SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d5279c609f96ab1e2869831af55f695b88e11552.

Database Entry


SHA1 Fingerprint:d5279c609f96ab1e2869831af55f695b88e11552
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:SSLv3
First seen:2015-03-28 15:46:18 UTC
Last seen:2015-03-31 07:58:16 UTC
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2015-03-28 17:29:45
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-03-31 07:58:16b5d6f4595ea77351e458fbdbabdfc482Virustotal results 34/56 (60.71%) ZeuS 82.67.86.227:443
2015-03-31 07:58:16b5d6f4595ea77351e458fbdbabdfc482Virustotal results 34/56 (60.71%) ZeuS 82.67.86.227:443
2015-03-28 18:52:59425fa8988859547fe7de9f909e8bd59cVirustotal results 38/56 (67.86%) ZeuS 82.67.86.227:443
2015-03-28 18:52:59425fa8988859547fe7de9f909e8bd59cVirustotal results 38/56 (67.86%) ZeuS 82.67.86.227:443
2015-03-28 15:46:18640b367531301218f354a94b1cedea48Virustotal results 38/57 (66.67%) ZeuS 82.67.86.227:443
2015-03-28 15:46:18640b367531301218f354a94b1cedea48Virustotal results 38/57 (66.67%) ZeuS 82.67.86.227:443

# of entries: 6 (max: 100)