SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 7b3353c205155b2aa653351274a4bfa83b1c2b62.

Database Entry


SHA1 Fingerprint:7b3353c205155b2aa653351274a4bfa83b1c2b62
Certificate Common Name (CN):*.pillspharm24.com
Issuer Distinguished Name (DN):DigiCert Secure Server CA
TLS Version:SSLv3
First seen:2015-07-18 06:10:48 UTC
Last seen:2015-07-26 18:16:10 UTC
Status:Blacklisted
Listing reason:Ransomware C&C
Listing date:2015-07-19 15:33:12
Malware samples:3
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-07-26 18:16:104125ede0a05f4860d8902c96152b0762Virustotal results 32/56 (57.14%) Ransomware78.46.160.71:443
2015-07-26 18:16:104125ede0a05f4860d8902c96152b0762Virustotal results 32/56 (57.14%) Ransomware78.46.160.71:443
2015-07-26 09:29:47bcc74a74859f29c9bfedae54b5972a92Virustotal results 25/56 (44.64%) Ransomware78.46.160.71:443
2015-07-26 09:29:47bcc74a74859f29c9bfedae54b5972a92Virustotal results 25/56 (44.64%) Ransomware78.46.160.71:443
2015-07-18 06:10:48daf9cc9bedfd6b669f814bf623edf01bVirustotal results 24/56 (42.86%) Ransomware86.105.18.114:443
2015-07-18 06:10:48daf9cc9bedfd6b669f814bf623edf01bVirustotal results 24/56 (42.86%) Ransomware86.105.18.114:443

# of entries: 6 (max: 100)