SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint c54c9f727f72c5549c6e6ad5b6536ae5c13eebe1.

Database Entry


SHA1 Fingerprint:c54c9f727f72c5549c6e6ad5b6536ae5c13eebe1
Certificate Common Name (CN):erpoweredent.at
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLS 1.2
First seen:2020-06-09 20:25:59 UTC
Last seen:2020-06-10 12:14:49 UTC
Status:Blacklisted
Listing reason:ZLoader C&C
Listing date:2020-06-10 05:57:56
Malware samples:7
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-06-10 12:14:498099f8e352a4bbbba5eb229a702f461dn/aZLoader 8.209.96.17:443
2020-06-10 12:14:498099f8e352a4bbbba5eb229a702f461dn/aZLoader 8.209.96.17:443
2020-06-10 10:19:41a32df735c0c2547267d6c0dc602c5a9fn/aZLoader 8.209.96.17:443
2020-06-10 10:19:41a32df735c0c2547267d6c0dc602c5a9fn/aZLoader 8.209.96.17:443
2020-06-10 09:03:38bfaee86bbdfe1c441d2e82df881d4323n/aZLoader 8.209.96.17:443
2020-06-10 09:03:38bfaee86bbdfe1c441d2e82df881d4323n/aZLoader 8.209.96.17:443
2020-06-09 23:23:200cca2c0a08451c0a576e14b1b48b82ccn/aZLoader 8.209.99.58:443
2020-06-09 23:23:200cca2c0a08451c0a576e14b1b48b82ccn/aZLoader 8.209.99.58:443
2020-06-09 21:48:019f2b0660c41b04b780aa280a469c160an/aZLoader 8.209.99.58:443
2020-06-09 21:48:019f2b0660c41b04b780aa280a469c160an/aZLoader 8.209.99.58:443
2020-06-09 21:43:51b36a0543b28f4ad61d0f64b729b2511bn/aZLoader 8.209.99.58:443
2020-06-09 21:43:51b36a0543b28f4ad61d0f64b729b2511bn/aZLoader 8.209.99.58:443
2020-06-09 20:25:59bec8d5556449122973036b56d60c9e93n/aZLoader 8.209.99.58:443
2020-06-09 20:25:59bec8d5556449122973036b56d60c9e93n/aZLoader 8.209.99.58:443

# of entries: 14 (max: 100)