SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint ac5c1f1aa5753df82a1d587d3cd8415069613b61.

Database Entry


SHA1 Fingerprint:ac5c1f1aa5753df82a1d587d3cd8415069613b61
Certificate Common Name (CN):C=GB, ST=Berkshire, L=Newbury, O=My Company Ltd
Issuer Distinguished Name (DN):C=GB, ST=Berkshire, L=Newbury, O=My Company Ltd
TLS Version:SSLv3
First seen:2014-12-03 11:38:38 UTC
Last seen:2016-02-08 20:57:02 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2015-06-07 07:39:09
Malware samples:352
Botnet C&Cs:73

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-02-08 20:57:0270a7dc9622d01d8a7bbec0ac98e00ce9Virustotal results 7/54 (12.96%) Gootkit 82.118.226.43:443
2016-02-08 20:57:0270a7dc9622d01d8a7bbec0ac98e00ce9Virustotal results 7/54 (12.96%) Gootkit 82.118.226.43:443
2016-02-07 00:25:249f79bc9a0e66e84898a977b528638038Virustotal results 8/53 (15.09%) Gootkit 82.118.226.43:443
2016-02-07 00:25:249f79bc9a0e66e84898a977b528638038Virustotal results 8/53 (15.09%) Gootkit 82.118.226.43:443
2016-02-04 02:52:39f8c66fc5a64828c5580e7d02c7a9b361Virustotal results 2/53 (3.77%) Gootkit 151.80.176.72:443
2016-02-04 02:52:39f8c66fc5a64828c5580e7d02c7a9b361Virustotal results 2/53 (3.77%) Gootkit 151.80.176.72:443
2016-02-03 21:12:554977bd19495998841076bc43bbde3469Virustotal results 4/53 (7.55%) Gootkit 151.80.176.72:443
2016-02-03 21:12:554977bd19495998841076bc43bbde3469Virustotal results 4/53 (7.55%) Gootkit 151.80.176.72:443
2016-02-03 18:44:36668620d649d6940aed5d65c41aef3af1n/aShylock 185.118.142.211:443
2016-02-03 18:44:36668620d649d6940aed5d65c41aef3af1n/aShylock 185.118.142.211:443
2016-01-31 17:05:226ce7267acccd2ee4b04ed3230556d37en/aShylock 162.210.249.90:443
2016-01-31 17:05:226ce7267acccd2ee4b04ed3230556d37en/aShylock 162.210.249.90:443
2016-01-30 15:13:48ab902e02d8d33d93737538cfa98717f0n/aShylock 162.210.249.90:443
2016-01-30 15:13:48ab902e02d8d33d93737538cfa98717f0n/aShylock 162.210.249.90:443
2016-01-29 15:14:412a3c22c95547d404ad4ceedb4d77605cVirustotal results 42/66 (63.64%) Shylock 162.210.249.90:443
2016-01-29 15:14:412a3c22c95547d404ad4ceedb4d77605cVirustotal results 42/66 (63.64%) Shylock 162.210.249.90:443
2016-01-29 12:25:3061fe05b869fe8088793d50b0de7f18abn/aShylock 104.244.159.15:443
2016-01-29 12:25:3061fe05b869fe8088793d50b0de7f18abn/aShylock 104.244.159.15:443
2016-01-29 12:19:3652173279d8781eff2d234b8afd23109an/aShylock 104.244.159.15:443
2016-01-29 12:19:3652173279d8781eff2d234b8afd23109an/aShylock 104.244.159.15:443
2016-01-29 10:54:007740520b33f56e64a44573576dca7aban/aGootkit 104.244.159.15:443
2016-01-29 10:54:007740520b33f56e64a44573576dca7aban/aGootkit 104.244.159.15:443
2016-01-29 06:52:446ac074500dc62703ef941d4a519394bbn/aGootkit 162.253.176.224:443
