SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 7502e55deb4d19b96ea9612634824b2fb6ad966d.

Database Entry


SHA1 Fingerprint:7502e55deb4d19b96ea9612634824b2fb6ad966d
Certificate Common Name (CN):do.tntcentral.mobi/emailAddress=postmaster@tntcentral.mobi
Issuer Distinguished Name (DN):StartCom Class 1 Primary Intermediate Server CA
TLS Version:SSLv3
First seen:2014-07-22 12:44:24 UTC
Last seen:never
Status:Blacklisted
Listing reason:Vawtrak MITM
Listing date:2014-07-22 12:47:56
Malware samples:1
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2014-07-22 12:44:24381acbb7f7308a5799644c5f381ddb55n/a194.58.102.134:443
2014-07-22 12:44:24381acbb7f7308a5799644c5f381ddb55n/a194.58.102.134:443

# of entries: 2 (max: 100)