SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 352c39c3b80f00f77b49a0d3f916b7a0a6e856f8.
Database Entry
SHA1 Fingerprint: | 352c39c3b80f00f77b49a0d3f916b7a0a6e856f8 |
---|---|
Certificate Common Name (CN): | benondbll.kr |
Issuer Distinguished Name (DN): | benondbll.kr |
TLS Version: | SSLv3 |
First seen: | 2016-01-29 00:41:16 UTC |
Last seen: | 2016-01-29 06:32:10 UTC |
Status: | Blacklisted |
Listing reason: | Dridex C&C |
Listing date: | 2016-01-29 07:25:27 |
Malware samples: | 2 |
Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2016-01-29 06:32:10 | 4e8e3acbdcc1f6f128d44940effe1ef7 | 4/54 (7.41%) | Dridex | 198.50.234.210:343 |
2016-01-29 06:32:10 | 4e8e3acbdcc1f6f128d44940effe1ef7 | 4/54 (7.41%) | Dridex | 198.50.234.210:343 |
2016-01-29 00:41:16 | 1dd8a138c72258a5a4026c395090533f | 2/54 (3.70%) | Dridex | 198.50.234.210:343 |
2016-01-29 00:41:16 | 1dd8a138c72258a5a4026c395090533f | 2/54 (3.70%) | Dridex | 198.50.234.210:343 |
# of entries: 4 (max: 100)