SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 5b38cd658f78a02010ba1ee6efd52b97809209c3.

Database Entry


SHA1 Fingerprint:5b38cd658f78a02010ba1ee6efd52b97809209c3
Certificate Common Name (CN):main.info
Issuer Distinguished Name (DN):main.info
TLS Version:TLS 1.2
First seen:2018-11-07 13:06:13 UTC
Last seen:2018-12-03 14:11:47 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2018-11-11 09:09:47
Malware samples:274
Botnet C&Cs:7

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-12-03 14:11:4724bfcda28a0ea336f4df75519adb7c17Virustotal results 24/70 (34.29%) IcedID 185.197.75.161:443
2018-12-03 12:27:156cead42012a75f6f0b9e070c962fac70Virustotal results 16/69 (23.19%) IcedID 185.197.75.161:443
2018-12-03 11:43:517deac378c15cde2d18ad9805e24699caVirustotal results 35/69 (50.72%) IcedID 185.197.75.161:443
2018-12-03 11:29:536959f0435d32fe8d251691dc64134746Virustotal results 37/69 (53.62%) IcedID 185.197.75.161:443
2018-12-03 11:20:029c745495bf7cc8211f2c3e62b2341889Virustotal results 29/70 (41.43%) IcedID 185.197.75.161:443
2018-12-03 11:15:528b54e034cc77d03c3b5345e03e08198fVirustotal results 32/70 (45.71%) IcedID 185.197.75.161:443
2018-12-03 11:14:3318540463934ebd5688685a453da58c5cVirustotal results 34/69 (49.28%) IcedID 185.197.75.161:443
2018-12-03 11:05:58bd3537a56339236cb2b258b88d1b2c25Virustotal results 29/68 (42.65%) IcedID 185.197.75.161:443
2018-12-03 10:30:3027825c5cf4c290f1a07982d11befe87cVirustotal results 39/69 (56.52%) IcedID 185.197.75.161:443
2018-12-03 10:16:04ad2a226c5a47a262a7b3fe765ec9dcaaVirustotal results 31/70 (44.29%) IcedID 185.197.75.161:443
2018-12-03 09:00:509c81f2e5b5a08aa2156e05d70829749eVirustotal results 38/69 (55.07%) IcedID 185.197.75.161:443
2018-12-03 08:47:111e0c2fa15b461bd39adf2f4aadc83891Virustotal results 24/69 (34.78%) IcedID 185.197.75.161:443
2018-12-03 08:29:16b0f600a995dfcb430b883dad43ea92f6Virustotal results 32/69 (46.38%) IcedID 185.197.75.161:443
2018-12-03 07:42:00f755aff51d3bedb6163e780887bb1027Virustotal results 34/70 (48.57%) IcedID 185.197.75.161:443
2018-12-03 07:39:4695637a385be1813bf1d1cb0bc14c621cVirustotal results 24/70 (34.29%) IcedID 185.197.75.161:443
2018-12-03 07:30:33dc7f48a0580c804affb55fd4c4f4623dVirustotal results 37/69 (53.62%) IcedID 185.197.75.161:443
2018-12-03 07:22:320936540191adbcf893fce3cfc6a2128fVirustotal results 36/70 (51.43%) IcedID 185.197.75.161:443
2018-12-03 07:20:37603af74157d3debd4fd323567bf74cd4Virustotal results 34/59 (57.63%) IcedID 185.197.75.161:443
2018-12-03 07:08:584ef56707a8efb7f538f85fa79eaf6c27Virustotal results 23/69 (33.33%) IcedID 185.197.75.161:443
2018-12-03 06:09:285c90437b4326e284bf647997b49a6b34Virustotal results 38/69 (55.07%) IcedID 185.197.75.161:443
2018-12-03 06:00:57291b95d7e0e0407f9cbdf00d4726f029Virustotal results 23/70 (32.86%) IcedID 185.197.75.161:443
2018-12-03 05:06:450c78718f5783b840c511043356561e26Virustotal results 35/70 (50.00%) IcedID 185.197.75.161:443
