SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint ef4ad4a02e2662a5608837856a1f6d9b02937a14.

Database Entry


SHA1 Fingerprint:ef4ad4a02e2662a5608837856a1f6d9b02937a14
Certificate Common Name (CN):wreckermodule.life
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2025-06-02 17:48:15 UTC
Last seen:2025-06-24 11:15:58 UTC
Status:Blacklisted
Listing reason:ACRStealer C&C
Listing date:2025-06-03 18:07:18
Malware samples:15
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2025-06-24 11:15:58f1d7a23da572a31e8a3e478028bb5451n/a172.67.188.3:443
2025-06-19 21:16:43a322ed7192180b9a588e368df95ee30dn/a172.67.188.3:443
2025-06-19 13:13:197aec2fdc9343e33cfb58212faaa9d51cn/a172.67.188.3:443
2025-06-19 13:04:465976dbd9f7018906c57f785428ca89cdn/a172.67.188.3:443
2025-06-18 11:44:165e2e738d09db72090203d0a72a89cdc9n/a172.67.188.3:443
2025-06-18 07:57:38395e3a87ea47806a3bf6123bee86ee3en/a172.67.188.3:443
2025-06-16 15:32:446cf51cd8a668f2b74d759b608b3ea8c0n/a172.67.188.3:443
2025-06-16 03:15:01248faa2393653779e971b8d54abd3b4cn/a172.67.188.3:443
2025-06-13 06:35:0324107fa30d58e11b887b1180444ec464n/a172.67.188.3:443
2025-06-10 06:32:46f876e62ab6f2e10bfbbb11773f844fa8n/a172.67.188.3:443
2025-06-09 07:55:58b8a3470dbe15b618566df37a88f87162n/a172.67.188.3:443
2025-06-08 17:56:098c213065067f23c0079349cfc9d8d627n/a172.67.188.3:443
2025-06-08 01:03:25020e5e0edd11a0ae9f0c0663443a81e7n/a172.67.188.3:443
2025-06-03 17:21:31aa64fc1129b24cde6a7ba24ff78cf05dn/a172.67.188.3:443
2025-06-03 17:21:31aa64fc1129b24cde6a7ba24ff78cf05dn/a172.67.188.3:443
2025-06-02 17:48:15cfb5580b6b121e01750828c4be7b840en/a172.67.188.3:443
2025-06-02 17:48:15cfb5580b6b121e01750828c4be7b840en/a172.67.188.3:443

# of entries: 17 (max: 100)