SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d01a12dbffefc6c94a3b3364ab1aee9ab1d9b598.

Database Entry


SHA1 Fingerprint:d01a12dbffefc6c94a3b3364ab1aee9ab1d9b598
Certificate Common Name (CN):192.99.28.191
Issuer Distinguished Name (DN):192.99.28.191
TLS Version:TLS 1.2
First seen:2015-09-17 16:07:45 UTC
Last seen:2015-09-18 07:11:23 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2015-09-18 07:06:53
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-09-18 07:11:23b21d9307ffc771267fa21d7b21539736Virustotal results 4/56 (7.14%) TorrentLocker 46.166.172.96:443
2015-09-18 07:11:23b21d9307ffc771267fa21d7b21539736Virustotal results 4/56 (7.14%) TorrentLocker 46.166.172.96:443
2015-09-18 03:03:435d31826f39faa1e165b03208dcd1ea83Virustotal results 25/55 (45.45%) TorrentLocker 46.166.172.96:443
2015-09-18 03:03:435d31826f39faa1e165b03208dcd1ea83Virustotal results 25/55 (45.45%) TorrentLocker 46.166.172.96:443
2015-09-17 16:55:06b317925fe1d1b9c3ba3ac72f0098f9ddVirustotal results 20/57 (35.09%) TorrentLocker 46.166.172.96:443
2015-09-17 16:55:06b317925fe1d1b9c3ba3ac72f0098f9ddVirustotal results 20/57 (35.09%) TorrentLocker 46.166.172.96:443
2015-09-17 16:07:4609c5142de18372fbd11e6f8cf8ba3337Virustotal results 19/57 (33.33%) TorrentLocker 46.166.172.96:443
2015-09-17 16:07:4609c5142de18372fbd11e6f8cf8ba3337Virustotal results 19/57 (33.33%) TorrentLocker 46.166.172.96:443

# of entries: 8 (max: 100)