SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d340fc077847ac746cf866412ba9edef5f1085c7.

Database Entry


SHA1 Fingerprint:d340fc077847ac746cf866412ba9edef5f1085c7
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2016-08-21 01:15:11 UTC
Last seen:2016-08-29 15:21:47 UTC
Status:Blacklisted
Listing reason:Gootkit C&C
Listing date:2016-08-23 17:50:11
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-08-29 15:21:479e40e7aa50d36fdd228247d1c960c0f3n/aGootkit 122.252.225.133:80
2016-08-29 15:21:479e40e7aa50d36fdd228247d1c960c0f3n/aGootkit 122.252.225.133:80
2016-08-23 01:45:290826a9714e3a3360a9e25427dd3f7b37n/aGootkit 122.252.225.133:80
2016-08-23 01:45:290826a9714e3a3360a9e25427dd3f7b37n/aGootkit 122.252.225.133:80
2016-08-21 01:15:46bc75c89514f3139df343561c4f173604Virustotal results 34/56 (60.71%) Gootkit 122.252.225.133:80
2016-08-21 01:15:46bc75c89514f3139df343561c4f173604Virustotal results 34/56 (60.71%) Gootkit 122.252.225.133:80

# of entries: 6 (max: 100)