SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 669f16d43846942f011fd152562fdb1f62f3ffb8.

Database Entry


SHA1 Fingerprint:669f16d43846942f011fd152562fdb1f62f3ffb8
Certificate Common Name (CN):domain.com/emailAddress=webmaster@domain.com
Issuer Distinguished Name (DN):domain.com/emailAddress=webmaster@domain.com
TLS Version:TLS 1.2
First seen:2017-01-28 13:58:39 UTC
Last seen:2017-01-30 13:14:04 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2017-01-29 09:33:18
Malware samples:7
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2017-01-30 13:14:043482a6b6d66f4057d1002867bdd772c6n/aGootkit 88.202.188.35:80
2017-01-30 06:26:34119c4ed16f83eef1a19fa353c454f4bbn/aGootkit 88.202.188.35:80
2017-01-29 22:50:5691b1d1cd4daeecffae431ebcc6a19d8cn/a88.202.188.35:80
2017-01-29 19:49:15de1b8b8a064ad3cd0fea67e0ecbe723fn/aGootkit 88.202.188.35:80
2017-01-29 14:54:3157d313bd59d620ac367417b9323d297en/aGootkit 88.202.188.35:80
2017-01-29 02:41:25a9b5e0dcdf29af2d7ce9666b8dce061fVirustotal results 46/66 (69.70%) Gootkit 88.202.188.35:80
2017-01-28 13:58:39d53a6128913a8434bd1fd821ff1dab31n/aGootkit 88.202.188.35:80

# of entries: 7 (max: 100)