SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 5c498beff2d6507d0d051a15f08b5516602476ae.

Database Entry


SHA1 Fingerprint:5c498beff2d6507d0d051a15f08b5516602476ae
Certificate Common Name (CN):4thearenceny.bostik
Issuer Distinguished Name (DN):4thearenceny.bostik
TLS Version:TLSv1
First seen:2017-05-05 02:19:45 UTC
Last seen:2017-05-05 14:08:45 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2017-05-05 10:03:19
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2017-05-05 14:08:451a2c663e8f135f798fe8772dc5e28ad2Virustotal results 30/62 (48.39%) Dridex 81.95.126.146:4431
2017-05-05 14:08:451a2c663e8f135f798fe8772dc5e28ad2Virustotal results 30/62 (48.39%) Dridex 81.95.126.146:4431
2017-05-05 02:19:454b18f9ba943aaeba75a66a2865fed5f2Virustotal results 32/62 (51.61%) Dridex 81.95.126.146:4431
2017-05-05 02:19:454b18f9ba943aaeba75a66a2865fed5f2Virustotal results 32/62 (51.61%) Dridex 81.95.126.146:4431

# of entries: 4 (max: 100)