SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 1c1c14190830bed5ba8af1245cf1cbd7313bbf3f.

Database Entry


SHA1 Fingerprint:1c1c14190830bed5ba8af1245cf1cbd7313bbf3f
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:SSLv3
First seen:2014-07-06 10:44:46 UTC
Last seen:2014-07-09 03:25:29 UTC
Status:Blacklisted
Listing reason:Shylock C&C
Listing date:2014-07-06 15:29:00
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2014-07-09 03:25:29dedf4996360e29810b845dcf79dfd574Virustotal results 22/54 (40.74%) Shylock 23.254.203.175:443
2014-07-09 03:25:29dedf4996360e29810b845dcf79dfd574Virustotal results 22/54 (40.74%) Shylock 23.254.203.175:443
2014-07-06 10:44:4691fa794a68ef7ef3846e95ec8dccf061Virustotal results 31/54 (57.41%) Shylock 23.254.203.175:443
2014-07-06 10:44:4691fa794a68ef7ef3846e95ec8dccf061Virustotal results 31/54 (57.41%) Shylock 23.254.203.175:443

# of entries: 4 (max: 100)