SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 91b568ea952cbf4ad655cc321590fc65cdff9de6.
Database Entry
| SHA1 Fingerprint: | 91b568ea952cbf4ad655cc321590fc65cdff9de6 |
|---|---|
| Certificate Common Name (CN): | * |
| Issuer Distinguished Name (DN): | * |
| TLS Version: | TLS 1.2 |
| First seen: | 2018-07-04 10:18:27 UTC |
| Last seen: | 2018-07-04 10:20:23 UTC |
| Status: | Blacklisted |
| Listing reason: | Gozi C&C |
| Listing date: | 2018-07-04 10:40:32 |
| Malware samples: | 2 |
| Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
| Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
|---|---|---|---|---|
| 2018-07-04 10:20:23 | 2ff53146b1b76e2a8c22d8d45aabf605 | Gozi | 95.181.179.31:443 | |
| 2018-07-04 10:20:23 | 2ff53146b1b76e2a8c22d8d45aabf605 | Gozi | 95.181.179.31:443 | |
| 2018-07-04 10:18:27 | 6733145695e9671130be67fe7e30726c | n/a | Gozi | 95.181.179.31:443 |
| 2018-07-04 10:18:27 | 6733145695e9671130be67fe7e30726c | n/a | Gozi | 95.181.179.31:443 |
# of entries: 4 (max: 100)