SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint cf59bc1848f3fcbef9e218560acc7668346ccca9.

Database Entry


SHA1 Fingerprint:cf59bc1848f3fcbef9e218560acc7668346ccca9
Certificate Common Name (CN):DcRat
Issuer Distinguished Name (DN):DcRat Server, OU=qwqdanchun, O=DcRat By qwqdanchun, L=SH, C=CN
TLS Version:TLSv1
First seen:2022-07-27 16:58:25 UTC
Last seen:never
Status:Blacklisted
Listing reason:DCRat C&C
Listing date:2022-07-27 20:44:22
Malware samples:1
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2022-07-27 16:58:25033e24f75513450128f833238b9365cbVirustotal results 35 / 71 (49.30%) XFilesStealer165.22.226.149:8008

# of entries: 1 (max: 100)