SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 3912faeef78e1e5f6c9ccaa352ea37f67614e640.

Database Entry


SHA1 Fingerprint:3912faeef78e1e5f6c9ccaa352ea37f67614e640
Certificate Common Name (CN):BitRAT
Issuer Distinguished Name (DN):BitRAT
TLS Version:TLS 1.2' NOTBEF
First seen:2020-11-02 09:54:59 UTC
Last seen:2020-12-14 06:18:14 UTC
Status:Blacklisted
Listing reason:BitRAT C&C
Listing date:2020-11-05 09:28:30
Malware samples:5
Botnet C&Cs:3

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-12-14 06:18:1450b608cd338e9d07f1a3ae574b14e2d1n/aBitRAT179.43.166.54:8070
2020-12-14 06:18:1450b608cd338e9d07f1a3ae574b14e2d1n/aBitRAT179.43.166.54:8070
2020-11-11 05:18:26869346ec80f0f6cb3f7f2b07fd0124d8n/aBitRAT79.134.225.14:8070
2020-11-11 05:18:26869346ec80f0f6cb3f7f2b07fd0124d8n/aBitRAT79.134.225.14:8070
2020-11-05 10:29:545fdb6a8df8f0487eba25dc42c187719dVirustotal results 16 / 72 (22.22%) Loki91.193.75.108:8070
2020-11-05 10:29:545fdb6a8df8f0487eba25dc42c187719dVirustotal results 16 / 72 (22.22%) Loki91.193.75.108:8070
2020-11-05 02:16:04edabe5d164ffe9d49046045eb80e3d22Virustotal results 26 / 71 (36.62%) Loki91.193.75.108:8070
2020-11-05 02:16:04edabe5d164ffe9d49046045eb80e3d22Virustotal results 26 / 71 (36.62%) Loki91.193.75.108:8070
2020-11-02 09:54:59e7d9c54dc583c797daba1d2fefddc609n/aBitRAT91.193.75.108:8070
2020-11-02 09:54:59e7d9c54dc583c797daba1d2fefddc609n/aBitRAT91.193.75.108:8070

# of entries: 10 (max: 100)