SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 77b66d0d5a709488ab7fd4fee38e27eea28eb402.

Database Entry


SHA1 Fingerprint:77b66d0d5a709488ab7fd4fee38e27eea28eb402
Certificate Common Name (CN):byerocpeteresi.nc
Issuer Distinguished Name (DN):byerocpeteresi.nc
TLS Version:TLSv1
First seen:2016-01-18 12:43:47 UTC
Last seen:2016-01-20 10:57:00 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2016-01-18 13:06:31
Malware samples:2
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-01-20 10:57:007db792adc71e9dc0f6bb28a5f802b7abVirustotal results 4/54 (7.41%) Dridex 176.53.0.103:443
2016-01-20 10:57:007db792adc71e9dc0f6bb28a5f802b7abVirustotal results 4/54 (7.41%) Dridex 176.53.0.103:443
2016-01-18 12:43:47971b9f7a200cff489ee38011836f5240Virustotal results 3/54 (5.56%) Dridex 41.38.18.230:443
2016-01-18 12:43:47971b9f7a200cff489ee38011836f5240Virustotal results 3/54 (5.56%) Dridex 41.38.18.230:443

# of entries: 4 (max: 100)