SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 94eea408b8c901de2367e36bf291ba947b368ee5.

Database Entry


SHA1 Fingerprint:94eea408b8c901de2367e36bf291ba947b368ee5
Certificate Common Name (CN):paptogel.net
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2026-07-10 18:02:00 UTC
Last seen:2026-07-13 07:54:50 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2026-07-13 09:57:11
Malware samples:14
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2026-07-13 07:54:501e8233a42b40e26850f1f6fafeda19ecn/a172.67.195.151:443
2026-07-13 05:43:194ce1212f34ad43e65831227d8fdaaf7en/a104.21.41.228:443
2026-07-13 01:08:0317d7d79eac2f8501e4c40dc2f73142d5n/a172.67.195.151:443
2026-07-13 00:17:40f8b8e83a20949a56efd370b238ff2599n/a172.67.195.151:443
2026-07-12 16:56:121a28a76881ed49198001278d4b75e6f7n/a104.21.41.228:443
2026-07-12 08:37:30b1f3dc8b3626c69b189a10773fceee28n/a172.67.195.151:443
2026-07-12 08:05:34786ab18430a9c543fbf9457e42a1401en/a104.21.41.228:443
2026-07-12 05:33:05b7f881bc16d21ebd124b55c02f644bf3n/a172.67.195.151:443
2026-07-11 15:33:1476d5d113d22a71b98aaf501783f34995n/a104.21.41.228:443
2026-07-11 06:42:16dd5c6c802b4d64262865f9202793b600n/a104.21.41.228:443
2026-07-11 04:03:51988f31002a91d3415e2b893175585cban/a172.67.195.151:443
2026-07-11 00:05:27270193694f668c8717d9d0dfebd04312n/a172.67.195.151:443
2026-07-10 23:56:59433d134b90303d5d690d76e47a70a427n/a104.21.41.228:443
2026-07-10 18:02:0082c702a0029990197ecb1b7a60bef9ccn/a104.21.41.228:443

# of entries: 14 (max: 100)