SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 3a6285ad40dcaa74c1346806f74913fa0c3c9540.

Database Entry


SHA1 Fingerprint:3a6285ad40dcaa74c1346806f74913fa0c3c9540
Certificate Common Name (CN):176.9.142.218
Issuer Distinguished Name (DN):176.9.142.218
TLS Version:TLS 1.2
First seen:2026-05-19 06:01:55 UTC
Last seen:2026-05-21 16:10:20 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2026-05-24 13:46:45
Malware samples:9
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2026-05-21 16:10:20034ce774c95f2ac6d4f15e2feabdd076n/a136.243.232.225:443
2026-05-21 15:19:430165ba021aba4c68e54aa23a01b6dfben/a136.243.232.225:443
2026-05-21 09:06:3254d9f8f429f78ca6dc7f47df29bf2e7bn/a136.243.232.225:443
2026-05-21 00:16:29300c4eaf9d2b7d6cc73491e5b74bbdb0n/a136.243.232.225:443
2026-05-20 23:45:242de5a7dbb8697e6faf508fc03edaac42n/a136.243.232.225:443
2026-05-20 19:36:411bfcbf6ce541e273af4e70eba533efe0n/a136.243.232.225:443
2026-05-20 18:17:1640104b72044cf5b1430d4882c53a2f8an/a136.243.232.225:443
2026-05-20 09:19:273353f19c18be234d9d72947b1e3c3adbn/a136.243.232.225:443
2026-05-19 06:01:552c6fd22edad5e73e86b52285ad1ee2c0n/a136.243.232.225:443

# of entries: 9 (max: 100)