SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 271e87985f3d6be39e94a125e1766d996f3f1e6c.

Database Entry


SHA1 Fingerprint:271e87985f3d6be39e94a125e1766d996f3f1e6c
Certificate Common Name (CN):condorcoffeeco.website
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLS 1.2
First seen:2018-11-21 15:07:53 UTC
Last seen:2018-11-30 12:49:25 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2018-11-30 13:19:39
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-11-30 12:49:25edb2701f4a6946852057af69d6679d52Virustotal results 7/68 (10.29%) Gozi 185.246.155.68:443
2018-11-30 12:49:25edb2701f4a6946852057af69d6679d52Virustotal results 7/68 (10.29%) Gozi 185.246.155.68:443
2018-11-21 15:07:530f63dd28031b943498370c7b70ad92f9Virustotal results 9/67 (13.43%) Gozi 185.246.155.68:443
2018-11-21 15:07:530f63dd28031b943498370c7b70ad92f9Virustotal results 9/67 (13.43%) Gozi 185.246.155.68:443

# of entries: 4 (max: 100)