SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint ecef03ad9fe7b88142526bcab52978136f95db1d.

Database Entry


SHA1 Fingerprint:ecef03ad9fe7b88142526bcab52978136f95db1d
Certificate Common Name (CN):C=US, ST=Denial, L=Springfield, O=Dis
Issuer Distinguished Name (DN):C=US, ST=Denial, L=Springfield, O=Dis
TLS Version:TLS 1.2
First seen:2016-09-02 10:41:56 UTC
Last seen:2016-09-03 02:37:13 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2016-09-03 09:39:19
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-09-03 02:37:13313b6bd1f6f2784ca923c3576793f13cVirustotal results 32/57 (56.14%) TorrentLocker 95.46.99.149:443
2016-09-03 02:37:13313b6bd1f6f2784ca923c3576793f13cVirustotal results 32/57 (56.14%) TorrentLocker 95.46.99.149:443
2016-09-02 10:41:5636324b7450012e67e04706fdb4e4c264Virustotal results 9/56 (16.07%) 95.46.99.149:443
2016-09-02 10:41:5636324b7450012e67e04706fdb4e4c264Virustotal results 9/56 (16.07%) 95.46.99.149:443

# of entries: 4 (max: 100)