SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b781c52d5b3a566dd0659181ff3d14848c0445be.

Database Entry


SHA1 Fingerprint:b781c52d5b3a566dd0659181ff3d14848c0445be
Certificate Common Name (CN):main.info
Issuer Distinguished Name (DN):main.info
TLS Version:TLS 1.2
First seen:2018-11-08 22:13:37 UTC
Last seen:2018-12-03 11:29:53 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2018-11-12 15:08:19
Malware samples:113
Botnet C&Cs:4

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-12-03 11:29:536959f0435d32fe8d251691dc64134746Virustotal results 37/69 (53.62%) IcedID 185.65.202.12:443
2018-12-03 11:29:536959f0435d32fe8d251691dc64134746Virustotal results 37/69 (53.62%) IcedID 185.65.202.12:443
2018-12-03 10:16:05ad2a226c5a47a262a7b3fe765ec9dcaaVirustotal results 31/70 (44.29%) IcedID 185.65.202.12:443
2018-12-03 10:16:05ad2a226c5a47a262a7b3fe765ec9dcaaVirustotal results 31/70 (44.29%) IcedID 185.65.202.12:443
2018-12-03 08:47:121e0c2fa15b461bd39adf2f4aadc83891Virustotal results 24/69 (34.78%) IcedID 185.65.202.12:443
2018-12-03 08:47:121e0c2fa15b461bd39adf2f4aadc83891Virustotal results 24/69 (34.78%) IcedID 185.65.202.12:443
2018-12-03 07:08:584ef56707a8efb7f538f85fa79eaf6c27Virustotal results 23/69 (33.33%) IcedID 185.65.202.12:443
2018-12-03 07:08:584ef56707a8efb7f538f85fa79eaf6c27Virustotal results 23/69 (33.33%) IcedID 185.65.202.12:443
2018-12-03 06:00:57291b95d7e0e0407f9cbdf00d4726f029Virustotal results 23/70 (32.86%) IcedID 185.65.202.12:443
2018-12-03 06:00:57291b95d7e0e0407f9cbdf00d4726f029Virustotal results 23/70 (32.86%) IcedID 185.65.202.12:443
2018-12-03 01:28:235937238d45c8f6b26f5ea47139608726Virustotal results 32/70 (45.71%) IcedID 185.65.202.12:443
2018-12-03 01:28:235937238d45c8f6b26f5ea47139608726Virustotal results 32/70 (45.71%) IcedID 185.65.202.12:443
2018-12-02 18:23:23e8748edd9b844bb3f72241a2abbeba06Virustotal results 25/70 (35.71%) IcedID 185.65.202.12:443
2018-12-02 18:23:23e8748edd9b844bb3f72241a2abbeba06Virustotal results 25/70 (35.71%) IcedID 185.65.202.12:443
2018-12-02 15:57:01e1d6368f8133d5bc8df490beb8e39c3cVirustotal results 17/68 (25.00%) IcedID 185.65.202.12:443
2018-12-02 15:57:01e1d6368f8133d5bc8df490beb8e39c3cVirustotal results 17/68 (25.00%) IcedID 185.65.202.12:443
2018-12-02 15:42:32a6c7780a938cef21fca1395a1e834923Virustotal results 17/68 (25.00%) IcedID 185.65.202.12:443
2018-12-02 15:42:32a6c7780a938cef21fca1395a1e834923Virustotal results 17/68 (25.00%) IcedID 185.65.202.12:443
2018-12-02 15:31:01064cff5894fcd359af437695d3bbfd26Virustotal results 18/69 (26.09%) IcedID 185.65.202.12:443
2018-12-02 15:31:01064cff5894fcd359af437695d3bbfd26Virustotal results 18/69 (26.09%) IcedID 185.65.202.12:443
2018-12-02 15:22:458c6263b3b245974607232fbd51e32c67Virustotal results 21/69 (30.43%) IcedID 185.65.202.12:443
2018-12-02 15:22:458c6263b3b245974607232fbd51e32c67Virustotal results 21/69 (30.43%) IcedID 185.65.202.12:443
