SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b6c04695b713e3f6f2428d303dc77bd088caaeb3.

Database Entry


SHA1 Fingerprint:b6c04695b713e3f6f2428d303dc77bd088caaeb3
Certificate Common Name (CN):onesismthin.gr
Issuer Distinguished Name (DN):onesismthin.gr
TLS Version:TLSv1
First seen:2015-11-18 22:34:34 UTC
Last seen:2015-11-19 16:35:01 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-11-19 06:23:28
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-11-19 16:35:01e0d24cac5fb16c737f5f016e54292388Virustotal results 3/54 (5.56%) 182.93.220.146:4438
2015-11-19 16:35:01e0d24cac5fb16c737f5f016e54292388Virustotal results 3/54 (5.56%) 182.93.220.146:4438
2015-11-19 14:49:078e22032e0b5d338ef078f5aaf302fa4cVirustotal results 0/54 (0.00%) Dridex 182.93.220.146:4438
2015-11-19 14:49:078e22032e0b5d338ef078f5aaf302fa4cVirustotal results 0/54 (0.00%) Dridex 182.93.220.146:4438
2015-11-19 07:29:1850fe634afcb20769c1f789bc3e3d13c5Virustotal results 22/53 (41.51%) Dridex 182.93.220.146:4438
2015-11-19 07:29:1850fe634afcb20769c1f789bc3e3d13c5Virustotal results 22/53 (41.51%) Dridex 182.93.220.146:4438
2015-11-18 22:34:3412b8234abc8840387350ce919ab2179cVirustotal results 34/55 (61.82%) Dridex 182.93.220.146:4438
2015-11-18 22:34:3412b8234abc8840387350ce919ab2179cVirustotal results 34/55 (61.82%) Dridex 182.93.220.146:4438

# of entries: 8 (max: 100)