SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 51a405e1791e14af11208387348a1399e6e63195.

Database Entry


SHA1 Fingerprint:51a405e1791e14af11208387348a1399e6e63195
Certificate Common Name (CN):COMODO ECC Domain Validation Secure Server CA 2
Issuer Distinguished Name (DN):COMODO ECC Domain Validation Secure Server CA 2
TLS Version:TLS 1.2
First seen:2019-12-12 20:25:48 UTC
Last seen:2020-09-08 00:36:52 UTC
Status:Blacklisted
Listing reason:Adwind C&C
Listing date:2019-12-13 08:59:05
Malware samples:319
Botnet C&Cs:114

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-09-08 00:36:52bf20d52ca47fb1731c30b7e5a115f23bn/aAdwind79.134.225.16:8891
2020-09-08 00:36:52bf20d52ca47fb1731c30b7e5a115f23bn/aAdwind79.134.225.16:8891
2020-09-07 23:44:144009190982ec260fce9a41b145956c30n/aAdwind79.134.225.16:8891
2020-09-07 23:44:144009190982ec260fce9a41b145956c30n/aAdwind79.134.225.16:8891
2020-09-07 00:03:07ed79c55d6933d05c665efbf5c10b9ad9n/aAdwind79.134.225.107:20923
2020-09-07 00:03:07ed79c55d6933d05c665efbf5c10b9ad9n/aAdwind79.134.225.107:20923
2020-09-05 15:07:24e080f6a91cb2d9baf290a7e89c362691n/aAdwind91.193.75.225:1010
2020-09-05 15:07:24e080f6a91cb2d9baf290a7e89c362691n/aAdwind91.193.75.225:1010
2020-09-04 04:57:2236e2c6298e221f0f2be1d60927dec1f9Virustotal results 18 / 61 (29.51%) Adwind91.193.75.225:1010
2020-09-04 04:57:2236e2c6298e221f0f2be1d60927dec1f9Virustotal results 18 / 61 (29.51%) Adwind91.193.75.225:1010
2020-09-03 22:56:10416f9658086ffebcd2503b05d91b8b3bn/aAdwind79.134.225.107:20923
2020-09-03 22:56:10416f9658086ffebcd2503b05d91b8b3bn/aAdwind79.134.225.107:20923
2020-09-02 12:42:0140d038b43b41a9ca9a547f140b753245n/aAdwind185.140.53.145:2558
2020-09-02 12:42:0140d038b43b41a9ca9a547f140b753245n/aAdwind185.140.53.145:2558
2020-09-01 18:48:45283fb701e53e69b5f3250c10ba2053f4n/aAdwind91.193.75.171:1010
2020-09-01 18:48:45283fb701e53e69b5f3250c10ba2053f4n/aAdwind91.193.75.171:1010
2020-08-31 01:17:377e5b34776de19e8b482564a11d3fb699n/aAdwind91.193.75.171:1010
2020-08-31 01:17:377e5b34776de19e8b482564a11d3fb699n/aAdwind91.193.75.171:1010
2020-08-29 06:33:5903bdde0d47b8c25a13f53f6fbba8b08bn/aAdwind91.193.75.171:1010
2020-08-29 06:33:5903bdde0d47b8c25a13f53f6fbba8b08bn/aAdwind91.193.75.171:1010
2020-08-28 07:19:20c305ce9570163c1f98a256824a6efcadVirustotal results 23 / 60 (38.33%) Adwind79.134.225.84:20904
2020-08-28 07:19:20c305ce9570163c1f98a256824a6efcadVirustotal results 23 / 60 (38.33%) Adwind79.134.225.84:20904
2020-08-26 09:29:05f1a78d7990291195a2a680f972ee7738n/aAdwind185.140.53.132:6868
2020-08-26 09:29:05f1a78d7990291195a2a680f972ee7738n/aAdwind185.140.53.132:6868
2020-08-24 18:57:39aaaf280a243fa05284678036264cb224Virustotal results 31 / 60 (51.67%) Adwind79.134.225.107:20923
2020-08-24 18:57:39aaaf280a243fa05284678036264cb224Virustotal results 31 / 60 (51.67%) Adwind79.134.225.107:20923
2020-08-21 06:11:3280839cc805ba83258980e8c649778e7cn/aAdwind185.140.53.132:5484
2020-08-21 06:11:3280839cc805ba83258980e8c649778e7cn/aAdwind185.140.53.132:5484