2018-12-02 11:50:469bec8924a9a5a23536a7263ecfe2b99fVirustotal results 25/70 (35.71%) IcedID 185.65.202.12:443
2018-12-02 11:50:469bec8924a9a5a23536a7263ecfe2b99fVirustotal results 25/70 (35.71%) IcedID 185.65.202.12:443
2018-12-02 09:51:12f054a48941a9b15fedb659ae38d6736aVirustotal results 22/70 (31.43%) IcedID 185.65.202.12:443
2018-12-02 09:51:12f054a48941a9b15fedb659ae38d6736aVirustotal results 22/70 (31.43%) IcedID 185.65.202.12:443
2018-12-02 09:34:31f59c95aa7c4167732f9066762466507bVirustotal results 25/70 (35.71%) IcedID 185.65.202.12:443
2018-12-02 09:34:31f59c95aa7c4167732f9066762466507bVirustotal results 25/70 (35.71%) IcedID 185.65.202.12:443
2018-12-02 01:23:07da4f74e068eaa7e72b4b1e7ae9fac646Virustotal results 13/69 (18.84%) IcedID 185.65.202.12:443
2018-12-02 01:23:07da4f74e068eaa7e72b4b1e7ae9fac646Virustotal results 13/69 (18.84%) IcedID 185.65.202.12:443
2018-12-02 00:30:5517e5bae2cc5979fb6b50e2d7da4efb13Virustotal results 13/70 (18.57%) IcedID 185.65.202.12:443
2018-12-02 00:30:5517e5bae2cc5979fb6b50e2d7da4efb13Virustotal results 13/70 (18.57%) IcedID 185.65.202.12:443
2018-12-01 12:50:04753652a2453a24bf8d40d3afefa20e20Virustotal results 15/69 (21.74%) IcedID 185.65.202.12:443
2018-12-01 12:50:04753652a2453a24bf8d40d3afefa20e20Virustotal results 15/69 (21.74%) IcedID 185.65.202.12:443
2018-12-01 12:44:42baa6284347bf3b923ba9ba85283fb09fVirustotal results 29/69 (42.03%) IcedID 185.65.202.12:443
2018-12-01 12:44:42baa6284347bf3b923ba9ba85283fb09fVirustotal results 29/69 (42.03%) IcedID 185.65.202.12:443
2018-12-01 08:19:118adf96d57cd9b64e7b0dd04bcba22313Virustotal results 16/68 (23.53%) IcedID 185.65.202.12:443
2018-12-01 08:19:118adf96d57cd9b64e7b0dd04bcba22313Virustotal results 16/68 (23.53%) IcedID 185.65.202.12:443
2018-12-01 02:20:1331d366b4208c9891cef90d04aa1218b4Virustotal results 29/69 (42.03%) IcedID 185.65.202.12:443
2018-12-01 02:20:1331d366b4208c9891cef90d04aa1218b4Virustotal results 29/69 (42.03%) IcedID 185.65.202.12:443
2018-11-29 20:20:2151216d609daa098b10c8c74ae67fd51bVirustotal results 12/69 (17.39%) Heodo185.65.202.12:443
2018-11-29 20:20:2151216d609daa098b10c8c74ae67fd51bVirustotal results 12/69 (17.39%) Heodo185.65.202.12:443
2018-11-28 20:35:18cfc0594c860a37a032caede2d61d27d1Virustotal results 41/70 (58.57%) Heodo185.65.202.12:443
2018-11-28 20:35:18cfc0594c860a37a032caede2d61d27d1Virustotal results 41/70 (58.57%) Heodo185.65.202.12:443
2018-11-26 10:42:3116a18b3d306378ae437adcba98082c7dVirustotal results 33/69 (47.83%) IcedID 77.222.63.66:443
2018-11-26 10:42:3116a18b3d306378ae437adcba98082c7dVirustotal results 33/69 (47.83%) IcedID 77.222.63.66:443
2018-11-26 10:37:559342db1f9d821aed286c8955b3dc2645Virustotal results 31/68 (45.59%) IcedID 77.222.63.66:443
2018-11-26 10:37:559342db1f9d821aed286c8955b3dc2645Virustotal results 31/68 (45.59%) IcedID 77.222.63.66:443
