SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 604c15528860f0f9def6a5ace419105f133a886c.

Database Entry


SHA1 Fingerprint:604c15528860f0f9def6a5ace419105f133a886c
Certificate Common Name (CN):surfclubrye.com
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLS 1.2
First seen:2018-11-01 15:21:38 UTC
Last seen:2018-12-04 04:16:09 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2018-11-23 11:26:12
Malware samples:56
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-12-04 04:16:090f930c9ad106265c5fd604a976a7ec43Virustotal results 46/70 (65.71%) Gozi 192.162.244.170:443
2018-12-03 17:08:23b3f0ff2ff6d777a6608ca6b47e7c4719Virustotal results 25/67 (37.31%) Gozi 192.162.244.170:443
2018-12-03 10:34:1620b09b6eba0f55b5e3d3051be6c174e6Virustotal results 26/67 (38.81%) Gozi 192.162.244.170:443
2018-12-03 10:13:01cbe11741930cc6559f6b22f42848fcc8Virustotal results 9/68 (13.24%) Gozi 192.162.244.170:443
2018-12-03 08:33:4070acfa5b2185bf9c1cfaa0389c7cb320Virustotal results 43/69 (62.32%) Gozi 192.162.244.170:443
2018-12-03 06:25:4942d4fb42ced605e6fc1f96c78a4ae48bVirustotal results 25/67 (37.31%) Gozi 192.162.244.170:443
2018-12-02 15:12:13d24c46cb6a2d3c586acb4d37b225ffd0Virustotal results 25/68 (36.76%) Gozi 192.162.244.170:443
2018-12-02 14:23:142db25406150eab8e4c487008a1c615e8Virustotal results 48/67 (71.64%) Gozi 192.162.244.170:443
2018-12-02 11:39:36eba8b5b8b9d9783900cf89e28e58e065Virustotal results 26/68 (38.24%) Gozi 192.162.244.170:443
2018-12-02 11:07:292d51d9949710cf8105c183016ea52ab3Virustotal results 25/65 (38.46%) Gozi 192.162.244.170:443
2018-11-28 13:56:34d99180388f5268a16ef67bec5b2d5066Virustotal results 9/70 (12.86%) Gozi 192.162.244.170:443
2018-11-27 14:57:495afadf611f8dd7b0383c230da43987c3Virustotal results 6/68 (8.82%) Gozi 192.162.244.170:443
2018-11-26 17:43:313e8aa3262ea3376ce8267d7d91819ee4Virustotal results 7/68 (10.29%) Gozi 192.162.244.170:443
2018-11-23 13:13:4977e54f7b120ead95172560d64453b743Virustotal results 20/68 (29.41%) Gozi 192.162.244.170:443
2018-11-23 12:59:3726ff87f9f89d5d96f022babcbf9095e9Virustotal results 41/69 (59.42%) Gozi 192.162.244.170:443
2018-11-23 10:36:59f4036f9a4a24837c9dc57e15c38945e2Virustotal results 38/69 (55.07%) Gozi 192.162.244.170:443
2018-11-23 04:30:06f98342bd563ef8e85b354ab7b1b30aa6Virustotal results 41/70 (58.57%) Gozi 192.162.244.170:443
2018-11-23 00:23:09a0c5a32561e7b6ea1e37bb93e6be1204Virustotal results 39/70 (55.71%) Gozi 192.162.244.170:443
2018-11-22 22:13:488fd6a639c4ef6f5c7030a854740b9e7bVirustotal results 40/71 (56.34%) Gozi 192.162.244.170:443
2018-11-22 11:57:234c581a340955f3adf4ec6b6cc649dfdfn/aGozi 192.162.244.170:443
2018-11-22 11:07:41c15417659ee74d1b078a2fc2422cc676n/aGozi 192.162.244.170:443
2018-11-22 08:56:4202d85be40a8cfb8c83ffdcbe160d6aabVirustotal results 28/67 (41.79%) Gozi 192.162.244.170:443
2018-11-21 00:19:5043e10a1fe987729081346658adacd41fn/aGozi 192.162.244.170:443
