SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint e84a7f1de9756678aef510894b4e5d6d5c10ee3c.

Database Entry


SHA1 Fingerprint:e84a7f1de9756678aef510894b4e5d6d5c10ee3c
Certificate Common Name (CN):ageanfingr.tw
Issuer Distinguished Name (DN):ageanfingr.tw
TLS Version:SSLv3
First seen:2015-07-23 17:14:46 UTC
Last seen:2015-07-29 05:22:49 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-07-24 05:04:52
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-07-29 05:22:4927e7a76a691dc562b30da8d98014d686Virustotal results 23/56 (41.07%) Dridex 31.131.251.33:743
2015-07-29 05:22:4927e7a76a691dc562b30da8d98014d686Virustotal results 23/56 (41.07%) Dridex 31.131.251.33:743
2015-07-24 02:39:5689e93a926de9c212a2b148722c938ba3Virustotal results 12/56 (21.43%) Dridex 31.131.251.33:743
2015-07-24 02:39:5689e93a926de9c212a2b148722c938ba3Virustotal results 12/56 (21.43%) Dridex 31.131.251.33:743
2015-07-23 17:14:46bcbf3887b431995bacee5c1440d76012Virustotal results 3/56 (5.36%) Dridex 31.131.251.33:743
2015-07-23 17:14:46bcbf3887b431995bacee5c1440d76012Virustotal results 3/56 (5.36%) Dridex 31.131.251.33:743

# of entries: 6 (max: 100)