2018-11-26 07:54:389b3b61883b15afb2005ada2211651e21Virustotal results 27/68 (39.71%) IcedID 77.222.63.66:443
2018-11-26 07:54:389b3b61883b15afb2005ada2211651e21Virustotal results 27/68 (39.71%) IcedID 77.222.63.66:443
2018-11-26 07:30:168403e5ff7f19791d6a3a14a243b8163bVirustotal results 27/70 (38.57%) IcedID 77.222.63.66:443
2018-11-26 07:30:168403e5ff7f19791d6a3a14a243b8163bVirustotal results 27/70 (38.57%) IcedID 77.222.63.66:443
2018-11-26 07:24:17c087473a4e08ded190441bb03b896fedVirustotal results 27/69 (39.13%) IcedID 77.222.63.66:443
2018-11-26 07:24:17c087473a4e08ded190441bb03b896fedVirustotal results 27/69 (39.13%) IcedID 77.222.63.66:443
2018-11-26 07:04:039e0a4911dceb3dbe5cfc182adf508927Virustotal results 27/70 (38.57%) IcedID 77.222.63.66:443
2018-11-26 07:04:039e0a4911dceb3dbe5cfc182adf508927Virustotal results 27/70 (38.57%) IcedID 77.222.63.66:443
2018-11-26 06:39:38d85547b3c81bf8dad2c4d5fca0190968Virustotal results 33/69 (47.83%) IcedID 77.222.63.66:443
2018-11-26 06:39:38d85547b3c81bf8dad2c4d5fca0190968Virustotal results 33/69 (47.83%) IcedID 77.222.63.66:443
2018-11-26 06:30:226f6ea54a451acb67fc4e33b0c7664de5Virustotal results 33/70 (47.14%) IcedID 77.222.63.66:443
2018-11-26 06:30:226f6ea54a451acb67fc4e33b0c7664de5Virustotal results 33/70 (47.14%) IcedID 77.222.63.66:443
2018-11-25 16:41:1501564460c7b06d57ab45fe581440ccbbVirustotal results 7/69 (10.14%) IcedID 77.222.63.66:443
2018-11-25 16:41:1501564460c7b06d57ab45fe581440ccbbVirustotal results 7/69 (10.14%) IcedID 77.222.63.66:443
2018-11-25 16:18:43d682968a380bd629ff2e96c281093955Virustotal results 27/69 (39.13%) IcedID 77.222.63.66:443
2018-11-25 16:18:43d682968a380bd629ff2e96c281093955Virustotal results 27/69 (39.13%) IcedID 77.222.63.66:443
2018-11-25 15:14:21fc92e238d8a26607390232bdd92459ecVirustotal results 28/70 (40.00%) IcedID 77.222.63.66:443
2018-11-25 15:14:21fc92e238d8a26607390232bdd92459ecVirustotal results 28/70 (40.00%) IcedID 77.222.63.66:443
2018-11-25 14:18:2911893264da8de8ded47a303f4bbbf260Virustotal results 33/69 (47.83%) IcedID 77.222.63.66:443
2018-11-25 14:18:2911893264da8de8ded47a303f4bbbf260Virustotal results 33/69 (47.83%) IcedID 77.222.63.66:443
2018-11-25 13:37:429debb3357656664ffa610a935c1a1285Virustotal results 19/69 (27.54%) IcedID 77.222.63.66:443
2018-11-25 13:37:429debb3357656664ffa610a935c1a1285Virustotal results 19/69 (27.54%) IcedID 77.222.63.66:443
2018-11-25 13:31:51586dc1f76ba90fb6b3e7d5ddc836b3ceVirustotal results 32/68 (47.06%) IcedID 77.222.63.66:443
2018-11-25 13:31:51586dc1f76ba90fb6b3e7d5ddc836b3ceVirustotal results 32/68 (47.06%) IcedID 77.222.63.66:443
2018-11-25 13:09:249b1982ddfdc7f9aabc354a0c7f3ea92eVirustotal results 34/69 (49.28%) IcedID 77.222.63.66:443
2018-11-25 13:09:249b1982ddfdc7f9aabc354a0c7f3ea92eVirustotal results 34/69 (49.28%) IcedID 77.222.63.66:443
