SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint da5dc1daca7989db13166f03372062bf2a11c1eb.

Database Entry


SHA1 Fingerprint:da5dc1daca7989db13166f03372062bf2a11c1eb
Certificate Common Name (CN):setcursor.xyz
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLS 1.2
First seen:2020-06-02 00:22:55 UTC
Last seen:2020-06-02 08:57:36 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2020-06-02 07:59:23
Malware samples:25
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-06-02 08:57:362baee1e8ac6acb8a47bdfbb331d86206n/aGozi 185.80.128.112:443
2020-06-02 05:16:2089cc070103d9021a6d01c928e39d2ccan/aGozi 185.80.128.112:443
2020-06-02 01:45:56a3e378526f36e061d00962751df88878n/aGozi 185.80.128.112:443
2020-06-02 01:42:319054b57bd64be114d9f1b2913a1a04a5n/aGozi 185.80.128.112:443
2020-06-02 01:28:56e0c52ba0823c5355ab1304a011327889Virustotal results 1 / 59 (1.69%) Gozi 185.80.128.112:443
2020-06-02 01:28:50750e2349e2d0a7adee5cc94e390c6ff0n/aGozi 185.80.128.112:443
2020-06-02 01:28:26524da6ed55cef8b8b82a3e0fe0bdd491n/aGozi 185.80.128.112:443
2020-06-02 01:24:120da77c8d95f147a13bb160a8cbf42a5an/aGozi 185.80.128.112:443
2020-06-02 01:20:0855db64492c8505cd5739b72826bad1e3n/aGozi 185.80.128.112:443
2020-06-02 01:19:04c1e30b77f744df5f26e7c13a85ed4f40n/aGozi 185.80.128.112:443
2020-06-02 01:17:4906af3ed52ce798a675f4998ab3933fcan/aGozi 185.80.128.112:443
2020-06-02 01:16:2351d0d9d9a40d4ca7f4599793390961f2Virustotal results 2 / 62 (3.23%) Gozi 185.80.128.112:443
2020-06-02 01:11:3399641c611e303c140ebdf842bb3ec373n/aGozi 185.80.128.112:443
2020-06-02 01:06:346ce259d7347744bbc616777225a0636cn/aGozi 185.80.128.112:443
2020-06-02 01:03:47dc39c44aaedaebcde23d4f30926b4a3dn/aGozi 185.80.128.112:443
2020-06-02 00:56:3656ae3d7cb9b888c3bc49744aa933c77fn/aGozi 185.80.128.112:443
2020-06-02 00:55:554d7ffd62e2d413a53d1cdf29b4746308n/aGozi 185.80.128.112:443
2020-06-02 00:39:10de9b600f803eb13869b884b7f8fede4cn/aGozi 185.80.128.112:443
2020-06-02 00:36:443d20eea4d9a97b51bcb935aa1f819f08n/aGozi 185.80.128.112:443
2020-06-02 00:34:460b28c49faf21565aa10f9a4730fd883fn/aGozi 185.80.128.112:443
2020-06-02 00:33:05109a6f8e4f6f7eb6ef6313c5e1a767a1n/aGozi 185.80.128.112:443
2020-06-02 00:31:48585b7e4e12e1b5c6163451af59ec0510n/aGozi 185.80.128.112:443
2020-06-02 00:29:155f37efbaa72a3868b56c33801c67ba2en/aGozi 185.80.128.112:443
2020-06-02 00:26:014510adecff60d045da02c5f28eb440d5n/aGozi 185.80.128.112:443
2020-06-02 00:22:55b0506f383a563c23203aadad1671a181n/aGozi 185.80.128.112:443

# of entries: 25 (max: 100)