SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 9d495a9c646e3962ac5445e9b4da6832164dc4ee.

Database Entry


SHA1 Fingerprint:9d495a9c646e3962ac5445e9b4da6832164dc4ee
Certificate Common Name (CN):ticketreceipt.cfd
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2026-07-19 00:23:50 UTC
Last seen:2026-08-27 17:32:38 UTC
Status:Blacklisted
Listing reason:OffLoader C&C
Listing date:2026-08-28 08:06:54
Malware samples:7
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2026-08-27 17:32:38048ee53cdfbdc8b6d1d9973165ee29b7n/a172.67.140.98:443
2026-07-19 20:05:2220878387623b5a7b48f9ebb662347f1fn/a172.67.140.98:443
2026-07-19 17:23:160443484fb14ee43bc5954cfa50668c71n/a172.67.140.98:443
2026-07-19 17:11:31132d535728ea6fa0fef9b95aac16eeabn/a104.21.40.243:443
2026-07-19 04:40:42c7c859fc32a9b6260cbc1d4c25d1e9e9n/a172.67.140.98:443
2026-07-19 04:03:45554b3f8b9bf2e77788e86f60682b91d6n/a104.21.40.243:443
2026-07-19 00:23:5010937831da8db3bae4b7aa7ae08fb67fn/a104.21.40.243:443

# of entries: 7 (max: 100)