SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 74722474093f099b0de73077c5f22d2576077c3d.

Database Entry


SHA1 Fingerprint:74722474093f099b0de73077c5f22d2576077c3d
Certificate Common Name (CN):mainbytes.com
Issuer Distinguished Name (DN):COMODO RSA Domain Validation Secure Server CA
TLS Version:TLS 1.2
First seen:2015-05-08 16:38:43 UTC
Last seen:2015-09-11 12:18:41 UTC
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2015-05-08 19:38:44
Malware samples:90
Botnet C&Cs:84

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-09-11 12:18:41ec2827239177a17a614a89de22a8baa1n/aRedyms37.229.248.188:443
2015-09-11 12:18:41ec2827239177a17a614a89de22a8baa1n/aRedyms37.229.248.188:443
2015-09-11 10:32:47550b5577ee179adafb3c545d314f9919n/aRedyms89.65.63.95:443
2015-09-11 10:32:47550b5577ee179adafb3c545d314f9919n/aRedyms89.65.63.95:443
2015-09-11 00:34:266bb3e94279e117bfe840fe7342c2c08aVirustotal results 35/57 (61.40%) Redyms94.76.127.113:443
2015-09-11 00:34:266bb3e94279e117bfe840fe7342c2c08aVirustotal results 35/57 (61.40%) Redyms94.76.127.113:443
2015-09-10 14:36:03be7d4c5c03e556fe71b0c9ef82f2c75fVirustotal results 2/56 (3.57%) Redyms95.169.150.39:443
2015-09-10 14:36:03be7d4c5c03e556fe71b0c9ef82f2c75fVirustotal results 2/56 (3.57%) Redyms95.169.150.39:443
2015-09-10 10:03:513580c0b86a7ed85040d4c956a4a00eden/aRedyms93.171.253.155:443
2015-09-10 10:03:513580c0b86a7ed85040d4c956a4a00eden/aRedyms93.171.253.155:443
2015-09-09 13:28:4953d286b44712edef56091e6ce7cc1d71n/aRedyms46.98.228.56:443
2015-09-09 13:28:4953d286b44712edef56091e6ce7cc1d71n/aRedyms46.98.228.56:443
2015-09-09 06:14:3906f69aac1edc9fae7d7a6500e72cdd14Virustotal results 4/56 (7.14%) Redyms46.172.248.90:443
2015-09-09 06:14:3906f69aac1edc9fae7d7a6500e72cdd14Virustotal results 4/56 (7.14%) Redyms46.172.248.90:443
2015-09-08 08:42:43e82ce73d7216cfcd91559cf773a4dcceVirustotal results 3/57 (5.26%) Redyms158.181.229.159:443
2015-09-08 08:42:43e82ce73d7216cfcd91559cf773a4dcceVirustotal results 3/57 (5.26%) Redyms158.181.229.159:443
2015-09-08 08:10:4968666c04dbdd5fe1a7ecb98dc844b7e9Virustotal results 4/57 (7.02%) Redyms91.214.209.193:443
2015-09-08 08:10:4968666c04dbdd5fe1a7ecb98dc844b7e9Virustotal results 4/57 (7.02%) Redyms91.214.209.193:443
2015-09-08 08:08:415212522ec9c0917e66327456985d4787n/aRedyms194.79.60.87:443
2015-09-08 08:08:415212522ec9c0917e66327456985d4787n/aRedyms194.79.60.87:443
2015-09-08 07:39:4236531bc3b9e10f172acc59964f9167c8n/aRedyms93.79.220.228:443
2015-09-08 07:39:4236531bc3b9e10f172acc59964f9167c8n/aRedyms93.79.220.228:443
2015-09-08 05:53:3574e215b20a2b9c0715f8b4f023e17106Virustotal results 2/57 (3.51%) Redyms109.251.126.134:443
2015-09-08 05:53:3574e215b20a2b9c0715f8b4f023e17106Virustotal results 2/57 (3.51%) Redyms109.251.126.134:443
2015-09-08 01:09:053d76d558c85102a744894cf3d2347cedn/aRedyms109.251.126.134:443
2015-09-08 01:09:053d76d558c85102a744894cf3d2347cedn/aRedyms109.251.126.134:443
2015-09-07 23:04:08b677b769ab1e9d6b9d59d5e3c92093cdn/aRedyms58.176.100.75:443
2015-09-07 23:04:08b677b769ab1e9d6b9d59d5e3c92093cdn/aRedyms58.176.100.75:443
2015-09-06 10:43:249e97ace6426525aa3e60385238029d64n/aRedyms89.185.29.54:443
2015-09-06 10:43:249e97ace6426525aa3e60385238029d64n/aRedyms89.185.29.54:443
2015-09-05 11:56:0289898822d7d715e2d382a8035b3b782dn/aRedyms37.229.24.30:443
