SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 6d28e9c22dea118cb62e543fc366b83260a86e0d.

Database Entry


SHA1 Fingerprint:6d28e9c22dea118cb62e543fc366b83260a86e0d
Certificate Common Name (CN):greentowns.hk
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLSv1
First seen:2019-08-21 05:35:27 UTC
Last seen:2019-11-11 06:24:12 UTC
Status:Blacklisted
Listing reason:PsiXBot C&C
Listing date:2019-09-07 18:55:11
Malware samples:44
Botnet C&Cs:27

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-11-11 06:24:12001d9d59727a09d7a5449151f2d9febcn/a194.67.86.241:443
2019-11-09 15:12:07c69b88bde2a1c9dc11ae7fcbce6ba900n/a194.58.123.243:443
2019-11-08 14:07:077c73b384aeb4052bb887afc648eb725fn/a45.128.186.79:443
2019-11-08 13:24:4776f3f99fc595f9daefd1922012a26aa5n/a45.128.186.79:443
2019-09-17 02:20:01963f238ae0282d8af7169b1be0cd5ff3n/aPsiXBot85.143.221.32:443
2019-09-16 12:28:299898acfe44a01957f0808d58f23ddfe1n/aPsiXBot188.120.229.38:443
2019-09-15 20:12:26101393da89ea658874c2fb8e675735b7n/aPsiXBot195.133.1.208:443
2019-09-14 22:28:250b4184b965a306b70268563dcd843251n/aPsiXBot194.67.78.102:443
2019-09-14 08:46:0296f94807a3013bfa07d94f159af78498n/aPsiXBot194.67.78.102:443
2019-09-14 08:36:111dcde2705a2dfe8d8c1d8a323a9046f0n/aPsiXBot109.196.164.75:443
2019-09-13 14:12:4190e7599eee5228c14b1907014c6beacan/aPsiXBot185.193.141.59:443
2019-09-12 04:42:4593cb24ce0b3f6fed0fa12fcdad92f2a1n/aPsiXBot85.143.216.198:443
2019-09-11 14:53:22db75a6a469daee238cf0ac4274c3d0c7n/aPsiXBot85.143.223.34:443
2019-09-11 02:28:27babd70c21e895d3fd99c30380b068818n/aPsiXBot62.173.145.225:443
2019-09-08 17:24:35cd28463f908e776a89e6f0841def3c29n/aPsiXBot194.67.78.6:443
2019-09-07 18:59:31a45c49aa6299416e283124e12f7cf1bdn/aPsiXBot176.113.82.144:443
2019-09-07 18:53:19e93f0bd518a2faa0de4fb762e5f75dccn/aPsiXBot149.154.71.176:443
2019-09-07 18:49:284f1837d2b2a35a0d15b614540a266990n/aPsiXBot194.58.108.187:443
2019-09-07 00:11:1839006397cb17cf3a6928839cac8df404n/a194.58.108.187:443
2019-09-06 11:07:186dde295a24a1a550a3b814df9fcdb56cn/a194.58.108.187:443
2019-09-06 03:43:43ce9f615f81f5c9e2b7d895911337915an/a194.67.78.6:443
2019-09-05 16:17:37bba531771ce8993c683a078f2b23ad11n/a45.141.103.221:443
2019-09-05 14:49:40046b0f48823c7dcfd28281afbdd3180bn/a85.143.217.217:443
2019-09-05 12:42:05514c3eeeea30ff8a438d54d54ebe8b64n/a85.143.217.217:443
2019-09-05 12:20:0192f4b178f015ca6c44c163ae5c74b1cdn/a45.141.103.221:443
2019-09-05 12:19:51b275b79ae021f270b5c3d9679315715bn/a85.143.217.217:443
2019-09-05 11:37:0380d82a7b3e4d4225eeb22e4157191cban/a45.141.103.221:443
2019-09-05 10:19:51bb10d4abcb54ead86692a6cf2fcdd285Virustotal results 38 / 71 (53.52%) 194.58.108.187:443
2019-09-05 09:51:03173e995ceda3f3b57671b48ccd99015bn/a85.143.217.217:443
2019-09-05 09:21:58b489f0e2638f80a0cfc8a18ed049062fn/a45.141.103.221:443
2019-09-05 09:08:569294726ec1725b7e1707a40065978b70n/a185.173.178.175:443
2019-09-05 02:14:022fd0e4df1ef3df807ae0c8932749d12dn/a194.67.222.131:443
2019-09-05 00:27:236775193f8d87e2e2381ace140da28326n/a62.173.140.58:443
2019-09-04 22:13:22585569b3e212996f5b7d236dbace40cfn/a194.58.108.187:443
2019-09-04 21:31:1704d78fe3a88eadd5135266d3f814dcdan/a82.146.57.135:443
2019-09-04 20:58:12cb98485abc882951ce648e200a629450n/a89.108.64.177:443
2019-09-04 17:46:42c6443beb41009ba799330387f1188bcaVirustotal results 18 / 70 (25.71%) 89.108.64.177:443
2019-09-03 07:18:31dd40682354bda7f2a9d406446f7d0a76Virustotal results 26 / 69 (37.68%) KPOTStealer185.173.178.175:443
2019-08-29 01:24:282a04f64831e33f41c6143328e1c09736n/a62.109.17.122:443
2019-08-25 13:37:43444ff140bf4abbdffa54cc35e3a7f92dn/a185.41.161.200:443
2019-08-22 21:40:29e174e1332ec649f0d59e04197bdaf980n/a185.41.161.200:443
2019-08-22 09:36:26e69eefd9e4b15312de8c460903dbb69cn/a85.143.216.250:443
2019-08-22 06:04:2235e6f2303ff190ea71875c9d6e7a45c1n/a185.41.161.200:443
2019-08-21 05:35:27b77d978252710c38b2664ecd35d12e3en/a193.124.117.45:443

# of entries: 44 (max: 100)