URLhaus Database

You are currently viewing the URLhaus database entry for http://hdmilg.xyz/plugmanzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1539612
URL: http://hdmilg.xyz/plugmanzx.exe
URL Status:Offline
Host: hdmilg.xyz
Date added:2021-08-16 17:51:03 UTC
Last online:2021-08-30 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-08-16 18:01:02 UTC to abuse{at}serverion[dot]com)
Takedown time:13 days, 8 hours, 14 minutes Bad (down since 2021-08-30 02:15:22 UTC)
Tags:32 AgentTesla link exe NanoCore link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-27n/aexe 50990533da634d9d5f5f3ed6770357b286913e2926690300bf8dd7cd11d381a1n/a NanoCore
2021-08-26n/aexe 9b845ccbe4f688e6c5afb4cd90956a9be9ad8f72d78db289d63dd22f011c3e74n/aNanoCore
2021-08-26n/aexe e12fa9ecb9fb0d0f979557999bffe0e79bc7b418b4e3bd404dead79ee0c48137n/aNanoCore
2021-08-24n/aexe 1984d6178fb076b2e234b5bea42d0aa66aeabbd3af719cfffb65b0a69bacbcffn/a NanoCore
2021-08-24n/aexe 2a97913f1069b7fefc0713a5237dd6465e6b62f5439d830258cec024c56a7a46n/aNanoCore
2021-08-23n/aexe 1e9a5e53f3059fcc0df42a4f6f504a4f7ad2e1ecd05f7c8cf0ca8bd7d197953aVirustotal results 22.39%NanoCore
2021-08-23n/aexe 53a56fc0599866ae8f92087f15ca6b36348926a4c7f7cee1781ef2296b91010en/aNanoCore
2021-08-20n/aexe 01e74d3bf9e9b967220cb45019259e83b4bb4f425ed5ddd1a3c1b05267a4950bn/aAgentTesla
2021-08-19n/aexe 1b336f7bed1b6490357cdf409a3b043a976c7fd0804e676743bbc629a9b94927n/aNanoCore
2021-08-19n/aexe af52016a2182695096d92f3a5551b742ba689171b128620b859a1723b7f91694n/aNanoCore
2021-08-18n/aexe 40ac580be007f12240584ab45df34346355881e8dd9d099d351f0a88eb1cebb2n/aNanoCore
2021-08-18n/aexe d9d2e868338c93a4521671781a91ae7b36353efe0b39b75d74877369a9043cabn/aNanoCore
2021-08-18n/aexe 5beebb2cb262cfba8e7f476a5332102ee7c128c2030e16c3eb86df04be90e383n/aNanoCore
2021-08-17n/aexe a46b3e0a2f558e89da3c71e7a626201824243315c37970cc34dd60162f9640a5n/aNanoCore
2021-08-17n/aexe f4236b44c0b2ece0fb939f9011e3e30c400ad359432155f23afbe5a6c3e97f6bn/aNanoCore
2021-08-16n/aexe df8bf20364ce7962c466084b46a93ad6762b2459191b39d0c141d4c9c375e4daVirustotal results 26.47%NanoCore