SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 2c347127a733330951af90bd391d4cb25cf68620.

Database Entry


SHA1 Fingerprint:2c347127a733330951af90bd391d4cb25cf68620
Certificate Common Name (CN):*
Issuer Distinguished Name (DN):*
TLS Version:TLS 1.2
First seen:2018-10-09 04:52:00 UTC
Last seen:2018-10-09 09:12:01 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2018-10-09 06:26:03
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-10-09 09:12:011a455f5deff222dbb5734c0e0850b1f2Virustotal results 40/69 (57.97%) Gozi 54.39.175.179:443
2018-10-09 09:12:011a455f5deff222dbb5734c0e0850b1f2Virustotal results 40/69 (57.97%) Gozi 54.39.175.179:443
2018-10-09 05:07:51a8744df8b130f43a217f7f8f9173d06eVirustotal results 41/68 (60.29%) Gozi 54.39.175.179:443
2018-10-09 05:07:51a8744df8b130f43a217f7f8f9173d06eVirustotal results 41/68 (60.29%) Gozi 54.39.175.179:443
2018-10-09 04:52:02fe175f14a726f100e1a7a6a95e8d8a66Virustotal results 42/69 (60.87%) Gozi 54.39.175.179:443
2018-10-09 04:52:02fe175f14a726f100e1a7a6a95e8d8a66Virustotal results 42/69 (60.87%) Gozi 54.39.175.179:443

# of entries: 6 (max: 100)