SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 408696c2824d4c8ab6f6a9ca3680a190c5761630.

Database Entry


SHA1 Fingerprint:408696c2824d4c8ab6f6a9ca3680a190c5761630
Certificate Common Name (CN):z.nnnaajjjgc.com
Issuer Distinguished Name (DN):R3
TLS Version:TLS 1.2
First seen:2023-08-28 04:52:06 UTC
Last seen:2023-09-01 12:56:57 UTC
Status:Blacklisted
Listing reason:Fabookie C&C
Listing date:2023-09-01 20:21:55
Malware samples:39
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2023-09-01 12:56:5720f4484c3c45ab6b7ea688926eac9a41Virustotal results 14 / 69 (20.29%) Fabookie156.236.72.121:443
2023-09-01 11:32:29ff0ca5d8a61da8a0b725bcd6e36412dbn/aFabookie156.236.72.121:443
2023-09-01 06:37:38e8e7a7c1a9b0aba35338c2de4d4bd0afVirustotal results 19 / 68 (27.94%) Amadey156.236.72.121:443
2023-08-31 23:45:083660a4c0914b4602ab1592c2eb91af43Virustotal results 46 / 71 (64.79%) Fabookie156.236.72.121:443
2023-08-31 19:33:22d6f5e46daca593809ea5e0fb7485b2d3Virustotal results 26 / 70 (37.14%) Smoke Loader 156.236.72.121:443
2023-08-31 15:55:57aa0c1c58e07ecf3a279cad22fddf5b3bVirustotal results 28 / 67 (41.79%) Smoke Loader 156.236.72.121:443
2023-08-31 10:51:53734d71c599b8c6b9e411f48e4847ccd0Virustotal results 25 / 64 (39.06%) Smoke Loader 156.236.72.121:443
2023-08-31 09:39:542e0f2b9975087267a71f4c4f0a93d11cn/aTeamBot156.236.72.121:443
2023-08-31 09:31:47252403625ebdffcfdbf2abdff6c5a5c4Virustotal results 11 / 65 (16.92%) Fabookie156.236.72.121:443
2023-08-31 08:46:26eea3017f64c4be13d0d245aa11810830Virustotal results 12 / 69 (17.39%) Fabookie156.236.72.121:443
2023-08-31 08:42:5960f1e194d46d72ad34d14a7bec433fedn/aFabookie156.236.72.121:443
2023-08-31 05:44:51a1aa02a2f80828389142a3961da230c5Virustotal results 32 / 69 (46.38%) Smoke Loader 156.236.72.121:443
2023-08-31 02:44:381efdd8ff2bea02d6ef2fb16b2a3dc7fen/aFabookie156.236.72.121:443
2023-08-31 00:17:007d2ee8005860e2ab30712e5c7eb8a67aVirustotal results 27 / 69 (39.13%) TeamBot156.236.72.121:443
2023-08-30 23:14:51a011ea33be74a32f36d571a1334a2cb0Virustotal results 29 / 61 (47.54%) Amadey156.236.72.121:443
2023-08-30 23:09:25345bc2a5078b852d01662de3d1dbc104Virustotal results 29 / 67 (43.28%) Amadey156.236.72.121:443
2023-08-30 09:09:535fe739d874ed8bfb3ff23ed8531bf28aVirustotal results 42 / 66 (63.64%) Spambot.Kelihos156.236.72.121:443
2023-08-30 06:42:3475267a8c5643e99d72f59de6a828d043Virustotal results 28 / 65 (43.08%) RedLineStealer156.236.72.121:443
2023-08-30 05:56:0812043e40f8e5e238cbe5a2099121db90Virustotal results 14 / 71 (19.72%) Fabookie156.236.72.121:443
2023-08-30 04:28:29ca154c149f549ca82e58c073a93de68eVirustotal results 14 / 71 (19.72%) Fabookie156.236.72.121:443
2023-08-30 04:13:267433b89533975644206ecef89d1f69c2Virustotal results 13 / 70 (18.57%) Fabookie156.236.72.121:443
2023-08-30 02:37:504a28d13863dfb5c7e25a5e47395fc9b1Virustotal results 27 / 65 (41.54%) Amadey156.236.72.121:443
2023-08-30 00:48:567b9075065a3a53cf9916c821faaa8a4cVirustotal results 27 / 68 (39.71%) Smoke Loader 156.236.72.121:443
2023-08-30 00:48:047bd980753378f1e9edb3761eb0e18237Virustotal results 29 / 65 (44.62%) RedLineStealer156.236.72.121:443
2023-08-29 12:08:2846f9fc4b0a31d6c28537fa0fd57a9b98Virustotal results 30 / 70 (42.86%) TeamBot156.236.72.121:443
2023-08-29 09:59:325b25cca84b1ef7517cba6354dc7e459fVirustotal results 30 / 67 (44.78%) Smoke Loader 156.236.72.121:443
2023-08-29 09:23:231c8e33a64a50acf8c025248a8f53f575Virustotal results 29 / 67 (43.28%) RedLineStealer156.236.72.121:443
2023-08-29 06:07:0252ecae7182fd138f3e47c4e8896127e6Virustotal results 34 / 66 (51.52%) Smoke Loader 156.236.72.121:443
2023-08-29 04:18:457ddab7b1e5f993ddb31a6cd09f4ef90eVirustotal results 24 / 64 (37.50%) Amadey156.236.72.121:443
2023-08-29 02:34:1255d92a5e50ba01c2c43f04a0d592b9e0Virustotal results 28 / 68 (41.18%) Amadey156.236.72.121:443
2023-08-29 00:38:511171201d85dd7b00db54a2c492faa42eVirustotal results 43 / 68 (63.24%) Amadey156.236.72.121:443
2023-08-28 23:18:26bc4113cf6095048a2d3450fd089cfdcdVirustotal results 28 / 66 (42.42%) Amadey156.236.72.121:443
2023-08-28 22:37:2898c8431b6fbab1be3c489f6e6d2c5ae1Virustotal results 28 / 71 (39.44%) TeamBot156.236.72.121:443
2023-08-28 15:11:4729c7b693138b81891ce5983104d66edeVirustotal results 29 / 67 (43.28%) Stealc156.236.72.121:443
2023-08-28 09:58:40ceac81c4c35aa72a300a7772f16f301dVirustotal results 29 / 67 (43.28%) Smoke Loader 156.236.72.121:443
2023-08-28 09:37:07b4d0defb4ffd140a7b31fe62de3880ccVirustotal results 12 / 67 (17.91%) Fabookie156.236.72.121:443
2023-08-28 09:06:5291b8d2a117c7a44f04d8f8d5aaa0182cn/aFabookie156.236.72.121:443
2023-08-28 07:48:42064ebd4eb32c0051d110a08102cb6fbfn/aAmadey156.236.72.121:443
2023-08-28 04:52:06373e71b638be7798520c245aa7efc261Virustotal results 31 / 69 (44.93%) Amadey156.236.72.121:443

# of entries: 39 (max: 100)