SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint c9267f47e443b130d6ace16cfc61e75b1102eaeb.

Database Entry


SHA1 Fingerprint:c9267f47e443b130d6ace16cfc61e75b1102eaeb
Certificate Common Name (CN):tdmodsecur.pw
Issuer Distinguished Name (DN):COMODO RSA Domain Validation Secure Server CA
TLS Version:SSLv3
First seen:2014-12-23 05:17:08 UTC
Last seen:never
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2014-12-23 08:46:05
Malware samples:1
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2014-12-23 05:17:08ccc4cbd091ae4f4a1a02306f89f0954cVirustotal results 24/56 (42.86%) ZeuS 62.109.24.205:443
2014-12-23 05:17:08ccc4cbd091ae4f4a1a02306f89f0954cVirustotal results 24/56 (42.86%) ZeuS 62.109.24.205:443

# of entries: 2 (max: 100)