SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 99d9534224017db5bd28709ae3d06f1f89fc0e48.

Database Entry


SHA1 Fingerprint:99d9534224017db5bd28709ae3d06f1f89fc0e48
Certificate Common Name (CN):forenzik.kz
Issuer Distinguished Name (DN):forenzik.kz
TLS Version:TLS 1.2' NOTBEF
First seen:2021-03-19 14:38:40 UTC
Last seen:2021-03-20 08:40:12 UTC
Status:Blacklisted
Listing reason:BazarCall C&C
Listing date:2021-03-19 15:14:44
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-03-20 08:40:12900bcb73268ea52cd6ea935e2b250453Virustotal results 5 / 70 (7.14%) BazarCall54.218.15.82:443
2021-03-20 08:40:12900bcb73268ea52cd6ea935e2b250453Virustotal results 5 / 70 (7.14%) BazarCall54.218.15.82:443
2021-03-20 08:08:5191ee2afefdf066eae3aead061a8075edVirustotal results 7 / 68 (10.29%) BazarCall54.218.15.82:443
2021-03-20 08:08:5191ee2afefdf066eae3aead061a8075edVirustotal results 7 / 68 (10.29%) BazarCall54.218.15.82:443
2021-03-19 15:09:02b76a380da2c32e1c16844b2575f61f5en/aBazarCall54.218.15.82:443
2021-03-19 15:09:02b76a380da2c32e1c16844b2575f61f5en/aBazarCall54.218.15.82:443
2021-03-19 14:38:40f40a624200d5fff17b80fc22fad4a3ecn/aBazarCall54.218.15.82:443
2021-03-19 14:38:40f40a624200d5fff17b80fc22fad4a3ecn/aBazarCall54.218.15.82:443

# of entries: 8 (max: 100)