SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 9b23d7e9965ead257cda9b8ad51a8a4deede18eb.

Database Entry


SHA1 Fingerprint:9b23d7e9965ead257cda9b8ad51a8a4deede18eb
Certificate Common Name (CN):myspecialdot.com
Issuer Distinguished Name (DN):WE1
TLS Version:TLSv1
First seen:2025-02-19 13:39:08 UTC
Last seen:2025-03-02 04:57:16 UTC
Status:Blacklisted
Listing reason:LummaStealer C&C
Listing date:2025-03-02 12:08:51
Malware samples:14
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-03-02 04:57:1678d7c37e1c46f454b76eb816e09072bfn/a172.67.136.89:443
2025-03-01 22:06:385b00e3114d80f529ddf20fec00793315n/a172.67.136.89:443
2025-03-01 08:22:52c4a0c12b2a91e43cc8617c963b7935c7n/a104.21.86.196:443
2025-02-28 22:02:428e57739b0ddda0475c66480adfa605b6n/a172.67.136.89:443
2025-02-28 09:04:30f6aa5fcddd34b5f057f9f69786f3710an/a104.21.86.196:443
2025-02-28 05:08:03c286b6188600117135df008c014ebaf2n/a104.21.86.196:443
2025-02-28 04:40:44bb5a19146467793b6a071f9fe29c69b1n/a172.67.136.89:443
2025-02-28 00:03:2833b3f0e73a96d996dc0260ad8bc310a2n/a104.21.86.196:443
2025-02-26 10:52:13d103bea5048d634a7dbf57ce3a113aa7n/a104.21.86.196:443
2025-02-24 01:35:475ea4ce823caaae9a38fda72323f5c82an/a104.21.86.196:443
2025-02-23 13:34:301eb93a06febdaa1687a4ce7b10d88f8bn/a104.21.86.196:443
2025-02-22 00:42:388862e9e3f3d5ef050dd05ba9f6e98fc7n/a104.21.86.196:443
2025-02-21 21:01:5960c1eec996304bb53a3ed2e537c42decn/a104.21.86.196:443
2025-02-19 13:39:0862533bbbbad79dc3a6d0cd980e93b351n/a172.67.136.89:443

# of entries: 14 (max: 100)