SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint dfd898e92beae06c3b479673676643bec433199f.

Database Entry


SHA1 Fingerprint:dfd898e92beae06c3b479673676643bec433199f
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:SSLv3
First seen:2014-06-16 09:38:53 UTC
Last seen:2014-06-17 09:00:41 UTC
Status:Blacklisted
Listing reason:Shylock C&C
Listing date:2014-06-16 10:53:07
Malware samples:2
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2014-06-17 09:00:4188bbdfd5f174c39714905a57b7af07a4Virustotal results 29/54 (53.70%) 191.101.5.26:443
2014-06-17 09:00:4188bbdfd5f174c39714905a57b7af07a4Virustotal results 29/54 (53.70%) 191.101.5.26:443
2014-06-16 09:38:53e61f32ef715343d94b1c155a59255f95Virustotal results 16/54 (29.63%) Shylock 191.101.5.26:443
2014-06-16 09:38:53e61f32ef715343d94b1c155a59255f95Virustotal results 16/54 (29.63%) Shylock 191.101.5.26:443

# of entries: 4 (max: 100)