SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint a6b0e89642bbb60b698f1661c1536c0e46729d8c.

Database Entry


SHA1 Fingerprint:a6b0e89642bbb60b698f1661c1536c0e46729d8c
Certificate Common Name (CN):ytegtiniasu.cs
Issuer Distinguished Name (DN):ytegtiniasu.cs
TLS Version:TLS 1.2
First seen:2015-07-21 16:48:16 UTC
Last seen:2015-07-21 22:30:49 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-07-22 05:38:56
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-07-21 22:30:496a43542cbf0b807c2119c39f45f22e6fVirustotal results 1/56 (1.79%) Dridex 94.23.110.45:443
2015-07-21 22:30:496a43542cbf0b807c2119c39f45f22e6fVirustotal results 1/56 (1.79%) Dridex 94.23.110.45:443
2015-07-21 18:32:471aa81dedb0103d8c71d011aace0f03acVirustotal results 0/54 (0.00%) Dridex 94.23.110.45:443
2015-07-21 18:32:471aa81dedb0103d8c71d011aace0f03acVirustotal results 0/54 (0.00%) Dridex 94.23.110.45:443
2015-07-21 16:48:162571510cc2cd2473a7bb9d58805d5a05Virustotal results 0/55 (0.00%) Dridex 94.23.110.45:443
2015-07-21 16:48:162571510cc2cd2473a7bb9d58805d5a05Virustotal results 0/55 (0.00%) Dridex 94.23.110.45:443

# of entries: 6 (max: 100)