SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 66c825a3640115b300eaacb78b6d098fd14392a6.

Database Entry


SHA1 Fingerprint:66c825a3640115b300eaacb78b6d098fd14392a6
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:SSLv3
First seen:2015-06-07 12:06:00 UTC
Last seen:2015-07-11 03:51:57 UTC
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2015-06-07 14:58:43
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-07-11 03:51:57d070cba2d5779b2e8744e524b97dff8eVirustotal results 16/56 (28.57%) 103.27.232.165:443
2015-07-09 12:44:35ca934b31e430e5c24b9117b962c7c3f6Virustotal results 14/55 (25.45%) 103.27.232.165:443
2015-07-03 20:39:279f7cdeb057da9066360a68ed1ba23c1cVirustotal results 1/56 (1.79%) ZeuS 103.27.232.165:443
2015-06-30 21:06:124518bae9d4ca2def06993089f8c07544Virustotal results 16/55 (29.09%) ZeuS 103.27.232.165:443
2015-06-07 12:06:001ace268b24aed3ceb9a81200b51f8ac2Virustotal results 7/57 (12.28%) ZeuS 103.27.232.165:443

# of entries: 5 (max: 100)