SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 1b74f82a9f35a6f50d374d9c4471ad5762654eee.

Database Entry


SHA1 Fingerprint:1b74f82a9f35a6f50d374d9c4471ad5762654eee
Certificate Common Name (CN):esteghlal.news
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2026-06-23 15:50:43 UTC
Last seen:2026-06-24 03:59:30 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2026-06-24 07:40:59
Malware samples:5
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2026-06-24 03:59:3059265ffc074a7d31253ca005ded5dcf7n/a104.21.29.113:443
2026-06-24 03:34:58590dc6eed412993e18a6533bfdbd28f9n/a172.67.148.199:443
2026-06-24 01:23:2551abd9b5118673d3488f1a66d46ecb13n/a104.21.29.113:443
2026-06-24 00:51:574ea44971470f32290c7a3a71bf110c8fn/a104.21.29.113:443
2026-06-23 15:50:4312e9d8974b6021e549b309d3bb4828b2n/a104.21.29.113:443

# of entries: 5 (max: 100)