SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 52fbd8b60b564f4936824dc8226b5c52505ddddb.

Database Entry


SHA1 Fingerprint:52fbd8b60b564f4936824dc8226b5c52505ddddb
Certificate Common Name (CN):ancoweeucegt.sa
Issuer Distinguished Name (DN):ancoweeucegt.sa
TLS Version:TLSv1
First seen:2016-02-25 08:19:35 UTC
Last seen:never
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2016-02-25 08:42:03
Malware samples:1
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-02-25 08:19:35b8ce2f495a48effead952dd765e29e72Virustotal results 9/55 (16.36%) Dridex 188.40.224.76:643
2016-02-25 08:19:35b8ce2f495a48effead952dd765e29e72Virustotal results 9/55 (16.36%) Dridex 188.40.224.76:643

# of entries: 2 (max: 100)