2020-08-20 15:03:4226c20069154806b7cc9ffecd941e8549Virustotal results 21 / 61 (34.43%) Adwind194.5.97.245:4575
2020-08-20 15:03:4226c20069154806b7cc9ffecd941e8549Virustotal results 21 / 61 (34.43%) Adwind194.5.97.245:4575
2020-08-19 07:32:427274467c5af5102978a757985818d8b1n/aAdwind185.140.53.145:2558
2020-08-19 07:32:427274467c5af5102978a757985818d8b1n/aAdwind185.140.53.145:2558
2020-08-19 07:26:53ac0cb1dd71b0531b582abb9e74285198n/aAdwind185.244.30.201:4575
2020-08-19 07:26:53ac0cb1dd71b0531b582abb9e74285198n/aAdwind185.244.30.201:4575
2020-08-19 07:11:5910d957699927f69e41cf596817c4ca7bn/aAdwind185.140.53.132:5484
2020-08-19 07:11:5910d957699927f69e41cf596817c4ca7bn/aAdwind185.140.53.132:5484
2020-08-19 00:29:14742703cc1772f82cd50660194d7c47a9Virustotal results 13 / 56 (23.21%) Adwind185.140.53.220:20986
2020-08-19 00:29:14742703cc1772f82cd50660194d7c47a9Virustotal results 13 / 56 (23.21%) Adwind185.140.53.220:20986
2020-08-19 00:27:5359444630bce44b4d60b0ff8363c5164eVirustotal results 15 / 60 (25.00%) Adwind185.140.53.220:20986
2020-08-19 00:27:5359444630bce44b4d60b0ff8363c5164eVirustotal results 15 / 60 (25.00%) Adwind185.140.53.220:20986
2020-08-18 10:15:16c155328fa4fc5bcef15471d7b260ced4n/aAdwind185.244.30.201:4575
2020-08-18 10:15:16c155328fa4fc5bcef15471d7b260ced4n/aAdwind185.244.30.201:4575
2020-08-18 07:21:592b68744fed1c4c5c156a4247160fa8f8n/aAdwind185.244.30.130:20904
2020-08-18 07:21:592b68744fed1c4c5c156a4247160fa8f8n/aAdwind185.244.30.130:20904
2020-08-18 06:44:11f29f8a490d27bb40bfc0bc597afb8afbn/aAdwind185.140.53.132:5484
2020-08-18 06:44:11f29f8a490d27bb40bfc0bc597afb8afbn/aAdwind185.140.53.132:5484
2020-08-17 20:33:3433fce33b9a18852d93e3e877213fba16n/aAdwind185.140.53.219:1010
2020-08-17 20:33:3433fce33b9a18852d93e3e877213fba16n/aAdwind185.140.53.219:1010
2020-08-17 18:21:137c13fb7086d0e7512f9a4f33f8379df8n/aAdwind37.48.92.195:2507
2020-08-17 18:21:137c13fb7086d0e7512f9a4f33f8379df8n/aAdwind37.48.92.195:2507
2020-08-17 08:08:575784d2ff1adf9320d251cf9e2a636012n/aAdwind185.140.53.132:5484
2020-08-17 08:08:575784d2ff1adf9320d251cf9e2a636012n/aAdwind185.140.53.132:5484
2020-08-16 23:47:044514e4d2e076a0a90bc924eac4045f19n/aAdwind185.140.53.132:5484
2020-08-16 23:47:044514e4d2e076a0a90bc924eac4045f19n/aAdwind185.140.53.132:5484
2020-08-16 23:41:445e76e31b6607482ae9aa614ccb4ddce8n/aAdwind185.140.53.132:5484
2020-08-16 23:41:445e76e31b6607482ae9aa614ccb4ddce8n/aAdwind185.140.53.132:5484
2020-08-16 23:17:38a1da1adea4080258c96da1e17e4e6347n/aAdwind185.140.53.219:1010
2020-08-16 23:17:38a1da1adea4080258c96da1e17e4e6347n/aAdwind185.140.53.219:1010
2020-08-16 22:34:2102045ec0eae15e266f981232abbe518dn/aAdwind185.140.53.219:1010
2020-08-16 22:34:2102045ec0eae15e266f981232abbe518dn/aAdwind185.140.53.219:1010
2020-08-16 19:32:527244091d4cb627e008f4ef224f1056b7n/aAdwind103.89.91.6:20902
2020-08-16 19:32:527244091d4cb627e008f4ef224f1056b7n/aAdwind103.89.91.6:20902
2020-08-16 09:03:34cabd650b8d5379b8c836aafba07060d5n/aAdwind79.134.225.111:1501
