SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 52bfe9b13e5cbac49794cc83e1f34c3c538083a0.

Database Entry


SHA1 Fingerprint:52bfe9b13e5cbac49794cc83e1f34c3c538083a0
Certificate Common Name (CN):C=US, ST=Denial, L=Springfield, O=Dis
Issuer Distinguished Name (DN):C=US, ST=Denial, L=Springfield, O=Dis
TLS Version:TLS 1.2
First seen:2016-01-22 06:09:23 UTC
Last seen:2016-01-22 06:15:46 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2016-01-22 06:20:28
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-01-22 06:15:46f50e23315019d3b9b7d2da85420764c5n/aTorrentLocker 80.78.253.130:443
2016-01-22 06:15:46f50e23315019d3b9b7d2da85420764c5n/aTorrentLocker 80.78.253.130:443
2016-01-22 06:13:164150fba5a96e1648ab87264ba2a84e65n/aTorrentLocker 80.78.253.130:443
2016-01-22 06:13:164150fba5a96e1648ab87264ba2a84e65n/aTorrentLocker 80.78.253.130:443
2016-01-22 06:09:2372e1b63068f4fbe05a45819add4a4162Virustotal results 7/54 (12.96%) TorrentLocker 80.78.253.130:443
2016-01-22 06:09:2372e1b63068f4fbe05a45819add4a4162Virustotal results 7/54 (12.96%) TorrentLocker 80.78.253.130:443

# of entries: 6 (max: 100)