SSL Certificates
The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint 259500493b3d962686644a9a0529b1c1a060cbcc.
Database Entry
SHA1 Fingerprint: | 259500493b3d962686644a9a0529b1c1a060cbcc |
---|---|
Certificate Common Name (CN): | nexuslogger.com |
Issuer Distinguished Name (DN): | COMODO RSA Domain Validation Secure Server CA |
TLS Version: | TLSv1 |
First seen: | 2017-02-02 01:51:23 UTC |
Last seen: | 2017-02-27 10:47:49 UTC |
Status: | Blacklisted |
Listing reason: | Nexuslogger C&C |
Listing date: | 2017-02-27 10:53:26 |
Malware samples: | 12 |
Botnet C&Cs: | 1 |
Malware Samples
The table below documents all malware samples associated with this SSL certificate.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2017-02-27 10:47:49 | 6b9e08c6812cd0a84aab4a4f8c77cb33 | 11/58 (18.97%) | Nexuslogger | 176.31.252.15:443 |
2017-02-27 10:47:49 | 6b9e08c6812cd0a84aab4a4f8c77cb33 | 11/58 (18.97%) | Nexuslogger | 176.31.252.15:443 |
2017-02-25 03:25:36 | fa50c991346a74e40d71b7c4ef5bb352 | 9/59 (15.25%) | Nexuslogger | 176.31.252.15:443 |
2017-02-25 03:25:36 | fa50c991346a74e40d71b7c4ef5bb352 | 9/59 (15.25%) | Nexuslogger | 176.31.252.15:443 |
2017-02-24 16:29:51 | 4d82ae534cd3848579594544d04a4615 | 19/57 (33.33%) | Nexuslogger | 176.31.252.15:443 |
2017-02-24 16:29:51 | 4d82ae534cd3848579594544d04a4615 | 19/57 (33.33%) | Nexuslogger | 176.31.252.15:443 |
2017-02-19 21:03:52 | b1296422bd96b9572778fff07a7b9510 | 33/59 (55.93%) | Nexuslogger | 176.31.252.15:443 |
2017-02-19 21:03:52 | b1296422bd96b9572778fff07a7b9510 | 33/59 (55.93%) | Nexuslogger | 176.31.252.15:443 |
2017-02-18 09:05:39 | 3905118e4b1f128114169b10074e185f | 27/58 (46.55%) | Nexuslogger | 176.31.252.15:443 |
2017-02-18 09:05:39 | 3905118e4b1f128114169b10074e185f | 27/58 (46.55%) | Nexuslogger | 176.31.252.15:443 |
2017-02-17 11:50:00 | d0e71a44e8613fd96d30090c43aaa842 | 27/59 (45.76%) | Nexuslogger | 176.31.252.15:443 |
2017-02-17 11:50:00 | d0e71a44e8613fd96d30090c43aaa842 | 27/59 (45.76%) | Nexuslogger | 176.31.252.15:443 |
2017-02-14 11:54:18 | 7b32e5e9714f9a031fdae63843f06726 | 8/58 (13.79%) | Downloader.Pony | 176.31.252.15:443 |
2017-02-14 11:54:18 | 7b32e5e9714f9a031fdae63843f06726 | 8/58 (13.79%) | Downloader.Pony | 176.31.252.15:443 |
2017-02-08 18:39:50 | 40b764870769e99a3a980b9b3a74ea7c | 40/59 (67.80%) | Nexuslogger | 176.31.252.15:443 |
2017-02-08 18:39:50 | 40b764870769e99a3a980b9b3a74ea7c | 40/59 (67.80%) | Nexuslogger | 176.31.252.15:443 |
2017-02-05 11:43:33 | 2ffefcb9005c6b0352df400d292e5799 | 25/57 (43.86%) | Nexuslogger | 176.31.252.15:443 |
2017-02-05 11:43:33 | 2ffefcb9005c6b0352df400d292e5799 | 25/57 (43.86%) | Nexuslogger | 176.31.252.15:443 |
2017-02-04 03:33:58 | b42d67f74470cc92e470f27fe241b6e6 | 31/57 (54.39%) | Nexuslogger | 176.31.252.15:443 |
2017-02-04 03:33:58 | b42d67f74470cc92e470f27fe241b6e6 | 31/57 (54.39%) | Nexuslogger | 176.31.252.15:443 |
2017-02-03 15:53:56 | c50bf16c763dace748aef8994b5351d3 | 19/57 (33.33%) | Nexuslogger | 176.31.252.15:443 |
2017-02-03 15:53:56 | c50bf16c763dace748aef8994b5351d3 | 19/57 (33.33%) | Nexuslogger | 176.31.252.15:443 |
2017-02-02 01:51:23 | 82d7a3521b091ebcb2afbca2f4e728da | 11/57 (19.30%) | Nexuslogger | 176.31.252.15:443 |
2017-02-02 01:51:23 | 82d7a3521b091ebcb2afbca2f4e728da | 11/57 (19.30%) | Nexuslogger | 176.31.252.15:443 |
# of entries: 24 (max: 100)