SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint df68a878f3eaa35672a3baed6e1bd4ffb336842d.

Database Entry


SHA1 Fingerprint:df68a878f3eaa35672a3baed6e1bd4ffb336842d
Certificate Common Name (CN):*
Issuer Distinguished Name (DN):*
TLS Version:TLS 1.2
First seen:2019-11-20 17:55:27 UTC
Last seen:2019-11-26 01:55:28 UTC
Status:Blacklisted
Listing reason:Gozi C&C
Listing date:2019-11-25 15:35:38
Malware samples:24
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-11-26 01:55:287b7bbe6edfcac129e0641b4cd83b6970n/aGozi 185.118.165.109:443
2019-11-26 01:22:55e3660ff379f223f2bdfcfefe35eb3270n/aGozi 185.118.165.109:443
2019-11-25 23:05:5652afc4d95258bffeaec72189368ba050n/aGozi 185.118.165.109:443
2019-11-25 22:46:5478d9adab98e1b04c4d5e61d45561ed31n/aGozi 185.118.165.109:443
2019-11-25 20:54:47ca72c1e6901950f0f774248585946c83Virustotal results 10 / 71 (14.08%) Gozi 185.118.165.109:443
2019-11-25 19:44:445dead9d1f575a7915d900d12befef70an/aGozi 185.118.165.109:443
2019-11-25 19:26:04c3eb4edb7025587b17a5d436cb996552n/aGozi 185.118.165.109:443
2019-11-25 15:04:58fcce55bb7402099ace25e530580accacn/aGozi 185.118.165.109:443
2019-11-25 14:55:580b6a2173c89a7d8754e9ce7e00fbe370n/aGozi 185.118.165.109:443
2019-11-25 10:42:569e78c53425619c38bd98dd5f671ca163n/aGozi 185.118.165.109:443
2019-11-25 10:34:4881ddf5cd178c08ff7b2b34e625f80197n/aGozi 185.118.165.109:443
2019-11-25 10:20:29c359e610e274788a16bd036dfdc5d5b5n/aGozi 185.118.165.109:443
2019-11-25 08:43:188ef857f92e299f7382b6f5b6169b0e57n/aGozi 185.118.165.109:443
2019-11-25 07:19:10d37501e7f86581df77b1dd444a9c0d03n/aGozi 185.118.165.109:443
2019-11-25 06:55:46ee5c5a654a6d85896ed7a3633f62bb8an/aGozi 185.118.165.109:443
2019-11-25 06:13:40ef458a1515d5caae363ac0ea062b794en/aGozi 185.118.165.109:443
2019-11-24 07:32:3600bf75c29076ec5565d2c6890611b225Virustotal results 22 / 68 (32.35%) Gozi 185.118.165.109:443
2019-11-24 06:21:103f023f339aac8c3f5f51a97260cf42e4Virustotal results 13 / 68 (19.12%) Gozi 185.118.165.109:443
2019-11-23 22:58:30a3ca79ebc6d0da5a8ca87c2cc7d2d744Virustotal results 32 / 68 (47.06%) Gozi 185.118.165.109:443
2019-11-23 00:51:306b140685022f1b11e54ed78f2cb468a1Virustotal results 37 / 69 (53.62%) Gozi 185.118.165.109:443
2019-11-23 00:45:10ba7767605125deff8611e9b009a89bffVirustotal results 35 / 67 (52.24%) Gozi 185.118.165.109:443
2019-11-22 14:46:51a1ac4361d910e5f1ba291b6e47759b14Virustotal results 36 / 69 (52.17%) Gozi 185.118.165.109:443
2019-11-20 17:56:0182de032eb57f2e2c3a972374c965e562n/aGozi 185.118.165.109:443
2019-11-20 17:55:27d4baa9d4486c9c237e213a2667d35567Virustotal results 12 / 66 (18.18%) Gozi 185.118.165.109:443

# of entries: 24 (max: 100)