SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 702d015c520fd5b76ee7ed49b38f8892372ac54f.

Database Entry


SHA1 Fingerprint:702d015c520fd5b76ee7ed49b38f8892372ac54f
Certificate Common Name (CN):example.com
Issuer Distinguished Name (DN):example.com
TLS Version:TLS 1.2
First seen:2018-01-18 10:43:39 UTC
Last seen:2018-01-25 00:24:53 UTC
Status:Blacklisted
Listing reason:TrickBot C&C
Listing date:2018-01-18 12:28:17
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-01-25 00:24:53d9b94b86fc147ad6c8f50690be83597eVirustotal results 16/66 (24.24%) TrickBot 77.244.215.158:443
2018-01-25 00:24:53d9b94b86fc147ad6c8f50690be83597eVirustotal results 16/66 (24.24%) TrickBot 77.244.215.158:443
2018-01-22 09:12:19e3c5cb2e70d3171323940dcec9cc39b1Virustotal results 19/66 (28.79%) TrickBot 77.244.215.158:443
2018-01-22 09:12:19e3c5cb2e70d3171323940dcec9cc39b1Virustotal results 19/66 (28.79%) TrickBot 77.244.215.158:443
2018-01-18 10:43:396f32b8ede965488e835cf60da16ec0a0Virustotal results 24/68 (35.29%) TrickBot 77.244.215.158:443
2018-01-18 10:43:396f32b8ede965488e835cf60da16ec0a0Virustotal results 24/68 (35.29%) TrickBot 77.244.215.158:443

# of entries: 6 (max: 100)