SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 2178ba5544742fb6df5eca2bc85e52be4d90f065.

Database Entry


SHA1 Fingerprint:2178ba5544742fb6df5eca2bc85e52be4d90f065
Certificate Common Name (CN):Hfoqppvo
Issuer Distinguished Name (DN):Hfoqppvo
TLS Version:TLSv1
First seen:2024-02-03 21:07:24 UTC
Last seen:2024-07-29 05:51:20 UTC
Status:Blacklisted
Listing reason:PureLogStealer C&C
Listing date:2024-07-29 10:51:11
Malware samples:13
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2024-07-29 05:51:20b2c44e3619be0f55a6946eefb52e28d7n/a109.176.30.246:56002
2024-06-28 21:22:338a834c11c72cf214756ed35024a49f28n/a109.176.30.246:56002
2024-06-28 09:28:439e19604a83f3c09dadcd5510f3212da9n/a109.176.30.246:56002
2024-06-28 08:51:1367225a04703e2187c8dbb903c59b086cn/a109.176.30.246:56002
2024-06-23 10:15:42241fdfbcc0dd62d36f15e9d55af9a99an/a109.176.30.246:56002
2024-03-16 18:26:04756e4994d859fa8ba5d0adb8b4993edbn/a109.61.95.120:56001
2024-03-13 12:10:16dadf31be357b3598830b725ea3018b9fn/a109.61.95.120:56002
2024-03-12 21:57:17735dbeda2ffcc9e35e1cfac3913d653an/a109.61.95.120:56002
2024-02-12 15:30:20b33ab8bf088b454c87232fb749b18db6n/a109.61.95.120:56002
2024-02-04 14:24:20bdc1084db0b449f71a85ba546dd982f0n/a109.61.95.120:56002
2024-02-04 04:36:276e365b04dd5fb443c9c29f05fc6fc3ean/a109.61.95.120:56002
2024-02-03 22:44:42e0deb2fc7bb606d0f2b1ef5f3ca8a857Virustotal results 44 / 71 (61.97%) 109.61.95.120:56002
2024-02-03 21:07:241a6ab2f907e9255c656d391755997fb9n/a109.61.95.120:56002

# of entries: 13 (max: 100)