SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 93f158ffbbedced5ac14cfddf3e008158ab711b3.

Database Entry


SHA1 Fingerprint:93f158ffbbedced5ac14cfddf3e008158ab711b3
Certificate Common Name (CN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:TLS 1.2
First seen:2020-06-25 01:06:37 UTC
Last seen:2020-06-30 11:55:39 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2020-06-30 05:57:06
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-06-30 11:55:39c189bc25b8c8dc843fa51de09421e1eaVirustotal results 23 / 72 (31.94%) IcedID 167.71.227.19:443
2020-06-30 05:55:15b0890fe2b6c6883436dc4c8895ed2852Virustotal results 23 / 74 (31.08%) IcedID 167.71.227.19:443
2020-06-27 12:14:448c15755581a8ae49aaa6563a753ab01bVirustotal results 25 / 72 (34.72%) 167.71.227.19:443
2020-06-25 22:11:171723ab3a87d539916d8d2f072d6e7e0eVirustotal results 22 / 72 (30.56%) 167.71.227.19:443
2020-06-25 01:06:37365fa3b372c14920ab22eaefdfb70e00Virustotal results 25 / 72 (34.72%) 167.71.227.19:443

# of entries: 5 (max: 100)