SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 95678e0529473bf8b297010ac08e9f5975dfb873.

Database Entry


SHA1 Fingerprint:95678e0529473bf8b297010ac08e9f5975dfb873
Certificate Common Name (CN):servicestatic3.club
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLS 1.2
First seen:2018-11-27 22:34:57 UTC
Last seen:2018-12-19 18:42:24 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2018-12-20 10:46:05
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-12-19 18:42:24b71b987dcda3c7c97baa917ba3fdfbefVirustotal results 32/60 (53.33%) Gozi 193.37.212.4:443
2018-12-19 18:42:24b71b987dcda3c7c97baa917ba3fdfbefVirustotal results 32/60 (53.33%) Gozi 193.37.212.4:443
2018-12-19 18:33:170bf7564ee0cfcce4d99730fab1d6532bVirustotal results 5/70 (7.14%) Gozi 193.37.212.4:443
2018-12-19 18:33:170bf7564ee0cfcce4d99730fab1d6532bVirustotal results 5/70 (7.14%) Gozi 193.37.212.4:443
2018-11-27 22:34:5723fc24033a6db56239aa49281deb2b4bVirustotal results 12/68 (17.65%) Gozi 193.37.212.4:443
2018-11-27 22:34:5723fc24033a6db56239aa49281deb2b4bVirustotal results 12/68 (17.65%) Gozi 193.37.212.4:443

# of entries: 6 (max: 100)