SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 86614a676d069e27dae4eb6ee6db1d983697ea48.

Database Entry


SHA1 Fingerprint:86614a676d069e27dae4eb6ee6db1d983697ea48
Certificate Common Name (CN):musthavechekthis1staticuo.faith
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLS 1.2
First seen:2019-01-23 20:14:58 UTC
Last seen:2019-01-23 20:59:07 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2019-01-23 21:39:11
Malware samples:5
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-01-23 20:59:0713c0fffbdd42ada729f7dd65b01743faVirustotal results 30/69 (43.48%) Gozi 85.217.170.62:443
2019-01-23 20:59:0713c0fffbdd42ada729f7dd65b01743faVirustotal results 30/69 (43.48%) Gozi 85.217.170.62:443
2019-01-23 20:52:598b98f2faa4ce9724ce2a3bf1d627aa15Virustotal results 35/71 (49.30%) Gozi 85.217.170.62:443
2019-01-23 20:52:598b98f2faa4ce9724ce2a3bf1d627aa15Virustotal results 35/71 (49.30%) Gozi 85.217.170.62:443
2019-01-23 20:51:558c43a478e5e75114dc131effaadcb97eVirustotal results 19/70 (27.14%) Gozi 85.217.170.62:443
2019-01-23 20:51:558c43a478e5e75114dc131effaadcb97eVirustotal results 19/70 (27.14%) Gozi 85.217.170.62:443
2019-01-23 20:31:1884c1bacddf890bebdd70a021d934b6a9Virustotal results 35/69 (50.72%) Gozi 85.217.170.62:443
2019-01-23 20:31:1884c1bacddf890bebdd70a021d934b6a9Virustotal results 35/69 (50.72%) Gozi 85.217.170.62:443
2019-01-23 20:14:5868ffe674ceaf1576a0869ba39b15b261Virustotal results 36/69 (52.17%) Gozi 85.217.170.62:443
2019-01-23 20:14:5868ffe674ceaf1576a0869ba39b15b261Virustotal results 36/69 (52.17%) Gozi 85.217.170.62:443

# of entries: 10 (max: 100)