SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 1a3fa8f856d4da6483f07b294041cf842eb4e9b5.

Database Entry


SHA1 Fingerprint:1a3fa8f856d4da6483f07b294041cf842eb4e9b5
Certificate Common Name (CN):evergreen.kiev.ua
Issuer Distinguished Name (DN):EssentialSSL CA
TLS Version:SSLv3
First seen:2014-06-16 16:00:54 UTC
Last seen:2014-06-24 20:36:31 UTC
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2014-06-16 16:28:12
Malware samples:3
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2014-06-24 20:36:3106e271f0ad7db59d6febeae7665b615bVirustotal results 22/53 (41.51%) ZeuS 144.76.249.110:443
2014-06-24 20:36:3106e271f0ad7db59d6febeae7665b615bVirustotal results 22/53 (41.51%) ZeuS 144.76.249.110:443
2014-06-22 00:55:05b4f0e685b44193e9bb17a9f68abc6bffVirustotal results 4/53 (7.55%) ZeuS 148.251.72.75:443
2014-06-22 00:55:05b4f0e685b44193e9bb17a9f68abc6bffVirustotal results 4/53 (7.55%) ZeuS 148.251.72.75:443
2014-06-16 16:00:54b919fd32a50af0c53dd4f255b7eaaca6Virustotal results 22/51 (43.14%) ZeuS 148.251.72.75:443
2014-06-16 16:00:54b919fd32a50af0c53dd4f255b7eaaca6Virustotal results 22/51 (43.14%) ZeuS 148.251.72.75:443

# of entries: 6 (max: 100)