SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint fdf058437190606cbd7f9638165cb4c8ae5824ea.

Database Entry


SHA1 Fingerprint:fdf058437190606cbd7f9638165cb4c8ae5824ea
Certificate Common Name (CN):AsyncRAT Server
Issuer Distinguished Name (DN):AsyncRAT Server
TLS Version:TLSv1' NOTBEFOR
First seen:2020-07-04 10:10:26 UTC
Last seen:2021-06-12 01:09:12 UTC
Status:Blacklisted
Listing reason:AsyncRAT C&C
Listing date:2020-07-04 15:33:15
Malware samples:3
Botnet C&Cs:3

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-06-12 01:09:12a5cccc878ff1656e157dc1d2bc4d3b56Virustotal results 34 / 68 (50.00%) AsyncRAT45.138.157.202:25565
2021-06-12 01:09:12a5cccc878ff1656e157dc1d2bc4d3b56Virustotal results 34 / 68 (50.00%) AsyncRAT45.138.157.202:25565
2021-05-26 12:42:12e92f13a1fc90512b19a32c01a5bfe477Virustotal results 52 / 70 (74.29%) OrcusRAT 45.138.157.144:25565
2021-05-26 12:42:12e92f13a1fc90512b19a32c01a5bfe477Virustotal results 52 / 70 (74.29%) OrcusRAT 45.138.157.144:25565
2020-07-04 10:10:26730943653c472ca0c567721e5963386eVirustotal results 44 / 73 (60.27%) AsyncRAT80.85.157.34:7707
2020-07-04 10:10:26730943653c472ca0c567721e5963386eVirustotal results 44 / 73 (60.27%) AsyncRAT80.85.157.34:7707

# of entries: 6 (max: 100)