Malware Signature
The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with Tuhkit
Database Entry
Malware: | Tuhkit |
---|---|
First seen: | 2016-11-19 17:29:58 UTC |
Last seen: | 2016-11-20 18:13:02 UTC |
Malware Samples
The table below documents all malware samples associated with this malware family.
Timestamp (UTC) | Malware Sample (MD5 hash) | VT | Signature | Botnet C&C (IP:port) |
---|---|---|---|---|
2016-11-20 18:13:02 | 2168ffd2ea3c138c524289ef163da01c | n/a | Tuhkit | 89.40.127.231:80 |
2016-11-20 18:13:02 | 2168ffd2ea3c138c524289ef163da01c | n/a | Tuhkit | 89.40.127.231:80 |
2016-11-20 08:09:03 | 4fb7b7f3f382b7e82edb4fbe704d217a | n/a | Tuhkit | 89.40.127.231:80 |
2016-11-20 08:09:03 | 4fb7b7f3f382b7e82edb4fbe704d217a | n/a | Tuhkit | 89.40.127.231:80 |
2016-11-20 04:47:54 | ac5c01797c3aabef08c28cc23cde3eef | 21/57 (36.84%) | Tuhkit | 89.40.127.231:80 |
2016-11-20 04:47:54 | ac5c01797c3aabef08c28cc23cde3eef | 21/57 (36.84%) | Tuhkit | 89.40.127.231:80 |
2016-11-20 03:06:24 | 499a9c1c80fa907893d4e5cbbbf7681c | n/a | Tuhkit | 89.40.127.231:80 |
2016-11-20 03:06:24 | 499a9c1c80fa907893d4e5cbbbf7681c | n/a | Tuhkit | 89.40.127.231:80 |
2016-11-20 01:57:55 | 982b2eaa8d2b451872fac289d0c572ad | n/a | Tuhkit | 89.40.127.231:80 |
2016-11-20 01:57:55 | 982b2eaa8d2b451872fac289d0c572ad | n/a | Tuhkit | 89.40.127.231:80 |
2016-11-19 17:29:58 | e166840d0e7a795708fca544b83e1236 | 20/57 (35.09%) | Tuhkit | 89.40.127.231:80 |
2016-11-19 17:29:58 | e166840d0e7a795708fca544b83e1236 | 20/57 (35.09%) | Tuhkit | 89.40.127.231:80 |