SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint fa586b92b3b786ff687184d1f08f7c2cd8f6beea.

Database Entry


SHA1 Fingerprint:fa586b92b3b786ff687184d1f08f7c2cd8f6beea
Certificate Common Name (CN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:TLS 1.2
First seen:2020-07-23 17:49:01 UTC
Last seen:2020-07-29 06:02:37 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2020-07-29 11:55:50
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-07-29 06:02:370f2872021e66b2ad50297e9061ce849aVirustotal results 27 / 72 (37.50%) IcedID 194.5.249.122:443
2020-07-29 06:02:370f2872021e66b2ad50297e9061ce849aVirustotal results 27 / 72 (37.50%) IcedID 194.5.249.122:443
2020-07-23 17:49:0177a1fa05f39ec1d2ae7cc459f0939668Virustotal results 12 / 72 (16.67%) IcedID 194.5.249.122:443
2020-07-23 17:49:0177a1fa05f39ec1d2ae7cc459f0939668Virustotal results 12 / 72 (16.67%) IcedID 194.5.249.122:443

# of entries: 4 (max: 100)