SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 9275d52740c0b01ce952323d0f5368d78a74ffbf.

Database Entry


SHA1 Fingerprint:9275d52740c0b01ce952323d0f5368d78a74ffbf
Certificate Common Name (CN):rvgvtfdf
Issuer Distinguished Name (DN):rvgvtfdf
TLS Version:TLSv1
First seen:2016-07-18 09:57:37 UTC
Last seen:2017-06-03 19:52:29 UTC
Status:Blacklisted
Listing reason:TrickBot C&C
Listing date:2016-10-31 10:11:44
Malware samples:93
Botnet C&Cs:20

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2017-06-03 19:52:298f4f6023ad42ea137ccce9da6ec02583Virustotal results 30/61 (49.18%) TrickBot 96.9.69.131:443
2017-06-03 19:52:298f4f6023ad42ea137ccce9da6ec02583Virustotal results 30/61 (49.18%) TrickBot 96.9.69.131:443
2017-05-15 18:46:131dd5709c6955b3627c0ef0171519dd38Virustotal results 17/61 (27.87%) TrickBot 95.104.2.225:443
2017-05-15 18:46:131dd5709c6955b3627c0ef0171519dd38Virustotal results 17/61 (27.87%) TrickBot 95.104.2.225:443
2017-05-07 04:48:489d166a822439a47eb2dfad1aeb823638Virustotal results 36/60 (60.00%) TrickBot 49.156.45.139:443
2017-05-07 04:48:489d166a822439a47eb2dfad1aeb823638Virustotal results 36/60 (60.00%) TrickBot 49.156.45.139:443
2017-05-06 19:46:4345160aa23d640f8d1bcb263c179f84f9Virustotal results 37/61 (60.66%) TrickBot 115.186.139.104:443
2017-05-06 19:46:4345160aa23d640f8d1bcb263c179f84f9Virustotal results 37/61 (60.66%) TrickBot 115.186.139.104:443
2017-05-03 20:18:00440d284b8c4b85f806b113507dc55004Virustotal results 33/61 (54.10%) TrickBot 200.116.206.58:443
2017-05-03 20:18:00440d284b8c4b85f806b113507dc55004Virustotal results 33/61 (54.10%) TrickBot 200.116.206.58:443
2017-04-30 15:46:2804df6fbf31c412deecc7753a1ed3f9f1Virustotal results 38/61 (62.30%) TrickBot 36.66.107.162:443
2017-04-30 15:46:2804df6fbf31c412deecc7753a1ed3f9f1Virustotal results 38/61 (62.30%) TrickBot 36.66.107.162:443
2017-04-29 16:52:00a4ccf519bdcc07e6cdb78ae6b660bff5Virustotal results 34/60 (56.67%) TrickBot 96.9.69.131:443
2017-04-29 16:52:00a4ccf519bdcc07e6cdb78ae6b660bff5Virustotal results 34/60 (56.67%) TrickBot 96.9.69.131:443
2017-04-28 18:59:171d3a3922bdcea3a6bca3c8b2f4b40e48Virustotal results 40/62 (64.52%) TrickBot 96.9.69.131:443
2017-04-28 18:59:171d3a3922bdcea3a6bca3c8b2f4b40e48Virustotal results 40/62 (64.52%) TrickBot 96.9.69.131:443
2017-04-20 05:27:1927215bfe3ffbc8a5924d68a2ec0d2282Virustotal results 30/61 (49.18%) TrickBot 186.208.106.234:443
2017-04-20 05:27:1927215bfe3ffbc8a5924d68a2ec0d2282Virustotal results 30/61 (49.18%) TrickBot 186.208.106.234:443
2017-04-07 06:02:42973f466bb45b678c3b0eeee3c1b127b4Virustotal results 21/62 (33.87%) TrickBot 84.42.159.138:443
2017-04-07 06:02:42973f466bb45b678c3b0eeee3c1b127b4Virustotal results 21/62 (33.87%) TrickBot 84.42.159.138:443
2017-03-31 00:25:39d1632d9d8c7368700f6c2f0b798bc759Virustotal results 13/62 (20.97%) TrickBot 84.42.159.138:443
