SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d40684b494db2c1c997064d7f50e4d6a47ccc43d.

Database Entry


SHA1 Fingerprint:d40684b494db2c1c997064d7f50e4d6a47ccc43d
Certificate Common Name (CN):telemetry-defender.lol
Issuer Distinguished Name (DN):R12
TLS Version:TLS 1.2
First seen:2025-11-14 17:11:26 UTC
Last seen:2025-11-16 10:08:14 UTC
Status:Blacklisted
Listing reason:Malware C&C
Listing date:2025-11-16 15:14:12
Malware samples:9
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-11-16 10:08:146dac8ea22fcefdb84142c0ffc62ffb18n/a185.100.157.69:443
2025-11-15 20:11:16aec550c3bcf792acd8aa4715fa5c6f0dn/a185.100.157.69:443
2025-11-15 18:31:0877545a5befa1ca0735a0e21edbff653en/a185.100.157.69:443
2025-11-14 21:46:096e020886f88001f48a0b6b25256aab1fn/a185.100.157.69:443
2025-11-14 20:56:153ab9169baea97c90315d862197f7fd82n/a185.100.157.69:443
2025-11-14 20:28:4813476b92dd95ab76731e4a0a9a197bf0n/a185.100.157.69:443
2025-11-14 19:37:52db9674dd888585f295891388987ac86fn/a185.100.157.69:443
2025-11-14 18:48:2518e839edbcd0a74c74b377f46bf6b45en/a185.100.157.69:443
2025-11-14 17:11:263cc15ea595299da5951c5377baa87c5dn/a185.100.157.69:443

# of entries: 9 (max: 100)