2015-09-05 11:56:0289898822d7d715e2d382a8035b3b782dn/aRedyms37.229.24.30:443
2015-09-05 02:20:56c76cad028b365daa44b24618eeb63cceVirustotal results 5/56 (8.93%) Redyms176.102.203.178:443
2015-09-05 02:20:56c76cad028b365daa44b24618eeb63cceVirustotal results 5/56 (8.93%) Redyms176.102.203.178:443
2015-09-04 20:46:32deeff63751e0c1cdc61ee3255025a12fn/aRedyms31.135.118.149:443
2015-09-04 20:46:32deeff63751e0c1cdc61ee3255025a12fn/aRedyms31.135.118.149:443
2015-09-04 16:27:14b9808f441b11072676591e0f05700bc6n/aZeuS 46.250.31.148:443
2015-09-04 16:27:14b9808f441b11072676591e0f05700bc6n/aZeuS 46.250.31.148:443
2015-09-04 10:22:283ef3f339e26678beda16ff04f7c470bbn/aRedyms176.104.24.228:443
2015-09-04 10:22:283ef3f339e26678beda16ff04f7c470bbn/aRedyms176.104.24.228:443
2015-09-04 07:22:52219bc16982264e6df24e218f952002a7Virustotal results 3/57 (5.26%) Redyms91.239.104.131:443
2015-09-04 07:22:52219bc16982264e6df24e218f952002a7Virustotal results 3/57 (5.26%) Redyms91.239.104.131:443
2015-09-03 21:17:0882b65f478c9dea32311b59df9355b127Virustotal results 0/57 (0.00%) Redyms46.33.250.182:443
2015-09-03 21:17:0882b65f478c9dea32311b59df9355b127Virustotal results 0/57 (0.00%) Redyms46.33.250.182:443
2015-09-03 01:51:33cc12ed5954e2369b4cded6ce1c4457f7Virustotal results 6/57 (10.53%) Redyms46.151.250.192:443
2015-09-03 01:51:33cc12ed5954e2369b4cded6ce1c4457f7Virustotal results 6/57 (10.53%) Redyms46.151.250.192:443
2015-09-01 13:20:540437b36057f5e5bba0fea65b94ca6f26n/aRedyms67.161.171.204:443
2015-09-01 13:20:540437b36057f5e5bba0fea65b94ca6f26n/aRedyms67.161.171.204:443
2015-09-01 11:14:24a0805894b8f8c4bd9eafcf59444dbb5cVirustotal results 5/57 (8.77%) Redyms31.43.61.24:443
2015-09-01 11:14:24a0805894b8f8c4bd9eafcf59444dbb5cVirustotal results 5/57 (8.77%) Redyms31.43.61.24:443
2015-09-01 08:24:533c4043b10420cfc08f73cbdc95702a51n/aRedyms31.135.122.100:443
2015-09-01 08:24:533c4043b10420cfc08f73cbdc95702a51n/aRedyms31.135.122.100:443
2015-09-01 08:09:38c03a1a35117e4de248d220afa44587c3Virustotal results 9/57 (15.79%) Redyms176.36.174.59:443
2015-09-01 08:09:38c03a1a35117e4de248d220afa44587c3Virustotal results 9/57 (15.79%) Redyms176.36.174.59:443
2015-08-31 17:38:38a347e805d2a2699995d0de73e18ce0a5Virustotal results 15/57 (26.32%) ZeuS 134.249.40.43:443
2015-08-31 17:38:38a347e805d2a2699995d0de73e18ce0a5Virustotal results 15/57 (26.32%) ZeuS 134.249.40.43:443
2015-08-31 07:49:49baedf5b5bdabca35b27e568454d49428n/aRedyms46.250.27.183:443
2015-08-31 07:49:49baedf5b5bdabca35b27e568454d49428n/aRedyms46.250.27.183:443
2015-08-31 07:34:183868f4861bfb96c9a8ed902f0a48afbcn/aRedyms46.33.52.21:443
2015-08-31 07:34:183868f4861bfb96c9a8ed902f0a48afbcn/aRedyms46.33.52.21:443
2015-08-31 07:30:1205357c25a848a784755825304a39258fVirustotal results 2/57 (3.51%) Redyms46.118.66.221:443
2015-08-31 07:30:1205357c25a848a784755825304a39258fVirustotal results 2/57 (3.51%) Redyms46.118.66.221:443
2015-08-29 12:21:56671bbe34f4ea9c342541bf97a1f7a924n/aRedyms188.0.122.38:443
2015-08-29 12:21:56671bbe34f4ea9c342541bf97a1f7a924n/aRedyms188.0.122.38:443
2015-08-29 10:43:00424db3e362fe8b78e2e0fbcfa4e7fd67Virustotal results 4/57 (7.02%) Redyms46.118.24.111:443
2015-08-29 10:43:00424db3e362fe8b78e2e0fbcfa4e7fd67Virustotal results 4/57 (7.02%) Redyms46.118.24.111:443
2015-08-28 19:48:01464418a29c0e0764f13c72e241c7b46fVirustotal results 29/57 (50.88%) ZeuS 176.8.32.193:443
