SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b045bec6fb6122b0747bc2743850aaab7868e62a.

Database Entry


SHA1 Fingerprint:b045bec6fb6122b0747bc2743850aaab7868e62a
Certificate Common Name (CN):manthandathep.uk
Issuer Distinguished Name (DN):manthandathep.uk
TLS Version:SSLv3
First seen:2016-02-11 02:32:37 UTC
Last seen:2016-02-12 11:03:29 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2016-02-11 06:41:16
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-02-12 11:03:297bf7df5e630242182fa95adff4963921Virustotal results 5/54 (9.26%) Dridex 87.229.86.20:843
2016-02-12 11:03:297bf7df5e630242182fa95adff4963921Virustotal results 5/54 (9.26%) Dridex 87.229.86.20:843
2016-02-11 11:43:05b0812504f3564e395fec327c71c4bfbdVirustotal results 2/53 (3.77%) Dridex 87.229.86.20:843
2016-02-11 11:43:05b0812504f3564e395fec327c71c4bfbdVirustotal results 2/53 (3.77%) Dridex 87.229.86.20:843
2016-02-11 02:38:0071d83ce7f230ead2e522a015c1967092Virustotal results 0/53 (0.00%) Dridex 87.229.86.20:843
2016-02-11 02:38:0071d83ce7f230ead2e522a015c1967092Virustotal results 0/53 (0.00%) Dridex 87.229.86.20:843
2016-02-11 02:32:376be38bb7747678254efde1d977220cfdVirustotal results 5/54 (9.26%) Dridex 87.229.86.20:843
2016-02-11 02:32:376be38bb7747678254efde1d977220cfdVirustotal results 5/54 (9.26%) Dridex 87.229.86.20:843

# of entries: 8 (max: 100)