SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 1106c395fd9f9281632b712bb34effdcb9016378.

Database Entry


SHA1 Fingerprint:1106c395fd9f9281632b712bb34effdcb9016378
Certificate Common Name (CN):cortisone.org
Issuer Distinguished Name (DN):cortisone.org
TLS Version:TLS 1.2
First seen:2019-01-28 12:01:31 UTC
Last seen:2019-02-09 08:48:09 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2019-02-04 15:24:55
Malware samples:98
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-02-09 08:48:09d798a67fe34de9b387ea04bb6913c7c9n/aIcedID 95.47.161.68:443
2019-02-09 08:48:09d798a67fe34de9b387ea04bb6913c7c9n/aIcedID 95.47.161.68:443
2019-02-09 08:43:073e7653f1cf05f1f0e2bad6289cb141ben/aIcedID 95.47.161.68:443
2019-02-09 08:43:073e7653f1cf05f1f0e2bad6289cb141ben/aIcedID 95.47.161.68:443
2019-02-09 08:23:384a8c50f9ff3f9e0b42c503e2d956c80fVirustotal results 44/69 (63.77%) IcedID 95.47.161.68:443
2019-02-09 08:23:384a8c50f9ff3f9e0b42c503e2d956c80fVirustotal results 44/69 (63.77%) IcedID 95.47.161.68:443
2019-02-09 06:35:361580faa4d416f3e9e8ed884917840d67n/aIcedID 95.47.161.68:443
2019-02-09 06:35:361580faa4d416f3e9e8ed884917840d67n/aIcedID 95.47.161.68:443
2019-02-09 06:34:20735e706286971cd48c0a65d696e92960n/aIcedID 95.47.161.68:443
2019-02-09 06:34:20735e706286971cd48c0a65d696e92960n/aIcedID 95.47.161.68:443
2019-02-09 06:29:267d3be5428c99d4448139266c1a469858n/aIcedID 95.47.161.68:443
2019-02-09 06:29:267d3be5428c99d4448139266c1a469858n/aIcedID 95.47.161.68:443
2019-02-09 06:26:269691a709e0972a45f1cff165e1a0cf16Virustotal results 13/69 (18.84%) IcedID 95.47.161.68:443
2019-02-09 06:26:269691a709e0972a45f1cff165e1a0cf16Virustotal results 13/69 (18.84%) IcedID 95.47.161.68:443
2019-02-09 06:26:0097a581a825107d51bc71ef513f01a8c1n/aIcedID 95.47.161.68:443
2019-02-09 06:26:0097a581a825107d51bc71ef513f01a8c1n/aIcedID 95.47.161.68:443
2019-02-09 06:21:42d6e54449870752dc11f16a00d2a70d02n/aIcedID 95.47.161.68:443
2019-02-09 06:21:42d6e54449870752dc11f16a00d2a70d02n/aIcedID 95.47.161.68:443
2019-02-09 06:09:052c617de7ca5c5be9b108c94c96d19ccdn/aIcedID 95.47.161.68:443
2019-02-09 06:09:052c617de7ca5c5be9b108c94c96d19ccdn/aIcedID 95.47.161.68:443
2019-02-09 01:46:43cf11d40899286b9d423a6108baa07fd3Virustotal results 28/71 (39.44%) IcedID 95.47.161.68:443
2019-02-09 01:46:43cf11d40899286b9d423a6108baa07fd3Virustotal results 28/71 (39.44%) IcedID 95.47.161.68:443
2019-02-09 01:44:31639b146fef4a7a18bc6b0db6b1272884Virustotal results 24/70 (34.29%) IcedID 95.47.161.68:443
2019-02-09 01:44:31639b146fef4a7a18bc6b0db6b1272884Virustotal results 24/70 (34.29%) IcedID 95.47.161.68:443
2019-02-09 00:04:55be262273fa729c1e2679b52b31d3b8beVirustotal results 33/70 (47.14%) IcedID 95.47.161.68:443
