SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 5fcb5b418f779a542b7148f2ddea211495787733.

Database Entry


SHA1 Fingerprint:5fcb5b418f779a542b7148f2ddea211495787733
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-10-07 04:36:50 UTC
Last seen:2016-10-28 21:33:26 UTC
Status:Blacklisted
Listing reason:ZeuS C&C
Listing date:2016-10-17 11:52:40
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-10-28 21:33:265421efa8e73bedd473f24cd44b1ff6c9Virustotal results 17/56 (30.36%) ZeuS 52.77.110.77:443
2016-10-13 16:27:1076b609dac79e76fe7b5a78af35c5a2d6Virustotal results 20/56 (35.71%) ZeuS 52.77.110.77:443
2016-10-10 17:29:579096210f20753c836378ca7aa18c3d25Virustotal results 31/56 (55.36%) Shylock 52.77.110.77:443
2016-10-07 19:55:38d9e83ed20a652e7629b753e20336f7a4Virustotal results 22/56 (39.29%) ZeuS 52.77.110.77:443
2016-10-07 04:36:5060c95313892f09696410ab4d976c070fVirustotal results 36/57 (63.16%) ZeuS 52.77.110.77:443

# of entries: 5 (max: 100)