Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with H1N1

Database Entry


Malware:H1N1
First seen:2016-06-29 14:11:56 UTC
Last seen:2016-10-14 12:57:08 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-10-14 12:57:0804dff6c8aea520d68797902f20892c0dVirustotal results 41/55 (74.55%) H1N178.155.217.154:443
2016-10-14 12:57:0804dff6c8aea520d68797902f20892c0dVirustotal results 41/55 (74.55%) H1N178.155.217.154:443
2016-07-29 05:23:30c77e1e3da5123cdaf34f4109ea2098f0Virustotal results 25/55 (45.45%) H1N1185.36.102.35:443
2016-07-29 05:23:30c77e1e3da5123cdaf34f4109ea2098f0Virustotal results 25/55 (45.45%) H1N1185.36.102.35:443
2016-06-29 14:11:56dd43d4acd2d8383b06f6ddc763b96202Virustotal results 5/56 (8.93%) H1N1194.67.201.123:443
2016-06-29 14:11:56dd43d4acd2d8383b06f6ddc763b96202Virustotal results 5/56 (8.93%) H1N1194.67.201.123:443