SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d39d27d2267c5e3c26382699e038be6e9270dc13.

Database Entry


SHA1 Fingerprint:d39d27d2267c5e3c26382699e038be6e9270dc13
Certificate Common Name (CN):*.
Issuer Distinguished Name (DN):*.
TLS Version:TLS 1.2
First seen:2015-05-20 00:22:38 UTC
Last seen:2016-12-04 18:06:38 UTC
Status:Blacklisted
Listing reason:Redyms C&C
Listing date:2015-08-14 09:51:06
Malware samples:297
Botnet C&Cs:280

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-12-04 18:06:3860a572cd58fc63505d3fec9c7947a0f9Virustotal results 36/57 (63.16%) Kovter178.218.78.15:443
2016-12-04 18:06:3860a572cd58fc63505d3fec9c7947a0f9Virustotal results 36/57 (63.16%) Kovter178.218.78.15:443
2016-10-25 21:17:29fc5954fd7c82d38bde2dc0ed7702564bVirustotal results 21/54 (38.89%) Redyms46.229.58.234:443
2016-10-25 21:17:29fc5954fd7c82d38bde2dc0ed7702564bVirustotal results 21/54 (38.89%) Redyms46.229.58.234:443
2016-03-13 22:20:16fdd1289dc154eaaacddb83409c440648Virustotal results 42/57 (73.68%) Quakbot178.93.115.60:443
2016-03-13 22:20:16fdd1289dc154eaaacddb83409c440648Virustotal results 42/57 (73.68%) Quakbot178.93.115.60:443
2016-03-12 08:06:533e4012aff30b39d9592910e004c7e31an/aQuakbot46.173.81.51:443
2016-03-12 08:06:533e4012aff30b39d9592910e004c7e31an/aQuakbot46.173.81.51:443
2016-02-23 19:30:44d5d53bdd74f74321473c12596e5ea68fn/aQuakbot95.79.72.128:443
2016-02-23 19:30:44d5d53bdd74f74321473c12596e5ea68fn/aQuakbot95.79.72.128:443
2016-02-16 20:02:19a2a92c9de9ca756646939b6e5e73da6bVirustotal results 31/54 (57.41%) Redyms31.130.9.247:443
2016-02-16 20:02:19a2a92c9de9ca756646939b6e5e73da6bVirustotal results 31/54 (57.41%) Redyms31.130.9.247:443
2016-02-16 15:15:47500031abd1bf5e7484df3f394ed49201Virustotal results 31/53 (58.49%) Redyms95.105.249.36:443
2016-02-16 15:15:47500031abd1bf5e7484df3f394ed49201Virustotal results 31/53 (58.49%) Redyms95.105.249.36:443
2016-02-14 17:34:33b7be5d74fa19c224e6a8a2ab3ed5a923n/aQuakbot178.151.203.248:443
2016-02-14 17:34:33b7be5d74fa19c224e6a8a2ab3ed5a923n/aQuakbot178.151.203.248:443
2016-02-10 10:06:44953db5a2b62007365f63fc1807e613bfn/aQuakbot134.249.31.13:443
2016-02-10 10:06:44953db5a2b62007365f63fc1807e613bfn/aQuakbot134.249.31.13:443
2016-02-06 15:12:15424d1f6f6f2f6c8cbc8fa6eb5773bdcbVirustotal results 5/53 (9.43%) Redyms93.76.72.58:443
2016-02-06 15:12:15424d1f6f6f2f6c8cbc8fa6eb5773bdcbVirustotal results 5/53 (9.43%) Redyms93.76.72.58:443
2016-02-03 06:56:33c885d2f591c5287451e0fce79686ce68n/aQuakbot188.255.93.37:443
2016-02-03 06:56:33c885d2f591c5287451e0fce79686ce68n/aQuakbot188.255.93.37:443
2016-01-26 02:24:47a2f27a56ccc6b645eeb740a56e4afa37Virustotal results 20/57 (35.09%) Redyms77.121.63.196:443
2016-01-26 02:24:47a2f27a56ccc6b645eeb740a56e4afa37Virustotal results 20/57 (35.09%) Redyms77.121.63.196:443
2016-01-22 14:25:49430b1d5c1497b0c9b98aa3dd3b78edfen/aRedyms78.137.13.12:443
2016-01-22 14:25:49430b1d5c1497b0c9b98aa3dd3b78edfen/aRedyms78.137.13.12:443
2016-01-17 13:01:54fd749d5e19485fb14e347d0ed320bb23Virustotal results 4/55 (7.27%) Redyms178.76.67.12:443
