SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 35fa1d3f1b032407472a7639654b33801c124cea.

Database Entry


SHA1 Fingerprint:35fa1d3f1b032407472a7639654b33801c124cea
Certificate Common Name (CN):C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:SSLv3
First seen:2015-09-29 01:58:49 UTC
Last seen:2015-10-09 20:58:34 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2015-09-29 08:11:58
Malware samples:7
Botnet C&Cs:3

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-10-09 20:58:34dfb5eb78e73aa1cd3f4c9eaaea20ab60Virustotal results 10/57 (17.54%) Gootkit 5.8.60.15:80
2015-10-08 12:21:254ebc6b2b71f1a3b66cd64c0a55a30cadVirustotal results 18/56 (32.14%) Gootkit 185.75.56.137:80
2015-10-07 12:10:333b834056dca5705f9172277b9db91017Virustotal results 23/57 (40.35%) Gootkit 185.75.56.137:80
2015-10-05 03:03:45de27ff36a23a0279b19800b25311c453Virustotal results 20/56 (35.71%) Gootkit 185.75.56.137:80
2015-10-04 13:25:4042b290960a8b439525ad31f18c09194bVirustotal results 1/57 (1.75%) Gootkit 185.75.56.137:80
2015-10-03 17:49:36d8ef0747b2fc95b3c92bdbed3f609dcaVirustotal results 4/57 (7.02%) Gootkit 185.75.56.137:80
2015-09-29 01:58:495f35340799be1d1be0ff803370b442f0Virustotal results 18/57 (31.58%) Gootkit 185.75.56.133:80

# of entries: 7 (max: 100)