SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 4fc05a40a117d84d47986744b1482f618397f5bb.

Database Entry


SHA1 Fingerprint:4fc05a40a117d84d47986744b1482f618397f5bb
Certificate Common Name (CN):porterdebt.xyz
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-06-07 02:53:33 UTC
Last seen:2025-06-15 00:06:30 UTC
Status:Blacklisted
Listing reason:OffLoader C&C
Listing date:2025-06-07 13:00:00
Malware samples:9
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-06-15 00:06:30d0e8d2b75d69a7596a74b58718ce0388n/a172.67.188.87:443
2025-06-12 13:57:304e59eae895c7d69425627dd03c8cdd12n/a104.21.48.232:443
2025-06-09 13:46:16cc2f86e56134d9c30ff4999b2f20c22dn/a104.21.48.232:443
2025-06-09 05:38:51b1244243e6fb7ea263697fe3c936f0e4n/a104.21.48.232:443
2025-06-09 01:43:44a3e43db771c687e1f8aa3c3cfdf32863n/a172.67.188.87:443
2025-06-07 19:14:023846548480702cd35e2aeb44833f4bden/a172.67.188.87:443
2025-06-07 12:52:3664acc8f8c1c6392ee7e39610c94e6d60n/a104.21.48.232:443
2025-06-07 12:52:3664acc8f8c1c6392ee7e39610c94e6d60n/a104.21.48.232:443
2025-06-07 06:09:433ff844b20916e4492bf492737a97cfd7n/a172.67.188.87:443
2025-06-07 06:09:433ff844b20916e4492bf492737a97cfd7n/a172.67.188.87:443
2025-06-07 02:53:3305cf0520b73e9e89a824db3808ab4992n/a104.21.48.232:443
2025-06-07 02:53:3305cf0520b73e9e89a824db3808ab4992n/a104.21.48.232:443

# of entries: 12 (max: 100)