SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 39f3abca4d940c79c7effc9800ee64f7776c3075.

Database Entry


SHA1 Fingerprint:39f3abca4d940c79c7effc9800ee64f7776c3075
Certificate Common Name (CN):distributiontheory.cfd
Issuer Distinguished Name (DN):E7
TLS Version:TLS 1.2
First seen:2026-04-30 14:13:40 UTC
Last seen:2026-05-14 21:01:04 UTC
Status:Blacklisted
Listing reason:OffLoader C&C
Listing date:2026-05-18 11:27:22
Malware samples:12
Botnet C&Cs:7

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2026-05-14 21:01:041b7c873cee9a33cacbc2fe7dba6e63c9n/a188.114.96.12:443
2026-05-09 23:33:23c82b533b9e5bef488dc5d60fb3eb4719n/a188.114.97.0:443
2026-05-05 05:06:312a0b43cb451d841ca58007aae202c61fn/a188.114.97.0:443
2026-05-04 08:39:50942598394c2c8523739cb10c13404641n/a104.21.3.54:443
2026-05-03 23:44:3627750bd380bf8182536e8cb040df6d3an/a172.67.130.68:443
2026-05-03 03:07:41257b306597ed9b230c1487932fe409dfn/a188.114.96.3:443
2026-05-02 08:43:387c4fec367c0747f111febf7b18c51443n/a188.114.97.3:443
2026-05-01 09:35:044731baf68c06e53d2e1b346a3486df1en/a172.67.130.68:443
2026-05-01 09:33:0546f9895bbab62a7788f4688da5b5d9ben/a188.114.96.12:443
2026-05-01 08:58:16421b56ca0b84e17b3803d0bb70736d4fn/a188.114.96.0:443
2026-05-01 06:39:251ecc2b4860a9d92b0ce500a86a9dcd8an/a188.114.96.3:443
2026-04-30 14:13:40019fbbf88e20a849c0dc89f381bc7893n/a188.114.96.12:443

# of entries: 12 (max: 100)