SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint dd7e3cfb312ef1b20d6108b9e2fbd5451b997157.

Database Entry


SHA1 Fingerprint:dd7e3cfb312ef1b20d6108b9e2fbd5451b997157
Certificate Common Name (CN):ida.somshongofthes.jm
Issuer Distinguished Name (DN):ida.somshongofthes.jm
TLS Version:TLSv1
First seen:2016-04-24 02:56:25 UTC
Last seen:2016-04-24 21:21:54 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2016-04-25 05:47:35
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-04-24 21:21:54cf39567a7da322c8eafd02583f1ac809Virustotal results 32/55 (58.18%) Dridex 193.90.12.221:8043
2016-04-24 21:21:54cf39567a7da322c8eafd02583f1ac809Virustotal results 32/55 (58.18%) Dridex 193.90.12.221:8043
2016-04-24 02:56:25ec58a876ac1e14db49727ec5961c60d9Virustotal results 36/56 (64.29%) Dridex 193.90.12.221:8043
2016-04-24 02:56:25ec58a876ac1e14db49727ec5961c60d9Virustotal results 36/56 (64.29%) Dridex 193.90.12.221:8043

# of entries: 4 (max: 100)