SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint c47755a7e2882793d7abd6f7f057c5b57169fbc5.

Database Entry


SHA1 Fingerprint:c47755a7e2882793d7abd6f7f057c5b57169fbc5
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-06-25 23:54:36 UTC
Last seen:2016-07-05 09:58:23 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2016-06-27 09:49:49
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-07-05 09:58:235311c3288e5480670222351b8ff4bafbVirustotal results 36/54 (66.67%) Gootkit 112.217.178.26:80
2016-07-05 09:58:235311c3288e5480670222351b8ff4bafbVirustotal results 36/54 (66.67%) Gootkit 112.217.178.26:80
2016-06-28 17:43:412b09af3dbf91ae4b8517b670c1b16a6cVirustotal results 27/54 (50.00%) Gootkit 112.217.178.26:80
2016-06-28 17:43:412b09af3dbf91ae4b8517b670c1b16a6cVirustotal results 27/54 (50.00%) Gootkit 112.217.178.26:80
2016-06-25 23:54:36a328d62c8a1724be5fdd6697f201bdb0Virustotal results 11/55 (20.00%) Gootkit 112.217.178.26:80
2016-06-25 23:54:36a328d62c8a1724be5fdd6697f201bdb0Virustotal results 11/55 (20.00%) Gootkit 112.217.178.26:80

# of entries: 6 (max: 100)