SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 15339515be4fb93b345435ef243a8e2a622f251e.
Database Entry
| SHA1 Fingerprint: | 15339515be4fb93b345435ef243a8e2a622f251e |
|---|---|
| Certificate Common Name (CN): | CloudFlare Origin Certificate |
| Issuer Distinguished Name (DN): | C=US, O=CloudFlare, Inc., OU=CloudFlare Origin SSL Certificate Authority, L=San Francisco, ST=California |
| TLS Version: | TLS 1.2 |
| First seen: | 2025-08-06 12:56:07 UTC |
| Last seen: | 2025-08-17 20:03:02 UTC |
| Status: | Blacklisted |
| Listing reason: | CobaltStrike C&C |
| Listing date: | 2025-08-06 19:36:56 |
| Malware samples: | 3 |
| Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
| Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
|---|---|---|---|---|
| 2025-08-17 20:03:02 | 0fc9953c771ad89705a6249087462957 | n/a | 192.9.157.200:443 | |
| 2025-08-06 12:56:27 | 976460727f9c2227d1379fe75297500e | n/a | 192.9.157.200:443 | |
| 2025-08-06 12:56:07 | 4748c440bf92558fc8e9ded78d7a12c5 | n/a | 192.9.157.200:443 |
# of entries: 3 (max: 100)