URLhaus Database

You are currently viewing the URLhaus database entry for http://paxz.tk/plugmanzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1974082
URL: http://paxz.tk/plugmanzx.exe
URL Status:Offline
Host: paxz.tk
Date added:2022-01-13 14:38:04 UTC
Last online:2022-02-16 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-01-13 14:39:08 UTC to abuse{at}serverion[dot]com)
Takedown time:1 month, 4 days, 2 hours, 18 minutes Bad (down since 2022-02-16 16:58:01 UTC)
Tags:AgentTesla link exe NanoCore link rat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-16n/aexe 42d9b223bd595579d838b2a890386ad150b10ede5d57e33bc06f69be41f6b0bfVirustotal results 22.41%NanoCore
2022-02-09n/aexe 570db7da27af73440554e037bdddf491a0aece4c7b8061b22054a1c2a238ddd4n/a AgentTesla
2022-02-09n/aexe e95d991571c59d524166b962ba17843409b3b46447cb3f991ed640687b22e838n/aAgentTesla
2022-01-24n/aexe f515a9d2910da428d7803afc2244476a5b185f30361482cc1dd49670513281a5n/aNanoCore
2022-01-20n/aexe cc22442c518bfe15defd69b56f6d856ff83d29c4ef9d28b22d90db5b68d9b675n/a NanoCore
2022-01-19n/aexe 30da60070f82a47f429374f3fe700e0c8c7a25cd4fbceb747e31abc6b07fb074n/aNanoCore
2022-01-19n/aexe 03ae2e28f851ce778699941a9a7d27256638047e40aecef71fba90292c622e5bn/aNanoCore
2022-01-17n/aexe 34ad1d8b703e3ab080304ab418bc94cdae0fea1c047ecd3f9e8864b039f7bc7an/a NanoCore
2022-01-17n/aexe b1f400f40f32c2ee571dce263d97e7b81e08aff440cf3496105d6e4dbd849206n/a NanoCore
2022-01-17n/aexe 2eae49fab9e056bf850971a4d931a48e52ac1f504f678b20c72d1a65720d796an/aNanoCore
2022-01-14n/aexe 998746d0f5d0c13df720f0bf3981d652c828ea64d64d2e16736a80123fb534aan/aNanoCore
2022-01-13n/aexe 1fd93f45ddbe62337f2b72e31e6a82880bc0581430abeaebda88ac1f58272210Virustotal results 55.07%NanoCore