SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 7efff09f97443114ea57e5cf3409476afc63064c.

Database Entry


SHA1 Fingerprint:7efff09f97443114ea57e5cf3409476afc63064c
Certificate Common Name (CN):win-awards-here.life
Issuer Distinguished Name (DN):R3
TLS Version:TLS 1.2
First seen:2021-05-14 02:31:39 UTC
Last seen:2021-05-15 10:42:50 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2021-05-14 18:14:53
Malware samples:90
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2021-05-15 10:42:50a0254128094d5b4b36e9c7508bfabc3fn/aGozi 45.141.84.112:443
2021-05-15 10:20:02c93493b65145a88473dedb4ca25c2da2n/aGozi 45.141.84.112:443
2021-05-15 10:17:579f77d61586f838b8a3f1ae6dbd18368en/aGozi 45.141.84.112:443
2021-05-15 09:55:33d6c88a8195d47201b5f7f5b83d5d76bfn/aGozi 45.141.84.112:443
2021-05-15 09:49:56574aaab55686e1777ab061c32e649fa3n/aGozi 45.141.84.112:443
2021-05-15 09:26:46b66036ddd430e0de7444ab5853bc5562Virustotal results 36 / 69 (52.17%) Gozi 45.141.84.112:443
2021-05-15 09:24:13ac668145776e21309cd953e8307db2e5Virustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-15 09:23:18ebe4398a79b677ed72d549435175f6bdVirustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-15 09:17:17f17e6f2b1a88f5f53464c46941aa13b7Virustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-15 09:15:46f1a9a1ea5999305df435c2d07297a0deVirustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-15 09:14:59f37793cc547a90c35c24fbc1a9b4c32aVirustotal results 37 / 68 (54.41%) Gozi 45.141.84.112:443
2021-05-15 09:14:06efd10b78e2e4057cf285f7024e7fcd9cVirustotal results 35 / 70 (50.00%) Gozi 45.141.84.112:443
2021-05-15 09:13:23c6a7d08172434796c322e597497fabaen/aGozi 45.141.84.112:443
2021-05-15 09:11:30e0f630f75c90c920a015e2c14148b64dn/aGozi 45.141.84.112:443
2021-05-15 09:08:50ca5e74d9f28e8a033df7ab09be2d4b01Virustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-15 09:08:41c992a712c6991d970c10fe58f1a41726Virustotal results 38 / 68 (55.88%) Gozi 45.141.84.112:443
2021-05-15 09:06:45c9c231ae1546a93aa2b1d222d852ed64Virustotal results 37 / 68 (54.41%) Gozi 45.141.84.112:443
2021-05-15 09:05:5772306de3f7f23c52007163365ef9aa86Virustotal results 38 / 68 (55.88%) Gozi 45.141.84.112:443
2021-05-15 09:04:399b705fbec50547f93adbdd7fddc5a2d6n/aGozi 45.141.84.112:443
2021-05-15 09:03:359dcd0e433ec00ae0d8e5e04b68180c81Virustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-15 09:03:299f712e3d29a210cefe1e1d2149756faeVirustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-15 09:03:0424911c3bc0ce532222a652307b8cdebcVirustotal results 31 / 62 (50.00%) Gozi 45.141.84.112:443
2021-05-15 09:01:46984a195109fd8924cc3658c14310efc7Virustotal results 36 / 69 (52.17%) Gozi 45.141.84.112:443
2021-05-15 09:01:35488906f4ae3f1073a5a1815262cec80cVirustotal results 39 / 69 (56.52%) Gozi 45.141.84.112:443
2021-05-15 08:57:431003a6eff9648dadcaccbdd37be8638dVirustotal results 36 / 67 (53.73%) Gozi 45.141.84.112:443
2021-05-15 08:56:3646ab4787e0f881f7c1fc70882d9e8617Virustotal results 37 / 68 (54.41%) Gozi 45.141.84.112:443
