SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 06d9941cb627b71f0d749e5d9db8618c4f772327.

Database Entry


SHA1 Fingerprint:06d9941cb627b71f0d749e5d9db8618c4f772327
Certificate Common Name (CN):asurtsem.ga
Issuer Distinguished Name (DN):asurtsem.ga
TLS Version:SSLv3
First seen:2016-02-22 13:26:57 UTC
Last seen:2016-02-23 12:02:28 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2016-02-23 13:14:43
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-02-23 12:02:28362531738b06b6a59441a8cb64adb524Virustotal results 20/56 (35.71%) Dridex 192.100.170.12:843
2016-02-23 12:02:28362531738b06b6a59441a8cb64adb524Virustotal results 20/56 (35.71%) Dridex 192.100.170.12:843
2016-02-22 13:26:572d1c546c73ad772d9478ab62c3f6f895Virustotal results 34/56 (60.71%) 192.100.170.12:843
2016-02-22 13:26:572d1c546c73ad772d9478ab62c3f6f895Virustotal results 34/56 (60.71%) 192.100.170.12:843

# of entries: 4 (max: 100)