SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint f896ce865434a5cfb5978f054f2aa949d05aece2.

Database Entry


SHA1 Fingerprint:f896ce865434a5cfb5978f054f2aa949d05aece2
Certificate Common Name (CN):localhost
Issuer Distinguished Name (DN):localhost
TLS Version:TLSv1
First seen:2015-03-09 12:39:35 UTC
Last seen:2015-03-10 06:13:07 UTC
Status:Blacklisted
Listing reason:KINS C&C
Listing date:2015-03-09 13:23:41
Malware samples:3
Botnet C&Cs:1

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2015-03-10 06:13:078beba87dedddb950fa35339d3c5a9c28Virustotal results 3/57 (5.26%) ZeuS 185.62.189.20:443
2015-03-10 04:20:46ae28f5be92f7a51c04a13fc4199d9c28Virustotal results 5/57 (8.77%) ZeuS 185.62.189.20:443
2015-03-09 12:39:35c4d72582f9b9accb73d339e987f14753Virustotal results 9/57 (15.79%) ZeuS 185.62.189.20:443

# of entries: 3 (max: 100)