2019-02-09 00:04:55be262273fa729c1e2679b52b31d3b8beVirustotal results 33/70 (47.14%) IcedID 95.47.161.68:443
2019-02-08 17:19:0300b9826690ae56d5772311053a2e20ddVirustotal results 49/68 (72.06%) Heodo95.47.161.68:443
2019-02-08 17:19:0300b9826690ae56d5772311053a2e20ddVirustotal results 49/68 (72.06%) Heodo95.47.161.68:443
2019-02-08 15:28:3404493412797ab00b41c607fd3122e0c5Virustotal results 33/68 (48.53%) IcedID 95.47.161.68:443
2019-02-08 15:28:3404493412797ab00b41c607fd3122e0c5Virustotal results 33/68 (48.53%) IcedID 95.47.161.68:443
2019-02-08 14:44:09ed4ac077f66e3e1be2579c84c9a50d3fVirustotal results 20/71 (28.17%) IcedID 95.47.161.68:443
2019-02-08 14:44:09ed4ac077f66e3e1be2579c84c9a50d3fVirustotal results 20/71 (28.17%) IcedID 95.47.161.68:443
2019-02-08 10:44:43c5b94fa895e3913cd1a257d0a367c461Virustotal results 46/71 (64.79%) IcedID 95.47.161.68:443
2019-02-08 10:44:43c5b94fa895e3913cd1a257d0a367c461Virustotal results 46/71 (64.79%) IcedID 95.47.161.68:443
2019-02-08 08:56:014002b5cb0a7c3f4b23118969969e1b0cVirustotal results 15/70 (21.43%) IcedID 95.47.161.68:443
2019-02-08 08:56:014002b5cb0a7c3f4b23118969969e1b0cVirustotal results 15/70 (21.43%) IcedID 95.47.161.68:443
2019-02-08 08:51:49ec3fc9750d768e19c8e89a255f3f82c4Virustotal results 18/70 (25.71%) IcedID 95.47.161.68:443
2019-02-08 08:51:49ec3fc9750d768e19c8e89a255f3f82c4Virustotal results 18/70 (25.71%) IcedID 95.47.161.68:443
2019-02-08 08:24:447f4be7d2be0f6b048c1a00976abe8f70Virustotal results 15/70 (21.43%) IcedID 95.47.161.68:443
2019-02-08 08:24:447f4be7d2be0f6b048c1a00976abe8f70Virustotal results 15/70 (21.43%) IcedID 95.47.161.68:443
2019-02-08 08:12:17ed72851efb2418a613e4c9f9620e56f2Virustotal results 19/70 (27.14%) IcedID 95.47.161.68:443
2019-02-08 08:12:17ed72851efb2418a613e4c9f9620e56f2Virustotal results 19/70 (27.14%) IcedID 95.47.161.68:443
2019-02-08 07:42:42f6245fb7a6fa953b2fe5b9ae597389bbVirustotal results 25/71 (35.21%) IcedID 95.47.161.68:443
2019-02-08 07:42:42f6245fb7a6fa953b2fe5b9ae597389bbVirustotal results 25/71 (35.21%) IcedID 95.47.161.68:443
2019-02-08 07:32:3775e670a7f5fb3ac38a1c397550d6ee77Virustotal results 20/70 (28.57%) IcedID 95.47.161.68:443
2019-02-08 07:32:3775e670a7f5fb3ac38a1c397550d6ee77Virustotal results 20/70 (28.57%) IcedID 95.47.161.68:443
2019-02-08 07:19:00ac7b6b82c2d0686e2bb3db75946ca687Virustotal results 45/69 (65.22%) IcedID 95.47.161.68:443
2019-02-08 07:19:00ac7b6b82c2d0686e2bb3db75946ca687Virustotal results 45/69 (65.22%) IcedID 95.47.161.68:443
2019-02-08 07:01:01f133bd9939a8a61c7b6af9f71482ef15Virustotal results 18/69 (26.09%) IcedID 95.47.161.68:443
2019-02-08 07:01:01f133bd9939a8a61c7b6af9f71482ef15Virustotal results 18/69 (26.09%) IcedID 95.47.161.68:443