2018-11-25 12:59:26bdea7fc872aa9e3d7cbaafb9a23e7303Virustotal results 21/70 (30.00%) IcedID 77.222.63.66:443
2018-11-25 12:59:26bdea7fc872aa9e3d7cbaafb9a23e7303Virustotal results 21/70 (30.00%) IcedID 77.222.63.66:443
2018-11-25 12:59:2241e365d6af781a2ad2fd6ac7540dd6cfVirustotal results 28/69 (40.58%) IcedID 77.222.63.66:443
2018-11-25 12:59:2241e365d6af781a2ad2fd6ac7540dd6cfVirustotal results 28/69 (40.58%) IcedID 77.222.63.66:443
2018-11-25 12:43:374707e4de5031c151eb2ffe9fab349956Virustotal results 28/69 (40.58%) IcedID 77.222.63.66:443
2018-11-25 12:43:374707e4de5031c151eb2ffe9fab349956Virustotal results 28/69 (40.58%) IcedID 77.222.63.66:443
2018-11-25 12:40:42bf4992e2d5da8b6bbedec9c1800754a7Virustotal results 31/69 (44.93%) IcedID 77.222.63.66:443
2018-11-25 12:40:42bf4992e2d5da8b6bbedec9c1800754a7Virustotal results 31/69 (44.93%) IcedID 77.222.63.66:443
2018-11-25 12:37:194c692615e9e21164b3ca95881e818857Virustotal results 25/69 (36.23%) IcedID 77.222.63.66:443
2018-11-25 12:37:194c692615e9e21164b3ca95881e818857Virustotal results 25/69 (36.23%) IcedID 77.222.63.66:443
2018-11-25 07:54:27907771e0160f06926e5f2af13375a7daVirustotal results 25/67 (37.31%) IcedID 77.222.63.66:443
2018-11-25 07:54:27907771e0160f06926e5f2af13375a7daVirustotal results 25/67 (37.31%) IcedID 77.222.63.66:443
2018-11-25 07:43:279963ae811eb009b4287757961c1a4087Virustotal results 27/69 (39.13%) IcedID 77.222.63.66:443
2018-11-25 07:43:279963ae811eb009b4287757961c1a4087Virustotal results 27/69 (39.13%) IcedID 77.222.63.66:443
2018-11-25 01:40:46f5620e09e57bfe4ba749c5b1d45c3f98Virustotal results 28/70 (40.00%) IcedID 77.222.63.66:443
2018-11-25 01:40:46f5620e09e57bfe4ba749c5b1d45c3f98Virustotal results 28/70 (40.00%) IcedID 77.222.63.66:443
2018-11-25 00:39:038fd7ef9a7b68766a85ae74726472d18fVirustotal results 28/69 (40.58%) IcedID 77.222.63.66:443
2018-11-25 00:39:038fd7ef9a7b68766a85ae74726472d18fVirustotal results 28/69 (40.58%) IcedID 77.222.63.66:443
2018-11-24 16:45:39421b0ca93704befd17fd8426c4392bccVirustotal results 29/70 (41.43%) IcedID 77.222.63.66:443
2018-11-24 16:45:39421b0ca93704befd17fd8426c4392bccVirustotal results 29/70 (41.43%) IcedID 77.222.63.66:443
2018-11-24 14:29:339628fdfb50de01faf8f9269bf8cfec67Virustotal results 29/70 (41.43%) IcedID 77.222.63.66:443
2018-11-24 14:29:339628fdfb50de01faf8f9269bf8cfec67Virustotal results 29/70 (41.43%) IcedID 77.222.63.66:443
2018-11-24 10:29:4116a87ffe9ebcd9bc4fdf325d3b9ce5c6Virustotal results 22/70 (31.43%) IcedID 77.222.63.66:443
2018-11-24 10:29:4116a87ffe9ebcd9bc4fdf325d3b9ce5c6Virustotal results 22/70 (31.43%) IcedID 77.222.63.66:443
2018-11-23 10:42:5278a81683ad60e966295d6dc6c7ab4636Virustotal results 26/68 (38.24%) IcedID 77.222.63.66:443
2018-11-23 10:42:5278a81683ad60e966295d6dc6c7ab4636Virustotal results 26/68 (38.24%) IcedID 77.222.63.66:443

# of entries: 100 (max: 100)