SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint f7cdabe00750f8afa1ed05a8715d7f19e8af4b60.

Database Entry


SHA1 Fingerprint:f7cdabe00750f8afa1ed05a8715d7f19e8af4b60
Certificate Common Name (CN):munsitex.com.lk
Issuer Distinguished Name (DN):WE1
TLS Version:TLS 1.2
First seen:2026-01-30 12:12:15 UTC
Last seen:2026-01-31 12:25:50 UTC
Status:Blacklisted
Listing reason:Vidar C&C
Listing date:2026-01-31 12:07:21
Malware samples:12
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2026-01-31 12:25:50ff643f984bb67a9933bb43532dee0e63n/a104.21.35.88:443
2026-01-31 10:31:476ead4cb080efd3834e02c14b9714f57cn/a104.21.35.88:443
2026-01-31 05:49:095587312110888f410441820ffe485795n/a104.21.35.88:443
2026-01-31 04:22:488790e91084e6d93cf8c3bfdec2e1feebn/a104.21.35.88:443
2026-01-31 02:48:070c74ab5a147d073d8ab13eaecc8020a4n/a172.67.216.58:443
2026-01-30 23:03:15a59c8fdec483e1270719cf81e32eea19n/a104.21.35.88:443
2026-01-30 20:43:31861746b7bc4169cb4dd9b2656c6bbe11n/a172.67.216.58:443
2026-01-30 19:20:31c3848a6a4ad4d53bd2dbb7174a952888n/a172.67.216.58:443
2026-01-30 17:11:209ec87676d9df31b9060aa212c39fbf4an/a104.21.35.88:443
2026-01-30 15:47:030ede6a082eb0610a8b4d25799aed2960n/a172.67.216.58:443
2026-01-30 13:06:3342f8b37d2038f4b3aa50c78a1088dedan/a104.21.35.88:443
2026-01-30 12:12:15e4ee753e18d7f3c32ae73ba7acb1e4dfn/a172.67.216.58:443

# of entries: 12 (max: 100)