SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 410ec2431307d0505db7f4a09cb92fbd372ab369.

Database Entry


SHA1 Fingerprint:410ec2431307d0505db7f4a09cb92fbd372ab369
Certificate Common Name (CN):49.13.159.121
Issuer Distinguished Name (DN):49.13.159.121
TLS Version:TLS 1.2
First seen:2024-07-01 14:06:48 UTC
Last seen:2024-07-02 05:24:59 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2024-07-02 05:51:27
Malware samples:8
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2024-07-02 05:24:5983191f9561b65c2ebb2c95827de22c10n/a49.13.159.121:9000
2024-07-02 01:22:25e0a973495d6177a9b9225e797acca5a3n/a49.13.159.121:9000
2024-07-01 22:50:3184aebe12b08fe69b417eb5d58b4207abn/a49.13.159.121:9000
2024-07-01 20:07:21958dbd43768e23ab913180d68cd8406dn/a49.13.159.121:9000
2024-07-01 19:36:47d77bff6e3882278c09d2c58459befbf3n/a49.13.159.121:9000
2024-07-01 18:27:24c9b782d391ff2590061786a5541d70e1n/a49.13.159.121:9000
2024-07-01 15:04:00508387bdf9daf57490d5484ac624ae46n/a49.13.159.121:9000
2024-07-01 14:06:48610cdcfeb9e0f32908115d154fac8a1cn/a49.13.159.121:9000

# of entries: 8 (max: 100)