SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 32660e3b487dc58b5f97db12492a2744af449a94.

Database Entry


SHA1 Fingerprint:32660e3b487dc58b5f97db12492a2744af449a94
Certificate Common Name (CN):*
Issuer Distinguished Name (DN):*
TLS Version:TLS 1.2' NOTBEF
First seen:2021-04-22 13:11:27 UTC
Last seen:2021-04-23 13:36:22 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2021-04-23 17:41:40
Malware samples:11
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-04-23 13:36:22a1acba462ec14ddccbc4fa7aedcc8f3fn/aGozi 193.239.84.240:443
2021-04-23 13:36:22a1acba462ec14ddccbc4fa7aedcc8f3fn/aGozi 193.239.84.240:443
2021-04-23 13:29:4992710c065845ffe8e33ed0d342a49f20n/aGozi 193.239.84.240:443
2021-04-23 13:29:4992710c065845ffe8e33ed0d342a49f20n/aGozi 193.239.84.240:443
2021-04-23 13:14:4147e931c535800e7256c81e73b758f6d7n/aGozi 193.239.84.240:443
2021-04-23 13:14:4147e931c535800e7256c81e73b758f6d7n/aGozi 193.239.84.240:443
2021-04-23 13:13:003bd96751598e4963dfa01b9f027a06b6n/aGozi 193.239.84.240:443
2021-04-23 13:13:003bd96751598e4963dfa01b9f027a06b6n/aGozi 193.239.84.240:443
2021-04-23 13:07:54ca90f0bb0563a950f02e3d90ae77b5a9n/aGozi 193.239.84.240:443
2021-04-23 13:07:54ca90f0bb0563a950f02e3d90ae77b5a9n/aGozi 193.239.84.240:443
2021-04-23 12:57:141d6646c08ca515f04efaec1435392455n/aGozi 193.239.84.240:443
2021-04-23 12:57:141d6646c08ca515f04efaec1435392455n/aGozi 193.239.84.240:443
2021-04-23 12:49:4635b3b3720df931351c489bcbd5b901a2n/aGozi 193.239.84.240:443
2021-04-23 12:49:4635b3b3720df931351c489bcbd5b901a2n/aGozi 193.239.84.240:443
2021-04-23 12:24:37a0b148aadc09e8fee10d31eb4cae32edn/aGozi 193.239.84.240:443
2021-04-23 12:24:37a0b148aadc09e8fee10d31eb4cae32edn/aGozi 193.239.84.240:443
2021-04-22 14:30:126689ae7167a26a4f126c584151250c80Virustotal results 2 / 67 (2.99%) Gozi 193.239.84.240:443
2021-04-22 14:30:126689ae7167a26a4f126c584151250c80Virustotal results 2 / 67 (2.99%) Gozi 193.239.84.240:443
2021-04-22 14:27:316c1af3abf5fa3e892c855892fcf2fef0n/aGozi 193.239.84.240:443
2021-04-22 14:27:316c1af3abf5fa3e892c855892fcf2fef0n/aGozi 193.239.84.240:443
2021-04-22 13:11:278ae208c2087200335b521476aace6805n/aGozi 193.239.84.240:443
2021-04-22 13:11:278ae208c2087200335b521476aace6805n/aGozi 193.239.84.240:443

# of entries: 22 (max: 100)