SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b605c666e19d5dbc06f573a41f3594d1c931faf1.

Database Entry


SHA1 Fingerprint:b605c666e19d5dbc06f573a41f3594d1c931faf1
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-10-24 08:18:16 UTC
Last seen:2016-10-26 05:49:12 UTC
Status:Blacklisted
Listing reason:ZeuS C&C
Listing date:2016-10-25 09:17:30
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-10-26 05:49:12370efa46131ff8fc35de18f4612441dcVirustotal results 30/57 (52.63%) ZeuS 189.1.172.49:443
2016-10-26 05:49:12370efa46131ff8fc35de18f4612441dcVirustotal results 30/57 (52.63%) ZeuS 189.1.172.49:443
2016-10-26 05:46:159886a0c4f2ed767f04dbca9ff44e2514Virustotal results 41/57 (71.93%) ZeuS 189.1.172.49:443
2016-10-26 05:46:159886a0c4f2ed767f04dbca9ff44e2514Virustotal results 41/57 (71.93%) ZeuS 189.1.172.49:443
2016-10-25 14:20:32302c51d68bf0ef3f6d2f52b936f29afbn/aZeuS 189.1.172.49:443
2016-10-25 14:20:32302c51d68bf0ef3f6d2f52b936f29afbn/aZeuS 189.1.172.49:443
2016-10-25 11:25:204de2b9b5eb6c3e3283787c027a7e4dfen/aZeuS 189.1.172.49:443
2016-10-25 11:25:204de2b9b5eb6c3e3283787c027a7e4dfen/aZeuS 189.1.172.49:443
2016-10-24 08:18:16e288ee71af6248556d2c1f5fdc060d6dVirustotal results 39/57 (68.42%) ZeuS 189.1.172.49:443
2016-10-24 08:18:16e288ee71af6248556d2c1f5fdc060d6dVirustotal results 39/57 (68.42%) ZeuS 189.1.172.49:443

# of entries: 10 (max: 100)