SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 42356a609e3eb5350342482f08ac70f9c912c45a.

Database Entry


SHA1 Fingerprint:42356a609e3eb5350342482f08ac70f9c912c45a
Certificate Common Name (CN):baiidu.vip
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-08-06 20:55:38 UTC
Last seen:2025-08-10 04:18:48 UTC
Status:Blacklisted
Listing reason:CobaltStrike C&C
Listing date:2025-08-08 16:36:32
Malware samples:2
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-08-10 04:18:48e6100daadc23fcdd914411f85896115bn/a104.21.64.1:443
2025-08-06 20:55:38a4f0a541bd9890236171d9f7a1be6ba2n/a104.21.32.1:443

# of entries: 2 (max: 100)