SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 297b6537ce1a042b5411e2480698fd55ed210f45.

Database Entry


SHA1 Fingerprint:297b6537ce1a042b5411e2480698fd55ed210f45
Certificate Common Name (CN):birthdayalarm.icu
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-02-01 20:10:59 UTC
Last seen:2025-02-06 08:17:14 UTC
Status:Blacklisted
Listing reason:OffLoader C&C
Listing date:2025-02-06 09:47:15
Malware samples:10
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-02-06 08:17:1497d0b638d1ba2a6d6b4abf82656c817cn/a104.21.11.153:443
2025-02-06 06:01:466a1b145790c6165b7f9085d05a01e674n/a104.21.11.153:443
2025-02-06 04:41:052bc5a81c54bcbc4fb60d0e3d5e24cba1n/a172.67.166.95:443
2025-02-05 20:04:099bb196ee8071e6c0c8b122485572b55cn/a172.67.166.95:443
2025-02-05 19:54:46720bdf9e0586a492b635e39b0dddbcfan/a172.67.166.95:443
2025-02-05 18:20:229550fb6a9a794d542ba1816e66031041n/a172.67.166.95:443
2025-02-05 17:42:478e98fd6c406193c6218dc3e548e0f6c3n/a104.21.11.153:443
2025-02-02 17:30:4700fb8d601e78e4941a93552e2654130an/a172.67.166.95:443
2025-02-02 05:35:05c1d8959b915814a5983efcaa80f09855n/a104.21.11.153:443
2025-02-01 20:10:5980cb0f584ac061373ddffa2435f2271dn/a104.21.11.153:443

# of entries: 10 (max: 100)