SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint ba7fb55047595574e5e9d8e76fd681284db7a506.

Database Entry


SHA1 Fingerprint:ba7fb55047595574e5e9d8e76fd681284db7a506
Certificate Common Name (CN):C=US, ST=Denial, L=Springfield, O=Dis
Issuer Distinguished Name (DN):C=US, ST=Denial, L=Springfield, O=Dis
TLS Version:TLS 1.2
First seen:2015-11-19 07:30:14 UTC
Last seen:2015-11-19 14:17:07 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2015-11-19 08:48:22
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-11-19 14:17:07debfed6f24249da44f4a6db330d73969Virustotal results 35/54 (64.81%) TorrentLocker 81.177.181.217:443
2015-11-19 14:17:07debfed6f24249da44f4a6db330d73969Virustotal results 35/54 (64.81%) TorrentLocker 81.177.181.217:443
2015-11-19 08:54:33543f513681f59eb4562e5fb1171d670cn/aTorrentLocker 81.177.181.217:443
2015-11-19 08:54:33543f513681f59eb4562e5fb1171d670cn/aTorrentLocker 81.177.181.217:443
2015-11-19 07:30:23681eb38848cd643517b7bd8fac111fa7n/aTorrentLocker 81.177.181.217:443
2015-11-19 07:30:23681eb38848cd643517b7bd8fac111fa7n/aTorrentLocker 81.177.181.217:443

# of entries: 6 (max: 100)