SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 748e318f082328d05e1ae68b88e5139ffa734b5a.

Database Entry


SHA1 Fingerprint:748e318f082328d05e1ae68b88e5139ffa734b5a
Certificate Common Name (CN):www.google.com/emailAddress=support@gooogle.com
Issuer Distinguished Name (DN):www.google.com/emailAddress=support@gooogle.com
TLS Version:TLS 1.2
First seen:2017-01-24 17:21:51 UTC
Last seen:2017-01-26 07:21:03 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2017-01-25 13:36:41
Malware samples:7
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2017-01-26 07:21:03f4f16f6a1affd8a50b894755a5a26c33n/aGootkit 68.169.45.193:80
2017-01-25 19:11:091f2478dfe8287994369b18a904cebcc4Virustotal results 44/59 (74.58%) Gootkit 68.169.45.193:80
2017-01-25 14:57:5818a38b6602b3aba9d773a86ec37d506cn/aGootkit 68.169.45.193:80
2017-01-25 11:59:02cebdeede362f153e13072662ecac5f40n/aGootkit 68.169.45.193:80
2017-01-25 01:21:08dadf9af2c8be488500af1cd7d56663een/aGootkit 68.169.45.193:80
2017-01-24 21:07:39b5551a39a897b366735375985f0f78f3n/aGootkit 68.169.45.193:80
2017-01-24 17:21:51e8ce68638ea980aef1fb3628bd5fcc3fn/aGootkit 68.169.45.193:80

# of entries: 7 (max: 100)