SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 38e1c48dfe29df43547cc3c1d036aebbc9e1d3bb.

Database Entry


SHA1 Fingerprint:38e1c48dfe29df43547cc3c1d036aebbc9e1d3bb
Certificate Common Name (CN):photocopied.com
Issuer Distinguished Name (DN):photocopied.com
TLS Version:TLS 1.2
First seen:2019-02-20 15:03:55 UTC
Last seen:2019-03-01 09:48:16 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2019-02-23 20:25:22
Malware samples:24
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-03-01 09:48:1602a356ee34421a2390de91d66ce079bdVirustotal results 34/63 (53.97%) 185.173.92.61:443
2019-02-28 23:16:206ec0d5acc4b4a58e9a42d10a5ed8c1c7Virustotal results 39/69 (56.52%) IcedID 185.173.92.61:443
2019-02-28 19:13:15a461d229d14b1f2dd43675945f9d5ab0Virustotal results 34/65 (52.31%) IcedID 185.173.92.61:443
2019-02-28 10:45:09bf5000efb07c6ee2e7076dba8175f9f8Virustotal results 33/71 (46.48%) IcedID 185.173.92.61:443
2019-02-26 15:27:58099789813e22f5f287ed0bf056f0400aVirustotal results 22/70 (31.43%) IcedID 185.173.92.61:443
2019-02-26 12:40:166bc2a02cc07ef6fd865e86efaa7a51e3Virustotal results 32/70 (45.71%) IcedID 185.173.92.61:443
2019-02-25 05:00:43dfe6cdc304caa17cc3f850915bbdcf7dVirustotal results 34/69 (49.28%) IcedID 87.236.22.142:443
2019-02-25 00:36:26f8d094c03bad65adf1d14883d6697c5fVirustotal results 44/65 (67.69%) IcedID 87.236.22.142:443
2019-02-24 22:22:34a4ea5cdf1106bb79cdd204f253b16094Virustotal results 14/65 (21.54%) IcedID 87.236.22.142:443
2019-02-24 20:54:50656f93b0737b66c6f3d4e0c1dccd2ec7Virustotal results 30/65 (46.15%) IcedID 87.236.22.142:443
2019-02-24 19:14:37a1e45d73245d42665b13f35a1dd8dc2dn/aIcedID 87.236.22.142:443
2019-02-24 17:33:207450826a3a48f36a23b6cf600da6e38bVirustotal results 21/70 (30.00%) IcedID 87.236.22.142:443
2019-02-24 06:09:5009196485df587fafa0bdee1712d42425Virustotal results 41/64 (64.06%) IcedID 87.236.22.142:443
2019-02-24 05:38:43ffec18afbf79c3f5eb42a3497821a79dVirustotal results 24/66 (36.36%) IcedID 87.236.22.142:443
2019-02-23 20:08:36e01fbe3666c498815ef0698be221893eVirustotal results 7/64 (10.94%) IcedID 87.236.22.142:443
2019-02-23 16:57:5307565a9e664db95e94ba26f6786d5a23n/a87.236.22.142:443
2019-02-23 15:56:48b03cc0fb998dc3ed23b5ebfa7fa6d7f7Virustotal results 24/69 (34.78%) IcedID 87.236.22.142:443
2019-02-23 15:00:0075df2c953b7d7f0667fdd50c463ce10dVirustotal results 35/65 (53.85%) IcedID 87.236.22.142:443
2019-02-21 20:27:568c2149e0fdc5e41a2135d16038af49d3Virustotal results 31/70 (44.29%) IcedID 87.236.22.142:443
2019-02-21 16:54:25cadbf20adcddc586f12029fc9723eddaVirustotal results 46/70 (65.71%) IcedID 87.236.22.142:443
2019-02-21 14:13:509f29b8e76f8372bae42e13bb0d26180eVirustotal results 11/71 (15.49%) IcedID 87.236.22.142:443
2019-02-20 15:41:043ffa4dbcc2f7ed32ea0b99bc0d747bc2Virustotal results 11/69 (15.94%) IcedID 87.236.22.142:443
2019-02-20 15:21:4501937bde56254f1d0014afdd14f769c9Virustotal results 25/65 (38.46%) IcedID 87.236.22.142:443
2019-02-20 15:03:55bbd52cba24f25ff8c6b6c55faed1e527Virustotal results 33/70 (47.14%) IcedID 87.236.22.142:443

# of entries: 24 (max: 100)