SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 89d680a4965fd65aec354ee76a8ccbcd377629ed.

Database Entry


SHA1 Fingerprint:89d680a4965fd65aec354ee76a8ccbcd377629ed
Certificate Common Name (CN):puthieseofcei.zm
Issuer Distinguished Name (DN):puthieseofcei.zm
TLS Version:TLS 1.2
First seen:2015-11-20 10:55:16 UTC
Last seen:2015-11-20 13:33:24 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-11-20 11:02:47
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-11-20 13:33:241cc15b42130a5ec4c3a5d399ea6233dcVirustotal results 4/53 (7.55%) Dridex 157.252.245.32:2448
2015-11-20 13:33:241cc15b42130a5ec4c3a5d399ea6233dcVirustotal results 4/53 (7.55%) Dridex 157.252.245.32:2448
2015-11-20 10:55:16d410a45dc4710ea0d383dee81fbbcb6fVirustotal results 4/52 (7.69%) Dridex 157.252.245.32:2448
2015-11-20 10:55:16d410a45dc4710ea0d383dee81fbbcb6fVirustotal results 4/52 (7.69%) Dridex 157.252.245.32:2448

# of entries: 4 (max: 100)