SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d473ab95f74d7590d5aa0dedfcf7de6490371abc.

Database Entry


SHA1 Fingerprint:d473ab95f74d7590d5aa0dedfcf7de6490371abc
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:SSLv3
First seen:2015-03-24 21:12:42 UTC
Last seen:2015-03-26 21:25:14 UTC
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2015-03-25 10:31:41
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-03-26 21:25:146ae1cfd3b8f642dfd8e587eb240cced9Virustotal results 6/57 (10.53%) ZeuS 201.161.97.2:443
2015-03-26 21:25:146ae1cfd3b8f642dfd8e587eb240cced9Virustotal results 6/57 (10.53%) ZeuS 201.161.97.2:443
2015-03-26 01:21:05192d1ed762ecfcd5e8b30e8428f8c8a6Virustotal results 14/56 (25.00%) ZeuS 201.161.97.2:443
2015-03-26 01:21:05192d1ed762ecfcd5e8b30e8428f8c8a6Virustotal results 14/56 (25.00%) ZeuS 201.161.97.2:443
2015-03-24 21:12:4226b0680eba64c0d4b77cdac414c5af56Virustotal results 14/56 (25.00%) ZeuS 201.161.97.2:443
2015-03-24 21:12:4226b0680eba64c0d4b77cdac414c5af56Virustotal results 14/56 (25.00%) ZeuS 201.161.97.2:443

# of entries: 6 (max: 100)