SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 3bf93effd477a726e66d3923f0c809adc6b688e2.

Database Entry


SHA1 Fingerprint:3bf93effd477a726e66d3923f0c809adc6b688e2
Certificate Common Name (CN):www.reomesoess.com
Issuer Distinguished Name (DN):EssentialSSL CA
TLS Version:SSLv3
First seen:2014-10-08 00:25:17 UTC
Last seen:2014-10-16 15:39:10 UTC
Status:Blacklisted
Listing reason:Teslacrypt C&C
Listing date:2014-10-08 06:39:36
Malware samples:3
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2014-10-16 15:39:10aefa774c923c02b879cdcee1d4ec7ad7Virustotal results 23/55 (41.82%) ZeuS 185.22.232.138:443
2014-10-16 15:39:10aefa774c923c02b879cdcee1d4ec7ad7Virustotal results 23/55 (41.82%) ZeuS 185.22.232.138:443
2014-10-10 00:11:419a8b2a44e3bb1c306c8ead53ddeb4aaaVirustotal results 8/53 (15.09%) ZeuS 5.9.106.163:443
2014-10-10 00:11:419a8b2a44e3bb1c306c8ead53ddeb4aaaVirustotal results 8/53 (15.09%) ZeuS 5.9.106.163:443
2014-10-08 00:25:17062710603496f4f1c832d8751535f872Virustotal results 15/55 (27.27%) ZeuS 5.9.106.163:443
2014-10-08 00:25:17062710603496f4f1c832d8751535f872Virustotal results 15/55 (27.27%) ZeuS 5.9.106.163:443

# of entries: 6 (max: 100)