SSL Certificates

The following table shows further information as well as a list of malware samples including the corresponding botnet C&C associated with the SSL certificate fingerprint d8086905326794d0e553bd6a7ad9a06498b1ce4d.

Database Entry


SHA1 Fingerprint:d8086905326794d0e553bd6a7ad9a06498b1ce4d
Certificate Common Name (CN):nemty.hk
Issuer Distinguished Name (DN):Let's Encrypt Authority X3
TLS Version:TLS 1.2
First seen:2019-10-02 02:50:39 UTC
Last seen:2019-10-13 10:12:34 UTC
Status:Blacklisted
Listing reason:Ransomware.Nemty C&C
Listing date:2019-10-13 06:03:56
Malware samples:10
Botnet C&Cs:2

Malware Samples


The table below documents all malware samples associated with this SSL certificate.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2019-10-13 10:12:3458995d4825bc214bc78edca6b4a29310Virustotal results 42 / 69 (60.87%) Ransomware.Nemty45.132.19.146:443
2019-10-13 10:12:3458995d4825bc214bc78edca6b4a29310Virustotal results 42 / 69 (60.87%) Ransomware.Nemty45.132.19.146:443
2019-10-13 01:01:47cf70a3a94ba60d4887801758cb4ac049Virustotal results 43 / 71 (60.56%) Ransomware.Nemty45.132.19.146:443
2019-10-13 01:01:47cf70a3a94ba60d4887801758cb4ac049Virustotal results 43 / 71 (60.56%) Ransomware.Nemty45.132.19.146:443
2019-10-13 00:03:08322f204ca373b22d385770de93cd3261Virustotal results 26 / 69 (37.68%) Ransomware.Nemty82.146.39.206:443
2019-10-13 00:03:08322f204ca373b22d385770de93cd3261Virustotal results 26 / 69 (37.68%) Ransomware.Nemty82.146.39.206:443
2019-10-09 02:30:5606a28702d2b3d45a8ae80ced6f05cf25Virustotal results 10 / 69 (14.49%) Ransomware.Nemty82.146.39.206:443
2019-10-09 02:30:5606a28702d2b3d45a8ae80ced6f05cf25Virustotal results 10 / 69 (14.49%) Ransomware.Nemty82.146.39.206:443
2019-10-07 22:48:546c05aa998d0523f2855769bd30b2d0d1Virustotal results 12 / 69 (17.39%) Ransomware.Nemty82.146.39.206:443
2019-10-07 22:48:546c05aa998d0523f2855769bd30b2d0d1Virustotal results 12 / 69 (17.39%) Ransomware.Nemty82.146.39.206:443
2019-10-07 05:23:18bb08689787fcb4bc029679acd1708177Virustotal results 13 / 71 (18.31%) Phorpiex82.146.39.206:443
2019-10-07 05:23:18bb08689787fcb4bc029679acd1708177Virustotal results 13 / 71 (18.31%) Phorpiex82.146.39.206:443
2019-10-05 15:18:37b07671d8da056f09ef1e993a26fb5fd3Virustotal results 45 / 70 (64.29%) Ransomware.Nemty45.132.19.146:443
2019-10-05 15:18:37b07671d8da056f09ef1e993a26fb5fd3Virustotal results 45 / 70 (64.29%) Ransomware.Nemty45.132.19.146:443
2019-10-05 05:55:1007e5d15d1c5f0a54430303fcf700118dVirustotal results 36 / 68 (52.94%) Ransomware.Nemty45.132.19.146:443
2019-10-05 05:55:1007e5d15d1c5f0a54430303fcf700118dVirustotal results 36 / 68 (52.94%) Ransomware.Nemty45.132.19.146:443
2019-10-04 17:42:1362c73b5f49a1416582e2489489e809daVirustotal results 46 / 68 (67.65%) Ransomware.Nemty45.132.19.146:443
2019-10-04 17:42:1362c73b5f49a1416582e2489489e809daVirustotal results 46 / 68 (67.65%) Ransomware.Nemty45.132.19.146:443
2019-10-02 02:50:39a83abbe33e05b348128a481eb4c4bc3dVirustotal results 27 / 70 (38.57%) Ransomware.Nemty45.132.19.146:443
2019-10-02 02:50:39a83abbe33e05b348128a481eb4c4bc3dVirustotal results 27 / 70 (38.57%) Ransomware.Nemty45.132.19.146:443

# of entries: 20 (max: 100)