2019-02-08 06:38:4043ab414abec3a315e4ab66a438c1ac8fVirustotal results 33/68 (48.53%) IcedID 95.47.161.68:443
2019-02-08 06:38:4043ab414abec3a315e4ab66a438c1ac8fVirustotal results 33/68 (48.53%) IcedID 95.47.161.68:443
2019-02-08 06:32:04f469566406eba198cdc6faa69513f2f3Virustotal results 23/70 (32.86%) IcedID 95.47.161.68:443
2019-02-08 06:32:04f469566406eba198cdc6faa69513f2f3Virustotal results 23/70 (32.86%) IcedID 95.47.161.68:443
2019-02-08 06:19:10ab35aec90c4c1b24acb20b795895e09dVirustotal results 27/69 (39.13%) IcedID 95.47.161.68:443
2019-02-08 06:19:10ab35aec90c4c1b24acb20b795895e09dVirustotal results 27/69 (39.13%) IcedID 95.47.161.68:443
2019-02-08 06:18:56390b9c9076f2ef372e3655c080080587Virustotal results 33/71 (46.48%) IcedID 95.47.161.68:443
2019-02-08 06:18:56390b9c9076f2ef372e3655c080080587Virustotal results 33/71 (46.48%) IcedID 95.47.161.68:443
2019-02-08 02:29:51d9cd7ed00add9ca47e25fc73c48ce6d7n/aIcedID 95.47.161.68:443
2019-02-08 02:29:51d9cd7ed00add9ca47e25fc73c48ce6d7n/aIcedID 95.47.161.68:443
2019-02-07 23:39:44c45433aff6a8afb12ede466c1a327f73Virustotal results 25/70 (35.71%) IcedID 95.47.161.68:443
2019-02-07 23:39:44c45433aff6a8afb12ede466c1a327f73Virustotal results 25/70 (35.71%) IcedID 95.47.161.68:443
2019-02-07 23:16:38a7add48af4db18009773b0f5e6bfc0cfVirustotal results 42/70 (60.00%) IcedID 95.47.161.68:443
2019-02-07 23:16:38a7add48af4db18009773b0f5e6bfc0cfVirustotal results 42/70 (60.00%) IcedID 95.47.161.68:443
2019-02-07 21:45:16a72e764514d3c2a05af3862434d86b4dVirustotal results 43/71 (60.56%) IcedID 95.47.161.68:443
2019-02-07 21:45:16a72e764514d3c2a05af3862434d86b4dVirustotal results 43/71 (60.56%) IcedID 95.47.161.68:443
2019-02-07 20:05:5958f8971a75e27414c222cfaec0cf691cn/aIcedID 95.47.161.68:443
2019-02-07 20:05:5958f8971a75e27414c222cfaec0cf691cn/aIcedID 95.47.161.68:443
2019-02-07 18:08:119d4b3127da5c887a1755a07321955106Virustotal results 20/70 (28.57%) IcedID 95.47.161.68:443
2019-02-07 18:08:119d4b3127da5c887a1755a07321955106Virustotal results 20/70 (28.57%) IcedID 95.47.161.68:443
2019-02-07 17:33:0029dbfb2538b39cf895dd3ce1c160a9a8Virustotal results 19/69 (27.54%) IcedID 95.47.161.68:443
2019-02-07 17:33:0029dbfb2538b39cf895dd3ce1c160a9a8Virustotal results 19/69 (27.54%) IcedID 95.47.161.68:443
2019-02-07 14:44:4771fc2eacd18fdb943a52e73fd4be9cc2Virustotal results 32/71 (45.07%) IcedID 95.47.161.68:443
2019-02-07 14:44:4771fc2eacd18fdb943a52e73fd4be9cc2Virustotal results 32/71 (45.07%) IcedID 95.47.161.68:443
2019-02-07 14:28:4595796d3e756a0484e6174d29e7b5f728Virustotal results 14/71 (19.72%) IcedID 95.47.161.68:443
2019-02-07 14:28:4595796d3e756a0484e6174d29e7b5f728Virustotal results 14/71 (19.72%) IcedID 95.47.161.68:443
