SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint a0aff4d892578e754be039986241ee424fdd561f.

Database Entry


SHA1 Fingerprint:a0aff4d892578e754be039986241ee424fdd561f
Certificate Common Name (CN):www.reomesoess.com
Issuer Distinguished Name (DN):COMODO RSA Domain Validation Secure Server CA
TLS Version:TLS 1.2
First seen:2015-05-16 12:39:51 UTC
Last seen:2015-05-20 09:51:11 UTC
Status:Blacklisted
Listing reason:Teslacrypt C&C
Listing date:2015-05-17 07:40:19
Malware samples:175
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-05-20 09:51:11a4bf428dbe1f45f27fdcb065222b4bb0n/aTeslacrypt78.47.27.243:443
2015-05-20 09:51:11a4bf428dbe1f45f27fdcb065222b4bb0n/aTeslacrypt78.47.27.243:443
2015-05-19 17:33:359d08b8208c182a1639d79adf99231d30n/aTeslacrypt78.47.27.243:443
2015-05-19 17:33:359d08b8208c182a1639d79adf99231d30n/aTeslacrypt78.47.27.243:443
2015-05-19 16:48:5194b20e9880019cfa6d3cedc9a9b21b3an/aTeslacrypt78.47.27.243:443
2015-05-19 16:48:5194b20e9880019cfa6d3cedc9a9b21b3an/aTeslacrypt78.47.27.243:443
2015-05-19 15:37:0080cc7d5ab23476ccd987cafe39c04240n/aTeslacrypt78.47.27.243:443
2015-05-19 15:37:0080cc7d5ab23476ccd987cafe39c04240n/aTeslacrypt78.47.27.243:443
2015-05-19 13:28:4524c43c7a61c89e8213302dbcf4d7f9f6n/aTeslacrypt78.47.27.243:443
2015-05-19 13:28:4524c43c7a61c89e8213302dbcf4d7f9f6n/aTeslacrypt78.47.27.243:443
2015-05-19 13:00:59a3e5d68068178f378365ec3d67a9d953n/aTeslacrypt78.47.27.243:443
2015-05-19 13:00:59a3e5d68068178f378365ec3d67a9d953n/aTeslacrypt78.47.27.243:443
2015-05-19 12:45:24e2e1230ad01a68dcf9bda09136b5dac1n/aTeslacrypt78.47.27.243:443
2015-05-19 12:45:24e2e1230ad01a68dcf9bda09136b5dac1n/aTeslacrypt78.47.27.243:443
2015-05-19 12:09:40469e80e5f01b46d6be09894a0be153abn/aTeslacrypt78.47.27.243:443
2015-05-19 12:09:40469e80e5f01b46d6be09894a0be153abn/aTeslacrypt78.47.27.243:443
2015-05-19 11:28:11a35101360fb392f92a3ab21c134865bbn/aTeslacrypt78.47.27.243:443
2015-05-19 11:28:11a35101360fb392f92a3ab21c134865bbn/aTeslacrypt78.47.27.243:443
2015-05-19 10:30:34e55c4054f47ebd4304f35b1affbd2411n/aTeslacrypt78.47.27.243:443
2015-05-19 10:30:34e55c4054f47ebd4304f35b1affbd2411n/aTeslacrypt78.47.27.243:443
2015-05-19 10:28:456e99073c1c649ea8f70548656c27e467n/aTeslacrypt78.47.27.243:443
2015-05-19 10:28:456e99073c1c649ea8f70548656c27e467n/aTeslacrypt78.47.27.243:443
2015-05-19 10:25:3446ffc56ef8850b5ec890480edb119b8fn/aTeslacrypt78.47.27.243:443
2015-05-19 10:25:3446ffc56ef8850b5ec890480edb119b8fn/aTeslacrypt78.47.27.243:443
2015-05-19 10:09:22b19f2448c634f837eea07bcd38107cbdn/aTeslacrypt78.47.27.243:443
2015-05-19 10:09:22b19f2448c634f837eea07bcd38107cbdn/aTeslacrypt78.47.27.243:443
2015-05-19 09:40:07010761a1a51ede59283cdabc21e32fcen/aTeslacrypt78.47.27.243:443
2015-05-19 09:40:07010761a1a51ede59283cdabc21e32fcen/aTeslacrypt78.47.27.243:443
2015-05-19 09:24:53d798eb0ac2dd250bc82b1efbafcf6ea0n/aTeslacrypt78.47.27.243:443
2015-05-19 09:24:53d798eb0ac2dd250bc82b1efbafcf6ea0n/aTeslacrypt78.47.27.243:443
