SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 8be4dbc98014e32bce0341f6754a232449c77d3d.

Database Entry


SHA1 Fingerprint:8be4dbc98014e32bce0341f6754a232449c77d3d
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:SSLv3
First seen:2014-04-29 10:39:00 UTC
Last seen:2014-04-30 02:05:08 UTC
Status:Blacklisted
Listing reason:Shylock C&C
Listing date:2014-05-04 08:24:29
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2014-04-30 02:05:0892d73f2f6e69a3d9a4cdc9ebabdd958fVirustotal results 27/54 (50.00%) Shylock 37.123.102.15:443
2014-04-30 02:05:0892d73f2f6e69a3d9a4cdc9ebabdd958fVirustotal results 27/54 (50.00%) Shylock 37.123.102.15:443
2014-04-29 10:39:0065ea8bc43cdbc6c5166271591f78963bVirustotal results 4/52 (7.69%) Shylock 37.123.102.15:443
2014-04-29 10:39:0065ea8bc43cdbc6c5166271591f78963bVirustotal results 4/52 (7.69%) Shylock 37.123.102.15:443

# of entries: 4 (max: 100)