SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 135fbc73c60de86782b05078b5bc443a2610e95d.
Database Entry
SHA1 Fingerprint: | 135fbc73c60de86782b05078b5bc443a2610e95d |
---|---|
Certificate Common Name (CN): | ceytbrvffplqokaeznhtcpz.biz |
Issuer Distinguished Name (DN): | ceytbrvffplqokaeznhtcpz.biz |
TLS Version: | TLS 1.2 |
First seen: | 2016-04-05 14:28:11 UTC |
Last seen: | 2016-04-11 03:16:16 UTC |
Status: | Blacklisted |
Listing reason: | Quakbot C&C |
Listing date: | 2016-04-06 10:13:11 |
Malware samples: | 12 |
Botnet C&Cs: | 3 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2016-04-11 03:16:16 | 1995ff1fbeaaa937d65223f83247145a | n/a | Quakbot | 198.144.184.96:443 |
2016-04-11 03:16:16 | 1995ff1fbeaaa937d65223f83247145a | n/a | Quakbot | 198.144.184.96:443 |
2016-04-09 13:04:42 | 389a633aa5958626d84f637b7b2ac71b | 34/57 (59.65%) | Quakbot | 198.144.184.96:443 |
2016-04-09 13:04:42 | 389a633aa5958626d84f637b7b2ac71b | 34/57 (59.65%) | Quakbot | 198.144.184.96:443 |
2016-04-09 11:53:17 | e5ccbcc4ee76c3a298e0221cde30344a | n/a | Quakbot | 198.144.184.96:443 |
2016-04-09 11:53:17 | e5ccbcc4ee76c3a298e0221cde30344a | n/a | Quakbot | 198.144.184.96:443 |
2016-04-09 11:25:19 | ea89aa5b2d83970571eec553ca34ed1a | n/a | Quakbot | 198.144.184.96:443 |
2016-04-09 11:25:19 | ea89aa5b2d83970571eec553ca34ed1a | n/a | Quakbot | 198.144.184.96:443 |
2016-04-09 07:52:04 | 97f91188f282c9a7a0154ce0703e8dc5 | 31/57 (54.39%) | Quakbot | 198.144.184.96:443 |
2016-04-09 07:52:04 | 97f91188f282c9a7a0154ce0703e8dc5 | 31/57 (54.39%) | Quakbot | 198.144.184.96:443 |
2016-04-09 02:30:45 | 22307f09f9eb77bb996f16b388adf30d | n/a | Quakbot | 198.144.184.96:443 |
2016-04-09 02:30:45 | 22307f09f9eb77bb996f16b388adf30d | n/a | Quakbot | 198.144.184.96:443 |
2016-04-08 10:28:05 | bdf43c8cedb2f8d124ff7aff76dd8c4b | 20/57 (35.09%) | Quakbot | 198.144.184.96:443 |
2016-04-08 10:28:05 | bdf43c8cedb2f8d124ff7aff76dd8c4b | 20/57 (35.09%) | Quakbot | 198.144.184.96:443 |
2016-04-08 07:20:26 | 4346646430d264563618648452368c26 | n/a | Quakbot | 198.144.184.96:443 |
2016-04-08 07:20:26 | 4346646430d264563618648452368c26 | n/a | Quakbot | 198.144.184.96:443 |
2016-04-07 06:55:52 | 1f6744ce1df8b781931b703434667222 | n/a | Quakbot | 198.144.184.96:443 |
2016-04-07 06:55:52 | 1f6744ce1df8b781931b703434667222 | n/a | Quakbot | 198.144.184.96:443 |
2016-04-06 08:31:39 | fef27f751255ef1a6c932e98f8a5bbeb | n/a | Quakbot | 191.101.251.23:443 |
2016-04-06 08:31:39 | fef27f751255ef1a6c932e98f8a5bbeb | n/a | Quakbot | 191.101.251.23:443 |
2016-04-06 07:08:57 | 5e2c52b44e79b5d049f05f60121a7048 | n/a | Quakbot | 191.101.251.163:443 |
2016-04-06 07:08:57 | 5e2c52b44e79b5d049f05f60121a7048 | n/a | Quakbot | 191.101.251.163:443 |
2016-04-05 14:28:11 | 939b3e75a19d2b7afda3f92f1e7e2fc5 | n/a | Quakbot | 191.101.251.163:443 |
2016-04-05 14:28:11 | 939b3e75a19d2b7afda3f92f1e7e2fc5 | n/a | Quakbot | 191.101.251.163:443 |
# of entries: 24 (max: 100)