2018-11-21 00:17:263ad2f322877b8b1b162560e1c0b9664fn/aGozi 192.162.244.170:443
2018-11-21 00:10:553ff1c5e5acbe10e4d7be4ca41bc5978an/aGozi 192.162.244.170:443
2018-11-20 23:47:2656ecf0f2a1054440986464d6312e4cfcn/aGozi 192.162.244.170:443
2018-11-20 23:37:11748ffd11415af6b75e569cf775aea278n/aGozi 192.162.244.170:443
2018-11-20 22:51:57ba9546429bd414b7db95badc60552b5dn/aGozi 192.162.244.170:443
2018-11-20 22:39:48aea6314caf8ff302340bd265b014faffn/aGozi 192.162.244.170:443
2018-11-20 22:32:24c744e3b95c4bdb6bfc8bc599fbbf0a78n/aGozi 192.162.244.170:443
2018-11-20 22:13:10d54068c93017de1de5a61ead404c77f7n/aGozi 192.162.244.170:443
2018-11-20 22:10:20df3932ac71adf34ca958522d44741f45n/aGozi 192.162.244.170:443
2018-11-20 21:38:21eae5c48dc40155f856de782529fb0799n/aGozi 192.162.244.170:443
2018-11-20 18:46:1138f9a23bfd6f4be5e864e7dcfa794804n/aGozi 192.162.244.170:443
2018-11-20 14:56:32b6c05e2c2e84db507b7d9c43876fe57dn/aGozi 192.162.244.170:443
2018-11-20 09:06:12411fab89fef0f084ab0cec733c4e4f38n/aGozi 192.162.244.170:443
2018-11-20 09:05:14798620bda352515762b45d1d6de916c3n/aGozi 192.162.244.170:443
2018-11-20 08:19:02491d91fb871bac29b053e77ac2362d2an/aGozi 192.162.244.170:443
2018-11-20 04:20:575f69a64d9e3db34d4966d44f0f16d333Virustotal results 14/67 (20.90%) Gozi 192.162.244.170:443
2018-11-20 03:42:45812fb37409273bc31a046eca814df710n/aGozi 192.162.244.170:443
2018-11-20 01:24:30df243e5166dd6a15659d31127d8a57bcn/aGozi 192.162.244.170:443
2018-11-19 22:45:1757405e356fa64525a60b006d860c6871n/aGozi 192.162.244.170:443
2018-11-18 18:48:2628cf52ce1362fa50c93e4ecd7969902en/aGozi 192.162.244.170:443
2018-11-18 17:45:35a2c078168055bc9661a62fbc97c3241cn/aGozi 192.162.244.170:443
2018-11-18 17:30:15cbf0d3464eac32eacf313dc3361d7ea0Virustotal results 15/68 (22.06%) Gozi 192.162.244.170:443
2018-11-18 16:33:43a446386bd4e1069ab4f5428a6afae6a9Virustotal results 9/69 (13.04%) Gozi 192.162.244.170:443
2018-11-18 14:55:152efa42970b505bd633f47509c646f767n/aGozi 192.162.244.170:443
2018-11-18 12:06:39c2fdb7a2279d64e07ec12f5d16723ec3n/aGozi 192.162.244.170:443
2018-11-18 10:58:13f589466528683f2facf9039c3ffc1ccan/aGozi 192.162.244.170:443
2018-11-18 09:24:17bc3f7a58445af1c990f1860c1e6a28dfn/aGozi 192.162.244.170:443
2018-11-18 04:12:57ebcd345f2985197717d479f86b83e884n/aGozi 192.162.244.170:443
2018-11-18 01:48:28d021530a95259719d087726d82876c29n/aGozi 192.162.244.170:443
2018-11-13 16:34:3798022ae78fbfd3e6c932bc1450fd3081Virustotal results 33/58 (56.90%) Gozi 192.162.244.170:443
2018-11-13 16:33:532b52d984d4863db4bfc4901c2d82c54cVirustotal results 37/68 (54.41%) Gozi 192.162.244.170:443
2018-11-05 19:24:1725757df9df3a7c2adf90c61ab6d23a54Virustotal results 37/66 (56.06%) Gozi 192.162.244.170:443
2018-11-01 15:21:3904675e92aeae081cd5f24b5f1f8b2977Virustotal results 12/60 (20.00%) Gozi 192.162.244.170:443

# of entries: 56 (max: 100)