SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 25e03f9570a020b833d42041f5155634278bd9ca.

Database Entry


SHA1 Fingerprint:25e03f9570a020b833d42041f5155634278bd9ca
Certificate Common Name (CN):serverhosts.info, L=XX, O=XX, OU=XX, ST=XX, Email=webmaster@serverhosts.info, subjectAltName=www.serverhosts.info
Issuer Distinguished Name (DN):serverhosts.info, L=XX, O=XX, OU=XX, ST=XX, Email=webmaster@serverhosts.info, subjectAltName=www.serverhosts.info
TLS Version:TLS 1.2
First seen:2020-09-22 05:49:25 UTC
Last seen:2020-11-06 00:55:37 UTC
Status:Blacklisted
Listing reason:ZLoader C&C
Listing date:2020-10-30 08:06:46
Malware samples:21
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-11-06 00:55:37bcdae9f51c056a8bdfda1ab7dd9291f9n/aZLoader 142.93.7.219:443
2020-11-06 00:50:2698557384f77617d6016ae98e79b4e7ffn/aZLoader 142.93.7.219:443
2020-11-05 23:38:3531dd83fcd01a7696ea76f960b6a05592Virustotal results 33 / 71 (46.48%) ZLoader 142.93.7.219:443
2020-11-02 00:18:278aad8fa5cd8e6a9742079b7d579aadf4Virustotal results 52 / 71 (73.24%) ZLoader 142.93.7.219:443
2020-11-01 17:25:051fe01a778e94e525e48cc6b2aa43957fVirustotal results 51 / 72 (70.83%) ZLoader 142.93.7.219:443
2020-10-30 21:36:411a1ee02161b83b507421e5c659e0426bn/aZLoader 142.93.7.219:443
2020-10-30 20:13:2719c10acbf84ea17e539ae22d48c3335cn/aZLoader 142.93.7.219:443
2020-10-30 12:47:428b75a47709a14cfdd8d89a7683a6f303n/aZLoader 142.93.7.219:443
2020-10-30 10:29:437f643873fd11311e2fcc32bce93f4824Virustotal results 20 / 61 (32.79%) ZLoader 142.93.7.219:443
2020-10-29 23:35:43cd1f5e41d727816c6ca5e6c073130df4Virustotal results 17 / 69 (24.64%) ZLoader 142.93.7.219:443
2020-10-29 23:32:28c9c28887b126e65f42a02be6dce1fc1dVirustotal results 10 / 64 (15.62%) ZLoader 142.93.7.219:443
2020-10-29 21:04:1883059ecb2b70c5c283938fdb798de541Virustotal results 24 / 71 (33.80%) ZLoader 142.93.7.219:443
2020-10-23 12:53:18bd5f61cb7c6352fa7a30dc6679757754n/aTrickBot 142.93.7.219:443
2020-10-23 12:53:18bd5f61cb7c6352fa7a30dc6679757754n/aTrickBot 142.93.7.219:443
2020-10-23 08:53:004220ac6b9811dcddc89704b43dfbd373n/aZLoader 142.93.7.219:443
2020-10-23 04:56:009b73bf3a4f133bf649c5bd1dc7be0b36n/a142.93.7.219:443
2020-10-21 21:31:2157a48c244fcfc6fa943699a0a8a45044n/aTrickBot 142.93.7.219:443
2020-10-21 21:31:2157a48c244fcfc6fa943699a0a8a45044n/aTrickBot 142.93.7.219:443
2020-10-20 22:54:39fdc7489ee41076b1a6d542338e457d5an/aTrickBot 142.93.7.219:443
2020-10-20 22:54:39fdc7489ee41076b1a6d542338e457d5an/aTrickBot 142.93.7.219:443
2020-10-20 20:20:069d06384083e7a425c62c9719c0da6412n/aTrickBot 142.93.7.219:443
2020-10-20 20:20:069d06384083e7a425c62c9719c0da6412n/aTrickBot 142.93.7.219:443
2020-10-20 17:48:16f95b37e6b87b44a2081acdae4409f75dVirustotal results 4 / 57 (7.02%) TrickBot 142.93.7.219:443
2020-10-20 17:48:16f95b37e6b87b44a2081acdae4409f75dVirustotal results 4 / 57 (7.02%) TrickBot 142.93.7.219:443
2020-10-18 16:24:0309874cbb134851ff3b971960916ce5bbVirustotal results 43 / 70 (61.43%) ZLoader 142.93.7.219:443
2020-09-22 05:49:25a58669531659f801037b7766f846eee4Virustotal results 26 / 67 (38.81%) ZLoader 217.8.117.17:443

# of entries: 26 (max: 100)