SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 8c031b7fae1891dc3f77c6f61e0b864db4788933.

Database Entry


SHA1 Fingerprint:8c031b7fae1891dc3f77c6f61e0b864db4788933
Certificate Common Name (CN):itho.eu.org
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2026-02-08 11:11:03 UTC
Last seen:2026-02-08 23:29:50 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2026-02-09 06:56:06
Malware samples:8
Botnet C&Cs:4

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2026-02-08 23:29:50b4be513c6c563e196763f53d84ff1216n/a188.114.97.12:443
2026-02-08 22:12:0736df83c97cf0fa6983538ed0fff813d4n/a188.114.96.0:443
2026-02-08 19:31:20babdc8cb9850d63c9ff3becb8c13bbb7n/a104.21.30.134:443
2026-02-08 16:08:186b62dc42c83e0288d2a6f8298b864105n/a188.114.96.0:443
2026-02-08 13:34:49e5266c05033166347033d26e14616380n/a188.114.96.12:443
2026-02-08 12:57:093f9245ea78e8cba662dc817bb61f8ee8n/a188.114.97.12:443
2026-02-08 12:43:00ce18e63dec6f13b98f941e12ff63b179n/a188.114.97.12:443
2026-02-08 11:11:03c5b821534fa4570c9ca4be7286af0eb7n/a188.114.96.0:443

# of entries: 8 (max: 100)