SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 7ee0d03c2dd96572905a4d86bc0a6dac25c7377d.

Database Entry


SHA1 Fingerprint:7ee0d03c2dd96572905a4d86bc0a6dac25c7377d
Certificate Common Name (CN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:TLS 1.2
First seen:2020-07-30 16:31:13 UTC
Last seen:2020-08-10 23:17:16 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2020-07-31 09:31:22
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-08-10 23:17:16e6a972d911c6db1f0d0e1422e5abb88cVirustotal results 37 / 71 (52.11%) IcedID 206.189.164.25:443
2020-08-10 23:17:16e6a972d911c6db1f0d0e1422e5abb88cVirustotal results 37 / 71 (52.11%) IcedID 206.189.164.25:443
2020-08-04 22:42:43a6da79440b11464c18680ed6ba2693d0Virustotal results 39 / 72 (54.17%) IcedID 206.189.164.25:443
2020-08-04 22:42:43a6da79440b11464c18680ed6ba2693d0Virustotal results 39 / 72 (54.17%) IcedID 206.189.164.25:443
2020-08-03 19:27:2811d1c5af46c7d442e910e1bc4ffa0415n/aIcedID 206.189.164.25:443
2020-08-03 19:27:2811d1c5af46c7d442e910e1bc4ffa0415n/aIcedID 206.189.164.25:443
2020-08-02 14:55:06b1ae79b57217acd1f2db94986f974f81Virustotal results 35 / 68 (51.47%) IcedID 206.189.164.25:443
2020-08-02 14:55:06b1ae79b57217acd1f2db94986f974f81Virustotal results 35 / 68 (51.47%) IcedID 206.189.164.25:443
2020-07-30 16:31:131d3db9ce00f77ac0f937b5674ef2a78cn/aIcedID 206.189.164.25:443
2020-07-30 16:31:131d3db9ce00f77ac0f937b5674ef2a78cn/aIcedID 206.189.164.25:443

# of entries: 10 (max: 100)