SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint e307da6dd84ba921de22181e13bf8fd401e354d7.

Database Entry


SHA1 Fingerprint:e307da6dd84ba921de22181e13bf8fd401e354d7
Certificate Common Name (CN):example.com
Issuer Distinguished Name (DN):example.com
TLS Version:TLS 1.2
First seen:2017-12-02 17:26:40 UTC
Last seen:2017-12-12 13:06:57 UTC
Status:Blacklisted
Listing reason:TrickBot C&C
Listing date:2017-12-07 15:50:21
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2017-12-12 13:06:57777014ec4f6ce295c0615524bdbd2368Virustotal results 42/68 (61.76%) TrickBot 5.39.47.22:443
2017-12-12 13:06:57777014ec4f6ce295c0615524bdbd2368Virustotal results 42/68 (61.76%) TrickBot 5.39.47.22:443
2017-12-07 04:01:39ced8085a153ad445a7cc1a66c1571fd7Virustotal results 39/67 (58.21%) TrickBot 5.39.47.22:443
2017-12-07 04:01:39ced8085a153ad445a7cc1a66c1571fd7Virustotal results 39/67 (58.21%) TrickBot 5.39.47.22:443
2017-12-03 10:45:56ea16fb2d8aae9c5c7199019d5fcd83e9Virustotal results 33/68 (48.53%) TrickBot 5.39.47.22:443
2017-12-03 10:45:56ea16fb2d8aae9c5c7199019d5fcd83e9Virustotal results 33/68 (48.53%) TrickBot 5.39.47.22:443
2017-12-02 17:26:40ceab549db69462898e4f6b1431f523d3Virustotal results 38/68 (55.88%) TrickBot 5.39.47.22:443
2017-12-02 17:26:40ceab549db69462898e4f6b1431f523d3Virustotal results 38/68 (55.88%) TrickBot 5.39.47.22:443

# of entries: 8 (max: 100)