SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b4a821c433704756f7cffe6f31a052460aab270c.

Database Entry


SHA1 Fingerprint:b4a821c433704756f7cffe6f31a052460aab270c
Certificate Common Name (CN):overcovtcg.top
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-05-10 15:41:14 UTC
Last seen:2025-05-16 03:56:13 UTC
Status:Blacklisted
Listing reason:LummaStealer C&C
Listing date:2025-05-16 09:40:21
Malware samples:14
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-05-16 03:56:137488b125e7528fc82fbf4b91128a0e8fn/a172.67.150.184:443
2025-05-16 02:47:42525311468541973179a22c0aaa69333fn/a104.21.40.104:443
2025-05-15 22:18:5403fe1657a5528ff4a8a136bb3e7d563bn/a172.67.150.184:443
2025-05-15 19:53:110218a1f25d584ee50f6d7322b009eea1n/a172.67.150.184:443
2025-05-15 17:22:171d4c7dcb8da6e30bbc4e685a25bc6609n/a172.67.150.184:443
2025-05-15 01:01:52705bb84e054282dad1eb9cab44d1a4fan/a104.21.40.104:443
2025-05-14 15:39:329034bf1aafab74312eae077355b7ecffn/a104.21.40.104:443
2025-05-14 12:04:05e905c4e968de0d1a9bfe3bf7dce221d5n/a104.21.40.104:443
2025-05-14 08:15:48d035d9907144c2242ad5a22a148393a6n/a172.67.150.184:443
2025-05-12 21:31:550b95da2aba36f9c4b2d0169ca846db03n/a104.21.40.104:443
2025-05-12 16:57:218b5c07adc1dfc8a89efaf4ae9ca2ebf7n/a104.21.40.104:443
2025-05-10 23:30:31352f0628ab0002c34be6da78c14aeb99n/a104.21.40.104:443
2025-05-10 21:51:28ef6d76d0087769433215e6b42167f056n/a172.67.150.184:443
2025-05-10 15:41:14362c02fc73d1d1959462f8112eabe2abn/a172.67.150.184:443

# of entries: 14 (max: 100)