SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint cca341099c0f355ac03a0f7d5b694365e2c25432.

Database Entry


SHA1 Fingerprint:cca341099c0f355ac03a0f7d5b694365e2c25432
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLS 1.2
First seen:2025-05-13 15:34:13 UTC
Last seen:2025-10-28 15:14:51 UTC
Status:Blacklisted
Listing reason:Rhadamanthys C&C
Listing date:2025-10-29 07:00:46
Malware samples:9
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-10-28 15:14:51381606d3d6ae15b7579ade3b55af97c9n/a31.172.80.212:443
2025-10-21 09:02:499fbabac5ff9efb75eb71acb10dc9dc40n/a31.172.80.212:443
2025-10-12 06:18:554eb9582c15196613fcc95d9ea526a2b8n/a31.172.80.212:443
2025-07-14 15:05:084127dbfce2fd2993b611e143f19fc0fdn/a31.172.80.212:7001
2025-07-07 00:45:012c634973d70835dfeddfe6f468d7a3e3n/a31.172.80.212:7001
2025-07-05 00:11:54144eb1d13e27f7f104deecd02b18fb5en/a31.172.80.212:7001
2025-05-23 08:08:21d754df62c3fb4abb8e0c62e4a3aedf21n/a31.172.80.212:7001
2025-05-13 15:59:105776787ee7d8273abc69677b51a06ffen/a31.172.80.212:7001
2025-05-13 15:34:13cedc4d43c686b17f5498639722861b0dn/a31.172.80.212:7001

# of entries: 9 (max: 100)