2018-12-03 05:06:127d2eda76a51346a8be5493364792428fVirustotal results 23/69 (33.33%) IcedID 185.197.75.161:443
2018-12-03 04:58:1982634a12da99285972e9b70b6991b020Virustotal results 28/70 (40.00%) IcedID 185.197.75.161:443
2018-12-03 03:36:17650ab68a1b9aa91db2c946f0f8093410Virustotal results 38/68 (55.88%) IcedID 185.197.75.161:443
2018-12-03 03:11:46533460773d65d35c2a929dd5e57aac42Virustotal results 22/69 (31.88%) IcedID 185.197.75.161:443
2018-12-03 01:28:235937238d45c8f6b26f5ea47139608726Virustotal results 32/70 (45.71%) IcedID 185.197.75.161:443
2018-12-02 23:19:28d4b8204160e6753f2367edab54e1f3b0Virustotal results 35/70 (50.00%) IcedID 185.197.75.161:443
2018-12-02 20:46:0842cc06496c05e78f1c6920f7252b3860Virustotal results 34/67 (50.75%) IcedID 185.197.75.161:443
2018-12-02 20:41:406f7b4f200e5cbcaf035c2462bf914217Virustotal results 21/69 (30.43%) IcedID 185.197.75.161:443
2018-12-02 20:31:5349e88a36f3c117586ee17ce86409072cVirustotal results 32/70 (45.71%) IcedID 185.197.75.161:443
2018-12-02 19:45:508364db2787565195e39990f4e4ed212dVirustotal results 36/68 (52.94%) IcedID 185.197.75.161:443
2018-12-02 19:03:30ea8ece50eb404ac53d6469b173261cc0Virustotal results 34/70 (48.57%) IcedID 185.197.75.161:443
2018-12-02 18:54:00c1790ed38fb958e807d40593b0f80388Virustotal results 31/69 (44.93%) IcedID 185.197.75.161:443
2018-12-02 18:44:026e27342037ffab55dd1dfd547bf58fddVirustotal results 24/70 (34.29%) IcedID 185.197.75.161:443
2018-12-02 18:23:23e8748edd9b844bb3f72241a2abbeba06Virustotal results 25/70 (35.71%) IcedID 185.197.75.161:443
2018-12-02 18:12:4778c5a8deab3c1a28094f52fc6a7d48c2Virustotal results 22/68 (32.35%) IcedID 185.197.75.161:443
2018-12-02 17:52:27d45ef8c4f97434366995738e44ca327dVirustotal results 34/69 (49.28%) IcedID 185.197.75.161:443
2018-12-02 17:35:303fa28405ae23b540d312e3614666a925Virustotal results 35/70 (50.00%) IcedID 185.197.75.161:443
2018-12-02 17:13:190521ea1fecea0bc456a7e84b128d8985Virustotal results 32/70 (45.71%) IcedID 185.197.75.161:443
2018-12-02 17:01:34f297e1ab81a166f0779715da438e1020Virustotal results 15/70 (21.43%) IcedID 185.197.75.161:443
2018-12-02 16:39:1964daa374ac3f2d027642c099a2dfe000Virustotal results 34/70 (48.57%) IcedID 185.197.75.161:443
2018-12-02 15:57:01e1d6368f8133d5bc8df490beb8e39c3cVirustotal results 17/68 (25.00%) IcedID 185.197.75.161:443
2018-12-02 15:42:31a6c7780a938cef21fca1395a1e834923Virustotal results 17/68 (25.00%) IcedID 185.197.75.161:443
2018-12-02 15:31:01064cff5894fcd359af437695d3bbfd26Virustotal results 18/69 (26.09%) IcedID 185.197.75.161:443
2018-12-02 15:29:195521310df7965b520007cc0c6e4ef2ceVirustotal results 35/69 (50.72%) IcedID 185.197.75.161:443
2018-12-02 15:22:458c6263b3b245974607232fbd51e32c67Virustotal results 21/69 (30.43%) IcedID 185.197.75.161:443
2018-12-02 15:10:03647ddb0a60ba32668409865d35a78142Virustotal results 29/69 (42.03%) IcedID 185.197.75.161:443
