SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint dd92ad90f3903d6a03fc98d522e12a16c5acbafc.

Database Entry


SHA1 Fingerprint:dd92ad90f3903d6a03fc98d522e12a16c5acbafc
Certificate Common Name (CN):C=US, ST=Denial, L=Springfield, O=Dis
Issuer Distinguished Name (DN):C=US, ST=Denial, L=Springfield, O=Dis
TLS Version:TLS 1.2
First seen:2016-07-02 09:28:42 UTC
Last seen:2016-07-04 14:23:15 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2016-07-04 06:44:56
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-07-04 14:23:15eecc7e6b1db6d0ac0b6730bd1925d4deVirustotal results 18/56 (32.14%) TorrentLocker 164.132.15.78:443
2016-07-04 14:23:15eecc7e6b1db6d0ac0b6730bd1925d4deVirustotal results 18/56 (32.14%) TorrentLocker 164.132.15.78:443
2016-07-02 11:59:074c9cc321e1590b0774dc59484e747bfbVirustotal results 30/50 (60.00%) TorrentLocker 164.132.15.78:443
2016-07-02 11:59:074c9cc321e1590b0774dc59484e747bfbVirustotal results 30/50 (60.00%) TorrentLocker 164.132.15.78:443
2016-07-02 09:28:42ab7fa16c9a492eba2323f056f8fde673Virustotal results 5/55 (9.09%) TorrentLocker 164.132.15.78:443
2016-07-02 09:28:42ab7fa16c9a492eba2323f056f8fde673Virustotal results 5/55 (9.09%) TorrentLocker 164.132.15.78:443

# of entries: 6 (max: 100)