SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 7fcd2c5608477d34c2a39e0a743a2052dcde94d1.

Database Entry


SHA1 Fingerprint:7fcd2c5608477d34c2a39e0a743a2052dcde94d1
Certificate Common Name (CN):basey.ru
Issuer Distinguished Name (DN):COMODO RSA Domain Validation Secure Server CA
TLS Version:TLS 1.2
First seen:2016-04-15 18:57:54 UTC
Last seen:2016-05-05 12:33:48 UTC
Status:Blacklisted
Listing reason:ZeuS C&C
Listing date:2016-05-06 08:51:10
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-05-05 12:33:48a662206706807571fadfcafb45acf7bbVirustotal results 25/56 (44.64%) ZeuS 109.68.190.175:443
2016-05-05 12:33:48a662206706807571fadfcafb45acf7bbVirustotal results 25/56 (44.64%) ZeuS 109.68.190.175:443
2016-04-17 03:04:0172103cb9885eb7ee3696c48d8bd52b7bn/a109.68.190.175:443
2016-04-17 03:04:0172103cb9885eb7ee3696c48d8bd52b7bn/a109.68.190.175:443
2016-04-15 21:13:25620efb6639e12acfed86e10060405e87Virustotal results 34/57 (59.65%) ZeuS 109.68.190.175:443
2016-04-15 21:13:25620efb6639e12acfed86e10060405e87Virustotal results 34/57 (59.65%) ZeuS 109.68.190.175:443
2016-04-15 18:57:549269552f88015699c3943084a94edbacVirustotal results 14/57 (24.56%) ZeuS 109.68.190.175:443
2016-04-15 18:57:549269552f88015699c3943084a94edbacVirustotal results 14/57 (24.56%) ZeuS 109.68.190.175:443

# of entries: 8 (max: 100)