SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 01b8a3899bae90fb4c4e0596d548003407d65b53.

Database Entry


SHA1 Fingerprint:01b8a3899bae90fb4c4e0596d548003407d65b53
Certificate Common Name (CN):*
Issuer Distinguished Name (DN):*
TLS Version:TLS 1.2
First seen:2018-11-07 12:17:20 UTC
Last seen:2018-11-08 18:55:43 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2018-11-08 09:29:01
Malware samples:91
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-11-08 18:55:43dc4d6b9600e6380854fbde8d97dce50an/aGozi 95.181.198.115:443
2018-11-08 18:55:43dc4d6b9600e6380854fbde8d97dce50an/aGozi 95.181.198.115:443
2018-11-08 14:58:1356aa12f43fdf600a87f8860528f4cc04Virustotal results 6/67 (8.96%) Gozi 95.181.198.115:443
2018-11-08 14:58:1356aa12f43fdf600a87f8860528f4cc04Virustotal results 6/67 (8.96%) Gozi 95.181.198.115:443
2018-11-08 14:49:1175e8d795ef00bcf79ea824b039d378c1Virustotal results 21/67 (31.34%) Gozi 95.181.198.115:443
2018-11-08 14:49:1175e8d795ef00bcf79ea824b039d378c1Virustotal results 21/67 (31.34%) Gozi 95.181.198.115:443
2018-11-08 14:40:313e58142b28ccd527b28dad4ee45f4aedVirustotal results 21/68 (30.88%) Gozi 95.181.198.115:443
2018-11-08 14:40:313e58142b28ccd527b28dad4ee45f4aedVirustotal results 21/68 (30.88%) Gozi 95.181.198.115:443
2018-11-08 14:34:5841848bd09fe373bfe14ae01a87e95abdVirustotal results 28/68 (41.18%) Gozi 95.181.198.115:443
2018-11-08 14:34:5841848bd09fe373bfe14ae01a87e95abdVirustotal results 28/68 (41.18%) Gozi 95.181.198.115:443
2018-11-08 14:17:35991a9dc9f9d1ef6ac961be4ac59e75bdn/aGozi 95.181.198.115:443
2018-11-08 14:17:35991a9dc9f9d1ef6ac961be4ac59e75bdn/aGozi 95.181.198.115:443
2018-11-08 14:12:261f6c2fcb5a99bccfff1af75490c51e80Virustotal results 48/69 (69.57%) Gozi 95.181.198.115:443
2018-11-08 14:12:261f6c2fcb5a99bccfff1af75490c51e80Virustotal results 48/69 (69.57%) Gozi 95.181.198.115:443
2018-11-08 14:11:01afc72bed4c848f832fda1d362ff31c6an/aGozi 95.181.198.115:443
2018-11-08 14:11:01afc72bed4c848f832fda1d362ff31c6an/aGozi 95.181.198.115:443
2018-11-08 12:26:2659c86a500627181e05fe4b91d2751ae8Virustotal results 15/58 (25.86%) Gozi 95.181.198.115:443
2018-11-08 12:26:2659c86a500627181e05fe4b91d2751ae8Virustotal results 15/58 (25.86%) Gozi 95.181.198.115:443
2018-11-08 11:26:330d5f7c9c7bca964e2a906bfd9b7253a2Virustotal results 46/70 (65.71%) Gozi 95.181.198.115:443
2018-11-08 11:26:330d5f7c9c7bca964e2a906bfd9b7253a2Virustotal results 46/70 (65.71%) Gozi 95.181.198.115:443
2018-11-08 11:24:3479ab1b39421ee7bf2cfe2a73115ce994n/aGozi 95.181.198.115:443
2018-11-08 11:24:3479ab1b39421ee7bf2cfe2a73115ce994n/aGozi 95.181.198.115:443
2018-11-08 11:19:0355f6733ecced1915d017fac3ffa13e4fn/aGozi 95.181.198.115:443
2018-11-08 11:19:0355f6733ecced1915d017fac3ffa13e4fn/aGozi 95.181.198.115:443
2018-11-08 11:12:055d413f700be412402e6f47cd8ac8b981n/aGozi 95.181.198.115:443
2018-11-08 11:12:055d413f700be412402e6f47cd8ac8b981n/aGozi 95.181.198.115:443
2018-11-08 11:10:59e0a1c3f047626dd9c20d1eaa63492153Virustotal results 37/69 (53.62%) Gozi 95.181.198.115:443
2018-11-08 11:10:59e0a1c3f047626dd9c20d1eaa63492153Virustotal results 37/69 (53.62%) Gozi 95.181.198.115:443
