SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint a71f899adeab0b88222b8166c3a6536d202a2d02.

Database Entry


SHA1 Fingerprint:a71f899adeab0b88222b8166c3a6536d202a2d02
Certificate Common Name (CN):bdns.at
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLS 1.2
First seen:2018-03-27 00:56:26 UTC
Last seen:2018-04-03 19:30:38 UTC
Status:Blacklisted
Listing reason:QuantLoader C&C
Listing date:2018-03-29 18:11:35
Malware samples:4
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-04-03 19:30:3806b037b0620a1ba6034122d829f9daebVirustotal results 38/65 (58.46%) QuantLoader186.2.168.150:443
2018-04-03 19:30:3806b037b0620a1ba6034122d829f9daebVirustotal results 38/65 (58.46%) QuantLoader186.2.168.150:443
2018-04-02 02:44:551aaca3af69319935aff1b4719e5603c3Virustotal results 14/66 (21.21%) 186.2.168.150:443
2018-04-02 02:44:551aaca3af69319935aff1b4719e5603c3Virustotal results 14/66 (21.21%) 186.2.168.150:443
2018-03-29 16:48:54993e99d8463a42df283121864ec9d66fVirustotal results 18/66 (27.27%) QuantLoader46.28.204.81:443
2018-03-29 16:48:54993e99d8463a42df283121864ec9d66fVirustotal results 18/66 (27.27%) QuantLoader46.28.204.81:443
2018-03-27 00:56:2792769328e49f5c5cdd4d3967c8081a6bVirustotal results 8/64 (12.50%) QuantLoader46.28.204.81:443
2018-03-27 00:56:2792769328e49f5c5cdd4d3967c8081a6bVirustotal results 8/64 (12.50%) QuantLoader46.28.204.81:443

# of entries: 8 (max: 100)