SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d7fe3ce952096229b632ce018417a7aa44f3fab8.

Database Entry


SHA1 Fingerprint:d7fe3ce952096229b632ce018417a7aa44f3fab8
Certificate Common Name (CN):go-steal
Issuer Distinguished Name (DN):go-steal
TLS Version:TLS 1.2
First seen:2026-05-18 19:42:20 UTC
Last seen:2026-05-24 11:26:48 UTC
Status:Blacklisted
Listing reason:GoStealer C&C
Listing date:2026-05-24 12:32:54
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2026-05-24 11:26:48853ee51d1c2eb71bdbe920c25c68aba9n/a95.217.49.196:443
2026-05-22 15:50:27ea8e7f94e9cdeffcad19d753b2193afbn/a95.217.49.196:443
2026-05-22 08:43:464c45057a18c7206beddaf0247ef68611n/a95.217.49.196:443
2026-05-18 19:42:20b4ef00cd345371ca3393145efa464376n/a95.217.49.196:443

# of entries: 4 (max: 100)