SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint ae67490ca34a6d4948398d85c1a6b030909ae336.

Database Entry


SHA1 Fingerprint:ae67490ca34a6d4948398d85c1a6b030909ae336
Certificate Common Name (CN):example.com
Issuer Distinguished Name (DN):example.com
TLS Version:SSLv3
First seen:2015-05-14 14:41:50 UTC
Last seen:2015-05-21 20:18:49 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-05-14 14:44:14
Malware samples:3
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-05-21 20:18:496026ea81d1a17fb087862c09d309fd56Virustotal results 10/57 (17.54%) Dridex 78.47.182.222:443
2015-05-21 20:18:496026ea81d1a17fb087862c09d309fd56Virustotal results 10/57 (17.54%) Dridex 78.47.182.222:443
2015-05-15 11:20:032a6db368acfeafba1692029cfacebe57Virustotal results 36/55 (65.45%) Dridex 185.91.175.5:443
2015-05-15 11:20:032a6db368acfeafba1692029cfacebe57Virustotal results 36/55 (65.45%) Dridex 185.91.175.5:443
2015-05-14 14:41:50c9e8d4549990612b1aad0ed4f87e3f5fVirustotal results 39/55 (70.91%) Dridex 185.91.175.5:443
2015-05-14 14:41:50c9e8d4549990612b1aad0ed4f87e3f5fVirustotal results 39/55 (70.91%) Dridex 185.91.175.5:443

# of entries: 6 (max: 100)