SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 7374b2809bba52954dc61b4bcfe7005241e2c653.

Database Entry


SHA1 Fingerprint:7374b2809bba52954dc61b4bcfe7005241e2c653
Certificate Common Name (CN):7Ingiromppe.Pentingto.sharp
Issuer Distinguished Name (DN):7Ingiromppe.Pentingto.sharp
TLS Version:TLSv1
First seen:2017-05-05 01:04:30 UTC
Last seen:2017-05-05 14:08:45 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2017-05-05 10:03:20
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2017-05-05 14:08:451a2c663e8f135f798fe8772dc5e28ad2Virustotal results 30/62 (48.39%) Dridex 198.100.127.43:443
2017-05-05 14:08:451a2c663e8f135f798fe8772dc5e28ad2Virustotal results 30/62 (48.39%) Dridex 198.100.127.43:443
2017-05-05 02:19:454b18f9ba943aaeba75a66a2865fed5f2Virustotal results 32/62 (51.61%) Dridex 198.100.127.43:443
2017-05-05 02:19:454b18f9ba943aaeba75a66a2865fed5f2Virustotal results 32/62 (51.61%) Dridex 198.100.127.43:443
2017-05-05 01:04:302d15d01b218fdcdba6e2b6f1eb50b511Virustotal results 31/62 (50.00%) Dridex 198.100.127.43:443
2017-05-05 01:04:302d15d01b218fdcdba6e2b6f1eb50b511Virustotal results 31/62 (50.00%) Dridex 198.100.127.43:443

# of entries: 6 (max: 100)