SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 602c5dbad07fd4c9825a2dfc160446497c396bbd.

Database Entry


SHA1 Fingerprint:602c5dbad07fd4c9825a2dfc160446497c396bbd
Certificate Common Name (CN):example.com
Issuer Distinguished Name (DN):example.com
TLS Version:TLS 1.2
First seen:2018-01-18 11:17:46 UTC
Last seen:2018-01-21 04:20:17 UTC
Status:Blacklisted
Listing reason:TrickBot C&C
Listing date:2018-01-18 12:27:31
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-01-21 04:20:175fa9fbb4b7bca7c058c1a8a687bc1b6eVirustotal results 12/66 (18.18%) TrickBot 62.109.27.157:443
2018-01-21 04:20:175fa9fbb4b7bca7c058c1a8a687bc1b6eVirustotal results 12/66 (18.18%) TrickBot 62.109.27.157:443
2018-01-21 04:20:175fa9fbb4b7bca7c058c1a8a687bc1b6eVirustotal results 12/66 (18.18%) TrickBot 62.109.27.157:443
2018-01-21 04:20:175fa9fbb4b7bca7c058c1a8a687bc1b6eVirustotal results 12/66 (18.18%) TrickBot 62.109.27.157:443
2018-01-18 11:17:463a5ec84759551e63f9e9500d2351cc04Virustotal results 31/68 (45.59%) TrickBot 62.109.27.157:443
2018-01-18 11:17:463a5ec84759551e63f9e9500d2351cc04Virustotal results 31/68 (45.59%) TrickBot 62.109.27.157:443
2018-01-18 11:17:463a5ec84759551e63f9e9500d2351cc04Virustotal results 31/68 (45.59%) TrickBot 62.109.27.157:443
2018-01-18 11:17:463a5ec84759551e63f9e9500d2351cc04Virustotal results 31/68 (45.59%) TrickBot 62.109.27.157:443

# of entries: 8 (max: 100)