SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint c1160eb972662be97e30ba2c41ff3c0f81752c59.

Database Entry


SHA1 Fingerprint:c1160eb972662be97e30ba2c41ff3c0f81752c59
Certificate Common Name (CN):BitRAT
Issuer Distinguished Name (DN):BitRAT
TLS Version:TLS 1.2' NOTBEF
First seen:2021-01-07 01:27:10 UTC
Last seen:2021-01-29 19:37:30 UTC
Status:Blacklisted
Listing reason:BitRAT C&C
Listing date:2021-01-07 14:09:30
Malware samples:5
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-01-29 19:37:303d7e98447bb74768ab909be7dfbc294cn/aBitRAT23.227.202.13:1234
2021-01-29 19:37:303d7e98447bb74768ab909be7dfbc294cn/aBitRAT23.227.202.13:1234
2021-01-29 01:30:104450c48fdfb0c1e1541b3e788b516761n/aBitRAT23.227.202.13:1234
2021-01-29 01:30:104450c48fdfb0c1e1541b3e788b516761n/aBitRAT23.227.202.13:1234
2021-01-26 21:29:32f4f03a511ec1e4f8f2166fbb8b69b560n/aBitRAT23.227.202.13:1234
2021-01-26 21:29:32f4f03a511ec1e4f8f2166fbb8b69b560n/aBitRAT23.227.202.13:1234
2021-01-07 13:13:29b96cc0486ab23b542074954375918d34Virustotal results 21 / 68 (30.88%) BitRAT38.132.99.154:1234
2021-01-07 13:13:29b96cc0486ab23b542074954375918d34Virustotal results 21 / 68 (30.88%) BitRAT38.132.99.154:1234
2021-01-07 01:27:1030d4a80feb5e57014fd0b922dc1d4ba2n/aBitRAT38.132.99.154:1234
2021-01-07 01:27:1030d4a80feb5e57014fd0b922dc1d4ba2n/aBitRAT38.132.99.154:1234

# of entries: 10 (max: 100)