SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 94b9ce3b6ccce50e1dbc59cccfad870d816b0605.

Database Entry


SHA1 Fingerprint:94b9ce3b6ccce50e1dbc59cccfad870d816b0605
Certificate Common Name (CN):activitytop.xyz
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-10-18 20:08:32 UTC
Last seen:2025-10-20 11:59:07 UTC
Status:Blacklisted
Listing reason:OffLoader C&C
Listing date:2025-10-20 14:23:50
Malware samples:9
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-10-20 11:59:070a404da6afea3327fbd63203641f125cn/a104.21.22.47:443
2025-10-20 06:01:4113c7f857d8f87bf0da7aff7acbc8e02cn/a104.21.22.47:443
2025-10-19 02:37:12cf4bbfe6622764b90ccb3a18fe2244cdn/a104.21.22.47:443
2025-10-19 01:43:31b040c80baa3e8f740280f3770f7fd9b9n/a104.21.22.47:443
2025-10-19 00:56:53821ee41c0f5da467bafb088c195bf12dn/a104.21.22.47:443
2025-10-19 00:12:4462ecee7f5824de707e81fb16c1a2a194n/a104.21.22.47:443
2025-10-19 00:05:495b67894c570c6376710e24a941099fa2n/a172.67.202.238:443
2025-10-18 22:05:071333620f2f940210ca54837aa61c80d6n/a104.21.22.47:443
2025-10-18 20:08:320afa2dfa1a7cf5ccf0f80f5daaebc462n/a172.67.202.238:443

# of entries: 9 (max: 100)