SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint df68a878f3eaa35672a3baed6e1bd4ffb336842d.
Database Entry
SHA1 Fingerprint: | df68a878f3eaa35672a3baed6e1bd4ffb336842d |
---|---|
Certificate Common Name (CN): | * |
Issuer Distinguished Name (DN): | * |
TLS Version: | TLS 1.2 |
First seen: | 2019-11-20 17:55:27 UTC |
Last seen: | 2019-11-26 01:55:28 UTC |
Status: | Blacklisted |
Listing reason: | Gozi C&C |
Listing date: | 2019-11-25 15:35:38 |
Malware samples: | 24 |
Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2019-11-26 01:55:28 | 7b7bbe6edfcac129e0641b4cd83b6970 | n/a | Gozi | 185.118.165.109:443 |
2019-11-26 01:55:28 | 7b7bbe6edfcac129e0641b4cd83b6970 | n/a | Gozi | 185.118.165.109:443 |
2019-11-26 01:22:55 | e3660ff379f223f2bdfcfefe35eb3270 | 55/70 (78.57%) | Gozi | 185.118.165.109:443 |
2019-11-26 01:22:55 | e3660ff379f223f2bdfcfefe35eb3270 | 55/70 (78.57%) | Gozi | 185.118.165.109:443 |
2019-11-25 23:05:56 | 52afc4d95258bffeaec72189368ba050 | 44/68 (64.71%) | Gozi | 185.118.165.109:443 |
2019-11-25 23:05:56 | 52afc4d95258bffeaec72189368ba050 | 44/68 (64.71%) | Gozi | 185.118.165.109:443 |
2019-11-25 22:46:54 | 78d9adab98e1b04c4d5e61d45561ed31 | 52/70 (74.29%) | Gozi | 185.118.165.109:443 |
2019-11-25 22:46:54 | 78d9adab98e1b04c4d5e61d45561ed31 | 52/70 (74.29%) | Gozi | 185.118.165.109:443 |
2019-11-25 20:54:47 | ca72c1e6901950f0f774248585946c83 | 10 / 71 (14.08%) | Gozi | 185.118.165.109:443 |
2019-11-25 20:54:47 | ca72c1e6901950f0f774248585946c83 | 10 / 71 (14.08%) | Gozi | 185.118.165.109:443 |
2019-11-25 19:44:44 | 5dead9d1f575a7915d900d12befef70a | 55/71 (77.46%) | Gozi | 185.118.165.109:443 |
2019-11-25 19:44:44 | 5dead9d1f575a7915d900d12befef70a | 55/71 (77.46%) | Gozi | 185.118.165.109:443 |
2019-11-25 19:26:04 | c3eb4edb7025587b17a5d436cb996552 | 46/69 (66.67%) | Gozi | 185.118.165.109:443 |
2019-11-25 19:26:04 | c3eb4edb7025587b17a5d436cb996552 | 46/69 (66.67%) | Gozi | 185.118.165.109:443 |
2019-11-25 15:04:58 | fcce55bb7402099ace25e530580accac | 54/69 (78.26%) | Gozi | 185.118.165.109:443 |
2019-11-25 15:04:58 | fcce55bb7402099ace25e530580accac | 54/69 (78.26%) | Gozi | 185.118.165.109:443 |
2019-11-25 14:55:58 | 0b6a2173c89a7d8754e9ce7e00fbe370 | 45/67 (67.16%) | Gozi | 185.118.165.109:443 |
2019-11-25 14:55:58 | 0b6a2173c89a7d8754e9ce7e00fbe370 | 45/67 (67.16%) | Gozi | 185.118.165.109:443 |
2019-11-25 10:42:56 | 9e78c53425619c38bd98dd5f671ca163 | 53/70 (75.71%) | Gozi | 185.118.165.109:443 |
2019-11-25 10:42:56 | 9e78c53425619c38bd98dd5f671ca163 | 53/70 (75.71%) | Gozi | 185.118.165.109:443 |
2019-11-25 10:34:48 | 81ddf5cd178c08ff7b2b34e625f80197 | 50/70 (71.43%) | Gozi | 185.118.165.109:443 |
2019-11-25 10:34:48 | 81ddf5cd178c08ff7b2b34e625f80197 | 50/70 (71.43%) | Gozi | 185.118.165.109:443 |
