SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d932fe11f6e20d5c59e45cea2547d8a5590b269a.

Database Entry


SHA1 Fingerprint:d932fe11f6e20d5c59e45cea2547d8a5590b269a
Certificate Common Name (CN):cenantoropi.ge
Issuer Distinguished Name (DN):cenantoropi.ge
TLS Version:TLSv1
First seen:2015-11-12 10:15:56 UTC
Last seen:2015-11-12 15:20:18 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-11-12 14:24:53
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-11-12 15:20:18d7560cc0068f039f495bc87738a482daVirustotal results 36/55 (65.45%) Dridex 95.154.203.249:4438
2015-11-12 15:20:18d7560cc0068f039f495bc87738a482daVirustotal results 36/55 (65.45%) Dridex 95.154.203.249:4438
2015-11-12 10:15:5637ceca4ac82d0ade9bac811217590ecdVirustotal results 0/47 (0.00%) Dridex 95.154.203.249:4438
2015-11-12 10:15:5637ceca4ac82d0ade9bac811217590ecdVirustotal results 0/47 (0.00%) Dridex 95.154.203.249:4438

# of entries: 4 (max: 100)