2021-05-15 08:56:225c318880684273a587e020fdd45defd4Virustotal results 38 / 69 (55.07%) Gozi 45.141.84.112:443
2021-05-15 08:56:0925ddc5d21ce7320e1e1e0838a7bb3eaeVirustotal results 36 / 67 (53.73%) Gozi 45.141.84.112:443
2021-05-15 08:54:101371526e34ac7fe9053f6c375eb68f3eVirustotal results 38 / 66 (57.58%) Gozi 45.141.84.112:443
2021-05-15 08:52:531740e96d778779d9d3840a93dcfbda53Virustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-15 07:23:5990b27464ba15a0317a9bc5156aa9080dVirustotal results 38 / 69 (55.07%) Gozi 45.141.84.112:443
2021-05-15 06:31:4952064516f3e18c2fdba2d0d76d95729fVirustotal results 37 / 68 (54.41%) Gozi 45.141.84.112:443
2021-05-15 01:35:00e405b993fe4096c3c201ecdd6d1d318aVirustotal results 38 / 69 (55.07%) Gozi 45.141.84.112:443
2021-05-15 01:30:26e7709694102815b6e88053afeee57b94Virustotal results 37 / 69 (53.62%) Gozi 45.141.84.112:443
2021-05-14 21:59:4314a63597eb32dac8e40c2d1db21307c9Virustotal results 37 / 69 (53.62%) Gozi 88.214.24.56:443
2021-05-14 20:52:105ee7cd467bb03ca9ee57baa56c578b81n/aGozi 88.214.24.56:443
2021-05-14 20:15:24159c929d6ecfb94b8f2d5425e6289108n/aGozi 88.214.24.56:443
2021-05-14 19:59:0673dc59baa33ecd3e821baf2230234f01n/aGozi 88.214.24.56:443
2021-05-14 19:54:014068b39c4a681542c1362d2e4f45cf41n/aGozi 88.214.24.56:443
2021-05-14 19:52:138355bc5369865faf0c302e0fb0bcfb9en/aGozi 88.214.24.56:443
2021-05-14 18:29:362a46f4e58b78cdd35ca106c7d869d0c5n/aGozi 88.214.24.56:443
2021-05-14 18:18:308c90a3c1b2424b55719d02c36db8be1en/aGozi 88.214.24.56:443
2021-05-14 17:46:08265b1b126ed78e4870fa32de1878dd1dn/aGozi 88.214.24.56:443
2021-05-14 17:44:0446e839e363bf9f83db7f716719237bf9n/aGozi 88.214.24.56:443
2021-05-14 16:42:0497d98db0f3664394d2e0fb58c56a869cn/aGozi 88.214.24.56:443
2021-05-14 16:34:139cb9d5713f1541b327869b06dee62ca7n/aGozi 88.214.24.56:443
2021-05-14 16:15:234d1b1fe49b26b4d432d0b875bff2cd81n/aGozi 88.214.24.56:443
2021-05-14 15:51:37c38fde621bcd2f9ee747f2d5d84fe403n/aGozi 88.214.24.56:443
2021-05-14 15:45:40d00805faa8f8aca6d5cdd99ac3bc8988n/aGozi 88.214.24.56:443
2021-05-14 15:41:42bdf5cefc0d4de47c96b3e289048e8b20n/aGozi 88.214.24.56:443
2021-05-14 15:16:3900c91cca8fc4ed5ee4e80752ad1a9730Virustotal results 34 / 67 (50.75%) Gozi 88.214.24.56:443
2021-05-14 15:05:0019edb55626a023f58f941de769b55a20Virustotal results 36 / 68 (52.94%) Gozi 88.214.24.56:443
2021-05-14 14:47:2395cef8d23892a14793a27badb0bbee62n/aGozi 88.214.24.56:443
2021-05-14 14:28:34ddbd62a02ad6de438a7a810b38e97733n/aGozi 88.214.24.56:443
2021-05-14 14:25:478276945eb86cf1f4a7fd45ae13da37dfn/aGozi 88.214.24.56:443
2021-05-14 13:57:14c8e2182efcdca4e1089770473bf5ba36n/aGozi 88.214.24.56:443
2021-05-14 13:44:47833f2d847bd0bcdfc48fbd54573f2d8an/aGozi 88.214.24.56:443
2021-05-14 13:38:44c2bee8bdad0a42fc5ec961c184e1dbc4n/aGozi 88.214.24.56:443
2021-05-14 13:33:167b16cc5e21229c3d930ff67c5ef77ca5Virustotal results 35 / 68 (51.47%) Gozi 88.214.24.56:443
2021-05-14 13:31:09ecce315cf22e9e820dbdc78c77ab9be9n/aGozi 88.214.24.56:443
