SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 6b019fcd64e1e1c8a39e03be074608f1bcdf253c.

Database Entry


SHA1 Fingerprint:6b019fcd64e1e1c8a39e03be074608f1bcdf253c
Certificate Common Name (CN):C=US, ST=Denial, L=Springfield, O=Dis
Issuer Distinguished Name (DN):C=US, ST=Denial, L=Springfield, O=Dis
TLS Version:TLS 1.2
First seen:2016-04-06 16:27:41 UTC
Last seen:2016-04-09 18:08:49 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2016-04-07 13:43:26
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-04-09 18:08:4975cb4d8f9aaafeb4ee3209966b705f6aVirustotal results 42/55 (76.36%) Teslacrypt185.15.208.215:443
2016-04-09 18:08:4975cb4d8f9aaafeb4ee3209966b705f6aVirustotal results 42/55 (76.36%) Teslacrypt185.15.208.215:443
2016-04-07 07:56:5565206807ae4a9165d9bda2259b8ba5acn/aTorrentLocker 185.15.208.215:443
2016-04-07 07:56:5565206807ae4a9165d9bda2259b8ba5acn/aTorrentLocker 185.15.208.215:443
2016-04-06 16:27:418e036c03f1d38ef5e7c7731ccae251e0Virustotal results 2/57 (3.51%) TorrentLocker 185.15.208.215:443
2016-04-06 16:27:418e036c03f1d38ef5e7c7731ccae251e0Virustotal results 2/57 (3.51%) TorrentLocker 185.15.208.215:443

# of entries: 6 (max: 100)