SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 106b0ee83c924047ca994e3f6cbeed94c148fbff.

Database Entry


SHA1 Fingerprint:106b0ee83c924047ca994e3f6cbeed94c148fbff
Certificate Common Name (CN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:TLS 1.2
First seen:2020-05-26 06:27:02 UTC
Last seen:2020-05-27 08:03:51 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2020-05-26 06:53:41
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-05-27 08:03:5135c2325c0a3b3cc52547b94f21fa82d4Virustotal results 30 / 72 (41.67%) IcedID 149.255.35.159:443
2020-05-27 08:03:5135c2325c0a3b3cc52547b94f21fa82d4Virustotal results 30 / 72 (41.67%) IcedID 149.255.35.159:443
2020-05-26 06:27:0221676b5fba77fa630d3a6ad82e125788Virustotal results 25 / 72 (34.72%) IcedID 149.255.35.159:443
2020-05-26 06:27:0221676b5fba77fa630d3a6ad82e125788Virustotal results 25 / 72 (34.72%) IcedID 149.255.35.159:443

# of entries: 4 (max: 100)