SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 12c42acde116383d7b75ae10fc47d5f369f5633e.
Database Entry
| SHA1 Fingerprint: | 12c42acde116383d7b75ae10fc47d5f369f5633e |
|---|---|
| Certificate Common Name (CN): | c2server |
| Issuer Distinguished Name (DN): | C2-CA |
| TLS Version: | TLS 1.2 |
| First seen: | 2026-08-05 12:46:16 UTC |
| Last seen: | 2026-08-06 01:57:56 UTC |
| Status: | Blacklisted |
| Listing reason: | RemusStealer C&C |
| Listing date: | 2026-08-06 05:29:10 |
| Malware samples: | 6 |
| Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
| Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
|---|---|---|---|---|
| 2026-08-06 01:57:56 | e144a1dc31a89ee1acf50f119975ed93 | n/a | 207.89.18.63:443 | |
| 2026-08-05 14:11:03 | 86ffd4058b1efd986aedfe144be4067e | n/a | 207.89.18.63:443 | |
| 2026-08-05 13:55:34 | 79af1362d82e46b9c7ec3eb620b732ee | n/a | 207.89.18.63:443 | |
| 2026-08-05 13:55:27 | 7c1f3e5f94f05262a8f379a2c4116ce5 | n/a | 207.89.18.63:443 | |
| 2026-08-05 13:33:58 | 22a7074fe8a525972f58a22f9afce8d4 | n/a | 207.89.18.63:443 | |
| 2026-08-05 12:46:16 | 466a990698c559b4eccca876bc698cfc | n/a | 207.89.18.63:443 |
# of entries: 6 (max: 100)