2018-12-02 14:31:141fc139b2aff1aa4f3dbd94c2a3fda56eVirustotal results 35/67 (52.24%) IcedID 185.197.75.161:443
2018-12-02 11:50:469bec8924a9a5a23536a7263ecfe2b99fVirustotal results 25/70 (35.71%) IcedID 185.197.75.161:443
2018-12-02 11:34:24711a03235fec02f21b7e19070b3752fdVirustotal results 31/69 (44.93%) IcedID 185.197.75.161:443
2018-12-02 10:53:0987277f65336f6a6499212770bad8fcf6Virustotal results 36/69 (52.17%) IcedID 185.197.75.161:443
2018-12-02 10:42:237adb9db6df6404c9a910797104921559Virustotal results 26/67 (38.81%) IcedID 185.197.75.161:443
2018-12-02 10:38:15f2a264e845141a65c75858bb4dab464dVirustotal results 25/69 (36.23%) IcedID 185.197.75.161:443
2018-12-02 10:36:4735c8ef7eef97a71d28346801b755f955Virustotal results 28/70 (40.00%) IcedID 185.197.75.161:443
2018-12-02 10:27:23a4fde8d7cf8fedc0ccd450bec0ab9090Virustotal results 34/68 (50.00%) IcedID 185.197.75.161:443
2018-12-02 10:23:59c50e8ac16623a119eabd401ee468fa7bVirustotal results 24/70 (34.29%) IcedID 185.197.75.161:443
2018-12-02 10:20:23b9737365b93d4c8621987658ee833e32Virustotal results 32/69 (46.38%) IcedID 185.197.75.161:443
2018-12-02 10:12:30cbf5d0f4b32d326734ee11638402dd29Virustotal results 22/69 (31.88%) IcedID 185.197.75.161:443
2018-12-02 10:00:046db95b2f8374858b6ed656c370e51dbeVirustotal results 32/70 (45.71%) IcedID 185.197.75.161:443
2018-12-02 09:59:242ec879e03951d0b0810111cc13347b72Virustotal results 29/70 (41.43%) IcedID 185.197.75.161:443
2018-12-02 09:51:12f054a48941a9b15fedb659ae38d6736aVirustotal results 22/70 (31.43%) IcedID 185.197.75.161:443
2018-12-02 09:45:00863adb8e6983ed07dc6e6d0bc04dcf6fVirustotal results 21/70 (30.00%) IcedID 185.197.75.161:443
2018-12-02 09:41:388f7a1fc5f112f2d7de0ae937b6fdd772Virustotal results 36/69 (52.17%) IcedID 185.197.75.161:443
2018-12-02 09:40:39814081d773ddb745be3df45cc78902f4Virustotal results 25/70 (35.71%) IcedID 185.197.75.161:443
2018-12-02 09:34:30f59c95aa7c4167732f9066762466507bVirustotal results 25/70 (35.71%) IcedID 185.197.75.161:443
2018-12-02 09:34:288696a2c50a3b6d77f9134a06f9de283eVirustotal results 37/70 (52.86%) IcedID 185.197.75.161:443
2018-12-02 09:13:58c40a2f64c4e8d7f10165902da4641ea6Virustotal results 31/68 (45.59%) IcedID 185.197.75.161:443
2018-12-02 08:42:5883425559b7430a83e02862faaa958281Virustotal results 15/66 (22.73%) IcedID 185.197.75.161:443
2018-12-02 01:39:29125a131a9b700f60e6cbf315277376ccVirustotal results 35/69 (50.72%) IcedID 185.197.75.161:443
2018-12-02 01:23:07da4f74e068eaa7e72b4b1e7ae9fac646Virustotal results 13/69 (18.84%) IcedID 185.197.75.161:443
2018-12-02 00:56:08df9843d746d258895605bddb685a5e8aVirustotal results 23/69 (33.33%) IcedID 185.197.75.161:443
2018-12-02 00:40:372b01e70c8654062b6c4ee8f3b44c61c8Virustotal results 13/68 (19.12%) IcedID 185.197.75.161:443
2018-12-02 00:34:157a0c17834f2a45139240a5776109f939Virustotal results 23/69 (33.33%) IcedID 185.197.75.161:443
