SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d5a89204e30ef9232514c57949625b7f989f6270.

Database Entry


SHA1 Fingerprint:d5a89204e30ef9232514c57949625b7f989f6270
Certificate Common Name (CN):kievholod.kiev.ua
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-12-20 18:03:51 UTC
Last seen:2025-12-23 15:59:29 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2025-12-23 16:46:54
Malware samples:31
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-12-23 15:59:29ab552ba7aa8415743bdecc028c3c7005n/a104.21.24.148:443
2025-12-23 15:38:36fab2a648c0b0aa4e4a75d1de7bc49ed5n/a172.67.219.66:443
2025-12-23 13:13:3312069145279e96ea3181a3b4ba6081e1n/a172.67.219.66:443
2025-12-23 12:37:201e0c3a0961189eff6fdb06975d911f7cn/a104.21.24.148:443
2025-12-23 12:18:11db409cb20e82dcf9c386f8e896632760n/a172.67.219.66:443
2025-12-23 01:59:5020572bf5ce687a3062272cf88c645312n/a104.21.24.148:443
2025-12-22 20:16:40955f024946cc5b9dae8c9379efd0e57an/a172.67.219.66:443
2025-12-22 20:06:397e75558f3b54d3c1afb9b733343804a0n/a104.21.24.148:443
2025-12-22 17:52:229026d365f677dc078721406a780b14f0n/a104.21.24.148:443
2025-12-22 12:05:28152e4aa5616818d2591d6f11aa362d70n/a172.67.219.66:443
2025-12-22 12:05:06fe704fce0fb391fd63f229e91c065f0en/a172.67.219.66:443
2025-12-22 12:03:1179250bc54860fbd33dd96225ff9bd729n/a104.21.24.148:443
2025-12-22 08:17:17fd4b940c64ff839dee3d86404eb8cf70n/a104.21.24.148:443
2025-12-22 02:17:353ab58d54d30cd44e9013a95573d0d528n/a172.67.219.66:443
2025-12-21 21:40:4411f3e7460d0e6b9c6140a05e9e972576n/a104.21.24.148:443
2025-12-21 20:49:460e3a51d2d524c093891e30e72d509b94n/a172.67.219.66:443
2025-12-21 20:34:316a9af204f495a741436ad7926deb2e34n/a104.21.24.148:443
2025-12-21 18:39:0103a9f76d58322f657039ceb1350cb667n/a104.21.24.148:443
2025-12-21 17:59:180013bd73336e3d5cd7baca7408ade197n/a172.67.219.66:443
2025-12-21 16:09:47445a385a0e41de0e0180e36bfb8567fdn/a172.67.219.66:443
2025-12-21 02:26:401e70b764f914bf7b51c495fee460df43n/a104.21.24.148:443
2025-12-20 23:59:595d4652b36c753d15e56864b3cbfac44en/a104.21.24.148:443
2025-12-20 22:22:302054222a5bdc88afe34c8415dc15a5f6n/a172.67.219.66:443
2025-12-20 21:53:3132205bbb766ef35c0545c4f3ab4edeb1n/a104.21.24.148:443
2025-12-20 21:51:06045354bdeda29efaa7f44c25ca820dd0n/a104.21.24.148:443
2025-12-20 21:11:45104487e6537e1ef6f2595e6f507bd07en/a104.21.24.148:443
2025-12-20 20:30:26cfe9739a37bf3baac5aa66284a0dfdc6n/a172.67.219.66:443
2025-12-20 19:46:285a6b774bc9dbaf3758dffe16e1e79054n/a172.67.219.66:443
2025-12-20 18:33:4311d9d5295d075980b63430b5257b7ac0n/a104.21.24.148:443
2025-12-20 18:26:326e94a4fbee23f2a47327a48193d6c0abn/a172.67.219.66:443
2025-12-20 18:03:51e226f9ac6b062ca0af4b2b75316de0f2n/a104.21.24.148:443

# of entries: 31 (max: 100)