2019-11-25 10:20:29 | c359e610e274788a16bd036dfdc5d5b5 | 40/69 (57.97%) | Gozi | 185.118.165.109:443 |
2019-11-25 10:20:29 | c359e610e274788a16bd036dfdc5d5b5 | 40/69 (57.97%) | Gozi | 185.118.165.109:443 |
2019-11-25 08:43:18 | 8ef857f92e299f7382b6f5b6169b0e57 | 50/70 (71.43%) | Gozi | 185.118.165.109:443 |
2019-11-25 08:43:18 | 8ef857f92e299f7382b6f5b6169b0e57 | 50/70 (71.43%) | Gozi | 185.118.165.109:443 |
2019-11-25 07:19:10 | d37501e7f86581df77b1dd444a9c0d03 | 53/70 (75.71%) | Gozi | 185.118.165.109:443 |
2019-11-25 07:19:10 | d37501e7f86581df77b1dd444a9c0d03 | 53/70 (75.71%) | Gozi | 185.118.165.109:443 |
2019-11-25 06:55:46 | ee5c5a654a6d85896ed7a3633f62bb8a | 46/71 (64.79%) | Gozi | 185.118.165.109:443 |
2019-11-25 06:55:46 | ee5c5a654a6d85896ed7a3633f62bb8a | 46/71 (64.79%) | Gozi | 185.118.165.109:443 |
2019-11-25 06:13:40 | ef458a1515d5caae363ac0ea062b794e | 56/71 (78.87%) | Gozi | 185.118.165.109:443 |
2019-11-25 06:13:40 | ef458a1515d5caae363ac0ea062b794e | 56/71 (78.87%) | Gozi | 185.118.165.109:443 |
2019-11-24 07:32:36 | 00bf75c29076ec5565d2c6890611b225 | 22 / 68 (32.35%) | Gozi | 185.118.165.109:443 |
2019-11-24 07:32:36 | 00bf75c29076ec5565d2c6890611b225 | 22 / 68 (32.35%) | Gozi | 185.118.165.109:443 |
2019-11-24 06:21:10 | 3f023f339aac8c3f5f51a97260cf42e4 | 13 / 68 (19.12%) | Gozi | 185.118.165.109:443 |
2019-11-24 06:21:10 | 3f023f339aac8c3f5f51a97260cf42e4 | 13 / 68 (19.12%) | Gozi | 185.118.165.109:443 |
2019-11-23 22:58:30 | a3ca79ebc6d0da5a8ca87c2cc7d2d744 | 32 / 68 (47.06%) | Gozi | 185.118.165.109:443 |
2019-11-23 22:58:30 | a3ca79ebc6d0da5a8ca87c2cc7d2d744 | 32 / 68 (47.06%) | Gozi | 185.118.165.109:443 |
2019-11-23 00:51:30 | 6b140685022f1b11e54ed78f2cb468a1 | 37 / 69 (53.62%) | Gozi | 185.118.165.109:443 |
2019-11-23 00:51:30 | 6b140685022f1b11e54ed78f2cb468a1 | 37 / 69 (53.62%) | Gozi | 185.118.165.109:443 |
2019-11-23 00:45:10 | ba7767605125deff8611e9b009a89bff | 35 / 67 (52.24%) | Gozi | 185.118.165.109:443 |
2019-11-23 00:45:10 | ba7767605125deff8611e9b009a89bff | 35 / 67 (52.24%) | Gozi | 185.118.165.109:443 |
2019-11-22 14:46:51 | a1ac4361d910e5f1ba291b6e47759b14 | 36 / 69 (52.17%) | Gozi | 185.118.165.109:443 |
2019-11-22 14:46:51 | a1ac4361d910e5f1ba291b6e47759b14 | 36 / 69 (52.17%) | Gozi | 185.118.165.109:443 |
2019-11-20 17:56:01 | 82de032eb57f2e2c3a972374c965e562 | 26/70 (37.14%) | Gozi | 185.118.165.109:443 |
2019-11-20 17:56:01 | 82de032eb57f2e2c3a972374c965e562 | 26/70 (37.14%) | Gozi | 185.118.165.109:443 |
2019-11-20 17:55:27 | d4baa9d4486c9c237e213a2667d35567 | 12 / 66 (18.18%) | Gozi | 185.118.165.109:443 |
2019-11-20 17:55:27 | d4baa9d4486c9c237e213a2667d35567 | 12 / 66 (18.18%) | Gozi | 185.118.165.109:443 |
# of entries: 48 (max: 100)