SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 486e3fb277a25b9f4cb6a2f109a0b517f815193f.

Database Entry


SHA1 Fingerprint:486e3fb277a25b9f4cb6a2f109a0b517f815193f
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-09-15 18:49:27 UTC
Last seen:2016-09-20 17:00:24 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2016-09-16 10:17:12
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-09-20 17:00:24f03d6032caafc9824596a03a846681efn/aGootkit 198.101.12.57:80
2016-09-20 17:00:24f03d6032caafc9824596a03a846681efn/aGootkit 198.101.12.57:80
2016-09-20 16:55:323816adf7db1af311178e46120c59651bVirustotal results 8/57 (14.04%) Gootkit 198.101.12.57:80
2016-09-20 16:55:323816adf7db1af311178e46120c59651bVirustotal results 8/57 (14.04%) Gootkit 198.101.12.57:80
2016-09-18 07:04:404c0a3c422355971db9d2fd1912ada79eVirustotal results 34/57 (59.65%) Gootkit 198.101.12.57:80
2016-09-18 07:04:404c0a3c422355971db9d2fd1912ada79eVirustotal results 34/57 (59.65%) Gootkit 198.101.12.57:80
2016-09-17 00:11:312b045eecd09521df1e745c33ef01eb8fVirustotal results 28/57 (49.12%) Gootkit 198.101.12.57:80
2016-09-17 00:11:312b045eecd09521df1e745c33ef01eb8fVirustotal results 28/57 (49.12%) Gootkit 198.101.12.57:80
2016-09-15 18:49:277f18855a9be4eb60262d88e363faa27fn/aGootkit 198.101.12.57:80
2016-09-15 18:49:277f18855a9be4eb60262d88e363faa27fn/aGootkit 198.101.12.57:80

# of entries: 10 (max: 100)