SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 3b893658bd45dc0e09a59bce3de2843337566505.

Database Entry


SHA1 Fingerprint:3b893658bd45dc0e09a59bce3de2843337566505
Certificate Common Name (CN):gogowormdealer.top
Issuer Distinguished Name (DN):R3
TLS Version:TLS 1.2
First seen:2021-03-11 06:23:19 UTC
Last seen:2021-03-11 11:31:38 UTC
Status:Blacklisted
Listing reason:RaccoonStealer C&C
Listing date:2021-03-11 07:52:19
Malware samples:12
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-03-11 11:31:3846abd8bb74346edeb4dd62386cc384c6n/aRaccoonStealer35.246.79.214:443
2021-03-11 11:31:3846abd8bb74346edeb4dd62386cc384c6n/aRaccoonStealer35.246.79.214:443
2021-03-11 11:03:58a6c7375fde80b4dde157d3809d7902e2Virustotal results 47 / 70 (67.14%) RaccoonStealer35.246.79.214:443
2021-03-11 11:03:58a6c7375fde80b4dde157d3809d7902e2Virustotal results 47 / 70 (67.14%) RaccoonStealer35.246.79.214:443
2021-03-11 10:34:2181e7a8b1bc15b4f346faf3cfa2a0e212n/aRaccoonStealer35.246.79.214:443
2021-03-11 10:34:2181e7a8b1bc15b4f346faf3cfa2a0e212n/aRaccoonStealer35.246.79.214:443
2021-03-11 08:01:2516bd9a0ae02c93c9cfdd3c0ecfff7b74n/aRaccoonStealer35.246.79.214:443
2021-03-11 08:01:2516bd9a0ae02c93c9cfdd3c0ecfff7b74n/aRaccoonStealer35.246.79.214:443
2021-03-11 07:52:08a5abeb3eddd069a11adb79ec41a421d9Virustotal results 39 / 69 (56.52%) RaccoonStealer35.246.79.214:443
2021-03-11 07:52:08a5abeb3eddd069a11adb79ec41a421d9Virustotal results 39 / 69 (56.52%) RaccoonStealer35.246.79.214:443
2021-03-11 06:58:036d8c4ed5fe94d178d59f95d1f01883a2n/aServHelper35.246.79.214:443
2021-03-11 06:58:036d8c4ed5fe94d178d59f95d1f01883a2n/aServHelper35.246.79.214:443
2021-03-11 06:44:14a1344e7716b82be1d370c02352d22a28Virustotal results 22 / 67 (32.84%) ServHelper35.246.79.214:443
2021-03-11 06:44:14a1344e7716b82be1d370c02352d22a28Virustotal results 22 / 67 (32.84%) ServHelper35.246.79.214:443
2021-03-11 06:42:397d8b6cf4db7e0c799d63e4594dd1c89eVirustotal results 25 / 70 (35.71%) ServHelper35.246.79.214:443
2021-03-11 06:42:397d8b6cf4db7e0c799d63e4594dd1c89eVirustotal results 25 / 70 (35.71%) ServHelper35.246.79.214:443
2021-03-11 06:39:09418df4baab72fdec825c7a8eb900f038Virustotal results 26 / 69 (37.68%) ServHelper35.246.79.214:443
2021-03-11 06:39:09418df4baab72fdec825c7a8eb900f038Virustotal results 26 / 69 (37.68%) ServHelper35.246.79.214:443
2021-03-11 06:32:2847a725f02faf699bfabd0b0f4db34b82Virustotal results 22 / 68 (32.35%) ServHelper35.246.79.214:443
2021-03-11 06:32:2847a725f02faf699bfabd0b0f4db34b82Virustotal results 22 / 68 (32.35%) ServHelper35.246.79.214:443
2021-03-11 06:23:4502324684237ff64ecf831197bf02a81fVirustotal results 25 / 70 (35.71%) ServHelper35.246.79.214:443
2021-03-11 06:23:4502324684237ff64ecf831197bf02a81fVirustotal results 25 / 70 (35.71%) ServHelper35.246.79.214:443
2021-03-11 06:23:1902727fe935a761d930148ecc949f502dn/a35.246.79.214:443
2021-03-11 06:23:1902727fe935a761d930148ecc949f502dn/a35.246.79.214:443

# of entries: 24 (max: 100)