SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 99d9534224017db5bd28709ae3d06f1f89fc0e48.
Database Entry
| SHA1 Fingerprint: | 99d9534224017db5bd28709ae3d06f1f89fc0e48 |
|---|---|
| Certificate Common Name (CN): | forenzik.kz |
| Issuer Distinguished Name (DN): | forenzik.kz |
| TLS Version: | TLS 1.2' NOTBEF |
| First seen: | 2021-03-19 14:38:40 UTC |
| Last seen: | 2021-03-20 08:40:12 UTC |
| Status: | Blacklisted |
| Listing reason: | BazarCall C&C |
| Listing date: | 2021-03-19 15:14:44 |
| Malware samples: | 4 |
| Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
| Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
|---|---|---|---|---|
| 2021-03-20 08:40:12 | 900bcb73268ea52cd6ea935e2b250453 | BazarCall | 54.218.15.82:443 | |
| 2021-03-20 08:40:12 | 900bcb73268ea52cd6ea935e2b250453 | BazarCall | 54.218.15.82:443 | |
| 2021-03-20 08:08:51 | 91ee2afefdf066eae3aead061a8075ed | BazarCall | 54.218.15.82:443 | |
| 2021-03-20 08:08:51 | 91ee2afefdf066eae3aead061a8075ed | BazarCall | 54.218.15.82:443 | |
| 2021-03-19 15:09:02 | b76a380da2c32e1c16844b2575f61f5e | n/a | BazarCall | 54.218.15.82:443 |
| 2021-03-19 15:09:02 | b76a380da2c32e1c16844b2575f61f5e | n/a | BazarCall | 54.218.15.82:443 |
| 2021-03-19 14:38:40 | f40a624200d5fff17b80fc22fad4a3ec | n/a | BazarCall | 54.218.15.82:443 |
| 2021-03-19 14:38:40 | f40a624200d5fff17b80fc22fad4a3ec | n/a | BazarCall | 54.218.15.82:443 |
# of entries: 8 (max: 100)