SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 366d7e58651876de4f700812eb613c260e00bc08.

Database Entry


SHA1 Fingerprint:366d7e58651876de4f700812eb613c260e00bc08
Certificate Common Name (CN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):localhost, C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:TLS 1.2
First seen:2020-07-28 21:04:21 UTC
Last seen:2020-07-28 21:04:49 UTC
Status:Blacklisted
Listing reason:IcedID C&C
Listing date:2020-07-29 10:29:57
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-07-28 21:04:498e98c2bd46f051d737f3a1205386c772Virustotal results 8 / 61 (13.11%) IcedID 159.89.174.73:443
2020-07-28 21:04:498e98c2bd46f051d737f3a1205386c772Virustotal results 8 / 61 (13.11%) IcedID 159.89.174.73:443
2020-07-28 21:04:219682fa71b6cdd19f38cbc1c590d278c8Virustotal results 9 / 63 (14.29%) Gozi 159.89.174.73:443
2020-07-28 21:04:219682fa71b6cdd19f38cbc1c590d278c8Virustotal results 9 / 63 (14.29%) Gozi 159.89.174.73:443

# of entries: 4 (max: 100)