SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint e52c7f68ec015434f421cc0b4e40ec9398165412.

Database Entry


SHA1 Fingerprint:e52c7f68ec015434f421cc0b4e40ec9398165412
Certificate Common Name (CN):C=XX, L=Default City, O=Default Company Ltd
Issuer Distinguished Name (DN):C=XX, L=Default City, O=Default Company Ltd
TLS Version:TLS 1.1
First seen:2018-05-26 15:01:03 UTC
Last seen:2018-05-28 04:59:53 UTC
Status:Blacklisted
Listing reason:PandaZeuS C&C
Listing date:2018-05-29 11:28:56
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-05-28 04:59:5397daf1a13401f0ebb2e467aa454406beVirustotal results 32/66 (48.48%) PandaZeuS 85.143.174.206:443
2018-05-28 04:59:5397daf1a13401f0ebb2e467aa454406beVirustotal results 32/66 (48.48%) PandaZeuS 85.143.174.206:443
2018-05-27 08:27:22b97c12321635e0299efad5083a26929bVirustotal results 20/66 (30.30%) PandaZeuS 85.143.174.206:443
2018-05-27 08:27:22b97c12321635e0299efad5083a26929bVirustotal results 20/66 (30.30%) PandaZeuS 85.143.174.206:443
2018-05-26 15:01:34c3601155f4c54f9f6e65d2073fac219eVirustotal results 32/65 (49.23%) Downloader.Pony85.143.174.206:443
2018-05-26 15:01:34c3601155f4c54f9f6e65d2073fac219eVirustotal results 32/65 (49.23%) Downloader.Pony85.143.174.206:443

# of entries: 6 (max: 100)