SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 16d2a499d227a499be98431da1c912ff48761646.
Database Entry
SHA1 Fingerprint: | 16d2a499d227a499be98431da1c912ff48761646 |
---|---|
Certificate Common Name (CN): | cutyoutube.com |
Issuer Distinguished Name (DN): | Thawte RSA CA 2018 |
TLS Version: | TLS 1.2 |
First seen: | 2020-11-06 13:06:38 UTC |
Last seen: | 2021-01-13 13:01:20 UTC |
Status: | Blacklisted |
Listing reason: | CobaltStrike C&C |
Listing date: | 2021-01-13 20:13:30 |
Malware samples: | 2 |
Botnet C&Cs: | 2 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2021-01-13 13:01:20 | 92726558efc81ee1ace4036b43fa003b | 24 / 70 (34.29%) | CobaltStrike | 84.38.180.119:443 |
2021-01-13 13:01:20 | 92726558efc81ee1ace4036b43fa003b | 24 / 70 (34.29%) | CobaltStrike | 84.38.180.119:443 |
2020-11-06 13:06:38 | f31d31b5944bdc2d0212ffe11ecfe43c | 58 / 72 (80.56%) | CobaltStrike | 84.38.183.222:443 |
2020-11-06 13:06:38 | f31d31b5944bdc2d0212ffe11ecfe43c | 58 / 72 (80.56%) | CobaltStrike | 84.38.183.222:443 |
# of entries: 4 (max: 100)