SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint caf13f64b47f523d8d319afa2b55d9d632fe6f13.

Database Entry


SHA1 Fingerprint:caf13f64b47f523d8d319afa2b55d9d632fe6f13
Certificate Common Name (CN):detacher.xyz
Issuer Distinguished Name (DN):R3
TLS Version:TLS 1.2
First seen:2021-07-20 20:51:40 UTC
Last seen:2021-07-31 07:26:34 UTC
Status:Blacklisted
Listing reason:RedLineStealer C&C
Listing date:2021-07-31 06:39:22
Malware samples:9
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-07-31 07:26:347e3d90ed3dd351e22be254f9d917ced4Virustotal results 11 / 69 (15.94%) RedLineStealer185.14.31.245:443
2021-07-31 07:26:347e3d90ed3dd351e22be254f9d917ced4Virustotal results 11 / 69 (15.94%) RedLineStealer185.14.31.245:443
2021-07-31 06:46:225bff83844d2b08ee169f2ad76cd5957bVirustotal results 7 / 69 (10.14%) RedLineStealer185.14.31.245:443
2021-07-31 06:46:225bff83844d2b08ee169f2ad76cd5957bVirustotal results 7 / 69 (10.14%) RedLineStealer185.14.31.245:443
2021-07-30 18:33:271051c66dd445e0d25c5831715c7604dfVirustotal results 39 / 70 (55.71%) RedLineStealer185.14.31.245:443
2021-07-30 18:33:271051c66dd445e0d25c5831715c7604dfVirustotal results 39 / 70 (55.71%) RedLineStealer185.14.31.245:443
2021-07-25 12:42:29bc9ddf77946bf687716401795c94d695Virustotal results 38 / 70 (54.29%) 185.14.31.245:443
2021-07-25 12:42:29bc9ddf77946bf687716401795c94d695Virustotal results 38 / 70 (54.29%) 185.14.31.245:443
2021-07-25 06:24:052867848a14b9564af506812977e67eddVirustotal results 18 / 69 (26.09%) 185.14.31.245:443
2021-07-25 06:24:052867848a14b9564af506812977e67eddVirustotal results 18 / 69 (26.09%) 185.14.31.245:443
2021-07-24 23:21:42951dac8e67786b8e8b7d5e95112b651fVirustotal results 33 / 69 (47.83%) 185.14.31.245:443
2021-07-24 23:21:42951dac8e67786b8e8b7d5e95112b651fVirustotal results 33 / 69 (47.83%) 185.14.31.245:443
2021-07-24 15:18:4848c77e12147dea2c4e23817ef2f0a56fVirustotal results 22 / 68 (32.35%) 185.14.31.245:443
2021-07-24 15:18:4848c77e12147dea2c4e23817ef2f0a56fVirustotal results 22 / 68 (32.35%) 185.14.31.245:443
2021-07-21 02:11:3296a1b2af40343e118e8eab30c9dc5c14n/aArkeiStealer185.14.31.245:443
2021-07-21 02:11:3296a1b2af40343e118e8eab30c9dc5c14n/aArkeiStealer185.14.31.245:443
2021-07-20 20:51:401a62a7ebf208b538db86f5be062dfee8Virustotal results 39 / 69 (56.52%) ArkeiStealer185.14.31.245:443
2021-07-20 20:51:401a62a7ebf208b538db86f5be062dfee8Virustotal results 39 / 69 (56.52%) ArkeiStealer185.14.31.245:443

# of entries: 18 (max: 100)