SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint f865e16729af458b4a1ed832369c314bade948bf.
Database Entry
SHA1 Fingerprint: | f865e16729af458b4a1ed832369c314bade948bf |
---|---|
Certificate Common Name (CN): | causherandgrat.zr |
Issuer Distinguished Name (DN): | causherandgrat.zr |
TLS Version: | SSLv3 |
First seen: | 2016-02-17 14:04:04 UTC |
Last seen: | 2016-02-18 00:04:17 UTC |
Status: | Blacklisted |
Listing reason: | Dridex C&C |
Listing date: | 2016-02-17 16:58:31 |
Malware samples: | 2 |
Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2016-02-18 00:04:17 | a46eaf521cd61a73eaa513b95cb94076 | 3/54 (5.56%) | Dridex | 210.70.242.41:448 |
2016-02-18 00:04:17 | a46eaf521cd61a73eaa513b95cb94076 | 3/54 (5.56%) | Dridex | 210.70.242.41:448 |
2016-02-17 14:04:04 | f7d84a07fda5de30d68213d7813c4d02 | 3/54 (5.56%) | Dridex | 210.70.242.41:448 |
2016-02-17 14:04:04 | f7d84a07fda5de30d68213d7813c4d02 | 3/54 (5.56%) | Dridex | 210.70.242.41:448 |
# of entries: 4 (max: 100)