SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 388d99592d32b7607e5ccbfff60878d14ec2163f.

Database Entry


SHA1 Fingerprint:388d99592d32b7607e5ccbfff60878d14ec2163f
Certificate Common Name (CN):*
Issuer Distinguished Name (DN):*
TLS Version:TLS 1.2
First seen:2018-11-19 12:29:49 UTC
Last seen:2018-11-23 15:12:30 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2018-11-19 14:13:14
Malware samples:25
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-11-23 15:12:30bd6639acc3106a4d3a240f64987bd26en/aGozi 83.166.240.191:443
2018-11-23 15:12:30bd6639acc3106a4d3a240f64987bd26en/aGozi 83.166.240.191:443
2018-11-19 15:58:5531b912465d8742b777af41e8358269aeVirustotal results 23/58 (39.66%) Gozi 83.166.240.191:443
2018-11-19 15:58:5531b912465d8742b777af41e8358269aeVirustotal results 23/58 (39.66%) Gozi 83.166.240.191:443
2018-11-19 15:36:151672e4f3cece8c783ca63b68b05acddbVirustotal results 45/69 (65.22%) Gozi 83.166.240.191:443
2018-11-19 15:36:151672e4f3cece8c783ca63b68b05acddbVirustotal results 45/69 (65.22%) Gozi 83.166.240.191:443
2018-11-19 14:03:09de326b19955ec709192d268e7dbf01b6Virustotal results 13/59 (22.03%) Gozi 83.166.240.191:443
2018-11-19 14:03:09de326b19955ec709192d268e7dbf01b6Virustotal results 13/59 (22.03%) Gozi 83.166.240.191:443
2018-11-19 13:52:1552c593c9a34f8a9a1635ccb74450733an/aGozi 83.166.240.191:443
2018-11-19 13:52:1552c593c9a34f8a9a1635ccb74450733an/aGozi 83.166.240.191:443
2018-11-19 13:51:172bc9b8c12b196f38d28ad829bfe70e2fn/aGozi 83.166.240.191:443
2018-11-19 13:51:172bc9b8c12b196f38d28ad829bfe70e2fn/aGozi 83.166.240.191:443
2018-11-19 13:46:46276fe352efd7255e58e9467baa38a683Virustotal results 29/59 (49.15%) Gozi 83.166.240.191:443
2018-11-19 13:46:46276fe352efd7255e58e9467baa38a683Virustotal results 29/59 (49.15%) Gozi 83.166.240.191:443
2018-11-19 13:41:51532471f39a34367ae38e0720067835f7Virustotal results 40/70 (57.14%) Gozi 83.166.240.191:443
2018-11-19 13:41:51532471f39a34367ae38e0720067835f7Virustotal results 40/70 (57.14%) Gozi 83.166.240.191:443
2018-11-19 13:17:1293a4ae48fb15e59f34b70957afd4f861n/aGozi 83.166.240.191:443
2018-11-19 13:17:1293a4ae48fb15e59f34b70957afd4f861n/aGozi 83.166.240.191:443
2018-11-19 13:16:113f9b55a83b564e4ed63ece17fbf6e691Virustotal results 12/58 (20.69%) Gozi 83.166.240.191:443
2018-11-19 13:16:113f9b55a83b564e4ed63ece17fbf6e691Virustotal results 12/58 (20.69%) Gozi 83.166.240.191:443
2018-11-19 13:12:44cce8a77a656c2573fd01e4270baf8185Virustotal results 12/58 (20.69%) Gozi 83.166.240.191:443
2018-11-19 13:12:44cce8a77a656c2573fd01e4270baf8185Virustotal results 12/58 (20.69%) Gozi 83.166.240.191:443
2018-11-19 13:09:40853bacb25bc03a38d325bb06fd8d9b4aVirustotal results 38/69 (55.07%) Gozi 83.166.240.191:443
2018-11-19 13:09:40853bacb25bc03a38d325bb06fd8d9b4aVirustotal results 38/69 (55.07%) Gozi 83.166.240.191:443
2018-11-19 13:08:35d4b3c30390353905ac8ccae1d8bc4c9aVirustotal results 34/69 (49.28%) Gozi 83.166.240.191:443
2018-11-19 13:08:35d4b3c30390353905ac8ccae1d8bc4c9aVirustotal results 34/69 (49.28%) Gozi 83.166.240.191:443
2018-11-19 13:06:063709652c34169d2a95b97269753d3e02n/aGozi 83.166.240.191:443
2018-11-19 13:06:063709652c34169d2a95b97269753d3e02n/aGozi 83.166.240.191:443
2018-11-19 13:04:28dba93e4916cd08defa6767914a13657dVirustotal results 33/69 (47.83%) Gozi 83.166.240.191:443
2018-11-19 13:04:28dba93e4916cd08defa6767914a13657dVirustotal results 33/69 (47.83%) Gozi 83.166.240.191:443
2018-11-19 13:03:02accde7fba4be41eac97323b415487993Virustotal results 36/68 (52.94%) Gozi 83.166.240.191:443
2018-11-19 13:03:02accde7fba4be41eac97323b415487993Virustotal results 36/68 (52.94%) Gozi 83.166.240.191:443
2018-11-19 13:02:519503788b0e5b9c3aca00d3fe55418203n/aGozi 83.166.240.191:443
2018-11-19 13:02:519503788b0e5b9c3aca00d3fe55418203n/aGozi 83.166.240.191:443
2018-11-19 13:02:4853d4055e908ae9425e1b017cf68000ffVirustotal results 39/69 (56.52%) Gozi 83.166.240.191:443
2018-11-19 13:02:4853d4055e908ae9425e1b017cf68000ffVirustotal results 39/69 (56.52%) Gozi 83.166.240.191:443
2018-11-19 13:01:27aa99546b5faf6037e7216d32586cf2adVirustotal results 32/70 (45.71%) Gozi 83.166.240.191:443
2018-11-19 13:01:27aa99546b5faf6037e7216d32586cf2adVirustotal results 32/70 (45.71%) Gozi 83.166.240.191:443
2018-11-19 12:59:22306a2b55333803d66156d12c89114094n/aGozi 83.166.240.191:443
2018-11-19 12:59:22306a2b55333803d66156d12c89114094n/aGozi 83.166.240.191:443
2018-11-19 12:56:28b8e95f07c13df04b03561dca79996572Virustotal results 8/68 (11.76%) Gozi 83.166.240.191:443
2018-11-19 12:56:28b8e95f07c13df04b03561dca79996572Virustotal results 8/68 (11.76%) Gozi 83.166.240.191:443
2018-11-19 12:55:583354bf13fa290cfa6ca6781df148ea58n/aGozi 83.166.240.191:443
2018-11-19 12:55:583354bf13fa290cfa6ca6781df148ea58n/aGozi 83.166.240.191:443
2018-11-19 12:53:0674f87963474d6c1c19629e95928e8a61n/aGozi 83.166.240.191:443
2018-11-19 12:53:0674f87963474d6c1c19629e95928e8a61n/aGozi 83.166.240.191:443
2018-11-19 12:51:20f5c2859b57d99ec1623ad123fa820972n/aGozi 83.166.240.191:443
2018-11-19 12:51:20f5c2859b57d99ec1623ad123fa820972n/aGozi 83.166.240.191:443
2018-11-19 12:29:4908de63df812638c63afa8208a3408567Virustotal results 39/59 (66.10%) Gozi 83.166.240.191:443
2018-11-19 12:29:4908de63df812638c63afa8208a3408567Virustotal results 39/59 (66.10%) Gozi 83.166.240.191:443

# of entries: 50 (max: 100)