SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 352c39c3b80f00f77b49a0d3f916b7a0a6e856f8.

Database Entry


SHA1 Fingerprint:352c39c3b80f00f77b49a0d3f916b7a0a6e856f8
Certificate Common Name (CN):benondbll.kr
Issuer Distinguished Name (DN):benondbll.kr
TLS Version:SSLv3
First seen:2016-01-29 00:41:16 UTC
Last seen:2016-01-29 06:32:10 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2016-01-29 07:25:27
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-01-29 06:32:104e8e3acbdcc1f6f128d44940effe1ef7Virustotal results 4/54 (7.41%) Dridex 198.50.234.210:343
2016-01-29 06:32:104e8e3acbdcc1f6f128d44940effe1ef7Virustotal results 4/54 (7.41%) Dridex 198.50.234.210:343
2016-01-29 00:41:161dd8a138c72258a5a4026c395090533fVirustotal results 2/54 (3.70%) Dridex 198.50.234.210:343
2016-01-29 00:41:161dd8a138c72258a5a4026c395090533fVirustotal results 2/54 (3.70%) Dridex 198.50.234.210:343

# of entries: 4 (max: 100)