SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint eac948ef2aeaa042c7e1311e3f36751be33aafed.

Database Entry


SHA1 Fingerprint:eac948ef2aeaa042c7e1311e3f36751be33aafed
Certificate Common Name (CN):AsyncRAT Server
Issuer Distinguished Name (DN):AsyncRAT Server
TLS Version:TLSv1' NOTBEFOR
First seen:2020-05-16 18:28:33 UTC
Last seen:2020-10-04 14:11:08 UTC
Status:Blacklisted
Listing reason:AsyncRAT C&C
Listing date:2020-05-17 06:24:37
Malware samples:22
Botnet C&Cs:5

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-10-04 14:11:086754f10af6ecb656d75b2ef3d27a0e04n/aArkeiStealer79.134.225.40:6970
2020-09-19 19:47:43adba935c663db2d4c2a53f01434f1e11n/aArkeiStealer194.5.98.95:6970
2020-08-31 11:36:54aa2ccc64b34017295aa8560cd11a34bcn/aArkeiStealer194.5.98.95:6970
2020-08-31 11:33:41a0317698b6bdfe8c37a1fb9f6bf66f5cn/aRaccoonStealer194.5.98.95:6970
2020-08-13 21:49:08dcc31d378b8ed77678df127fefca1537n/aAsyncRAT194.5.98.95:6970
2020-07-23 16:28:592a3b3da0fbdfbcc9fafcce4708954170n/aRaccoonStealer194.5.98.95:6970
2020-07-23 16:24:1243b05715e9d53741bb186c8e8e95565en/a194.5.98.95:6970
2020-07-17 05:20:29143d0f36308fd6d510f611f37b9f0cb8n/aRaccoonStealer194.5.98.95:6970
2020-07-09 16:43:05014fa0207c2dbcfdb77c4c9d9a2087c6Virustotal results 27 / 72 (37.50%) AsyncRAT194.5.97.49:6970
2020-06-12 16:43:258905784eeae824b0863573d94f2f20den/aNetWire79.134.225.49:6970
2020-06-09 23:55:42ffc15fb688429221379039224a9e6ac9n/aAsyncRAT79.134.225.49:6970
2020-06-08 15:23:160b935eda2584e8ecb8cd77d94ddd0f2aVirustotal results 28 / 70 (40.00%) RaccoonStealer79.134.225.49:6970
2020-06-06 19:25:24505696b0c6115b2dc8a33c40e857926en/aNetWire79.134.225.49:6970
2020-06-06 19:22:55b72cf2c6f41c5f53c7a781122b2e3850n/aAsyncRAT79.134.225.49:6970
2020-05-28 16:06:364290cd8f15986d17c100bb6b507dd5b0Virustotal results 8 / 70 (11.43%) AsyncRAT91.193.75.172:6970
2020-05-28 16:04:56e958679a3702ffe000a5d27e4a043bben/aGuLoader91.193.75.172:6970
2020-05-28 14:15:34e3778e3fcbdbd7f589f1022678973b58Virustotal results 28 / 73 (38.36%) RaccoonStealer91.193.75.172:6970
2020-05-28 14:15:11eb207432c27529003780f23a43e3b1d1Virustotal results 24 / 73 (32.88%) AsyncRAT91.193.75.172:6970
2020-05-26 15:48:193c59ce6c1cef9dbc4808d9c10e90f83dn/aAsyncRAT91.193.75.172:6970
2020-05-23 08:25:41e57b0e9ff4153c56d411828d4769c383n/aNetWire91.193.75.172:6970
2020-05-20 20:52:59576a8ac3ce98c9f7217b19b0563cd7b4Virustotal results 31 / 73 (42.47%) RaccoonStealer91.193.75.172:6970
2020-05-16 18:28:33f6cc55b338b4a95a00f1e16967eadc3dn/aAsyncRAT91.193.75.172:6970

# of entries: 22 (max: 100)