2015-05-19 09:06:21cffc22fefc4d0e6122b8d3ed0e870f0bn/aTeslacrypt78.47.27.243:443
2015-05-19 09:06:21cffc22fefc4d0e6122b8d3ed0e870f0bn/aTeslacrypt78.47.27.243:443
2015-05-19 06:25:11d695f34a8bcf778f922a12ba5d0383d9n/aTeslacrypt78.47.27.243:443
2015-05-19 06:25:11d695f34a8bcf778f922a12ba5d0383d9n/aTeslacrypt78.47.27.243:443
2015-05-19 05:33:365f123979ce6b24222e3a56fcb8662218n/aTeslacrypt78.47.27.243:443
2015-05-19 05:33:365f123979ce6b24222e3a56fcb8662218n/aTeslacrypt78.47.27.243:443
2015-05-19 03:51:265fee929494d2bee86c6cbf59a6615125n/aTeslacrypt78.47.27.243:443
2015-05-19 03:51:265fee929494d2bee86c6cbf59a6615125n/aTeslacrypt78.47.27.243:443
2015-05-19 02:54:5374e6972842fe272b3e714ec1a82810e0Virustotal results 13/57 (22.81%) Teslacrypt78.47.27.243:443
2015-05-19 02:54:5374e6972842fe272b3e714ec1a82810e0Virustotal results 13/57 (22.81%) Teslacrypt78.47.27.243:443
2015-05-19 02:53:50556c0d2e372f4f856a26272918bb479dn/aTeslacrypt78.47.27.243:443
2015-05-19 02:53:50556c0d2e372f4f856a26272918bb479dn/aTeslacrypt78.47.27.243:443
2015-05-19 02:45:164383b51d2f12dcbfb54f9bab6f108918n/aTeslacrypt78.47.27.243:443
2015-05-19 02:45:164383b51d2f12dcbfb54f9bab6f108918n/aTeslacrypt78.47.27.243:443
2015-05-19 02:38:5441db4a346996a5e91004f606f45f133an/aTeslacrypt78.47.27.243:443
2015-05-19 02:38:5441db4a346996a5e91004f606f45f133an/aTeslacrypt78.47.27.243:443
2015-05-19 02:34:339bb702b4ad5fd072dfd10223a6c7b3c2n/aTeslacrypt78.47.27.243:443
2015-05-19 02:34:339bb702b4ad5fd072dfd10223a6c7b3c2n/aTeslacrypt78.47.27.243:443
2015-05-19 02:08:262d1e0d47b64ba79e00de9c3cb07c770cn/aTeslacrypt78.47.27.243:443
2015-05-19 02:08:262d1e0d47b64ba79e00de9c3cb07c770cn/aTeslacrypt78.47.27.243:443
2015-05-19 02:00:549501d81715c6f60166c08c064e2005can/aTeslacrypt78.47.27.243:443
2015-05-19 02:00:549501d81715c6f60166c08c064e2005can/aTeslacrypt78.47.27.243:443
2015-05-19 01:58:5627a9e0b7e038317903c3e39bf925dc5cn/aTeslacrypt78.47.27.243:443
2015-05-19 01:58:5627a9e0b7e038317903c3e39bf925dc5cn/aTeslacrypt78.47.27.243:443
2015-05-19 01:51:18d4740307915ed3e104ed8bfd8bd0f577n/aTeslacrypt78.47.27.243:443
2015-05-19 01:51:18d4740307915ed3e104ed8bfd8bd0f577n/aTeslacrypt78.47.27.243:443
2015-05-19 01:11:5290d7a37c0f040b3e65b46d68c314dabcn/aTeslacrypt78.47.27.243:443
2015-05-19 01:11:5290d7a37c0f040b3e65b46d68c314dabcn/aTeslacrypt78.47.27.243:443
2015-05-19 00:40:588c9be6a5429018bd522bc9822fcb9018n/aTeslacrypt78.47.27.243:443
2015-05-19 00:40:588c9be6a5429018bd522bc9822fcb9018n/aTeslacrypt78.47.27.243:443
2015-05-19 00:36:12e8906570fc792b4db8f58e654b601238n/aTeslacrypt78.47.27.243:443
2015-05-19 00:36:12e8906570fc792b4db8f58e654b601238n/aTeslacrypt78.47.27.243:443
2015-05-19 00:23:23072337a16f8f5e6e548a6dfcb323ae4cn/aTeslacrypt78.47.27.243:443
2015-05-19 00:23:23072337a16f8f5e6e548a6dfcb323ae4cn/aTeslacrypt78.47.27.243:443
2015-05-19 00:22:03889391a7c2a815bdcd4af82e3ef52b0fn/aTeslacrypt78.47.27.243:443
