SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint b4a73b854389dbe35eca2cc2a1ea7f63348a7a67.

Database Entry


SHA1 Fingerprint:b4a73b854389dbe35eca2cc2a1ea7f63348a7a67
Certificate Common Name (CN):localhost/emailAddress=webamster@localhost
Issuer Distinguished Name (DN):localhost/emailAddress=webamster@localhost
TLS Version:TLS 1.2
First seen:2016-11-01 04:58:46 UTC
Last seen:2016-11-01 06:59:36 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2016-11-09 18:06:14
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-11-01 06:59:36279322785ebe4e97b7849ad99fdd4496Virustotal results 33/57 (57.89%) Gootkit 185.51.246.38:80
2016-11-01 06:59:36279322785ebe4e97b7849ad99fdd4496Virustotal results 33/57 (57.89%) Gootkit 185.51.246.38:80
2016-11-01 04:58:46a65d7a3dd71c5276563399e1ac0c956cVirustotal results 24/57 (42.11%) Gootkit 185.51.246.38:80
2016-11-01 04:58:46a65d7a3dd71c5276563399e1ac0c956cVirustotal results 24/57 (42.11%) Gootkit 185.51.246.38:80

# of entries: 4 (max: 100)