SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 95265183f30a411a1798d9344a077ac5e959e1fa.

Database Entry


SHA1 Fingerprint:95265183f30a411a1798d9344a077ac5e959e1fa
Certificate Common Name (CN):C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
Issuer Distinguished Name (DN):C=AU, ST=Some-State, O=Internet Widgits Pty Ltd
TLS Version:TLS 1.2
First seen:2015-08-13 20:54:01 UTC
Last seen:2015-09-02 03:44:13 UTC
Status:Blacklisted
Listing reason:Shifu C&C
Listing date:2015-09-22 06:40:46
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-09-02 03:44:13000f320763325b3aa0219d1793a8c0d3n/aShifu188.42.254.65:443
2015-09-02 03:44:13000f320763325b3aa0219d1793a8c0d3n/aShifu188.42.254.65:443
2015-08-20 15:20:284e523e8c9ee9e84d1a53b8455e06c61eVirustotal results 2/57 (3.51%) Shifu188.42.254.65:443
2015-08-20 15:20:284e523e8c9ee9e84d1a53b8455e06c61eVirustotal results 2/57 (3.51%) Shifu188.42.254.65:443
2015-08-13 20:54:01b9bc3f1b2aace824482c10ffa422f78bVirustotal results 2/55 (3.64%) Shifu188.42.254.65:443
2015-08-13 20:54:01b9bc3f1b2aace824482c10ffa422f78bVirustotal results 2/55 (3.64%) Shifu188.42.254.65:443

# of entries: 6 (max: 100)