SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b57092f7efbb48a12187e7a456f1b012d207184f.

Database Entry


SHA1 Fingerprint:b57092f7efbb48a12187e7a456f1b012d207184f
Certificate Common Name (CN):C=US, ST=Denial, L=Springfield, O=Dis
Issuer Distinguished Name (DN):C=US, ST=Denial, L=Springfield, O=Dis
TLS Version:TLS 1.2
First seen:2016-04-13 00:07:18 UTC
Last seen:2016-04-15 23:14:53 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2016-04-13 11:01:07
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-04-15 23:14:531ac0bc779cd53f6aca96991974199e09Virustotal results 29/57 (50.88%) TorrentLocker 37.220.3.132:443
2016-04-15 23:14:531ac0bc779cd53f6aca96991974199e09Virustotal results 29/57 (50.88%) TorrentLocker 37.220.3.132:443
2016-04-15 12:12:031db42d129df99399386dcb68d7185e87Virustotal results 1/57 (1.75%) TorrentLocker 37.220.3.132:443
2016-04-15 12:12:031db42d129df99399386dcb68d7185e87Virustotal results 1/57 (1.75%) TorrentLocker 37.220.3.132:443
2016-04-13 09:04:47d5079977db63c043b0c960ee6acf1304n/aTorrentLocker 37.220.3.132:443
2016-04-13 09:04:47d5079977db63c043b0c960ee6acf1304n/aTorrentLocker 37.220.3.132:443
2016-04-13 00:07:18d924ab23969a5e0dc192a921da3e11f7n/aTorrentLocker 37.220.3.132:443
2016-04-13 00:07:18d924ab23969a5e0dc192a921da3e11f7n/aTorrentLocker 37.220.3.132:443

# of entries: 8 (max: 100)