SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 1513e1070a6353408ccdf550f8cfb92829e2ce38.

Database Entry


SHA1 Fingerprint:1513e1070a6353408ccdf550f8cfb92829e2ce38
Certificate Common Name (CN):C=XX, L=Default City, O=Default Company Ltd
Issuer Distinguished Name (DN):C=XX, L=Default City, O=Default Company Ltd
TLS Version:TLS 1.2
First seen:2015-12-23 07:22:11 UTC
Last seen:2016-04-04 17:24:00 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2015-12-23 07:52:06
Malware samples:6
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-04-04 17:24:009647c828a925c14625bba74efe98b166Virustotal results 7/57 (12.28%) FindPOS193.218.145.50:443
2016-03-23 23:20:48c8d99e4e9b43ee28384b4f7c6c862550Virustotal results 38/57 (66.67%) 193.218.145.50:443
2016-03-18 17:11:23f3bdd42f905b04bfb7bf5a9005611268Virustotal results 10/57 (17.54%) 193.218.145.50:443
2016-02-01 09:00:159aa90f181fdf2a08ff3a13d4081f17bfVirustotal results 9/54 (16.67%) 193.218.145.50:443
2016-01-17 02:10:389642f5d90f884f5d20f947946300b7c3Virustotal results 19/54 (35.19%) FindPOS193.218.145.50:443
2015-12-23 07:22:11133e5b7898814c3593b04513d479d2cfVirustotal results 2/54 (3.70%) Vawtrak 193.218.145.50:443

# of entries: 6 (max: 100)