SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 44d218a87602f65f9e0021a1ad1e95189be8aaaf.

Database Entry


SHA1 Fingerprint:44d218a87602f65f9e0021a1ad1e95189be8aaaf
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-06-12 04:10:08 UTC
Last seen:2016-06-14 08:40:24 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2016-06-12 09:51:22
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-06-14 08:40:246735b78b9c4f88d1bb784894d9f9623eVirustotal results 38/55 (69.09%) Gootkit 115.115.192.245:80
2016-06-14 08:40:246735b78b9c4f88d1bb784894d9f9623eVirustotal results 38/55 (69.09%) Gootkit 115.115.192.245:80
2016-06-12 04:10:08ffb98cb28325fcbf8c20f5170fb37446Virustotal results 45/62 (72.58%) Gootkit 115.115.192.245:80
2016-06-12 04:10:08ffb98cb28325fcbf8c20f5170fb37446Virustotal results 45/62 (72.58%) Gootkit 115.115.192.245:80

# of entries: 4 (max: 100)