2015-08-28 19:48:01464418a29c0e0764f13c72e241c7b46fVirustotal results 29/57 (50.88%) ZeuS 176.8.32.193:443
2015-08-28 13:52:286f7c6137caa8cda617fc4d0e2d07f4f2Virustotal results 28/57 (49.12%) ZeuS 188.230.31.190:443
2015-08-28 13:52:286f7c6137caa8cda617fc4d0e2d07f4f2Virustotal results 28/57 (49.12%) ZeuS 188.230.31.190:443
2015-08-28 11:01:38c18c8e12f293a352e2be3bcf905c3f5fn/aRedyms62.84.255.35:443
2015-08-28 11:01:38c18c8e12f293a352e2be3bcf905c3f5fn/aRedyms62.84.255.35:443
2015-08-28 08:03:50de8ce0aed460bb65168af24c2346ce4fVirustotal results 18/57 (31.58%) ZeuS 188.191.235.23:443
2015-08-28 08:03:50de8ce0aed460bb65168af24c2346ce4fVirustotal results 18/57 (31.58%) ZeuS 188.191.235.23:443
2015-08-28 04:59:33ddc7279f05b4154eec789709e7b0f641Virustotal results 0/57 (0.00%) ZeuS 134.249.201.60:443
2015-08-28 04:59:33ddc7279f05b4154eec789709e7b0f641Virustotal results 0/57 (0.00%) ZeuS 134.249.201.60:443
2015-08-28 04:21:589cc65bd103b35ee3f7525338e242e82bVirustotal results 8/57 (14.04%) ZeuS 178.216.225.175:443
2015-08-28 04:21:589cc65bd103b35ee3f7525338e242e82bVirustotal results 8/57 (14.04%) ZeuS 178.216.225.175:443
2015-08-28 04:03:01470c380528ba51827bf0ab04633480f2Virustotal results 29/57 (50.88%) ZeuS 46.250.16.255:443
2015-08-28 04:03:01470c380528ba51827bf0ab04633480f2Virustotal results 29/57 (50.88%) ZeuS 46.250.16.255:443
2015-08-27 17:15:503053f148dc8e1a5257559695683ded0aVirustotal results 24/57 (42.11%) ZeuS 176.36.23.31:443
2015-08-27 17:15:503053f148dc8e1a5257559695683ded0aVirustotal results 24/57 (42.11%) ZeuS 176.36.23.31:443
2015-08-27 10:06:32580c664215172d9cd8d34a0b14f94724n/aRedyms91.225.58.52:443
2015-08-27 10:06:32580c664215172d9cd8d34a0b14f94724n/aRedyms91.225.58.52:443
2015-08-26 16:44:063762b1f0a4b1265e31e983651759380cn/aZeuS 195.114.153.231:443
2015-08-26 16:44:063762b1f0a4b1265e31e983651759380cn/aZeuS 195.114.153.231:443
2015-08-24 14:40:414fbc8aa51f932eb19dd3608b84426365Virustotal results 6/57 (10.53%) ZeuS 151.0.13.155:443
2015-08-24 14:40:414fbc8aa51f932eb19dd3608b84426365Virustotal results 6/57 (10.53%) ZeuS 151.0.13.155:443
2015-08-24 10:04:4401132236b77f8e1391a0d9c53886dc02n/aZeuS 46.119.89.198:443
2015-08-24 10:04:4401132236b77f8e1391a0d9c53886dc02n/aZeuS 46.119.89.198:443
2015-08-24 09:06:256204b0787c05fb5d9cf3df5e8cdce6eeVirustotal results 3/57 (5.26%) Redyms134.249.238.140:443
2015-08-24 09:06:256204b0787c05fb5d9cf3df5e8cdce6eeVirustotal results 3/57 (5.26%) Redyms134.249.238.140:443
2015-08-24 08:46:59f31b2499f596a9450cef99f148e03ecaVirustotal results 3/57 (5.26%) Redyms109.200.224.223:443
2015-08-24 08:46:59f31b2499f596a9450cef99f148e03ecaVirustotal results 3/57 (5.26%) Redyms109.200.224.223:443
2015-08-24 08:39:374a8edba2e5b7e04f7651e61108bdda57Virustotal results 2/57 (3.51%) Redyms188.230.15.191:443
2015-08-24 08:39:374a8edba2e5b7e04f7651e61108bdda57Virustotal results 2/57 (3.51%) Redyms188.230.15.191:443
2015-08-23 10:06:12d77b87a0bca2d251aa0d0471a8854e87Virustotal results 17/57 (29.82%) Redyms176.106.31.227:443
2015-08-23 10:06:12d77b87a0bca2d251aa0d0471a8854e87Virustotal results 17/57 (29.82%) Redyms176.106.31.227:443
2015-08-22 11:39:12b833b69e4e48a41fad9409bec0d80f6en/aRedyms97.75.107.134:443
2015-08-22 11:39:12b833b69e4e48a41fad9409bec0d80f6en/aRedyms97.75.107.134:443

# of entries: 100 (max: 100)