2016-01-17 13:01:54fd749d5e19485fb14e347d0ed320bb23Virustotal results 4/55 (7.27%) Redyms178.76.67.12:443
2016-01-17 06:33:57a19731eb90b0104d425e0ef5c0c607f3n/aRedyms89.42.70.241:443
2016-01-17 06:33:57a19731eb90b0104d425e0ef5c0c607f3n/aRedyms89.42.70.241:443
2016-01-13 15:21:227f1b40308a56b4f810f76dc629e19ab0Virustotal results 23/54 (42.59%) Redyms89.37.214.2:443
2016-01-13 15:21:227f1b40308a56b4f810f76dc629e19ab0Virustotal results 23/54 (42.59%) Redyms89.37.214.2:443
2016-01-11 21:30:595de070dbab253fa127c0220bc76f1d05Virustotal results 4/54 (7.41%) Redyms93.79.199.189:443
2016-01-11 21:30:595de070dbab253fa127c0220bc76f1d05Virustotal results 4/54 (7.41%) Redyms93.79.199.189:443
2016-01-10 11:04:17ab50bf8def89a243d97c3cb168f308c5n/aRedyms95.133.197.95:443
2016-01-10 11:04:17ab50bf8def89a243d97c3cb168f308c5n/aRedyms95.133.197.95:443
2016-01-10 10:58:1467bfae8647f887ddcac470597b0a9f62Virustotal results 10/56 (17.86%) Redyms185.22.17.85:443
2016-01-10 10:58:1467bfae8647f887ddcac470597b0a9f62Virustotal results 10/56 (17.86%) Redyms185.22.17.85:443
2016-01-10 06:56:44a77697081f09d747db56068637696864n/aRedyms77.121.255.9:443
2016-01-10 06:56:44a77697081f09d747db56068637696864n/aRedyms77.121.255.9:443
2016-01-09 22:56:32ab175dcaf1ec83f539ee6e212ba1253en/aRedyms46.249.131.74:443
2016-01-09 22:56:32ab175dcaf1ec83f539ee6e212ba1253en/aRedyms46.249.131.74:443
2016-01-09 19:46:508222d3f0d206a91a5267a9cc3bb5d7aaVirustotal results 15/56 (26.79%) Redyms37.229.135.205:443
2016-01-09 19:46:508222d3f0d206a91a5267a9cc3bb5d7aaVirustotal results 15/56 (26.79%) Redyms37.229.135.205:443
2016-01-09 18:09:34a3454c20d3d55ac55c48dfb894f71574n/aRedyms93.77.115.10:443
2016-01-09 18:09:34a3454c20d3d55ac55c48dfb894f71574n/aRedyms93.77.115.10:443
2016-01-09 17:08:53a97c2159191be1c45a0bb194944891edn/aRedyms5.2.32.18:443
2016-01-09 17:08:53a97c2159191be1c45a0bb194944891edn/aRedyms5.2.32.18:443
2016-01-09 14:36:39a8b68a5a01d6b4414674e2ff68b18510n/aRedyms193.93.218.81:443
2016-01-09 14:36:39a8b68a5a01d6b4414674e2ff68b18510n/aRedyms193.93.218.81:443
2016-01-09 14:35:09ac042763e9aea062c0b99e7ddae1a581n/aRedyms89.35.61.44:443
2016-01-09 14:35:09ac042763e9aea062c0b99e7ddae1a581n/aRedyms89.35.61.44:443
2016-01-09 13:10:17a7068446c21efbdcf782c916cfae6b94n/aRedyms94.52.72.42:443
2016-01-09 13:10:17a7068446c21efbdcf782c916cfae6b94n/aRedyms94.52.72.42:443
2016-01-09 12:35:25ab826dfa2d06d64dac86f0fdf136ac5cn/aRedyms93.78.7.146:443
2016-01-09 12:35:25ab826dfa2d06d64dac86f0fdf136ac5cn/aRedyms93.78.7.146:443
2016-01-09 10:07:30ab5ce3cfe3e5a2c9a05d66695f389175n/aRedyms94.153.65.14:443
2016-01-09 10:07:30ab5ce3cfe3e5a2c9a05d66695f389175n/aRedyms94.153.65.14:443
2016-01-09 03:25:31af254e449ef9e5cf036a1752695eaa13n/aRedyms178.216.227.244:443
2016-01-09 03:25:31af254e449ef9e5cf036a1752695eaa13n/aRedyms178.216.227.244:443
2016-01-08 23:20:43ad167750f158f491c69061c40d4dfef4n/aRedyms93.171.21.27:443
2016-01-08 23:20:43ad167750f158f491c69061c40d4dfef4n/aRedyms93.171.21.27:443