2018-11-08 10:52:3990d21686788121962dd3dd928de64857n/aGozi 95.181.198.115:443
2018-11-08 10:52:3990d21686788121962dd3dd928de64857n/aGozi 95.181.198.115:443
2018-11-08 10:52:15a3965b8b29431426d4e7418804b7f008Virustotal results 41/67 (61.19%) Gozi 95.181.198.115:443
2018-11-08 10:52:15a3965b8b29431426d4e7418804b7f008Virustotal results 41/67 (61.19%) Gozi 95.181.198.115:443
2018-11-08 10:47:46af79ad4c1de695edccf1806d60b6760eVirustotal results 42/69 (60.87%) Gozi 95.181.198.115:443
2018-11-08 10:47:46af79ad4c1de695edccf1806d60b6760eVirustotal results 42/69 (60.87%) Gozi 95.181.198.115:443
2018-11-08 10:42:21c507983bd4721c143164136df1329d9bVirustotal results 44/68 (64.71%) Gozi 95.181.198.115:443
2018-11-08 10:42:21c507983bd4721c143164136df1329d9bVirustotal results 44/68 (64.71%) Gozi 95.181.198.115:443
2018-11-08 10:32:38beb2462cdc2d6f25fc98ee736bc84808Virustotal results 41/65 (63.08%) Gozi 95.181.198.115:443
2018-11-08 10:32:38beb2462cdc2d6f25fc98ee736bc84808Virustotal results 41/65 (63.08%) Gozi 95.181.198.115:443
2018-11-08 10:31:51436143d630508abaa3b3d09f71b04839n/aGozi 95.181.198.115:443
2018-11-08 10:31:51436143d630508abaa3b3d09f71b04839n/aGozi 95.181.198.115:443
2018-11-08 10:30:5341249060780841c57aace9efa96799f6n/aGozi 95.181.198.115:443
2018-11-08 10:30:5341249060780841c57aace9efa96799f6n/aGozi 95.181.198.115:443
2018-11-08 10:30:34277bb58ae0d57389ff1e25e8cda0b997n/aGozi 95.181.198.115:443
2018-11-08 10:30:34277bb58ae0d57389ff1e25e8cda0b997n/aGozi 95.181.198.115:443
2018-11-08 10:29:0339fab578b3b780f9011e3c4db4d5175en/aGozi 95.181.198.115:443
2018-11-08 10:29:0339fab578b3b780f9011e3c4db4d5175en/aGozi 95.181.198.115:443
2018-11-08 10:28:1505996ca00fea1fc8eb217e1a521d644en/aGozi 95.181.198.115:443
2018-11-08 10:28:1505996ca00fea1fc8eb217e1a521d644en/aGozi 95.181.198.115:443
2018-11-08 10:28:06755a67d30530ee50ba3df8f03ddea081n/aGozi 95.181.198.115:443
2018-11-08 10:28:06755a67d30530ee50ba3df8f03ddea081n/aGozi 95.181.198.115:443
2018-11-08 10:27:105bc1c7b292cc71cce68e8e7d172c54b1n/aGozi 95.181.198.115:443
2018-11-08 10:27:105bc1c7b292cc71cce68e8e7d172c54b1n/aGozi 95.181.198.115:443
2018-11-08 10:18:282e39ca28733e536ea132a15f115ec777n/aGozi 95.181.198.115:443
2018-11-08 10:18:282e39ca28733e536ea132a15f115ec777n/aGozi 95.181.198.115:443
2018-11-08 10:18:06abd4578ccf67135d6dfab62a8ba118c5Virustotal results 36/66 (54.55%) Gozi 95.181.198.115:443
2018-11-08 10:18:06abd4578ccf67135d6dfab62a8ba118c5Virustotal results 36/66 (54.55%) Gozi 95.181.198.115:443
2018-11-08 10:15:5927ffdcf8bd155e170e2d14c27cd5c61cn/aGozi 95.181.198.115:443
2018-11-08 10:15:5927ffdcf8bd155e170e2d14c27cd5c61cn/aGozi 95.181.198.115:443
2018-11-08 10:10:2879fc3efd9b9618a955b76163c4143391n/aGozi 95.181.198.115:443
2018-11-08 10:10:2879fc3efd9b9618a955b76163c4143391n/aGozi 95.181.198.115:443
2018-11-08 09:58:47051722b518faef79c24993798cb627d4Virustotal results 14/57 (24.56%) Gozi 95.181.198.115:443
2018-11-08 09:58:47051722b518faef79c24993798cb627d4Virustotal results 14/57 (24.56%) Gozi 95.181.198.115:443
2018-11-08 09:43:469aeb397849b90dda72da672ba54f6204n/aGozi 95.181.198.115:443
2018-11-08 09:43:469aeb397849b90dda72da672ba54f6204n/aGozi 95.181.198.115:443
