55:22f2942ad8470d9be3dc0aa8d176c454aaVirustotal results 28/71 (39.44%) TrickBot 195.69.187.86:443
2019-06-11 02:55:22f2942ad8470d9be3dc0aa8d176c454aaVirustotal results 28/71 (39.44%) TrickBot 195.69.187.86:443
2019-06-09 22:11:2197f9f8fe8b3f6f333c0253bbf8ad1297Virustotal results 20/70 (28.57%) TrickBot 195.69.187.86:443
2019-06-09 22:11:2197f9f8fe8b3f6f333c0253bbf8ad1297Virustotal results 20/70 (28.57%) TrickBot 195.69.187.86:443
2019-06-09 08:49:15a20eeeef25185e9affd7618a91e2be43Virustotal results 34/69 (49.28%) 195.69.187.86:443
2019-06-07 07:29:19fe302ea43eae3290b5fa1e877e3b9511n/a195.69.187.86:443

# of entries: 42 (max: 100)