SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d1c74082fa5137905b8675aa054a0baefa5f7650.

Database Entry


SHA1 Fingerprint:d1c74082fa5137905b8675aa054a0baefa5f7650
Certificate Common Name (CN):alechatatitica.ua
Issuer Distinguished Name (DN):alechatatitica.ua
TLS Version:TLSv1
First seen:2016-01-14 22:18:41 UTC
Last seen:2016-01-23 10:35:48 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2016-01-15 06:31:39
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-01-23 10:35:486106afb791f3ee5347c1a330549bbeeaVirustotal results 8/54 (14.81%) Dridex 110.77.142.156:8143
2016-01-23 10:35:486106afb791f3ee5347c1a330549bbeeaVirustotal results 8/54 (14.81%) Dridex 110.77.142.156:8143
2016-01-18 10:29:29f1e65afd3fe09e44f77ed264252b8e9aVirustotal results 31/55 (56.36%) Dridex 110.77.142.156:8143
2016-01-18 10:29:29f1e65afd3fe09e44f77ed264252b8e9aVirustotal results 31/55 (56.36%) Dridex 110.77.142.156:8143
2016-01-17 03:36:24cda2cff09e568b3a49c737de5e153174Virustotal results 36/56 (64.29%) Dridex 110.77.142.156:8143
2016-01-17 03:36:24cda2cff09e568b3a49c737de5e153174Virustotal results 36/56 (64.29%) Dridex 110.77.142.156:8143
2016-01-15 17:29:00b3d8604fee5ae6091928486c1fb11625Virustotal results 27/55 (49.09%) Dridex 110.77.142.156:8143
2016-01-15 17:29:00b3d8604fee5ae6091928486c1fb11625Virustotal results 27/55 (49.09%) Dridex 110.77.142.156:8143
2016-01-14 22:18:41aaf2070192032e4e4cde5e16d0d7fcceVirustotal results 30/55 (54.55%) Dridex 110.77.142.156:8143
2016-01-14 22:18:41aaf2070192032e4e4cde5e16d0d7fcceVirustotal results 30/55 (54.55%) Dridex 110.77.142.156:8143

# of entries: 10 (max: 100)