2017-03-31 00:25:39d1632d9d8c7368700f6c2f0b798bc759Virustotal results 13/62 (20.97%) TrickBot 84.42.159.138:443
2017-03-30 03:41:011c9fed98e492d04e0b7e0f4418ba1b37Virustotal results 37/61 (60.66%) TrickBot 190.138.249.45:443
2017-03-30 03:41:011c9fed98e492d04e0b7e0f4418ba1b37Virustotal results 37/61 (60.66%) TrickBot 190.138.249.45:443
2017-03-25 21:47:00de080af88be2c58a20bf6654c7b13a5dVirustotal results 38/62 (61.29%) TrickBot 203.76.105.82:443
2017-03-25 21:47:00de080af88be2c58a20bf6654c7b13a5dVirustotal results 38/62 (61.29%) TrickBot 203.76.105.82:443
2017-03-24 14:49:30cd70135126225950543f994b0a67dd3cVirustotal results 31/62 (50.00%) TrickBot 203.76.105.82:443
2017-03-24 14:49:30cd70135126225950543f994b0a67dd3cVirustotal results 31/62 (50.00%) TrickBot 203.76.105.82:443
2017-03-22 09:57:385823ce65444243554384ab24a9946d2fVirustotal results 22/62 (35.48%) TrickBot 200.116.206.58:443
2017-03-22 09:57:385823ce65444243554384ab24a9946d2fVirustotal results 22/62 (35.48%) TrickBot 200.116.206.58:443
2017-03-21 02:56:43124c43a909c694a108bc28fe160d6544Virustotal results 24/61 (39.34%) Hermes203.92.62.46:443
2017-03-20 19:01:27cff28c62ecc08dcc2e03623a24a9df25Virustotal results 10/60 (16.67%) TrickBot 190.138.249.45:443
2017-03-20 19:01:27cff28c62ecc08dcc2e03623a24a9df25Virustotal results 10/60 (16.67%) TrickBot 190.138.249.45:443
2017-03-20 03:30:42a9d1bde7103ad552fbfcf11baf4acfd5Virustotal results 42/61 (68.85%) Asprox200.116.206.58:443
2017-03-19 13:47:4333d3d49bfe6c968641527cef5ea01b65Virustotal results 42/61 (68.85%) TrickBot 200.120.214.150:443
2017-03-19 13:47:4333d3d49bfe6c968641527cef5ea01b65Virustotal results 42/61 (68.85%) TrickBot 200.120.214.150:443
2017-03-19 08:24:306fe635fc9a6dc4954c6ca297f14d2768Virustotal results 7/62 (11.29%) TrickBot 200.120.214.150:443
2017-03-19 08:24:306fe635fc9a6dc4954c6ca297f14d2768Virustotal results 7/62 (11.29%) TrickBot 200.120.214.150:443
2017-03-17 10:26:50ad26e9353f27317e53984b836ddba54bVirustotal results 22/61 (36.07%) TrickBot 190.138.249.45:443
2017-03-17 10:26:50ad26e9353f27317e53984b836ddba54bVirustotal results 22/61 (36.07%) TrickBot 190.138.249.45:443
2017-03-15 22:31:42d0f7a22c6024decac6a379acdb4ba1ebVirustotal results 38/60 (63.33%) TrickBot 36.66.107.162:443
2017-03-15 22:31:42d0f7a22c6024decac6a379acdb4ba1ebVirustotal results 38/60 (63.33%) TrickBot 36.66.107.162:443
2017-03-14 18:33:01574df6415a7274b066edd7f73cc5cfe7Virustotal results 11/61 (18.03%) TrickBot 84.42.159.138:443
2017-03-14 18:33:01574df6415a7274b066edd7f73cc5cfe7Virustotal results 11/61 (18.03%) TrickBot 84.42.159.138:443
2017-03-12 11:04:111b6bc3ae930cf6279fd6789b2288acfeVirustotal results 31/60 (51.67%) TrickBot 80.51.120.132:443
2017-03-12 11:04:111b6bc3ae930cf6279fd6789b2288acfeVirustotal results 31/60 (51.67%) TrickBot 80.51.120.132:443
2017-03-10 16:41:0008ba011df60438ccb9462e819e7ec722Virustotal results 24/60 (40.00%) TrickBot 84.42.159.138:443