2018-12-02 00:32:27a4e6c66035592911bea4ce01dd50a455Virustotal results 35/69 (50.72%) IcedID 185.197.75.161:443
2018-12-02 00:32:01d0e9be8e8500d277b0f92ba1090b3e7fVirustotal results 34/69 (49.28%) IcedID 185.197.75.161:443
2018-12-02 00:30:5417e5bae2cc5979fb6b50e2d7da4efb13Virustotal results 13/70 (18.57%) IcedID 185.197.75.161:443
2018-12-01 23:48:45278ac2dc94faaea94623d8f083b3191fVirustotal results 4/69 (5.80%) IcedID 185.197.75.161:443
2018-12-01 23:38:54931021c92e6f407210cc61f1f4571d3aVirustotal results 38/69 (55.07%) IcedID 185.197.75.161:443
2018-12-01 23:33:39118b71a6005c048d9e10ff3cd5bd3c4eVirustotal results 32/68 (47.06%) IcedID 185.197.75.161:443
2018-12-01 23:28:00a51b3748cedd6916fe9267a731615d03Virustotal results 45/69 (65.22%) IcedID 185.197.75.161:443
2018-12-01 19:03:56f191839b83a7270ddcd2d6f69376a668Virustotal results 38/69 (55.07%) IcedID 185.197.75.161:443
2018-12-01 17:36:216f56a726da1adbf27060352fa2c69587Virustotal results 32/69 (46.38%) IcedID 185.197.75.161:443
2018-12-01 17:09:0831f95d1ebc27fc06e27e14e5faadadcbVirustotal results 22/69 (31.88%) IcedID 185.197.75.161:443
2018-12-01 15:14:16a5dd191fb7ee4032b9af61de7c56b8ffVirustotal results 39/68 (57.35%) IcedID 185.197.75.161:443
2018-12-01 14:11:37f7e6d042ed2db4d23b003572016807feVirustotal results 34/70 (48.57%) IcedID 185.197.75.161:443
2018-12-01 13:31:480802a074489f00de80432b3c4d9b3e34Virustotal results 33/69 (47.83%) IcedID 185.197.75.161:443
2018-12-01 13:22:335fad0a0584f2d05b09414571b769c0f3Virustotal results 32/69 (46.38%) IcedID 185.197.75.161:443
2018-12-01 12:50:03753652a2453a24bf8d40d3afefa20e20Virustotal results 15/69 (21.74%) IcedID 185.197.75.161:443
2018-12-01 12:44:42baa6284347bf3b923ba9ba85283fb09fVirustotal results 29/69 (42.03%) IcedID 185.197.75.161:443
2018-12-01 12:11:00e3309d1253c4169f6e6c684b0267ef0fVirustotal results 35/69 (50.72%) IcedID 185.197.75.161:443
2018-12-01 12:03:561ad0282c87fb5c6c0bda5f204a506854Virustotal results 23/69 (33.33%) IcedID 185.197.75.161:443
2018-12-01 11:42:436c5f64dc2aca4888ce5735b600b59c8bVirustotal results 29/67 (43.28%) IcedID 185.197.75.161:443
2018-12-01 10:13:02ecbdc6969c86487817c69f0edf9f1b9cVirustotal results 32/70 (45.71%) IcedID 185.197.75.161:443
2018-12-01 10:12:55b9391008d3acefcda425349be9ac9411Virustotal results 32/69 (46.38%) IcedID 185.197.75.161:443
2018-12-01 10:12:36d1c171646153334b2eef7f2077f0089fVirustotal results 22/69 (31.88%) IcedID 185.197.75.161:443
2018-12-01 08:50:08fbb01263aa8749d6a5f6f61086abd9c5Virustotal results 38/69 (55.07%) IcedID 185.197.75.161:443
2018-12-01 08:28:181e85c7a3939ce61d24d8cd4981801179Virustotal results 22/67 (32.84%) 185.197.75.161:443
2018-12-01 08:19:118adf96d57cd9b64e7b0dd04bcba22313Virustotal results 16/68 (23.53%) IcedID 185.197.75.161:443
2018-12-01 07:41:091d4d33bee29774818369a2c9936a6019Virustotal results 36/68 (52.94%) IcedID 185.197.75.161:443

# of entries: 100 (max: 100)