SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 0c1aabeb94f43580ef47b5b43d9424db1ff4661d.

Database Entry


SHA1 Fingerprint:0c1aabeb94f43580ef47b5b43d9424db1ff4661d
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-10-27 16:56:14 UTC
Last seen:2016-10-28 18:32:23 UTC
Status:Blacklisted
Listing reason:ZeuS C&C
Listing date:2016-10-30 11:58:56
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-10-28 18:32:230fc6d2a4ee0bb0925f696434c688f1fbn/aZeuS 192.157.228.220:443
2016-10-28 18:32:230fc6d2a4ee0bb0925f696434c688f1fbn/aZeuS 192.157.228.220:443
2016-10-28 14:00:021d03919d4ac8d7aedf0fb83197487930n/aShylock 192.157.228.220:443
2016-10-28 14:00:021d03919d4ac8d7aedf0fb83197487930n/aShylock 192.157.228.220:443
2016-10-27 16:56:14525185d956090979a5e00b9722d3efe1n/aShylock 192.157.228.220:443
2016-10-27 16:56:14525185d956090979a5e00b9722d3efe1n/aShylock 192.157.228.220:443

# of entries: 6 (max: 100)