2017-03-10 16:41:0008ba011df60438ccb9462e819e7ec722Virustotal results 24/60 (40.00%) TrickBot 84.42.159.138:443
2017-03-06 19:26:43fb635d32fbb3a4e2b3e9db9c75dedc32Virustotal results 35/59 (59.32%) TrickBot 80.51.120.132:443
2017-03-06 19:26:43fb635d32fbb3a4e2b3e9db9c75dedc32Virustotal results 35/59 (59.32%) TrickBot 80.51.120.132:443
2017-02-24 19:53:090c43db420cdbb4c54b4367a830d75180Virustotal results 15/59 (25.42%) TrickBot 190.138.249.45:443
2017-02-24 19:53:090c43db420cdbb4c54b4367a830d75180Virustotal results 15/59 (25.42%) TrickBot 190.138.249.45:443
2017-02-22 18:12:59e2d5d1bf5d69a942d99c8ea45fe28ac2Virustotal results 9/27 (33.33%) TrickBot 190.138.249.45:443
2017-02-22 18:12:59e2d5d1bf5d69a942d99c8ea45fe28ac2Virustotal results 9/27 (33.33%) TrickBot 190.138.249.45:443
2017-02-16 13:07:597c919970a593c41ec104fa2fb7f0d12bVirustotal results 15/58 (25.86%) TrickBot 217.29.220.255:443
2017-02-16 13:07:597c919970a593c41ec104fa2fb7f0d12bVirustotal results 15/58 (25.86%) TrickBot 217.29.220.255:443
2017-02-16 08:27:16da3bf45d0eeb073ef0c323ad136e1f25Virustotal results 12/57 (21.05%) TrickBot 217.29.220.255:443
2017-02-16 08:27:16da3bf45d0eeb073ef0c323ad136e1f25Virustotal results 12/57 (21.05%) TrickBot 217.29.220.255:443
2017-02-09 22:55:01af4dbdbf5f5feb991500119ccc6a92d8Virustotal results 10/55 (18.18%) TrickBot 47.18.17.114:443
2017-02-09 22:55:01af4dbdbf5f5feb991500119ccc6a92d8Virustotal results 10/55 (18.18%) TrickBot 47.18.17.114:443
2017-02-09 07:33:0209e23b0aff4f11d50db0b42424710655Virustotal results 23/56 (41.07%) TrickBot 47.18.17.114:443
2017-02-09 07:33:0209e23b0aff4f11d50db0b42424710655Virustotal results 23/56 (41.07%) TrickBot 47.18.17.114:443
2017-02-01 16:20:494ae2c9f0f4092db65dc9f7682562f48bVirustotal results 32/59 (54.24%) TrickBot 36.37.176.6:443
2017-02-01 16:20:494ae2c9f0f4092db65dc9f7682562f48bVirustotal results 32/59 (54.24%) TrickBot 36.37.176.6:443
2017-02-01 03:23:10723abda9edd64fc1b22791c20e53b879Virustotal results 23/57 (40.35%) TrickBot 36.37.176.6:443
2017-02-01 03:23:10723abda9edd64fc1b22791c20e53b879Virustotal results 23/57 (40.35%) TrickBot 36.37.176.6:443
2017-01-29 03:38:31b65456e7026d7538a1cb05ae4e3297e8Virustotal results 23/56 (41.07%) TrickBot 217.29.220.255:443
2017-01-29 03:38:31b65456e7026d7538a1cb05ae4e3297e8Virustotal results 23/56 (41.07%) TrickBot 217.29.220.255:443
2017-01-27 07:35:3076ba5726e37415d5208b58a202d23977Virustotal results 34/56 (60.71%) TrickBot 36.37.176.6:443
2017-01-27 07:35:3076ba5726e37415d5208b58a202d23977Virustotal results 34/56 (60.71%) TrickBot 36.37.176.6:443
2017-01-26 19:41:3234a048501dbff765e1963f7f53777502Virustotal results 29/57 (50.88%) TrickBot 36.37.176.6:443
2017-01-26 19:41:3234a048501dbff765e1963f7f53777502Virustotal results 29/57 (50.88%) TrickBot 36.37.176.6:443
2017-01-23 03:04:03619243b377f6a6a852a4c50786ab5b78n/aTrickBot 36.37.176.6:443
