SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 7e460f1c30c684342fb8f96e4547f67b1d3aee9e.

Database Entry


SHA1 Fingerprint:7e460f1c30c684342fb8f96e4547f67b1d3aee9e
Certificate Common Name (CN):localhost/emailAddress=mail@localhost
Issuer Distinguished Name (DN):localhost/emailAddress=mail@localhost
TLS Version:TLSv1
First seen:2016-06-21 19:13:47 UTC
Last seen:2016-07-07 19:33:14 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2016-06-22 07:37:29
Malware samples:8
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-07-07 19:33:149514e1774b917142e4552f85e97f2af3n/aGootkit 77.42.157.2:80
2016-07-07 13:46:44fd87ebee4969e0bf34e5994b278ef710Virustotal results 27/49 (55.10%) Gootkit 77.42.157.2:80
2016-07-07 05:14:509234150dbebb6cafca2968250b51d331Virustotal results 35/55 (63.64%) Gootkit 77.42.157.2:80
2016-07-06 20:54:027d2f837473d3790e8a5bd06bf7c57eb1Virustotal results 41/57 (71.93%) Gootkit 77.42.157.2:80
2016-07-06 18:01:140899e98e20c72dc4421b1e3f5a1cbc21n/aGootkit 77.42.157.2:80
2016-07-06 09:48:29cc9e2f2fd4288986a11c6bd475982021Virustotal results 48/68 (70.59%) Gootkit 77.42.157.2:80
2016-07-06 08:40:10fe2f17538fa70ef3bf4f2ec6974091e3Virustotal results 17/53 (32.08%) Gootkit 77.42.157.2:80
2016-06-21 19:13:4785383e13c53c4ffa584934ddf6861db9Virustotal results 24/55 (43.64%) Gootkit 140.113.214.68:80

# of entries: 8 (max: 100)