SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 64455813ff85644f572ff27013afd5bcf9cfd116.

Database Entry


SHA1 Fingerprint:64455813ff85644f572ff27013afd5bcf9cfd116
Certificate Common Name (CN):example.com
Issuer Distinguished Name (DN):example.com
TLS Version:TLS 1.2
First seen:2017-12-17 00:34:21 UTC
Last seen:2017-12-23 20:11:25 UTC
Status:Blacklisted
Listing reason:TrickBot C&C
Listing date:2017-12-24 11:55:03
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2017-12-23 20:11:253b8c2377635d463a0ac479f9a91c6cddVirustotal results 45/67 (67.16%) TrickBot 95.46.114.118:443
2017-12-23 20:11:253b8c2377635d463a0ac479f9a91c6cddVirustotal results 45/67 (67.16%) TrickBot 95.46.114.118:443
2017-12-23 01:06:3899e6fb44718cf9bc0f7cdfaedb003091Virustotal results 29/68 (42.65%) TrickBot 95.46.114.118:443
2017-12-23 01:06:3899e6fb44718cf9bc0f7cdfaedb003091Virustotal results 29/68 (42.65%) TrickBot 95.46.114.118:443
2017-12-17 00:34:219a8b146fd02953ffa0842950af8bce88Virustotal results 33/68 (48.53%) TrickBot 95.46.114.118:443
2017-12-17 00:34:219a8b146fd02953ffa0842950af8bce88Virustotal results 33/68 (48.53%) TrickBot 95.46.114.118:443

# of entries: 6 (max: 100)