SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint c0b06ecee5d1acb1a7f7b07f9ea7503c9ea5f4af.

Database Entry


SHA1 Fingerprint:c0b06ecee5d1acb1a7f7b07f9ea7503c9ea5f4af
Certificate Common Name (CN):showtits4.me
Issuer Distinguished Name (DN):showtits4.me
TLS Version:TLSv1
First seen:2015-05-18 16:39:45 UTC
Last seen:2015-05-27 20:48:56 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-05-18 16:48:51
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-05-27 20:48:563407e3f1d1ed9617e12e85b7ddb65057Virustotal results 3/57 (5.26%) Dridex 5.63.154.228:5443
2015-05-27 20:48:563407e3f1d1ed9617e12e85b7ddb65057Virustotal results 3/57 (5.26%) Dridex 5.63.154.228:5443
2015-05-23 01:02:267693a5983f399c9e991a95e7315881d9Virustotal results 3/57 (5.26%) 5.63.154.228:5443
2015-05-23 01:02:267693a5983f399c9e991a95e7315881d9Virustotal results 3/57 (5.26%) 5.63.154.228:5443
2015-05-18 16:39:45af15ba558c07f8036612692122992aadVirustotal results 4/57 (7.02%) Dridex 5.63.154.228:5443
2015-05-18 16:39:45af15ba558c07f8036612692122992aadVirustotal results 4/57 (7.02%) Dridex 5.63.154.228:5443

# of entries: 6 (max: 100)