SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 16d2a499d227a499be98431da1c912ff48761646.

Database Entry


SHA1 Fingerprint:16d2a499d227a499be98431da1c912ff48761646
Certificate Common Name (CN):cutyoutube.com
Issuer Distinguished Name (DN):Thawte RSA CA 2018
TLS Version:TLS 1.2
First seen:2020-11-06 13:06:38 UTC
Last seen:2021-01-13 13:01:20 UTC
Status:Blacklisted
Listing reason:CobaltStrike C&C
Listing date:2021-01-13 20:13:30
Malware samples:2
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-01-13 13:01:2092726558efc81ee1ace4036b43fa003bVirustotal results 24 / 70 (34.29%) CobaltStrike84.38.180.119:443
2021-01-13 13:01:2092726558efc81ee1ace4036b43fa003bVirustotal results 24 / 70 (34.29%) CobaltStrike84.38.180.119:443
2020-11-06 13:06:38f31d31b5944bdc2d0212ffe11ecfe43cVirustotal results 58 / 72 (80.56%) CobaltStrike84.38.183.222:443
2020-11-06 13:06:38f31d31b5944bdc2d0212ffe11ecfe43cVirustotal results 58 / 72 (80.56%) CobaltStrike84.38.183.222:443

# of entries: 4 (max: 100)