SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 2a5d840ba99228082bf70aa8ae416ffd4f868051.

Database Entry


SHA1 Fingerprint:2a5d840ba99228082bf70aa8ae416ffd4f868051
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-10-17 07:10:31 UTC
Last seen:2016-10-19 11:27:16 UTC
Status:Blacklisted
Listing reason:ZeuS C&C
Listing date:2016-10-18 12:25:50
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-10-19 11:27:165e7750eece26b51f160641f87a6f5a5fVirustotal results 16/56 (28.57%) ZeuS 91.134.199.231:443
2016-10-19 11:27:165e7750eece26b51f160641f87a6f5a5fVirustotal results 16/56 (28.57%) ZeuS 91.134.199.231:443
2016-10-17 10:41:5749bc314c6710343b20521187ec100db6n/aZeuS 91.134.199.231:443
2016-10-17 10:41:5749bc314c6710343b20521187ec100db6n/aZeuS 91.134.199.231:443
2016-10-17 07:10:3188757d0996674a3ef01b799e46364074Virustotal results 10/56 (17.86%) ZeuS 91.134.199.231:443
2016-10-17 07:10:3188757d0996674a3ef01b799e46364074Virustotal results 10/56 (17.86%) ZeuS 91.134.199.231:443

# of entries: 6 (max: 100)