SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 6d54a64b57b9fdcffdab43323b1755356a136d42.

Database Entry


SHA1 Fingerprint:6d54a64b57b9fdcffdab43323b1755356a136d42
Certificate Common Name (CN):192.236.176.108, OU=gghhhii, ST=uvvwxxyyyz, O=ddeef, C=uu, L=zaabccdd, Email=jjklm@192.236.176.108
Issuer Distinguished Name (DN):192.236.176.108, OU=gghhhii, ST=uvvwxxyyyz, O=ddeef, C=uu, L=zaabccdd, Email=jjklm@192.236.176.108
TLS Version:TLS 1.2
First seen:2022-04-19 07:31:45 UTC
Last seen:2022-04-27 06:23:26 UTC
Status:Blacklisted
Listing reason:DanaBot C&C
Listing date:2022-04-27 07:26:23
Malware samples:14
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2022-04-27 06:23:26724d979aba7f815b2cf939c64c9d0a50n/aDanaBot192.236.176.108:443
2022-04-26 20:21:04587832d187a43c3866072d5bf321cfbbn/aDanaBot192.236.176.108:443
2022-04-26 15:24:24c8c68bff2acbd56ce5171ea921425a29n/aDanaBot192.236.176.108:443
2022-04-26 11:07:0468ca24a9bf92b8ddcae9ff0ff5ca509cn/a192.236.176.108:443
2022-04-26 08:50:052a92132559505f6635b0a8974070b5d4n/aDanaBot192.236.176.108:443
2022-04-26 05:59:29341c386b7a8aeacb84abd0150ea8baadn/aDanaBot192.236.176.108:443
2022-04-25 20:28:4608c29585f2cbe6e358230af55c2140d8n/aDanaBot192.236.176.108:443
2022-04-25 19:42:01ac7660c3737561ebb9bfa471f0c5f2a0n/aDanaBot192.236.176.108:443
2022-04-25 07:04:11c9ff5738de33e3b6bb7cd01ffa60405bVirustotal results 40 / 66 (60.61%) DanaBot192.236.176.108:443
2022-04-21 07:23:24ae6a68f651c30d7c6c914114fa14aa0bVirustotal results 23 / 69 (33.33%) DanaBot192.236.176.108:443
2022-04-21 02:36:13cb646d4f9ce74813d500e53d0208e31fVirustotal results 43 / 70 (61.43%) 192.236.176.108:443
2022-04-19 15:55:029b114998d0639e860dc1aecc458f8377Virustotal results 23 / 67 (34.33%) DanaBot192.236.176.108:443
2022-04-19 13:46:368fba92e7730c734197c8e5977533df77Virustotal results 24 / 67 (35.82%) DanaBot192.236.176.108:443
2022-04-19 07:31:4565d49d27f00a57695df2bff626b1607bVirustotal results 24 / 69 (34.78%) RedLineStealer192.236.176.108:443

# of entries: 14 (max: 100)