2016-01-29 06:52:446ac074500dc62703ef941d4a519394bbn/aGootkit 162.253.176.224:443
2016-01-29 06:52:0829ff480b14a7b354413c24201410428aVirustotal results 2/54 (3.70%) Gootkit 162.253.176.224:443
2016-01-29 06:52:0829ff480b14a7b354413c24201410428aVirustotal results 2/54 (3.70%) Gootkit 162.253.176.224:443
2016-01-28 21:45:2899c22afb909bcc017c6e7e8d69cf9b23n/aGootkit 162.253.176.224:443
2016-01-28 21:45:2899c22afb909bcc017c6e7e8d69cf9b23n/aGootkit 162.253.176.224:443
2016-01-28 19:35:174ea7c062beb3eb567250e9853392d6eaVirustotal results 39/57 (68.42%) Gootkit 185.130.4.98:80
2016-01-28 19:35:174ea7c062beb3eb567250e9853392d6eaVirustotal results 39/57 (68.42%) Gootkit 185.130.4.98:80
2016-01-26 12:18:170c4c2d3359187728c07e2b3840d172ffVirustotal results 3/55 (5.45%) Gootkit 149.202.127.212:443
2016-01-26 12:18:170c4c2d3359187728c07e2b3840d172ffVirustotal results 3/55 (5.45%) Gootkit 149.202.127.212:443
2016-01-13 15:04:25fec4139ddbcec00c476eaf26ea12222aVirustotal results 4/55 (7.27%) Gootkit 172.245.130.32:443
2016-01-13 15:04:25fec4139ddbcec00c476eaf26ea12222aVirustotal results 4/55 (7.27%) Gootkit 172.245.130.32:443
2016-01-11 02:42:55a29d4cd45e51abd24114735764777d63Virustotal results 9/54 (16.67%) Gootkit 5.255.78.133:80
2016-01-11 02:42:55a29d4cd45e51abd24114735764777d63Virustotal results 9/54 (16.67%) Gootkit 5.255.78.133:80
2016-01-09 21:48:32abaf06b954fe51cf7ae6ab3ba5fd1456Virustotal results 19/54 (35.19%) Gootkit 185.82.202.38:443
2016-01-09 21:48:32abaf06b954fe51cf7ae6ab3ba5fd1456Virustotal results 19/54 (35.19%) Gootkit 185.82.202.38:443
2016-01-09 17:44:18a77a0b6dc0437771f40eee1ca644ac08n/aGootkit 89.207.129.95:80
2016-01-09 17:44:18a77a0b6dc0437771f40eee1ca644ac08n/aGootkit 89.207.129.95:80
2016-01-09 04:28:45acda62425681c7a5b944db58f6750cf6Virustotal results 3/54 (5.56%) Gootkit 185.45.193.220:443
2016-01-09 04:28:45acda62425681c7a5b944db58f6750cf6Virustotal results 3/54 (5.56%) Gootkit 185.45.193.220:443
2016-01-08 21:31:34aa27a6c2d9b3766534c4b467bdcc1972Virustotal results 6/54 (11.11%) Gootkit 198.96.89.181:443
2016-01-08 21:31:34aa27a6c2d9b3766534c4b467bdcc1972Virustotal results 6/54 (11.11%) Gootkit 198.96.89.181:443
2015-12-26 11:53:429242b0f7f5bf01afec180fbec95c8bd8Virustotal results 14/53 (26.42%) Gootkit 178.18.249.147:443
2015-12-26 11:53:429242b0f7f5bf01afec180fbec95c8bd8Virustotal results 14/53 (26.42%) Gootkit 178.18.249.147:443
2015-12-24 03:15:463b82738ea9f1192445b0a4573192a209Virustotal results 6/54 (11.11%) Gootkit 109.235.70.20:443
2015-12-24 03:15:463b82738ea9f1192445b0a4573192a209Virustotal results 6/54 (11.11%) Gootkit 109.235.70.20:443
2015-12-21 18:39:038a6db953713202cb9620eaba7275af01Virustotal results 3/54 (5.56%) Gootkit 199.68.198.117:443