2015-05-19 00:22:03889391a7c2a815bdcd4af82e3ef52b0fn/aTeslacrypt78.47.27.243:443
2015-05-19 00:19:28879cf262915ea69ec4fe86da2af2459bn/aTeslacrypt78.47.27.243:443
2015-05-19 00:19:28879cf262915ea69ec4fe86da2af2459bn/aTeslacrypt78.47.27.243:443
2015-05-19 00:14:4285646e7ba512f43bd795d68ebaa3ff00n/aTeslacrypt78.47.27.243:443
2015-05-19 00:14:4285646e7ba512f43bd795d68ebaa3ff00n/aTeslacrypt78.47.27.243:443
2015-05-19 00:13:0984fe61840e2a5b7a6f650ea7619d55c4n/aTeslacrypt78.47.27.243:443
2015-05-19 00:13:0984fe61840e2a5b7a6f650ea7619d55c4n/aTeslacrypt78.47.27.243:443
2015-05-18 23:29:258020ff922e70022e3cd1936c2a2bfaaan/aTeslacrypt78.47.27.243:443
2015-05-18 23:29:258020ff922e70022e3cd1936c2a2bfaaan/aTeslacrypt78.47.27.243:443
2015-05-18 23:13:23c50f8e653c6321fd93a9857903843bacn/aTeslacrypt78.47.27.243:443
2015-05-18 23:13:23c50f8e653c6321fd93a9857903843bacn/aTeslacrypt78.47.27.243:443
2015-05-18 23:11:380e37b72d11aa0df8efc8795094ab3931n/aTeslacrypt78.47.27.243:443
2015-05-18 23:11:380e37b72d11aa0df8efc8795094ab3931n/aTeslacrypt78.47.27.243:443
2015-05-18 22:37:12ed7b5fbd7cd1dac35b0b394b2fc5236an/aTeslacrypt78.47.27.243:443
2015-05-18 22:37:12ed7b5fbd7cd1dac35b0b394b2fc5236an/aTeslacrypt78.47.27.243:443
2015-05-18 21:26:3962e85524fdb69bdc377af0a99dc8d8acn/aTeslacrypt78.47.27.243:443
2015-05-18 21:26:3962e85524fdb69bdc377af0a99dc8d8acn/aTeslacrypt78.47.27.243:443
2015-05-18 21:19:301b879da759a3be18da209d076e8f5ffdn/aTeslacrypt78.47.27.243:443
2015-05-18 21:19:301b879da759a3be18da209d076e8f5ffdn/aTeslacrypt78.47.27.243:443
2015-05-18 21:18:0919aba06ce56481fb7c0a4c1672e53d34n/aTeslacrypt78.47.27.243:443
2015-05-18 21:18:0919aba06ce56481fb7c0a4c1672e53d34n/aTeslacrypt78.47.27.243:443
2015-05-18 21:09:3512e7a185a83d364e5287fd9bb4d55e24n/aTeslacrypt78.47.27.243:443
2015-05-18 21:09:3512e7a185a83d364e5287fd9bb4d55e24n/aTeslacrypt78.47.27.243:443
2015-05-18 20:59:30209b06ae639be5901be79cea254ca078Virustotal results 35/57 (61.40%) Teslacrypt78.47.27.243:443
2015-05-18 20:59:30209b06ae639be5901be79cea254ca078Virustotal results 35/57 (61.40%) Teslacrypt78.47.27.243:443
2015-05-18 20:36:29be404ec19d7ef67dfa9c20cba57249f9n/aTeslacrypt78.47.27.243:443
2015-05-18 20:36:29be404ec19d7ef67dfa9c20cba57249f9n/aTeslacrypt78.47.27.243:443
2015-05-18 20:36:26e2ec1e948d263b87ef9c5c428e97b51fn/aTeslacrypt78.47.27.243:443
2015-05-18 20:36:26e2ec1e948d263b87ef9c5c428e97b51fn/aTeslacrypt78.47.27.243:443
2015-05-18 20:32:36049451e28bf60782010cd473996bff4en/aTeslacrypt78.47.27.243:443
2015-05-18 20:32:36049451e28bf60782010cd473996bff4en/aTeslacrypt78.47.27.243:443
2015-05-18 20:04:081ebbf8a0f5a9f95459ab11e105c629e2n/aTeslacrypt78.47.27.243:443
2015-05-18 20:04:081ebbf8a0f5a9f95459ab11e105c629e2n/aTeslacrypt78.47.27.243:443
2015-05-18 20:02:20658e3a755eacfa32410210150569b036n/aTeslacrypt78.47.27.243:443
2015-05-18 20:02:20658e3a755eacfa32410210150569b036n/aTeslacrypt78.47.27.243:443

# of entries: 100 (max: 100)