SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 9073e71b44ed8a5187a61012e00d40cd7a932339.

Database Entry


SHA1 Fingerprint:9073e71b44ed8a5187a61012e00d40cd7a932339
Certificate Common Name (CN):www.9vayk3xr.com/O=9vayk3xr./C=US
Issuer Distinguished Name (DN):www.9vayk3xr.com/O=9vayk3xr./C=US
TLS Version:SSLv3
First seen:2015-11-24 08:33:51 UTC
Last seen:2015-11-25 09:00:50 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2015-11-24 08:46:44
Malware samples:4
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-11-25 09:00:501a75ab4240c4987afb9a2e3e0a13050aVirustotal results 8/56 (14.29%) Gootkit 77.55.254.156:80
2015-11-25 09:00:501a75ab4240c4987afb9a2e3e0a13050aVirustotal results 8/56 (14.29%) Gootkit 77.55.254.156:80
2015-11-24 16:22:45ed566a0cac1526f4767f56cc9eea74abVirustotal results 14/54 (25.93%) Gootkit 77.55.254.156:80
2015-11-24 16:22:45ed566a0cac1526f4767f56cc9eea74abVirustotal results 14/54 (25.93%) Gootkit 77.55.254.156:80
2015-11-24 08:35:109254a631e5eea45f53c31246ecce378aVirustotal results 21/56 (37.50%) Gootkit 77.55.254.156:80
2015-11-24 08:35:109254a631e5eea45f53c31246ecce378aVirustotal results 21/56 (37.50%) Gootkit 77.55.254.156:80
2015-11-24 08:33:5111bad60bf119d6b1b2132163784b0786Virustotal results 7/55 (12.73%) Gootkit 77.55.254.156:80
2015-11-24 08:33:5111bad60bf119d6b1b2132163784b0786Virustotal results 7/55 (12.73%) Gootkit 77.55.254.156:80

# of entries: 8 (max: 100)