SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint ff42e458742bae07bff696c17f396628e1192821.

Database Entry


SHA1 Fingerprint:ff42e458742bae07bff696c17f396628e1192821
Certificate Common Name (CN):C=XX, L=Default City, O=Default Company Ltd
Issuer Distinguished Name (DN):C=XX, L=Default City, O=Default Company Ltd
TLS Version:TLS 1.2
First seen:2015-09-30 21:35:11 UTC
Last seen:2015-10-01 07:51:51 UTC
Status:Blacklisted
Listing reason:TorrentLocker C&C
Listing date:2015-10-01 05:19:15
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-10-01 07:51:51ec6e17f8fd8d4a986e81429f2bc51dc3Virustotal results 3/56 (5.36%) TorrentLocker 82.146.40.76:443
2015-10-01 07:51:51ec6e17f8fd8d4a986e81429f2bc51dc3Virustotal results 3/56 (5.36%) TorrentLocker 82.146.40.76:443
2015-10-01 07:34:07e28e85422041fd60ff31da182105b992Virustotal results 5/56 (8.93%) TorrentLocker 82.146.40.76:443
2015-10-01 07:34:07e28e85422041fd60ff31da182105b992Virustotal results 5/56 (8.93%) TorrentLocker 82.146.40.76:443
2015-10-01 05:42:013a35f81af48ae0a6805f6ac6fc08eb29Virustotal results 4/57 (7.02%) TorrentLocker 82.146.40.76:443
2015-10-01 05:42:013a35f81af48ae0a6805f6ac6fc08eb29Virustotal results 4/57 (7.02%) TorrentLocker 82.146.40.76:443
2015-09-30 21:35:11d4112e962141fde1fc211de3497cf9c8Virustotal results 34/56 (60.71%) TorrentLocker 82.146.40.76:443
2015-09-30 21:35:11d4112e962141fde1fc211de3497cf9c8Virustotal results 34/56 (60.71%) TorrentLocker 82.146.40.76:443

# of entries: 8 (max: 100)