SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d39d27d2267c5e3c26382699e038be6e9270dc13.

Database Entry


SHA1 Fingerprint:d39d27d2267c5e3c26382699e038be6e9270dc13
Certificate Common Name (CN):*.
Issuer Distinguished Name (DN):*.
TLS Version:TLS 1.2
First seen:2015-05-20 00:22:38 UTC
Last seen:2016-12-04 18:06:38 UTC
Status:Blacklisted
Listing reason:Redyms C&C
Listing date:2015-08-14 09:51:06
Malware samples:297
Botnet C&Cs:280

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-12-04 18:06:3860a572cd58fc63505d3fec9c7947a0f9Virustotal results 36/57 (63.16%) Kovter178.218.78.15:443
2016-10-25 21:17:29fc5954fd7c82d38bde2dc0ed7702564bVirustotal results 21/54 (38.89%) Redyms46.229.58.234:443
2016-03-13 22:20:16fdd1289dc154eaaacddb83409c440648Virustotal results 42/57 (73.68%) Quakbot178.93.115.60:443
2016-03-12 08:06:533e4012aff30b39d9592910e004c7e31an/aQuakbot46.173.81.51:443
2016-02-23 19:30:44d5d53bdd74f74321473c12596e5ea68fn/aQuakbot95.79.72.128:443
2016-02-16 20:02:19a2a92c9de9ca756646939b6e5e73da6bVirustotal results 31/54 (57.41%) Redyms31.130.9.247:443
2016-02-16 15:15:47500031abd1bf5e7484df3f394ed49201Virustotal results 31/53 (58.49%) Redyms95.105.249.36:443
2016-02-14 17:34:33b7be5d74fa19c224e6a8a2ab3ed5a923n/aQuakbot178.151.203.248:443
2016-02-10 10:06:44953db5a2b62007365f63fc1807e613bfn/aQuakbot134.249.31.13:443
2016-02-06 15:12:15424d1f6f6f2f6c8cbc8fa6eb5773bdcbVirustotal results 5/53 (9.43%) Redyms93.76.72.58:443
2016-02-03 06:56:33c885d2f591c5287451e0fce79686ce68n/aQuakbot188.255.93.37:443
2016-01-26 02:24:47a2f27a56ccc6b645eeb740a56e4afa37Virustotal results 20/57 (35.09%) Redyms77.121.63.196:443
2016-01-22 14:25:49430b1d5c1497b0c9b98aa3dd3b78edfen/aRedyms78.137.13.12:443
2016-01-17 13:01:54fd749d5e19485fb14e347d0ed320bb23Virustotal results 4/55 (7.27%) Redyms178.76.67.12:443
2016-01-17 06:33:57a19731eb90b0104d425e0ef5c0c607f3n/aRedyms89.42.70.241:443
2016-01-13 15:21:227f1b40308a56b4f810f76dc629e19ab0Virustotal results 23/54 (42.59%) Redyms89.37.214.2:443
2016-01-11 21:30:595de070dbab253fa127c0220bc76f1d05Virustotal results 4/54 (7.41%) Redyms93.79.199.189:443
2016-01-10 11:04:17ab50bf8def89a243d97c3cb168f308c5n/aRedyms95.133.197.95:443
2016-01-10 10:58:1467bfae8647f887ddcac470597b0a9f62Virustotal results 10/56 (17.86%) Redyms185.22.17.85:443
2016-01-10 06:56:44a77697081f09d747db56068637696864n/aRedyms77.121.255.9:443
2016-01-09 22:56:32ab175dcaf1ec83f539ee6e212ba1253en/aRedyms46.249.131.74:443
2016-01-09 19:46:508222d3f0d206a91a5267a9cc3bb5d7aaVirustotal results 15/56 (26.79%) Redyms37.229.135.205:443
2016-01-09 18:09:34a3454c20d3d55ac55c48dfb894f71574n/aRedyms93.77.115.10:443
2016-01-09 17:08:53a97c2159191be1c45a0bb194944891edn/aRedyms5.2.32.18:443
2016-01-09 14:36:39a8b68a5a01d6b4414674e2ff68b18510n/aRedyms193.93.218.81:443
2016-01-09 14:35:09ac042763e9aea062c0b99e7ddae1a581n/aRedyms89.35.61.44:443
2016-01-09 13:10:17a7068446c21efbdcf782c916cfae6b94n/aRedyms94.52.72.42:443
