SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint befc88848e203fdc465c0fca03c3f6e40ee4305c.

Database Entry


SHA1 Fingerprint:befc88848e203fdc465c0fca03c3f6e40ee4305c
Certificate Common Name (CN):C=US, ST=Denial, L=Springfield, O=Dis
Issuer Distinguished Name (DN):C=US, ST=Denial, L=Springfield, O=Dis
TLS Version:TLS 1.2
First seen:2016-11-16 12:55:29 UTC
Last seen:2016-11-16 13:57:17 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2016-11-16 13:06:14
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-11-16 13:57:17c108c8cf93a2df229151b4a8f771a42bVirustotal results 6/56 (10.71%) TorrentLocker 62.76.189.48:443
2016-11-16 13:57:17c108c8cf93a2df229151b4a8f771a42bVirustotal results 6/56 (10.71%) TorrentLocker 62.76.189.48:443
2016-11-16 12:55:295854c51e0ad26ee5a6a7d2894e7daf1cVirustotal results 6/56 (10.71%) TorrentLocker 62.76.189.48:443
2016-11-16 12:55:295854c51e0ad26ee5a6a7d2894e7daf1cVirustotal results 6/56 (10.71%) TorrentLocker 62.76.189.48:443

# of entries: 4 (max: 100)