SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 22a701745fdfa2080e44c9f339a911f97ad17bd0.

Database Entry


SHA1 Fingerprint:22a701745fdfa2080e44c9f339a911f97ad17bd0
Certificate Common Name (CN):Orcus Server
Issuer Distinguished Name (DN):Orcus Server
TLS Version:TLSv1
First seen:2020-05-19 07:01:10 UTC
Last seen:2020-05-27 09:28:31 UTC
Status:Blacklisted
Listing reason:OrcusRAT C&C
Listing date:2020-05-27 11:53:40
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-05-27 09:28:313798920012afb760052265ce115dfc4eVirustotal results 40 / 72 (55.56%) OrcusRAT 24.185.111.219:54455
2020-05-27 09:28:313798920012afb760052265ce115dfc4eVirustotal results 40 / 72 (55.56%) OrcusRAT 24.185.111.219:54455
2020-05-19 07:01:102e270c5fd477e4d74bd2e328a9883be9Virustotal results 48 / 73 (65.75%) OrcusRAT 24.185.111.219:54455
2020-05-19 07:01:102e270c5fd477e4d74bd2e328a9883be9Virustotal results 48 / 73 (65.75%) OrcusRAT 24.185.111.219:54455

# of entries: 4 (max: 100)