SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint dbf322887ff4ae75f6bb51f9294a5071999a412a.

Database Entry


SHA1 Fingerprint:dbf322887ff4ae75f6bb51f9294a5071999a412a
Certificate Common Name (CN):AsyncRAT Server CA
Issuer Distinguished Name (DN):AsyncRAT Server CA
TLS Version:TLSv1' NOTBEFOR
First seen:2019-06-27 11:30:23 UTC
Last seen:2019-09-05 13:33:32 UTC
Status:Blacklisted
Listing reason:AsyncRAT C&C
Listing date:2019-06-27 14:09:32
Malware samples:5
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-09-05 13:33:32d49c108789e55a7c9ff7b05237170055Virustotal results 34/67 (50.75%) 79.134.225.115:4404
2019-09-05 13:33:32d49c108789e55a7c9ff7b05237170055Virustotal results 34/67 (50.75%) 79.134.225.115:4404
2019-07-12 23:38:137d05ff313cd519a25c7c173ed5861f6cVirustotal results 17/65 (26.15%) AZORult 185.247.228.69:6606
2019-07-12 23:38:137d05ff313cd519a25c7c173ed5861f6cVirustotal results 17/65 (26.15%) AZORult 185.247.228.69:6606
2019-06-28 00:34:30acccbca59b53bd9ea9c9a438d662805bVirustotal results 21/68 (30.88%) AsyncRAT185.247.228.69:7707
2019-06-28 00:34:30acccbca59b53bd9ea9c9a438d662805bVirustotal results 21/68 (30.88%) AsyncRAT185.247.228.69:7707
2019-06-27 17:55:091cae0bb3c60fbd87fcbb278b724363e2Virustotal results 26/68 (38.24%) Andromeda185.247.228.69:7707
2019-06-27 17:55:091cae0bb3c60fbd87fcbb278b724363e2Virustotal results 26/68 (38.24%) Andromeda185.247.228.69:7707
2019-06-27 11:30:2338ec0f947721307180a871b50755eb82Virustotal results 25/72 (34.72%) AsyncRAT185.247.228.69:7707
2019-06-27 11:30:2338ec0f947721307180a871b50755eb82Virustotal results 25/72 (34.72%) AsyncRAT185.247.228.69:7707

# of entries: 10 (max: 100)