2020-08-16 09:03:34cabd650b8d5379b8c836aafba07060d5n/aAdwind79.134.225.111:1501
2020-08-16 00:48:24194a8bb86548aa9e649477c0f21cde6fVirustotal results 1 / 59 (1.69%) Adwind77.48.28.230:20986
2020-08-16 00:48:24194a8bb86548aa9e649477c0f21cde6fVirustotal results 1 / 59 (1.69%) Adwind77.48.28.230:20986
2020-08-15 23:18:45707db3ab89c68bcc7d853c528414faf3n/aAdwind185.140.53.219:1010
2020-08-15 23:18:45707db3ab89c68bcc7d853c528414faf3n/aAdwind185.140.53.219:1010
2020-08-15 17:06:46501660b281ae893d8d89e3f1ca0e1153n/aAdwind79.134.225.111:1506
2020-08-15 17:06:46501660b281ae893d8d89e3f1ca0e1153n/aAdwind79.134.225.111:1506
2020-08-13 04:20:5726521d70e07516c6b753dd7f76effa3fn/aAdwind185.140.53.135:5484
2020-08-13 04:20:5726521d70e07516c6b753dd7f76effa3fn/aAdwind185.140.53.135:5484
2020-08-06 21:01:164729249ae9e83d90093ca318c2f84f32n/aAdwind103.89.91.6:20902
2020-08-06 21:01:164729249ae9e83d90093ca318c2f84f32n/aAdwind103.89.91.6:20902
2020-08-06 11:41:205d210bb09456f666626cf9ba5f7e7e31n/aAdwind103.89.91.6:20902
2020-08-06 11:41:205d210bb09456f666626cf9ba5f7e7e31n/aAdwind103.89.91.6:20902
2020-08-06 10:07:21a6bb501ca599e60e2e35caf0484ca09an/aAdwind79.134.225.84:3454
2020-08-06 10:07:21a6bb501ca599e60e2e35caf0484ca09an/aAdwind79.134.225.84:3454
2020-08-05 07:39:18458334ca425791e643061fb1dac8660en/aAdwind185.19.85.155:2327
2020-08-05 07:39:18458334ca425791e643061fb1dac8660en/aAdwind185.19.85.155:2327
2020-08-04 06:31:5384a8fdb414cd4191ed4394442889b232n/aAdwind185.165.153.173:20986
2020-08-04 06:31:5384a8fdb414cd4191ed4394442889b232n/aAdwind185.165.153.173:20986
2020-08-04 06:13:4252afe99d28cef5dbdeeca99137bf1a71n/aAdwind185.165.153.173:20986
2020-08-04 06:13:4252afe99d28cef5dbdeeca99137bf1a71n/aAdwind185.165.153.173:20986
2020-07-31 22:14:176223989c46e9ad36f68ff686ec3a38e0n/aAdwind185.140.53.219:1010
2020-07-31 22:14:176223989c46e9ad36f68ff686ec3a38e0n/aAdwind185.140.53.219:1010
2020-07-31 07:13:262f774f15add4f97cb391452846d017abn/aAdwind185.140.53.142:20986
2020-07-31 07:13:262f774f15add4f97cb391452846d017abn/aAdwind185.140.53.142:20986
2020-07-31 06:51:17a130fcf39bda045ad6ae50b94e72459cn/aAdwind185.140.53.142:20986
2020-07-31 06:51:17a130fcf39bda045ad6ae50b94e72459cn/aAdwind185.140.53.142:20986
2020-07-29 07:40:046751d64b686941e73b4fc8b796924664n/aAdwind185.19.85.155:2327
2020-07-29 07:40:046751d64b686941e73b4fc8b796924664n/aAdwind185.19.85.155:2327
2020-07-24 05:56:33e072dd69b9fed881a8a8a5cad2c58a57n/aAdwind37.48.92.195:1104
2020-07-24 05:56:33e072dd69b9fed881a8a8a5cad2c58a57n/aAdwind37.48.92.195:1104
2020-07-23 22:39:3616aefc49e647a125d79251f790f8534cn/aAdwind185.140.53.217:2123
2020-07-23 22:39:3616aefc49e647a125d79251f790f8534cn/aAdwind185.140.53.217:2123
2020-07-22 08:37:20cd2dd1566f7bfdc16fa54ded1e45c60dn/aAdwind185.140.53.217:2123
2020-07-22 08:37:20cd2dd1566f7bfdc16fa54ded1e45c60dn/aAdwind185.140.53.217:2123
2020-07-22 04:39:06e657d5892e25adf220e4ec852020051bn/aAdwind194.5.97.120:20986
2020-07-22 04:39:06e657d5892e25adf220e4ec852020051bn/aAdwind194.5.97.120:20986

# of entries: 100 (max: 100)