SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d937f94968e0cdd1b7df1099e61f867524a1ad81.

Database Entry


SHA1 Fingerprint:d937f94968e0cdd1b7df1099e61f867524a1ad81
Certificate Common Name (CN):*
Issuer Distinguished Name (DN):*
TLS Version:TLS 1.2
First seen:2018-10-22 09:30:24 UTC
Last seen:2018-10-28 11:02:05 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2018-10-28 12:55:40
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-10-28 11:02:05f561027d9fa4e50a6bca39b08ffc311bVirustotal results 19/67 (28.36%) Gozi 185.127.27.96:443
2018-10-28 11:02:05f561027d9fa4e50a6bca39b08ffc311bVirustotal results 19/67 (28.36%) Gozi 185.127.27.96:443
2018-10-22 09:30:25b3c16e029d8d30b321a10358b5ebef40Virustotal results 26/66 (39.39%) Gozi 185.127.27.96:443
2018-10-22 09:30:25b3c16e029d8d30b321a10358b5ebef40Virustotal results 26/66 (39.39%) Gozi 185.127.27.96:443

# of entries: 4 (max: 100)