SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b150ffebf1660a19a01da7d17c9fa37267a395c5.

Database Entry


SHA1 Fingerprint:b150ffebf1660a19a01da7d17c9fa37267a395c5
Certificate Common Name (CN):plantsstove.info
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-07-17 09:31:39 UTC
Last seen:2025-07-22 02:55:59 UTC
Status:Blacklisted
Listing reason:OffLoader C&C
Listing date:2025-07-17 14:56:30
Malware samples:10
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-07-22 02:55:5962a1111d4d0d3790e88df323a8d30fbbn/a172.67.168.10:443
2025-07-22 02:55:346268992d1c7650980d9b57e2c6c07006n/a104.21.58.61:443
2025-07-22 01:28:535574a9f26b50db2b10c209aaf4157380n/a172.67.168.10:443
2025-07-22 00:44:354ed9978237491bd531fe5ab00533270en/a172.67.168.10:443
2025-07-20 14:27:46efd4aeed8b7d30eca68d458498922dc0n/a104.21.58.61:443
2025-07-19 04:30:137156ba1869a7b5a3912c223d6346e4dcn/a172.67.168.10:443
2025-07-18 06:36:4886c0261b2abb85b6244223ee0dbc124bn/a104.21.58.61:443
2025-07-17 16:22:4718333c5ae26688214e8e5d0fb8c59b22n/a104.21.58.61:443
2025-07-17 11:36:4189087920cb57d09b374a7f4790a9b82bn/a172.67.168.10:443
2025-07-17 09:31:3971e74283a29288d494eadb97e2b4a5e5n/a104.21.58.61:443

# of entries: 10 (max: 100)