SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint a585fb98c171bd5e2c91fbb5a32364df6e136f1f.
Database Entry
| SHA1 Fingerprint: | a585fb98c171bd5e2c91fbb5a32364df6e136f1f |
|---|---|
| Certificate Common Name (CN): | * |
| Issuer Distinguished Name (DN): | * |
| TLS Version: | TLS 1.2 |
| First seen: | 2018-10-28 13:42:18 UTC |
| Last seen: | 2018-10-29 01:28:01 UTC |
| Status: | Blacklisted |
| Listing reason: | Gozi C&C |
| Listing date: | 2018-10-28 14:36:35 |
| Malware samples: | 7 |
| Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
| Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
|---|---|---|---|---|
| 2018-10-29 01:28:01 | 16c012e2df1d1cab339e354a526ab3a4 | Gozi | 144.217.37.230:443 | |
| 2018-10-29 01:28:01 | 16c012e2df1d1cab339e354a526ab3a4 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 20:39:54 | 5cad3efdc9666c4fb99ef1bb0f20b794 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 20:39:54 | 5cad3efdc9666c4fb99ef1bb0f20b794 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 19:41:01 | 99514f451eeb65b87f37c7af8a8ad253 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 19:41:01 | 99514f451eeb65b87f37c7af8a8ad253 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 19:32:38 | 58839f54c819de71db4eb2ba382cbca8 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 19:32:38 | 58839f54c819de71db4eb2ba382cbca8 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 19:27:28 | fca4cf97760d1621516f585908c20449 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 19:27:28 | fca4cf97760d1621516f585908c20449 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 14:54:19 | b5949d46713f6136496d697b966a1c16 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 14:54:19 | b5949d46713f6136496d697b966a1c16 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 13:42:19 | b54607d797af36fb6ec4db5dd0916ec8 | Gozi | 144.217.37.230:443 | |
| 2018-10-28 13:42:19 | b54607d797af36fb6ec4db5dd0916ec8 | Gozi | 144.217.37.230:443 |
# of entries: 14 (max: 100)