SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 9fb326529bb9dc40ab387999bbc7750595a89e9f.

Database Entry


SHA1 Fingerprint:9fb326529bb9dc40ab387999bbc7750595a89e9f
Certificate Common Name (CN):plantainklj.run
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-04-07 15:39:27 UTC
Last seen:never
Status:Blacklisted
Listing reason:LummaStealer C&C
Listing date:2025-04-07 18:27:03
Malware samples:1
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-04-07 15:39:2739f8d0ce7296a25a45cf4475c823e8ban/a104.21.16.1:443

# of entries: 1 (max: 100)