2015-12-21 18:39:038a6db953713202cb9620eaba7275af01Virustotal results 3/54 (5.56%) Gootkit 199.68.198.117:443
2015-12-21 15:34:046a6eb15b70a92b95717993944f1ed5b8Virustotal results 6/54 (11.11%) Gootkit 188.166.74.217:443
2015-12-21 15:34:046a6eb15b70a92b95717993944f1ed5b8Virustotal results 6/54 (11.11%) Gootkit 188.166.74.217:443
2015-12-21 12:35:53b47acc8e563fa8d337192559d7b52ba3Virustotal results 2/55 (3.64%) Gootkit 185.82.202.38:443
2015-12-21 12:35:53b47acc8e563fa8d337192559d7b52ba3Virustotal results 2/55 (3.64%) Gootkit 185.82.202.38:443
2015-12-21 09:28:17c33c256b9f07b2adcf607e90bd417fc6Virustotal results 14/52 (26.92%) Gootkit 199.68.198.117:443
2015-12-21 09:28:17c33c256b9f07b2adcf607e90bd417fc6Virustotal results 14/52 (26.92%) Gootkit 199.68.198.117:443
2015-12-21 08:07:26b62e2b3f9e850f0b3fb08c66b5669027Virustotal results 5/54 (9.26%) Gootkit 198.96.89.181:443
2015-12-21 08:07:26b62e2b3f9e850f0b3fb08c66b5669027Virustotal results 5/54 (9.26%) Gootkit 198.96.89.181:443
2015-12-20 16:00:3209ae0a183866616fd34850245e3e0493Virustotal results 3/54 (5.56%) Gootkit 188.166.74.217:443
2015-12-20 16:00:3209ae0a183866616fd34850245e3e0493Virustotal results 3/54 (5.56%) Gootkit 188.166.74.217:443
2015-12-20 15:10:07914f01708648a2bf8ed250e927e633feVirustotal results 10/54 (18.52%) Gootkit 188.166.74.217:443
2015-12-20 15:10:07914f01708648a2bf8ed250e927e633feVirustotal results 10/54 (18.52%) Gootkit 188.166.74.217:443
2015-12-20 12:05:370bca2469a63c6221beefa5af02a00b92Virustotal results 10/54 (18.52%) Gootkit 188.166.74.217:443
2015-12-20 12:05:370bca2469a63c6221beefa5af02a00b92Virustotal results 10/54 (18.52%) Gootkit 188.166.74.217:443
2015-12-20 11:54:1007e4ba7f7f97fa036801f18693d49a20Virustotal results 9/54 (16.67%) Gootkit 188.166.74.217:443
2015-12-20 11:54:1007e4ba7f7f97fa036801f18693d49a20Virustotal results 9/54 (16.67%) Gootkit 188.166.74.217:443
2015-12-20 10:58:02800530f8744bfde73f8b129c0290ef32Virustotal results 2/56 (3.57%) Gootkit 185.82.202.38:443
2015-12-20 10:58:02800530f8744bfde73f8b129c0290ef32Virustotal results 2/56 (3.57%) Gootkit 185.82.202.38:443
2015-12-17 02:12:24ede83e77ccbdf74800074fd8b2cb3d51Virustotal results 10/53 (18.87%) Gootkit 185.82.202.38:443
2015-12-17 02:12:24ede83e77ccbdf74800074fd8b2cb3d51Virustotal results 10/53 (18.87%) Gootkit 185.82.202.38:443
2015-12-15 23:27:08d1a89940c78d8e9e06e112cfba0dc886Virustotal results 6/56 (10.71%) Gootkit 185.82.202.38:443
2015-12-15 23:27:08d1a89940c78d8e9e06e112cfba0dc886Virustotal results 6/56 (10.71%) Gootkit 185.82.202.38:443
2015-12-15 18:23:29c2b8541e8b7d2a835e08a7a2a06bdcb8n/aGootkit 192.227.158.140:443
2015-12-15 18:23:29c2b8541e8b7d2a835e08a7a2a06bdcb8n/aGootkit 192.227.158.140:443
