SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 3044739c06ea1dc1b3ce54b7f6e00ec25d6e36da.

Database Entry


SHA1 Fingerprint:3044739c06ea1dc1b3ce54b7f6e00ec25d6e36da
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:SSLv3
First seen:2015-01-23 08:55:44 UTC
Last seen:2015-01-28 03:24:14 UTC
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2015-01-23 13:20:09
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-01-28 03:24:1416a26d9ccd28bc6d13a4ae8efe5d9b16Virustotal results 10/55 (18.18%) ZeuS 177.129.134.254:443
2015-01-23 09:22:22db587bdbca9239f586f3b9904a7837b9Virustotal results 28/55 (50.91%) ZeuS 177.129.134.254:443
2015-01-23 09:14:18c8482a4d3135a1262dcf918555c09b09Virustotal results 32/57 (56.14%) ZeuS 177.129.134.254:443
2015-01-23 08:55:56204ca81a31d2484a09a0d43907bc7069Virustotal results 28/56 (50.00%) ZeuS 177.129.134.254:443
2015-01-23 08:55:44204adcc32ec3cd544d19b031d780a1c5Virustotal results 32/56 (57.14%) ZeuS 177.129.134.254:443

# of entries: 5 (max: 100)