SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint dbb4e3f0b3932768ccfbbb7384d1c095c7a4f7b1.

Database Entry


SHA1 Fingerprint:dbb4e3f0b3932768ccfbbb7384d1c095c7a4f7b1
Certificate Common Name (CN):forenzik.kz
Issuer Distinguished Name (DN):forenzik.kz
TLS Version:TLS 1.2' NOTBEF
First seen:2021-03-19 14:38:40 UTC
Last seen:2021-03-20 08:40:12 UTC
Status:Blacklisted
Listing reason:BazarCall C&C
Listing date:2021-03-19 15:14:43
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-03-20 08:40:12900bcb73268ea52cd6ea935e2b250453Virustotal results 5 / 70 (7.14%) BazarCall204.236.142.165:443
2021-03-20 08:40:12900bcb73268ea52cd6ea935e2b250453Virustotal results 5 / 70 (7.14%) BazarCall204.236.142.165:443
2021-03-20 08:08:5191ee2afefdf066eae3aead061a8075edVirustotal results 7 / 68 (10.29%) BazarCall204.236.142.165:443
2021-03-20 08:08:5191ee2afefdf066eae3aead061a8075edVirustotal results 7 / 68 (10.29%) BazarCall204.236.142.165:443
2021-03-19 15:09:01b76a380da2c32e1c16844b2575f61f5en/aBazarCall204.236.142.165:443
2021-03-19 15:09:01b76a380da2c32e1c16844b2575f61f5en/aBazarCall204.236.142.165:443
2021-03-19 14:38:40f40a624200d5fff17b80fc22fad4a3ecn/aBazarCall204.236.142.165:443
2021-03-19 14:38:40f40a624200d5fff17b80fc22fad4a3ecn/aBazarCall204.236.142.165:443

# of entries: 8 (max: 100)