2015-12-15 11:07:11ecd4b65b56fc5683ccf9def5869e18d2Virustotal results 7/54 (12.96%) Gootkit 185.117.72.87:443
2015-12-15 11:07:11ecd4b65b56fc5683ccf9def5869e18d2Virustotal results 7/54 (12.96%) Gootkit 185.117.72.87:443
2015-12-15 05:58:291feef71728bee6aabdf2dd6155799aa5Virustotal results 1/54 (1.85%) Gootkit 185.117.72.87:443
2015-12-15 05:58:291feef71728bee6aabdf2dd6155799aa5Virustotal results 1/54 (1.85%) Gootkit 185.117.72.87:443
2015-12-14 20:35:56188a25c15a8c1e27580baa495283f42cVirustotal results 1/54 (1.85%) Gootkit 104.206.221.165:443
2015-12-14 20:35:56188a25c15a8c1e27580baa495283f42cVirustotal results 1/54 (1.85%) Gootkit 104.206.221.165:443
2015-12-14 15:05:468ebdfa0a0fbec2dc55a0266ba0715968Virustotal results 32/56 (57.14%) Gootkit 192.227.158.188:443
2015-12-14 15:05:468ebdfa0a0fbec2dc55a0266ba0715968Virustotal results 32/56 (57.14%) Gootkit 192.227.158.188:443
2015-12-14 14:50:01e1afc3652407338ead6ded313e609daan/aGootkit 192.227.158.188:443
2015-12-14 14:50:01e1afc3652407338ead6ded313e609daan/aGootkit 192.227.158.188:443
2015-12-14 12:55:3848d4a677440ab5c5a3c38cf694f7193cVirustotal results 33/54 (61.11%) Gootkit 192.227.158.188:443
2015-12-14 12:55:3848d4a677440ab5c5a3c38cf694f7193cVirustotal results 33/54 (61.11%) Gootkit 192.227.158.188:443
2015-12-14 09:38:52ce25d6d102d70e4ca11921f4c400640fn/aGootkit 185.45.192.210:443
2015-12-14 09:38:52ce25d6d102d70e4ca11921f4c400640fn/aGootkit 185.45.192.210:443
2015-12-12 06:32:360bbbdc51f7c50f78327d5d28e6c1f68eVirustotal results 5/55 (9.09%) Gootkit 95.85.23.88:443
2015-12-12 06:32:360bbbdc51f7c50f78327d5d28e6c1f68eVirustotal results 5/55 (9.09%) Gootkit 95.85.23.88:443
2015-12-08 00:31:03752930b0fc5d711412a1cadd95501072Virustotal results 3/55 (5.45%) Gootkit 5.45.179.178:443
2015-12-08 00:31:03752930b0fc5d711412a1cadd95501072Virustotal results 3/55 (5.45%) Gootkit 5.45.179.178:443
2015-12-07 05:58:23658d3d650972182eaa7d89ec67519618Virustotal results 5/56 (8.93%) Gootkit 151.236.18.110:443
2015-12-07 05:58:23658d3d650972182eaa7d89ec67519618Virustotal results 5/56 (8.93%) Gootkit 151.236.18.110:443
2015-12-07 05:58:13eb2284fc5d060b9a4819e75a1732f5ceVirustotal results 13/54 (24.07%) Gootkit 84.200.70.46:443
2015-12-07 05:58:13eb2284fc5d060b9a4819e75a1732f5ceVirustotal results 13/54 (24.07%) Gootkit 84.200.70.46:443
2015-12-06 17:04:3556679dbcf86a578a6027f25c781452c9Virustotal results 3/49 (6.12%) Gootkit 151.236.18.110:443
2015-12-06 17:04:3556679dbcf86a578a6027f25c781452c9Virustotal results 3/49 (6.12%) Gootkit 151.236.18.110:443
2015-12-05 20:22:449b6c6d250e8fe6bcb4e598d6d722a669Virustotal results 50/69 (72.46%) Gootkit 84.200.70.46:80
2015-12-05 20:22:449b6c6d250e8fe6bcb4e598d6d722a669Virustotal results 50/69 (72.46%) Gootkit 84.200.70.46:80

# of entries: 100 (max: 100)