SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint ca2b303ee7383e1dd7125d3a42b93ed386eeab4a.

Database Entry


SHA1 Fingerprint:ca2b303ee7383e1dd7125d3a42b93ed386eeab4a
Certificate Common Name (CN):x-notification.icu
Issuer Distinguished Name (DN):R3
TLS Version:TLS 1.2
First seen:2021-06-03 17:13:47 UTC
Last seen:2021-06-04 06:42:08 UTC
Status:Blacklisted
Listing reason:Malware C&C
Listing date:2021-06-03 18:49:37
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-06-04 06:42:08b66a47940ae6240a80ecef2a642ff96fVirustotal results 40 / 70 (57.14%) Smoke Loader 95.211.26.199:443
2021-06-04 06:42:08b66a47940ae6240a80ecef2a642ff96fVirustotal results 40 / 70 (57.14%) Smoke Loader 95.211.26.199:443
2021-06-03 17:13:471fecb6eb98e8ee72bb5f006dd79c6f2fVirustotal results 27 / 70 (38.57%) RaccoonStealer95.211.26.199:443
2021-06-03 17:13:471fecb6eb98e8ee72bb5f006dd79c6f2fVirustotal results 27 / 70 (38.57%) RaccoonStealer95.211.26.199:443

# of entries: 4 (max: 100)