2019-02-07 14:21:4452a9cb7693dc625fadd930d160417b65Virustotal results 16/70 (22.86%) IcedID 95.47.161.68:443
2019-02-07 14:21:4452a9cb7693dc625fadd930d160417b65Virustotal results 16/70 (22.86%) IcedID 95.47.161.68:443
2019-02-07 13:20:2588eb54729f6fc366e21e8ed7f5e1fd13Virustotal results 12/69 (17.39%) IcedID 95.47.161.68:443
2019-02-07 13:20:2588eb54729f6fc366e21e8ed7f5e1fd13Virustotal results 12/69 (17.39%) IcedID 95.47.161.68:443
2019-02-07 11:56:548f8836caf34d693d789f6b580fa3f7b7Virustotal results 31/69 (44.93%) IcedID 95.47.161.68:443
2019-02-07 11:56:548f8836caf34d693d789f6b580fa3f7b7Virustotal results 31/69 (44.93%) IcedID 95.47.161.68:443
2019-02-07 10:56:47f0e178d0e31acdacff1c99de4531457eVirustotal results 13/70 (18.57%) IcedID 95.47.161.68:443
2019-02-07 10:56:47f0e178d0e31acdacff1c99de4531457eVirustotal results 13/70 (18.57%) IcedID 95.47.161.68:443
2019-02-07 10:52:361eb223527485d92edd63b83dec0eea3bVirustotal results 14/68 (20.59%) IcedID 95.47.161.68:443
2019-02-07 10:52:361eb223527485d92edd63b83dec0eea3bVirustotal results 14/68 (20.59%) IcedID 95.47.161.68:443
2019-02-07 10:45:3413d12146ff0f100797202d8f7b97ac64Virustotal results 38/69 (55.07%) IcedID 95.47.161.68:443
2019-02-07 10:45:3413d12146ff0f100797202d8f7b97ac64Virustotal results 38/69 (55.07%) IcedID 95.47.161.68:443
2019-02-07 09:59:577504d93c66e036a94d25a17d20883f56Virustotal results 19/71 (26.76%) IcedID 95.47.161.68:443
2019-02-07 09:59:577504d93c66e036a94d25a17d20883f56Virustotal results 19/71 (26.76%) IcedID 95.47.161.68:443
2019-02-07 09:45:52759835c4be1fa98aed025779c0ead409Virustotal results 17/70 (24.29%) IcedID 95.47.161.68:443
2019-02-07 09:45:52759835c4be1fa98aed025779c0ead409Virustotal results 17/70 (24.29%) IcedID 95.47.161.68:443
2019-02-07 08:43:141886b62d536e717dc1897a6e6602e2fdVirustotal results 38/69 (55.07%) IcedID 95.47.161.68:443
2019-02-07 08:43:141886b62d536e717dc1897a6e6602e2fdVirustotal results 38/69 (55.07%) IcedID 95.47.161.68:443
2019-02-07 08:24:575ecf4dd7ece49a7c0222001e9fe3be32Virustotal results 33/69 (47.83%) IcedID 95.47.161.68:443
2019-02-07 08:24:575ecf4dd7ece49a7c0222001e9fe3be32Virustotal results 33/69 (47.83%) IcedID 95.47.161.68:443
2019-02-07 06:21:43926a15341bdce4671de24f0792de0ad7Virustotal results 15/69 (21.74%) IcedID 95.47.161.68:443
2019-02-07 06:21:43926a15341bdce4671de24f0792de0ad7Virustotal results 15/69 (21.74%) IcedID 95.47.161.68:443
2019-02-07 04:51:5552cd99321cf2a8c72e30d3e309620108Virustotal results 31/71 (43.66%) IcedID 95.47.161.68:443
2019-02-07 04:51:5552cd99321cf2a8c72e30d3e309620108Virustotal results 31/71 (43.66%) IcedID 95.47.161.68:443

# of entries: 100 (max: 100)