SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 5d1ba6d925dff84b63557c2c7d32d9ff5fa930c9.

Database Entry


SHA1 Fingerprint:5d1ba6d925dff84b63557c2c7d32d9ff5fa930c9
Certificate Common Name (CN):example.net
Issuer Distinguished Name (DN):example.net
TLS Version:TLSv1
First seen:2015-05-15 09:41:30 UTC
Last seen:2015-05-29 15:05:50 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-05-15 10:42:55
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-05-29 15:05:50e8db0fc3677c95259b445308a1f4d5bcVirustotal results 4/57 (7.02%) Dridex 31.24.30.65:443
2015-05-29 15:05:50e8db0fc3677c95259b445308a1f4d5bcVirustotal results 4/57 (7.02%) Dridex 31.24.30.65:443
2015-05-27 20:48:563407e3f1d1ed9617e12e85b7ddb65057Virustotal results 3/57 (5.26%) Dridex 31.24.30.65:443
2015-05-27 20:48:563407e3f1d1ed9617e12e85b7ddb65057Virustotal results 3/57 (5.26%) Dridex 31.24.30.65:443
2015-05-27 17:59:46b34764c0fd123be3f318c481efd5944eVirustotal results 41/57 (71.93%) Dridex 31.24.30.65:443
2015-05-27 17:59:46b34764c0fd123be3f318c481efd5944eVirustotal results 41/57 (71.93%) Dridex 31.24.30.65:443
2015-05-18 16:39:45af15ba558c07f8036612692122992aadVirustotal results 4/57 (7.02%) Dridex 31.24.30.65:443
2015-05-18 16:39:45af15ba558c07f8036612692122992aadVirustotal results 4/57 (7.02%) Dridex 31.24.30.65:443
2015-05-15 09:41:30e4512a13c91bbb837c1d68b60d3b401eVirustotal results 1/57 (1.75%) Dridex 31.24.30.65:443
2015-05-15 09:41:30e4512a13c91bbb837c1d68b60d3b401eVirustotal results 1/57 (1.75%) Dridex 31.24.30.65:443

# of entries: 10 (max: 100)