2016-01-09 12:35:25ab826dfa2d06d64dac86f0fdf136ac5cn/aRedyms93.78.7.146:443
2016-01-09 10:07:30ab5ce3cfe3e5a2c9a05d66695f389175n/aRedyms94.153.65.14:443
2016-01-09 03:25:31af254e449ef9e5cf036a1752695eaa13n/aRedyms178.216.227.244:443
2016-01-08 23:20:43ad167750f158f491c69061c40d4dfef4n/aRedyms93.171.21.27:443
2016-01-08 21:44:25aad836b3b4361938a9bba207b6715f83n/aRedyms109.87.249.48:443
2016-01-08 20:09:24acf559c70635ffc98c3c7e7da284234cn/aRedyms93.127.114.50:443
2016-01-08 15:11:42ad35b332fcb314ea27e1c43c598176e4n/aRedyms46.211.43.150:443
2016-01-08 14:08:57acfae187ed6eeced20bd5d0f90688d96n/aRedyms91.241.227.106:443
2016-01-06 22:12:01e70ab69456c1f257d1f45efe6d684aa2n/aRedyms62.68.148.132:443
2016-01-03 17:21:082661d49b0cfb877558fb3529bc234333n/aRedyms213.111.232.28:443
2016-01-02 13:50:42787930bb4f213f4cbd77096e2e8426a0n/aRedyms94.253.83.111:443
2016-01-01 18:51:05987efe3a6c012046321aedb87b867b26n/aRedyms46.173.71.50:443
2015-12-30 11:58:292bc5379e8821c271afc55464cf4bc684n/aRedyms109.200.148.114:443
2015-12-29 18:39:556f212c2946c1bb75d495ddee52d9ca53n/aRedyms46.151.42.154:443
2015-12-29 17:03:18ee0f02b091c180390b274ae0df768832n/aRedyms188.27.236.220:443
2015-12-29 12:33:59976e43352c1661604ab2d1cf9499a990n/aRedyms94.19.198.38:443
2015-12-29 09:36:195f7a69c762b6b3b1e2391d1609778fb4n/aRedyms94.232.207.193:443
2015-12-27 09:15:057a23a800d90ed5bca4f591a6b54556d3n/aRedyms92.87.69.36:443
2015-12-26 22:46:37e5f0a7050f5e8d4dc602c5bb99eb5dfcn/aRedyms37.115.157.90:443
2015-12-25 23:02:39413b729577000939dfbc1571aa8f6e7en/aRedyms195.66.222.173:443
2015-12-25 10:41:43edb285eadabfadd5f1859ba4fc95626bn/aRedyms188.230.84.45:443
2015-12-23 08:37:273ed244b34c1d31934169cfef7732ce71n/aRedyms176.37.225.130:443
2015-12-23 08:20:206c994ce45ac796d29c0063f9a6369c76n/aRedyms31.170.152.131:443
2015-12-22 09:05:317efd4248ef01dd4241094543128db7f4Virustotal results 23/53 (43.40%) Redyms31.170.130.120:443
2015-12-21 18:21:43b95e9f8a77aa492fa36ab41eefffcae7Virustotal results 12/53 (22.64%) Redyms213.111.142.72:443
2015-12-21 18:07:29b187d4fc36c94331dded4168f566e9ccn/aRedyms194.8.158.212:443
2015-12-21 16:02:4480dd80f97e185f0955ccd59b368717ben/aRedyms176.115.155.191:443
2015-12-21 10:52:0201d2d92918170af99250cb0503357ca4n/aRedyms79.126.59.177:443
2015-12-21 10:14:0773a5806c0e6ae4b2af4bdb294b5ad119n/aRedyms178.150.6.152:443
2015-12-21 09:52:099c301d5c8745d3bd4206cfc36c30a637n/aRedyms5.105.197.75:443
2015-12-21 00:25:01baeaef05e8c170ac323047cb033dca6fn/aRedyms95.106.82.63:443
2015-12-20 09:07:3344c1f9174a071b3fdcaddbcd88d77e28n/aRedyms91.244.37.202:443
2015-12-19 15:57:24f3e0fc44c36ca93caf76abe9d1bb7764n/aRedyms195.66.223.39:443
2015-12-19 15:22:26c119b39f14b83593a7337f2b18b168c6n/aRedyms91.243.229.223:443
2015-12-19 10:06:304d6b1c4939889fd2b6c3372fcc3b60f6n/aRedyms172.248.107.77:443
2015-12-19 09:04:139cbdf975ab5266513ba6f29787169629n/aRedyms91.243.229.223:443
2015-12-18 19:02:53056c35838ea9888458b257288c775c91n/aRedyms93.113.248.85:443
2015-12-18 18:44:07cf02fa583034aa376e6f874007d4d35fn/aRedyms213.111.147.244:443
