SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 596a2c1bbef5e3603cc907b652162cec9a10c496.

Database Entry


SHA1 Fingerprint:596a2c1bbef5e3603cc907b652162cec9a10c496
Certificate Common Name (CN):gripsleep.xyz
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-12-28 14:19:36 UTC
Last seen:2025-12-28 18:04:25 UTC
Status:Blacklisted
Listing reason:OffLoader C&C
Listing date:2025-12-29 08:13:34
Malware samples:2
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-12-28 18:04:2516a1eabda16bf7b8a93a67df13bf9158n/a104.21.51.176:443
2025-12-28 14:19:3602dce39695c9433087cc6596f718947en/a188.114.97.12:443

# of entries: 2 (max: 100)