2021-05-14 13:28:41c2136e7d5364e89190fe927aaf4c1c6bVirustotal results 36 / 67 (53.73%) Gozi 88.214.24.56:443
2021-05-14 13:19:142b636e3b9bcbdfa2879a7b07b672bf92Virustotal results 37 / 69 (53.62%) Gozi 88.214.24.56:443
2021-05-14 13:09:1235b4da04e3af1945883aeaf629f476edn/aGozi 88.214.24.56:443
2021-05-14 13:05:5136dd5671cbae3b12917fe326145f31a5Virustotal results 28 / 69 (40.58%) Gozi 88.214.24.56:443
2021-05-14 12:58:375f911ac9672482059fd46b7e477f9e12Virustotal results 36 / 68 (52.94%) Gozi 88.214.24.56:443
2021-05-14 12:56:38169e0b42ef90f603425a550b80afda9bn/aGozi 88.214.24.56:443
2021-05-14 11:53:392df2121fe3699a38e3158f8dfc9762b8Virustotal results 36 / 69 (52.17%) Gozi 88.214.24.56:443
2021-05-14 11:45:1029497d427c980e105796b7303f90ee5cn/aGozi 88.214.24.56:443
2021-05-14 11:29:46f28c7a2d9b0a890d972dc4fb111dd1a0n/aGozi 88.214.24.56:443
2021-05-14 11:21:3959c4bcd077c8d7f1801b634b0d0b95a7Virustotal results 36 / 69 (52.17%) Gozi 88.214.24.56:443
2021-05-14 10:25:3382d90aef2955d6f77a03f4b933ba4d7dVirustotal results 37 / 69 (53.62%) Gozi 88.214.24.56:443
2021-05-14 09:47:489666cc2ff8ce4a10d695be3a019beba0Virustotal results 37 / 68 (54.41%) Gozi 88.214.24.56:443
2021-05-14 09:03:174f925a2cf854c1ca2bf0ad5f54f51f2en/aGozi 88.214.24.56:443
2021-05-14 08:57:2324eb5304bb3b0562fe85bb7ed084e10eVirustotal results 34 / 65 (52.31%) Gozi 88.214.24.56:443
2021-05-14 08:39:39b0e8e74feefb58014d6da91cdca66226n/aGozi 88.214.24.56:443
2021-05-14 08:22:49a2707db0156e2dd598bd8eb5f58515b7Virustotal results 36 / 69 (52.17%) Gozi 88.214.24.56:443
2021-05-14 08:20:164ba10c265747be8798dd72de47941fcaVirustotal results 38 / 68 (55.88%) Gozi 88.214.24.56:443
2021-05-14 08:10:59fac84d2f1eb8ac5ba830709f68bfa864Virustotal results 35 / 67 (52.24%) Gozi 88.214.24.56:443
2021-05-14 08:00:28a1943d7ebb2cfd253f9e4c0f03e1fe71Virustotal results 35 / 69 (50.72%) Gozi 88.214.24.56:443
2021-05-14 07:20:04ab3aef3a5d5d8c17bf648e29d91b63a0Virustotal results 37 / 69 (53.62%) Gozi 88.214.24.56:443
2021-05-14 07:12:061f3dc2d2f5ba4ae51ad7e19bf190f5dcn/aGozi 88.214.24.56:443
2021-05-14 06:59:11561fba17e09bbbce4d1f93d74b2b136aVirustotal results 37 / 69 (53.62%) Gozi 88.214.24.56:443
2021-05-14 06:04:32c1930aaa49e1328f77856c50192f2006Virustotal results 37 / 69 (53.62%) Gozi 88.214.24.56:443
2021-05-14 05:00:5642899b5fb44e428a3ae50d865de34256Virustotal results 36 / 69 (52.17%) Gozi 88.214.24.56:443
2021-05-14 04:04:184e7f48228afc3b89bd83e125c602187cVirustotal results 37 / 69 (53.62%) Gozi 88.214.24.56:443
2021-05-14 03:21:10ae467cd218e978a38fc6266a290a3964Virustotal results 35 / 69 (50.72%) Gozi 88.214.24.56:443
2021-05-14 03:11:170b8eca4eaabf080451a10698691d7588Virustotal results 35 / 69 (50.72%) Gozi 88.214.24.56:443
2021-05-14 02:57:2599834f11e00c23aa861187730be0cf40Virustotal results 36 / 69 (52.17%) Gozi 88.214.24.56:443
2021-05-14 02:57:24a4cf65d7820fd14f5dda325753a8c408Virustotal results 36 / 69 (52.17%) Gozi 88.214.24.56:443
2021-05-14 02:31:39323546291d3ab147ef5cddad4c3774a5Virustotal results 36 / 69 (52.17%) Gozi 88.214.24.56:443

# of entries: 90 (max: 100)