SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 340fbe800a2e9373f4c86e8db8a888ecd30cc317.

Database Entry


SHA1 Fingerprint:340fbe800a2e9373f4c86e8db8a888ecd30cc317
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2015-09-01 07:05:28 UTC
Last seen:2015-09-01 10:48:18 UTC
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2015-09-01 10:09:46
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-09-01 10:48:18d7f098705b746717b3dc4d34162d267fVirustotal results 30/57 (52.63%) ZeuS 113.204.137.55:443
2015-09-01 10:48:18d7f098705b746717b3dc4d34162d267fVirustotal results 30/57 (52.63%) ZeuS 113.204.137.55:443
2015-09-01 09:31:497b8cb5f4197785991fdc968d75b51f77Virustotal results 35/57 (61.40%) ZeuS 113.204.137.55:443
2015-09-01 09:31:497b8cb5f4197785991fdc968d75b51f77Virustotal results 35/57 (61.40%) ZeuS 113.204.137.55:443
2015-09-01 07:05:28e1050c87ec99ee550dccfc21877d0015n/aZeuS 113.204.137.55:443
2015-09-01 07:05:28e1050c87ec99ee550dccfc21877d0015n/aZeuS 113.204.137.55:443

# of entries: 6 (max: 100)