SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 231aba69dc9ef4b0c61c9fc03eef37f6e78d8b07.

Database Entry


SHA1 Fingerprint:231aba69dc9ef4b0c61c9fc03eef37f6e78d8b07
Certificate Common Name (CN):mensthedhurent.mo
Issuer Distinguished Name (DN):mensthedhurent.mo
TLS Version:SSLv3
First seen:2015-07-16 16:02:26 UTC
Last seen:2015-07-17 18:42:56 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-07-17 06:58:44
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-07-17 18:42:565856fe73055107f1b64fa2542a26138eVirustotal results 4/55 (7.27%) Dridex 151.248.123.100:743
2015-07-17 18:42:565856fe73055107f1b64fa2542a26138eVirustotal results 4/55 (7.27%) Dridex 151.248.123.100:743
2015-07-16 23:08:234a243f61f591ca616ebaa4fe4df9507fVirustotal results 5/55 (9.09%) Dridex 151.248.123.100:743
2015-07-16 23:08:234a243f61f591ca616ebaa4fe4df9507fVirustotal results 5/55 (9.09%) Dridex 151.248.123.100:743
2015-07-16 16:02:26f1e38091a89ccbd21eed99ed9dae388aVirustotal results 5/53 (9.43%) Dridex 151.248.123.100:743
2015-07-16 16:02:26f1e38091a89ccbd21eed99ed9dae388aVirustotal results 5/53 (9.43%) Dridex 151.248.123.100:743

# of entries: 6 (max: 100)