URLhaus Database

You are currently viewing the URLhaus database entry for http://85.202.169.21/plugmanzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2248467
URL: http://85.202.169.21/plugmanzx.exe
URL Status:Offline
Host: 85.202.169.21
Date added:2022-06-23 13:51:04 UTC
Last online:2022-07-16 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-06-23 13:52:05 UTC to abuse{at}serverion[dot]com)
Takedown time:23 days, 3 hours, 22 minutes Bad (down since 2022-07-16 17:14:41 UTC)
Tags:32 exe NanoCore link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-14n/aexe 58de15aeb3204fa30ad653dc1f9f5b38c400df3e66ba29d43803217408c3e2c0n/aNanoCore
2022-07-14n/aexe 5bd865bcbd56fce1aa67c91191f9a1813a27783e55ffb5562236ca65c812c933n/aNanoCore
2022-07-13n/aexe 2e74a8a614db7b0d8148b52139751d3d76c477255a7fdd1fe6e9fc944a79caa2n/aNanoCore
2022-07-13n/aexe f464ccabbb4252d3064034d5311d59f7e2525879cf9b6bf4b82ed27f2600dd90n/aNanoCore
2022-07-12n/aexe 7618bf00136b85af624ec2d4b10f52aca8d61cab901499e1abecf0af43f5eb8dn/aNanoCore
2022-07-12n/aexe d58ec36dd8b3c3b05370dec9daa23ff9faf3d90efd8a71078b7d28ff0b655368n/a 
2022-07-12n/aexe 6902c761335852db0092dc26e2cb5354b52291abd71a77725f7fd5e724e0e59dn/a 
2022-07-11n/aexe 03423a672e96d38aa2a5069dace7febe2a0cf9fdb38c5ad99db32e5ed1c789cen/aNanoCore
2022-06-26n/aexe 7fe3e83f046407b023768ae3e8ff4587591e25cdc16b18f552f87da21f3805b8n/aNanoCore
2022-06-25n/aexe 9d458b9190cf8c6fa0a171547f8d8d0e160a1339429d1abb7b7606ecc2d13477n/aNanoCore
2022-06-25n/aexe f3634c0ce882fd4fbcdfafb0574fdb51778e09c4d90b4b456beabff24e432186n/aNanoCore
2022-06-24n/aexe 2e8c934759678561d84650c46ad24f29e2d55bb733c52fef211891427b6b39c7n/aNanoCore
2022-06-23n/aexe ca016b313c838a1408d683a5628fe02368015c49d057c05ea6de47c46ec28ea5Virustotal results 28.79%NanoCore