2017-01-23 03:04:03619243b377f6a6a852a4c50786ab5b78n/aTrickBot 36.37.176.6:443
2017-01-22 22:44:301bc14f6b83d3a49d7647d44556ae8138Virustotal results 10/56 (17.86%) TrickBot 36.37.176.6:443
2017-01-22 22:44:301bc14f6b83d3a49d7647d44556ae8138Virustotal results 10/56 (17.86%) TrickBot 36.37.176.6:443
2017-01-20 21:27:145192c58227c027b3915ddab9bd70e13eVirustotal results 31/56 (55.36%) TrickBot 36.37.176.6:443
2017-01-20 21:27:145192c58227c027b3915ddab9bd70e13eVirustotal results 31/56 (55.36%) TrickBot 36.37.176.6:443
2017-01-20 17:24:19afe0135e0a63627447fc33020d9e19beVirustotal results 36/55 (65.45%) TrickBot 36.37.176.6:443
2017-01-20 17:24:19afe0135e0a63627447fc33020d9e19beVirustotal results 36/55 (65.45%) TrickBot 36.37.176.6:443
2017-01-20 05:51:4796fba39b63fa9c3b13335b873066936an/aTrickBot 36.37.176.6:443
2017-01-20 05:51:4796fba39b63fa9c3b13335b873066936an/aTrickBot 36.37.176.6:443
2017-01-18 17:31:49ed04e1f6e265bc9f4ad1ee82cfa00957Virustotal results 13/55 (23.64%) TrickBot 36.37.176.6:443
2017-01-18 17:31:49ed04e1f6e265bc9f4ad1ee82cfa00957Virustotal results 13/55 (23.64%) TrickBot 36.37.176.6:443
2017-01-16 14:27:113ea3397fd088bf804f798af997bcb970Virustotal results 13/58 (22.41%) TrickBot 36.37.176.6:443
2017-01-16 14:27:113ea3397fd088bf804f798af997bcb970Virustotal results 13/58 (22.41%) TrickBot 36.37.176.6:443
2017-01-15 19:39:01bfcbb9a2fb0913e9fdfced9ade8bcc21Virustotal results 12/58 (20.69%) TrickBot 36.37.176.6:443
2017-01-15 19:39:01bfcbb9a2fb0913e9fdfced9ade8bcc21Virustotal results 12/58 (20.69%) TrickBot 36.37.176.6:443
2017-01-14 12:56:13165b6d9910dad747a209c351c9dbf56bVirustotal results 14/58 (24.14%) TrickBot 36.37.176.6:443
2017-01-14 12:56:13165b6d9910dad747a209c351c9dbf56bVirustotal results 14/58 (24.14%) TrickBot 36.37.176.6:443
2017-01-14 04:29:549d46e74aacfdc2fb6dcce64ba3a54ca6Virustotal results 15/58 (25.86%) TrickBot 36.37.176.6:443
2017-01-14 04:29:549d46e74aacfdc2fb6dcce64ba3a54ca6Virustotal results 15/58 (25.86%) TrickBot 36.37.176.6:443
2017-01-13 21:02:11a0305e777dfbcb49537047cde89fca0eVirustotal results 35/56 (62.50%) TrickBot 36.37.176.6:443
2017-01-13 21:02:11a0305e777dfbcb49537047cde89fca0eVirustotal results 35/56 (62.50%) TrickBot 36.37.176.6:443
2017-01-13 10:27:32562850d39e8dde8702774bf1c1c1adcdVirustotal results 17/56 (30.36%) TrickBot 36.37.176.6:443
2017-01-13 10:27:32562850d39e8dde8702774bf1c1c1adcdVirustotal results 17/56 (30.36%) TrickBot 36.37.176.6:443
2017-01-13 00:54:0136a5f2c0eed547958d571cce25d0e676Virustotal results 32/57 (56.14%) TrickBot 36.37.176.6:443
2017-01-13 00:54:0136a5f2c0eed547958d571cce25d0e676Virustotal results 32/57 (56.14%) TrickBot 36.37.176.6:443
2017-01-11 16:01:163e8c53c79bebd1a9f87ad41ccb8f2e7bVirustotal results 16/57 (28.07%) TrickBot 36.37.176.6:443
2017-01-11 16:01:163e8c53c79bebd1a9f87ad41ccb8f2e7bVirustotal results 16/57 (28.07%) TrickBot 36.37.176.6:443

# of entries: 100 (max: 100)