SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint f75f189d71eabad87eb88818f566a1ea96da0c67.

Database Entry


SHA1 Fingerprint:f75f189d71eabad87eb88818f566a1ea96da0c67
Certificate Common Name (CN):pornhub.xxx
Issuer Distinguished Name (DN):pornhub.xxx
TLS Version:TLS 1.2
First seen:2015-07-02 10:23:44 UTC
Last seen:2015-07-07 16:08:29 UTC
Status:Blacklisted
Listing reason:Dridex C&C
Listing date:2015-07-02 13:25:27
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-07-07 16:08:29cf8a658e8fcf856f753051424d4c423dn/aDridex 69.164.213.85:1443
2015-07-07 16:08:29cf8a658e8fcf856f753051424d4c423dn/aDridex 69.164.213.85:1443
2015-07-04 14:38:1144ca65430ac1aa396e42dfb4862c9212Virustotal results 2/56 (3.57%) Dridex 69.164.213.85:1443
2015-07-04 14:38:1144ca65430ac1aa396e42dfb4862c9212Virustotal results 2/56 (3.57%) Dridex 69.164.213.85:1443
2015-07-02 10:23:4462a5ce2f1c1393cc1a92764af711c2b1Virustotal results 3/55 (5.45%) Dridex 69.164.213.85:1443
2015-07-02 10:23:4462a5ce2f1c1393cc1a92764af711c2b1Virustotal results 3/55 (5.45%) Dridex 69.164.213.85:1443

# of entries: 6 (max: 100)