SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b47fd3a262d30f4f26cf6ed769233fae1b1264d5.

Database Entry


SHA1 Fingerprint:b47fd3a262d30f4f26cf6ed769233fae1b1264d5
Certificate Common Name (CN):185.196.9.252
Issuer Distinguished Name (DN):185.196.9.252
TLS Version:TLS 1.2
First seen:2025-12-10 10:22:13 UTC
Last seen:2025-12-10 19:21:33 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2025-12-11 06:34:04
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-12-10 19:21:3309e49fe9b33c35f13a7740f35a063de0n/a185.196.9.252:443
2025-12-10 17:07:17933e4e0357da0967cd5747c02d0fea54n/a185.196.9.252:443
2025-12-10 10:22:13e920e37fca6fef23048b776818d7463en/a185.196.9.252:443

# of entries: 3 (max: 100)