SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 19dbb556067486a789847851a793efba00d4c4b8.

Database Entry


SHA1 Fingerprint:19dbb556067486a789847851a793efba00d4c4b8
Certificate Common Name (CN):serangredrt.Deaneereoso.nagoya
Issuer Distinguished Name (DN):serangredrt.Deaneereoso.nagoya
TLS Version:TLSv1
First seen:2017-03-26 11:59:10 UTC
Last seen:2017-04-01 00:37:13 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2017-03-27 07:25:39
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2017-04-01 00:37:13afcdd8c611cacb71286598e5574901d9Virustotal results 33/61 (54.10%) Dridex 185.145.253.60:443
2017-04-01 00:37:13afcdd8c611cacb71286598e5574901d9Virustotal results 33/61 (54.10%) Dridex 185.145.253.60:443
2017-03-26 11:59:107bab29da4776ac8043c86f274d4c4f26Virustotal results 19/61 (31.15%) Dridex 185.145.253.60:443
2017-03-26 11:59:107bab29da4776ac8043c86f274d4c4f26Virustotal results 19/61 (31.15%) Dridex 185.145.253.60:443

# of entries: 4 (max: 100)