SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 958b5f154dc1913ecfde2809b062259aa707b9f6.

Database Entry


SHA1 Fingerprint:958b5f154dc1913ecfde2809b062259aa707b9f6
Certificate Common Name (CN):omesidallanan.dd
Issuer Distinguished Name (DN):omesidallanan.dd
TLS Version:SSLv3
First seen:2016-02-02 21:38:37 UTC
Last seen:2016-02-03 10:54:37 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2016-02-03 05:48:33
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-02-03 10:54:37f9ea75f082a66a23ea422d2f9412ee9aVirustotal results 4/53 (7.55%) Dridex 41.38.18.230:443
2016-02-03 10:54:37f9ea75f082a66a23ea422d2f9412ee9aVirustotal results 4/53 (7.55%) Dridex 41.38.18.230:443
2016-02-02 21:38:3786ee4e0664714aab881e25ec6be861e1Virustotal results 5/51 (9.80%) Dridex 41.38.18.230:443
2016-02-02 21:38:3786ee4e0664714aab881e25ec6be861e1Virustotal results 5/51 (9.80%) Dridex 41.38.18.230:443

# of entries: 4 (max: 100)