SSL Certificate Information

Subject Common Name:nexuslogger.com
Subject:OU=Domain Control Validated, OU=PositiveSSL, CN=nexuslogger.com
Issuer Common Name:COMODO RSA Domain Validation Secure Server CA
Issuer:C=GB, ST=Greater Manchester, L=Salford, O=COMODO CA Limited, CN=COMODO RSA Domain Validation Secure Server CA
SSL Version:TLSv1
Fingerprint (SHA1):259500493b3d962686644a9a0529b1c1a060cbcc
Status:Blacklisted (Reason: Nexuslogger C&C, Listing date: 2017-02-27 10:53:26)

Associated malware binaries

Timestamp (UTC)Malware binary (MD5 hash)DstIPDstPort
2017-02-27 10:47:496b9e08c6812cd0a84aab4a4f8c77cb33176.31.252.15443
2017-02-25 03:25:36fa50c991346a74e40d71b7c4ef5bb352176.31.252.15443
2017-02-24 16:29:514d82ae534cd3848579594544d04a4615176.31.252.15443
2017-02-19 21:03:52b1296422bd96b9572778fff07a7b9510176.31.252.15443
2017-02-18 09:05:393905118e4b1f128114169b10074e185f176.31.252.15443
2017-02-17 11:50:00d0e71a44e8613fd96d30090c43aaa842176.31.252.15443
2017-02-14 11:54:187b32e5e9714f9a031fdae63843f06726176.31.252.15443
2017-02-08 18:39:5040b764870769e99a3a980b9b3a74ea7c176.31.252.15443
2017-02-05 11:43:332ffefcb9005c6b0352df400d292e5799176.31.252.15443
2017-02-04 03:33:58b42d67f74470cc92e470f27fe241b6e6176.31.252.15443
2017-02-03 15:53:56c50bf16c763dace748aef8994b5351d3176.31.252.15443
2017-02-02 01:51:2382d7a3521b091ebcb2afbca2f4e728da176.31.252.15443

# of referencing malware binaries: 12