SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 9b3fd7d40ebb5e60b1c3d75983b4b756c32e9560.

Database Entry


SHA1 Fingerprint:9b3fd7d40ebb5e60b1c3d75983b4b756c32e9560
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:SSLv3
First seen:2014-06-07 03:50:28 UTC
Last seen:2014-06-18 09:41:58 UTC
Status:Blacklisted
Listing reason:Shylock C&C
Listing date:2014-06-07 08:40:35
Malware samples:7
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2014-06-18 09:41:58414e4c4c18de685be26898c142b6dcc8Virustotal results 20/54 (37.04%) 199.167.42.183:443
2014-06-18 02:55:36536e9de2fdf182010a5710b1ae902a36Virustotal results 33/55 (60.00%) 199.167.42.183:443
2014-06-17 22:45:3360175cbe985fa1c36dfc84be74ffd675Virustotal results 20/54 (37.04%) 199.167.42.183:443
2014-06-16 19:11:1819351c192cac769561e44a32b8bf8e15Virustotal results 27/54 (50.00%) 199.167.42.183:443
2014-06-16 16:40:19595499d7285347490c193123d0eb0752Virustotal results 20/52 (38.46%) 199.167.42.183:443
2014-06-12 23:48:53552bc5fd03ce0b2e50f5020e028f9897Virustotal results 22/54 (40.74%) Shylock 199.167.42.183:443
2014-06-07 03:50:28e01162dd8898d762fb1a68ffa6fccd33Virustotal results 22/51 (43.14%) Shylock 199.167.42.183:443

# of entries: 7 (max: 100)