SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 8808ccbbcf3df310d4a4d8c685209dc1685e3b42.
Database Entry
SHA1 Fingerprint: | 8808ccbbcf3df310d4a4d8c685209dc1685e3b42 |
---|---|
Certificate Common Name (CN): | DcRat |
Issuer Distinguished Name (DN): | Server, OU=qwqdanchun, O=DcRat By qwqdanchun, L=SH, C=CN |
TLS Version: | TLSv1 |
First seen: | 2023-03-07 17:06:27 UTC |
Last seen: | 2023-03-08 15:12:16 UTC |
Status: | Blacklisted |
Listing reason: | DCRat C&C |
Listing date: | 2023-03-08 21:00:15 |
Malware samples: | 4 |
Botnet C&Cs: | 2 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2023-03-08 15:12:16 | 484a30e0bc8b70b00b487a6262e15141 | 55 / 70 (78.57%) | 209.25.142.180:10569 | |
2023-03-08 13:24:39 | 14b52c5c980540f1e7d0ddc69d2278fa | 52 / 70 (74.29%) | DCRat | 209.25.141.180:10569 |
2023-03-08 04:18:44 | a7d340567c72f3526a12d87054c6c639 | 51 / 70 (72.86%) | DCRat | 209.25.141.180:10569 |
2023-03-07 17:06:27 | 238479038714742cf08f6e5f8455f630 | 60 / 66 (90.91%) | DCRat | 209.25.142.180:10569 |
# of entries: 4 (max: 100)