2015-12-18 16:40:293be25cda1c84a112179960826e7aa8b1n/aRedyms109.194.13.46:443
2015-12-18 16:08:518cbfbb156baadb72aba56576a134de43n/aRedyms46.119.119.112:443
2015-12-18 01:39:0934c1518fde163068cf046cd8b061ea24Virustotal results 16/54 (29.63%) Redyms176.102.216.221:443
2015-12-17 19:33:38d96abb95462fa352e9758b9f1422db47Virustotal results 21/54 (38.89%) Redyms46.98.109.3:443
2015-12-17 18:03:48e25c01ece7d0f7cfa90cb7634158c50en/aRedyms93.170.152.201:443
2015-12-17 08:41:0867453fc06a3748d1c7baa0c6cb1d6706n/aRedyms37.229.28.69:443
2015-12-16 23:12:289a82b4d8c2318c8aa4cf11f107ceff9fn/aRedyms78.61.114.43:443
2015-12-16 11:59:599bb78c513b9065b9bef9f2f599d38f18n/aRedyms109.87.187.170:443
2015-12-15 23:22:13f1cd0c8f675a09cbb644b4cbf42b4b09Virustotal results 26/56 (46.43%) Redyms188.190.72.59:443
2015-12-15 15:28:108c36d705a172dea323b45746788172e9n/aRedyms123.203.102.113:443
2015-12-15 11:10:32ece019d37bc34bdf35fddb9cc48e1446n/aRedyms31.6.124.141:443
2015-12-15 09:37:058b92b93bd35ebef25ef69e46a344528dn/aRedyms134.249.74.86:443
2015-12-14 18:34:3136ec99186c09c79af58c0790cc85c675n/aRedyms176.121.252.119:443
2015-12-14 18:21:548d42dba82677dbeca8645f78c40657f0Virustotal results 27/54 (50.00%) Redyms24.214.18.167:443
2015-12-14 11:16:241c33e2b2db62190ac5e5b0a3875666edn/aRedyms188.0.122.38:443
2015-12-14 11:09:209ea6851a540059b05084a69d17a35110n/aRedyms46.98.164.139:443
2015-12-14 10:11:434cbdff47cafcab4a2db05c2fc239322dn/aRedyms188.0.93.2:443
2015-12-14 07:59:080d2b72a853ee5c68c5d363e0da99116bn/aRedyms188.186.75.41:443
2015-12-14 06:45:126eaf102b9d2c41ecbeda3778efd0414en/aRedyms195.66.222.86:443
2015-12-13 18:25:46727d787f1e84d401140b4d1fc5c6ce4an/aRedyms178.137.82.42:443
2015-12-13 17:01:572fe3df73fb8077b3a861c9fe1c52283an/aRedyms212.106.48.238:443
2015-12-13 11:17:0721b5c5a6d033cf3177a7fd47a49a0acbn/aRedyms212.91.196.240:443
2015-12-11 20:50:29ff8ffcfab7f47b48935924bd04d7b1fen/aRedyms86.124.10.172:443
2015-12-11 17:14:57b183a250fa96ee82a2252d127689ae7fn/aRedyms93.78.67.85:443
2015-12-11 17:07:54f084b925d820b173a78ec03b80030b5en/aRedyms91.244.38.12:443
2015-12-10 19:55:11656ff671cd86a58cb3c5478e3d71351an/aRedyms89.185.12.238:443
2015-12-10 16:39:04948f2759d354afb94c7bf50c567ea8dcn/aRedyms109.201.220.125:443
2015-12-09 22:27:3449e7ea7bafe4abfbf5a47a6df6c6f700n/aRedyms94.179.172.123:443
2015-12-09 19:24:481da0f3727e50e33dd706e8fdf6ace4b4n/aRedyms5.165.138.228:443
2015-12-09 11:58:081ae0ec60aa2847538966cce2c6a55f46n/aRedyms5.136.78.25:443
2015-12-08 11:24:35a03dabfe5e3e77b9e1551f7f10be4ea0n/aRedyms93.76.205.220:443
2015-12-08 08:59:44e0404248596ddacd21565ec8cd53cbcan/aRedyms176.124.10.74:443
2015-12-08 07:44:0785177f8744a318c3b3ca3ceec4bae7a4n/aRedyms89.121.205.190:443
2015-12-07 12:33:1783555f742b45934f9de1da34fb39d97aVirustotal results 3/55 (5.45%) Redyms85.237.35.122:443
2015-12-06 07:49:148f7f324e76118622667185c2e965770aVirustotal results 4/56 (7.14%) Redyms188.210.228.211:443

# of entries: 100 (max: 100)