SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 80e43883e708f0aa0b32c7f264dd58ca01fe7a75.

Database Entry


SHA1 Fingerprint:80e43883e708f0aa0b32c7f264dd58ca01fe7a75
Certificate Common Name (CN):ftp.khabeir.com
Issuer Distinguished Name (DN):E7
TLS Version:TLS 1.2
First seen:2025-10-22 07:29:02 UTC
Last seen:2025-10-22 12:01:32 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2025-10-22 12:47:28
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-10-22 12:01:32f6115669efdb288619c8b93b18bb5914n/a138.199.203.93:443
2025-10-22 11:01:186d453034430a853a6b0c1aea2431949an/a138.199.203.93:443
2025-10-22 09:17:16bbe6e4eb1d0ebd588e1b49b90506a669n/a138.199.203.93:443
2025-10-22 09:15:29226b5643811072a8e2848d0eeb424268n/a138.199.203.93:443
2025-10-22 07:29:03f95cc09aa80a1da368cd95d26b56d9a2n/a138.199.203.93:443

# of entries: 5 (max: 100)