SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 722b944fb512349b7f7200259b9d491ebcf6768e.

Database Entry


SHA1 Fingerprint:722b944fb512349b7f7200259b9d491ebcf6768e
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-07-01 16:25:00 UTC
Last seen:2016-07-05 04:52:18 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2016-07-04 06:44:24
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-07-05 04:52:185d799ba7c84c8d1bf60e8456b70d4d35Virustotal results 23/54 (42.59%) Shylock 59.144.17.122:80
2016-07-05 04:52:185d799ba7c84c8d1bf60e8456b70d4d35Virustotal results 23/54 (42.59%) Shylock 59.144.17.122:80
2016-07-01 16:25:00843ec153f7995ba13692385e1b747abdn/aGootkit 59.144.17.122:80
2016-07-01 16:25:00843ec153f7995ba13692385e1b747abdn/aGootkit 59.144.17.122:80

# of entries: 4 (max: 100)