SSL Corporation
What is SSL Corporation?
Operator-name view of SSL.com, a commercial CA based in Houston, Texas. When the certificate's Organization (O=) field shows 'SSL Corporation', the issuing intermediate is one of SSL.com's own subordinates rather than a CN phishunt has a page for. Sells paid DV/OV/EV certificates directly and through resellers, and issues free 90-day DV certificates over ACME, which is the path that shows up on phishing hostnames. Being a paid-first CA does not make its presence a signal on its own.
Suspicious sites — confidence is not always 100%. Use for Threat Hunting or watchlists.
| Last check (UTC) | First seen (UTC) ▾ | URL | Screenshot | Flags | Details |
|---|---|---|---|---|---|
| 2026-08-26 09:30 | 2026-08-13 15:11 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-08-13 12:20 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-08-13 02:32 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-08-12 19:04 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-08-10 20:32 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-08-03 19:19 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-08-02 09:53 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-07-22 23:04 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-07-03 20:23 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-07-01 16:46 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-06-25 05:54 | ![]() |
urlscan | Details | |
| 2026-08-26 09:30 | 2026-06-23 11:52 | ![]() |
urlscan | Details |
Suspicious sites — confidence is not always 100%. Use for Threat Hunting or watchlists.
| URL | Screenshot | Flags | Details |
|---|---|---|---|
| https://071439625396510-na4-d… | ![]() |
urlscan | Details |
| https://penyembah-google.page… | ![]() |
urlscan | Details |
| https://googleservices426.pag… | ![]() |
urlscan | Details |
| https://maen-maen-terus-googl… | ![]() |
urlscan | Details |
| https://ledger-lives-loged-in… | ![]() |
urlscan | Details |
| https://fifaworldcups26.com | ![]() |
urlscan | Details |
| https://googleplrzy.com | ![]() |
urlscan | Details |
| https://ebay-app.com | ![]() |
urlscan | Details |
| https://facebook-dating-group… | ![]() |
urlscan | Details |
| https://netflix6.com | ![]() |
urlscan | Details |
| https://microsoftjk.eu.org | ![]() |
urlscan | Details |
| https://facebook-365.pages.dev | ![]() |
urlscan | Details |
Brands most often impersonated with SSL Corporation
Among the active sites currently using a SSL Corporation certificate, these are the brands attackers are mimicking most:
Frequently asked questions about SSL Corporation
What is SSL Corporation?
SSL Corporation is a publicly trusted intermediate certificate authority operated by SSL Corporation and chained to SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC. It is recognized by all mainstream browsers and operating system trust stores, so the certificate itself is not a phishing indicator - the same intermediate signs millions of legitimate sites. phishunt only flags the specific domains listed below as suspicious; SSL Corporation as a CA is fine.
Is SSL Corporation a legitimate certificate authority?
Yes. SSL Corporation is a publicly trusted intermediate CA operated by SSL Corporation, included in the Microsoft, Apple, Google and Mozilla root trust stores. Every mainstream browser automatically accepts certificates it signs. The intermediate itself is not a phishing signal — what matters is the specific domain. phishunt flags only the suspicious domains listed below; SSL Corporation keeps signing millions of legitimate sites.
Who runs the SSL Corporation certificate authority?
SSL Corporation is operated by SSL Corporation. It is a RSA & ECDSA intermediate that chains up to the SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC root, which SSL Corporation also owns. Anyone can look up the chain in the public Certificate Transparency logs; the same operator publishes a Certificate Policy / Certification Practice Statement (CP/CPS) describing how issuance and revocation work.
What does SSL Corporation mean when my browser shows it as the issuer?
When a browser shows SSL Corporation as the certificate issuer for a site, it means TLS was validated through SSL Corporation's RSA & ECDSA chain ending at SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC. That is normal for tens of millions of legitimate sites that use SSL Corporation's automated DV TLS. The certificate proves the connection is encrypted and that the certificate matches the hostname — it does not prove the site behind it is trustworthy. Always verify the domain name itself.
Why does SSL Corporation show up on phishing sites?
SSL Corporation issues RSA & ECDSA domain-validated certificates automatically and at no cost (or very low cost), which is the exact workflow scammers need to put HTTPS on a throwaway domain. Domain validation only proves that the requester controls the domain name, not that the site behind it is trustworthy. phishunt lists the specific domains currently flagged below — those are the suspicious ones, not SSL Corporation itself.
How do I verify a certificate issued by SSL Corporation?
In a desktop browser, click the padlock in the address bar and open the certificate viewer. Confirm the issuer chain ends at SSL.com Root Certification Authority RSA, SSL.com Root Certification Authority ECC, that the subject matches the domain you expect, and that the notAfter date has not passed. A valid SSL Corporation certificate only proves TLS was negotiated correctly — always verify the domain name itself belongs to the service you intended to visit.
Who can I report a suspicious SSL Corporation certificate to?
Operators accept abuse reports at their public contact addresses. SSL Corporation publishes a revocation and abuse policy on its website. phishunt continuously submits flagged domains to Google Safe Browsing, OpenPhish, PhishTank, urlscan.io and TweetFeed — which is typically the fastest path to getting the certificate revoked.