2018-11-08 09:34:236f4545283a02a4c2bb34e21b994e11b1n/aGozi 95.181.198.115:443
2018-11-08 09:34:236f4545283a02a4c2bb34e21b994e11b1n/aGozi 95.181.198.115:443
2018-11-08 09:07:529ef6b30c485e4e5b85b568ff75a87d2cn/aGozi 95.181.198.115:443
2018-11-08 09:07:529ef6b30c485e4e5b85b568ff75a87d2cn/aGozi 95.181.198.115:443
2018-11-08 09:01:143f0df97f37ec7cf1c9c39883b60f7e0dn/aGozi 95.181.198.115:443
2018-11-08 09:01:143f0df97f37ec7cf1c9c39883b60f7e0dn/aGozi 95.181.198.115:443
2018-11-08 08:48:168b8d4f65ee5e794eb45c4b0127860bd0n/aGozi 95.181.198.115:443
2018-11-08 08:48:168b8d4f65ee5e794eb45c4b0127860bd0n/aGozi 95.181.198.115:443
2018-11-08 08:34:34ff0dabd528af70cff0f826fbf5208e71n/aGozi 95.181.198.115:443
2018-11-08 08:34:34ff0dabd528af70cff0f826fbf5208e71n/aGozi 95.181.198.115:443
2018-11-08 08:32:26e59f24af18f896e9b4c43f0a49b81b3an/aGozi 95.181.198.115:443
2018-11-08 08:32:26e59f24af18f896e9b4c43f0a49b81b3an/aGozi 95.181.198.115:443
2018-11-08 08:18:40ad9053b572e5b73d0c69978c9bf1ebe5Virustotal results 43/68 (63.24%) Gozi 95.181.198.115:443
2018-11-08 08:18:40ad9053b572e5b73d0c69978c9bf1ebe5Virustotal results 43/68 (63.24%) Gozi 95.181.198.115:443
2018-11-08 06:55:51779cbc38fa5b43ac59528f5dfca920cfn/aGozi 95.181.198.115:443
2018-11-08 06:55:51779cbc38fa5b43ac59528f5dfca920cfn/aGozi 95.181.198.115:443
2018-11-08 06:52:592a9c8ab64bbf5ea5258482f342ce3f06n/aGozi 95.181.198.115:443
2018-11-08 06:52:592a9c8ab64bbf5ea5258482f342ce3f06n/aGozi 95.181.198.115:443
2018-11-08 06:52:006ba97ab90bac7b9bfbb3e6d5d6d5f06fn/aGozi 95.181.198.115:443
2018-11-08 06:52:006ba97ab90bac7b9bfbb3e6d5d6d5f06fn/aGozi 95.181.198.115:443
2018-11-08 06:50:334cb52b3cd9e346a8596013034ac67594Virustotal results 16/58 (27.59%) Gozi 95.181.198.115:443
2018-11-08 06:50:334cb52b3cd9e346a8596013034ac67594Virustotal results 16/58 (27.59%) Gozi 95.181.198.115:443
2018-11-08 06:50:01d8efa0b1c3d1b9b4b55641157c15d95an/aGozi 95.181.198.115:443
2018-11-08 06:50:01d8efa0b1c3d1b9b4b55641157c15d95an/aGozi 95.181.198.115:443
2018-11-08 06:45:250e40b4924e4a9d88bfe1194742b01493Virustotal results 44/70 (62.86%) Gozi 95.181.198.115:443
2018-11-08 06:45:250e40b4924e4a9d88bfe1194742b01493Virustotal results 44/70 (62.86%) Gozi 95.181.198.115:443
2018-11-08 06:39:0557252aedb99ae42bf6fb0bc7f339919en/aGozi 95.181.198.115:443
2018-11-08 06:39:0557252aedb99ae42bf6fb0bc7f339919en/aGozi 95.181.198.115:443
2018-11-08 04:42:27e67d630a5acdfd5d3ba79db9666f65c7Virustotal results 48/66 (72.73%) Gozi 95.181.198.115:443
2018-11-08 04:42:27e67d630a5acdfd5d3ba79db9666f65c7Virustotal results 48/66 (72.73%) Gozi 95.181.198.115:443
2018-11-08 04:38:3220e5077bdf3aff9187baa64360b5f929n/aGozi 95.181.198.115:443
2018-11-08 04:38:3220e5077bdf3aff9187baa64360b5f929n/aGozi 95.181.198.115:443
2018-11-08 04:37:16c08b5b3d3ced6ccd79bc386928220328Virustotal results 49/70 (70.00%) Gozi 95.181.198.115:443
2018-11-08 04:37:16c08b5b3d3ced6ccd79bc386928220328Virustotal results 49/70 (70.00%) Gozi 95.181.198.115:443
2018-11-08 04:35:12d14a502b7b90d48c33facb244e26841fn/aGozi 95.181.198.115:443
2018-11-08 04:35:12d14a502b7b90d48c33facb244e26841fn/aGozi 95.181.198.115:443

# of entries: 100 (max: 100)