SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 71ea04fcee9fbad2cc626af14e88833048b82209.

Database Entry


SHA1 Fingerprint:71ea04fcee9fbad2cc626af14e88833048b82209
Certificate Common Name (CN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:TLS 1.2
First seen:2020-07-09 08:26:24 UTC
Last seen:2020-07-12 10:39:21 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2020-07-12 11:28:33
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-07-12 10:39:21a82b5a76f8c66313449fe7e732f54580Virustotal results 38 / 72 (52.78%) IcedID 149.255.35.92:443
2020-07-12 10:39:21a82b5a76f8c66313449fe7e732f54580Virustotal results 38 / 72 (52.78%) IcedID 149.255.35.92:443
2020-07-09 08:26:24c3e618f50d2bb8074d414e24197a6120Virustotal results 32 / 73 (43.84%) IcedID 149.255.35.92:443
2020-07-09 08:26:24c3e618f50d2bb8074d414e24197a6120Virustotal results 32 / 73 (43.84%) IcedID 149.255.35.92:443

# of entries: 4 (max: 100)