SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 5fe1db5777405c41eff2ad9140bbf2ce31315ec6.

Database Entry


SHA1 Fingerprint:5fe1db5777405c41eff2ad9140bbf2ce31315ec6
Certificate Common Name (CN):AsyncRAT Server CA
Issuer Distinguished Name (DN):AsyncRAT Server CA
TLS Version:TLSv1' NOTBEFOR
First seen:2019-06-18 04:36:34 UTC
Last seen:2021-03-17 13:48:54 UTC
Status:Blacklisted
Listing reason:AsyncRAT C&C
Listing date:2020-05-10 07:35:08
Malware samples:4
Botnet C&Cs:4

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-03-17 13:48:54c5aff8ce148e2001f2ee04c5d8ac93b9Virustotal results 28 / 73 (38.36%) AsyncRAT221.146.229.139:1002
2021-03-17 13:48:54c5aff8ce148e2001f2ee04c5d8ac93b9Virustotal results 28 / 73 (38.36%) AsyncRAT221.146.229.139:1002
2020-05-09 18:36:060ee48ef72d4839c2d96ed414b87a5c7fVirustotal results 36 / 72 (50.00%) AsyncRAT121.140.64.142:1002
2020-05-09 18:36:060ee48ef72d4839c2d96ed414b87a5c7fVirustotal results 36 / 72 (50.00%) AsyncRAT121.140.64.142:1002
2019-10-20 04:54:172ae29f8f20c6ba3b2be3accf520f011eVirustotal results 39 / 69 (56.52%) NanoCore210.123.126.60:1002
2019-10-20 04:54:172ae29f8f20c6ba3b2be3accf520f011eVirustotal results 39 / 69 (56.52%) NanoCore210.123.126.60:1002
2019-06-18 04:36:348d31615242a4d100f7428e2cd2d3776fVirustotal results 8/66 (12.12%) NanoCore211.47.153.128:1002
2019-06-18 04:36:348d31615242a4d100f7428e2cd2d3776fVirustotal results 8/66 (12.12%) NanoCore211.47.153.128:1002

# of entries: 8 (max: 100)