SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 4112fd7e6a5f6d4990ef99d310c1e2031523be38.

Database Entry

SHA1 Fingerprint:4112fd7e6a5f6d4990ef99d310c1e2031523be38
Certificate Common Name (CN):Orcus Server
Issuer Distinguished Name (DN):Orcus Server
TLS Version:TLSv1
First seen:2018-12-02 00:14:24 UTC
Last seen:2018-12-20 10:18:37 UTC
Listing reason:OrcusRAT C&C
Listing date:2018-12-02 14:31:07
Malware samples:2
Botnet C&Cs:2

Malware Samples

The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-12-20 10:18:379b7198c4c83728544165932dfb266f32Virustotal results 6/70 (8.57%) LimeRAT160.20.147.219:1000
2018-12-02 00:14:24b1648ae29325ae12cf60e5587f50202dVirustotal results 48/70 (68.57%) OrcusRAT

# of entries: 2 (max: 100)