SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 5404fc7e892763f16ad1108e5cee825a5db6fc69.

Database Entry


SHA1 Fingerprint:5404fc7e892763f16ad1108e5cee825a5db6fc69
Certificate Common Name (CN):bo'sun's.info
Issuer Distinguished Name (DN):bo'sun's.info
TLS Version:TLS 1.2
First seen:2019-10-09 20:51:39 UTC
Last seen:2019-10-21 19:37:24 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2019-10-10 09:11:11
Malware samples:3
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-10-21 19:37:24a93800b3282a2ea178c2aeede1ebf889Virustotal results 38/70 (54.29%) IcedID 195.69.187.132:443
2019-10-21 19:37:24a93800b3282a2ea178c2aeede1ebf889Virustotal results 38/70 (54.29%) IcedID 195.69.187.132:443
2019-10-18 12:15:4783b5eb867110403cc72819463a807b73Virustotal results 46/70 (65.71%) IcedID 195.69.187.132:443
2019-10-18 12:15:4783b5eb867110403cc72819463a807b73Virustotal results 46/70 (65.71%) IcedID 195.69.187.132:443
2019-10-09 20:51:397f2058884fbb65688df74cf8fa04d322n/aIcedID 194.67.194.182:443
2019-10-09 20:51:397f2058884fbb65688df74cf8fa04d322n/aIcedID 194.67.194.182:443

# of entries: 6 (max: 100)