2016-01-08 21:44:25aad836b3b4361938a9bba207b6715f83n/aRedyms109.87.249.48:443
2016-01-08 21:44:25aad836b3b4361938a9bba207b6715f83n/aRedyms109.87.249.48:443
2016-01-08 20:09:24acf559c70635ffc98c3c7e7da284234cn/aRedyms93.127.114.50:443
2016-01-08 20:09:24acf559c70635ffc98c3c7e7da284234cn/aRedyms93.127.114.50:443
2016-01-08 15:11:42ad35b332fcb314ea27e1c43c598176e4n/aRedyms46.211.43.150:443
2016-01-08 15:11:42ad35b332fcb314ea27e1c43c598176e4n/aRedyms46.211.43.150:443
2016-01-08 14:08:57acfae187ed6eeced20bd5d0f90688d96n/aRedyms91.241.227.106:443
2016-01-08 14:08:57acfae187ed6eeced20bd5d0f90688d96n/aRedyms91.241.227.106:443
2016-01-06 22:12:01e70ab69456c1f257d1f45efe6d684aa2n/aRedyms62.68.148.132:443
2016-01-06 22:12:01e70ab69456c1f257d1f45efe6d684aa2n/aRedyms62.68.148.132:443
2016-01-03 17:21:082661d49b0cfb877558fb3529bc234333n/aRedyms213.111.232.28:443
2016-01-03 17:21:082661d49b0cfb877558fb3529bc234333n/aRedyms213.111.232.28:443
2016-01-02 13:50:42787930bb4f213f4cbd77096e2e8426a0n/aRedyms94.253.83.111:443
2016-01-02 13:50:42787930bb4f213f4cbd77096e2e8426a0n/aRedyms94.253.83.111:443
2016-01-01 18:51:05987efe3a6c012046321aedb87b867b26n/aRedyms46.173.71.50:443
2016-01-01 18:51:05987efe3a6c012046321aedb87b867b26n/aRedyms46.173.71.50:443
2015-12-30 11:58:292bc5379e8821c271afc55464cf4bc684n/aRedyms109.200.148.114:443
2015-12-30 11:58:292bc5379e8821c271afc55464cf4bc684n/aRedyms109.200.148.114:443
2015-12-29 18:39:556f212c2946c1bb75d495ddee52d9ca53n/aRedyms46.151.42.154:443
2015-12-29 18:39:556f212c2946c1bb75d495ddee52d9ca53n/aRedyms46.151.42.154:443
2015-12-29 17:03:18ee0f02b091c180390b274ae0df768832n/aRedyms188.27.236.220:443
2015-12-29 17:03:18ee0f02b091c180390b274ae0df768832n/aRedyms188.27.236.220:443
2015-12-29 12:33:59976e43352c1661604ab2d1cf9499a990n/aRedyms94.19.198.38:443
2015-12-29 12:33:59976e43352c1661604ab2d1cf9499a990n/aRedyms94.19.198.38:443
2015-12-29 09:36:195f7a69c762b6b3b1e2391d1609778fb4n/aRedyms94.232.207.193:443
2015-12-29 09:36:195f7a69c762b6b3b1e2391d1609778fb4n/aRedyms94.232.207.193:443
2015-12-27 09:15:057a23a800d90ed5bca4f591a6b54556d3n/aRedyms92.87.69.36:443
2015-12-27 09:15:057a23a800d90ed5bca4f591a6b54556d3n/aRedyms92.87.69.36:443
2015-12-26 22:46:37e5f0a7050f5e8d4dc602c5bb99eb5dfcn/aRedyms37.115.157.90:443
2015-12-26 22:46:37e5f0a7050f5e8d4dc602c5bb99eb5dfcn/aRedyms37.115.157.90:443
2015-12-25 23:02:39413b729577000939dfbc1571aa8f6e7en/aRedyms195.66.222.173:443
2015-12-25 23:02:39413b729577000939dfbc1571aa8f6e7en/aRedyms195.66.222.173:443
2015-12-25 10:41:43edb285eadabfadd5f1859ba4fc95626bn/aRedyms188.230.84.45:443
2015-12-25 10:41:43edb285eadabfadd5f1859ba4fc95626bn/aRedyms188.230.84.45:443
2015-12-23 08:37:273ed244b34c1d31934169cfef7732ce71n/aRedyms176.37.225.130:443
2015-12-23 08:37:273ed244b34c1d31934169cfef7732ce71n/aRedyms176.37.225.130:443
2015-12-23 08:20:206c994ce45ac796d29c0063f9a6369c76n/aRedyms31.170.152.131:443
2015-12-23 08:20:206c994ce45ac796d29c0063f9a6369c76n/aRedyms31.170.152.131:443

# of entries: 100 (max: 100)