SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 15339515be4fb93b345435ef243a8e2a622f251e.

Database Entry


SHA1 Fingerprint:15339515be4fb93b345435ef243a8e2a622f251e
Certificate Common Name (CN):CloudFlare Origin Certificate
Issuer Distinguished Name (DN):C=US, O=CloudFlare, Inc., OU=CloudFlare Origin SSL Certificate Authority, L=San Francisco, ST=California
TLS Version:TLS 1.2
First seen:2025-08-06 12:56:07 UTC
Last seen:2025-08-17 20:03:02 UTC
Status:Blacklisted
Listing reason:CobaltStrike C&C
Listing date:2025-08-06 19:36:56
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-08-17 20:03:020fc9953c771ad89705a6249087462957n/a192.9.157.200:443
2025-08-06 12:56:27976460727f9c2227d1379fe75297500en/a192.9.157.200:443
2025-08-06 12:56:074748c440bf92558fc8e9ded78d7a12c5n/a192.9.157.200:443

# of entries: 3 (max: 100)