URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/plugmanzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2260834
URL: http://208.67.105.179/plugmanzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-07-25 06:03:04 UTC
Last online:2023-05-17 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-07-25 06:04:05 UTC to info{at}serverion[dot]com)
Takedown time:9 months, 26 days, 2 hours, 57 minutes Bad (down since 2023-05-17 09:01:31 UTC)
Tags:32 AgentTesla link exe ModiLoader link NanoCore link RemcosRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-12n/aexe ffddbbe9678e1641b2d30ea7b617528099b085c30e8b664b70d53591d1a80af5Virustotal results 25.35% 
2023-05-11n/aexe 14fb2daf697ee302647b7d63c26e94f443c9516a5a707b85952b1158e5ffe12an/aRemcosRAT
2023-05-11n/aexe e081858b1ef06cbb649b1faca5ba365401d2ba1a41de7034d426b8fc8ee929e8Virustotal results 23.08% 
2023-05-10n/aexe 291755c89bb6d77dd43c74cb0413df8037244debd6bedd2a869edf7dfd090d64n/aRemcosRAT
2023-05-10n/aexe ea614d39c48ec12bea04ace8e2d04b86d4ca4631ed6051bfbee0c2903a5e6b63n/a 
2023-05-10n/aexe fe5441d6898cf0dea8ca087588a0b8cbc0154a011f4b81de03d370a237b86ebfVirustotal results 41.43%RemcosRAT
2023-05-09n/aexe 4801d59db962b71b05112d91142dbe4efd48dcf5ccd93cc564df92be0450f16bn/a RemcosRAT
2023-05-09n/aexe 27d5b86fa6821ac78a1ad2ad6dbc94cd34d24e461ebc1fa15a0014acd4cd71d6n/aRemcosRAT
2023-05-08n/aexe 59d9df7e128711ba9e34b6a6cac31cd50e25c5e350849abfc1b53e8c25854719Virustotal results 27.54%RemcosRAT
2023-05-08n/aexe 7f930ad707464ff08068026c219b7d470da3adedf984f0b0897e1adb4126440dn/aRemcosRAT
2023-04-10n/aexe 135950b42dd73dbe351f5c677d8485c1bf4f0a0dafae8565301a069fad1db1dan/a ModiLoader
2023-03-15n/aexe c8aa088219b5afcf0dd7d02debe430c259404cf2461bfa62f4fffa814d65ec10n/a RemcosRAT
2023-03-15n/aexe d2476b6c70c1b63acddef16f5222770e03163522641415c60176ec47dd2d7c45Virustotal results 26.47% RemcosRAT
2023-03-14n/aexe 269d6429c989705ba5ceec8be419711c882b67e5b507f5d4de180d04b58873c8Virustotal results 44.78%RemcosRAT
2023-03-14n/aexe 45d50e6adb3c4eb2af718592bfa434e01e9f580ea6724080b0854e5aa027b84cVirustotal results 29.41% RemcosRAT
2023-03-13n/aexe df2477331ba3794554b8ba8d903d76140dd2b8c80409ba8d003c380d46e5f155Virustotal results 42.03%RemcosRAT
2023-03-13n/aexe 16a1100ab0af5497ee45778f1a516357b3bae96797c9417d2e028a31ebe2bf80n/aRemcosRAT
2023-02-17n/aexe 1382324ab20ed1f623fff0f54f292ec594bae43a34be12336604ab2937a63eafn/aNanoCore
2023-02-17n/aexe e1160ebcd74712803f5f28fd179885715d63b39a24766d787e63ef63976083aan/a NanoCore
2023-02-16n/aexe 0237f0e94e8125c80b2792a8adae0644a44ee71408fb122f599fe99d2b03d869n/a NanoCore
2023-02-16n/aexe fe5177bffbd98100bece2b8e96344b26a7c39b33dc919c6841b0f95e802e0438n/a NanoCore
2023-02-15n/aexe a12a7ebe5fb985f9c40e7e74a278e893fdbf4d0e5109fcbd292d225393453d19n/aNanoCore
2023-02-15n/aexe f7205149a172adb65e5d473dd42cd653fb6d8e56c2cd412203a5876e4d1090e9n/aNanoCore
2023-02-14n/aexe 9986462b72acae9cd44ad422abe31e33cdeb2cc606085a92063d2047745bc3bfn/aNanoCore
2023-02-14n/aexe a9efdaadc3561afd625c433173968b00b1c9187caa819e86a2b12993915a3fd7n/aNanoCore
2023-02-14n/aexe 76dcce84fccf4a3899529204aef1ca9aded6956fa1556129144cdf05d334beaan/aNanoCore
2023-01-24n/aexe c9e24511c4ad318a7856b982a580202f81827100f9bc11c3112deb4409b6e2d9Virustotal results 24.29%NanoCore
2023-01-24n/aexe 6840c220b689cd53e41b707f39972b1d78c5f653740d6d87a82222470f387d0en/a NanoCore
2023-01-19n/aexe 76e24ca3952bbed5f20751c0cb99fc498999cb23d61972e826bad32dda60f7b5n/aNanoCore
2023-01-18n/aexe b0f85cc7a5a9a1c074f6e738cb8f211645f4550e5864eacd74bf95c34420be8fn/aNanoCore
2023-01-18n/aexe 685c4ec1a2f35580b43db8fdf85fe8eca38731d080f8c378db4a0051a3a0d8bdn/aNanoCore
2023-01-11n/aexe caafa2fac2d67fcdec810e124f0076cc0986d3a0b32579793549c091c60f938bVirustotal results 20.00% RemcosRAT
2023-01-10n/aexe 0dcfa47c53b79f6a2f70408b595c051902066e293251b17d91e5ab91bf2c702fn/aRemcosRAT
2023-01-10n/aexe d47915645f8fa712a296ae6435bac9f09508e26a0fae53956d15f628dab2b027n/aRemcosRAT
2023-01-10n/aexe 5f8106abbbaa1b6b3052a067abc5e5334305948e2bb5c6ea4c95240ff24e8021Virustotal results 25.71% RemcosRAT
2023-01-09n/aexe 20d412f4c2d2cf23a735109ee712e5df0c03e7ed6b16c0d9f61cff2f4be77549n/aRemcosRAT
2022-11-15n/aexe 4071b98e8bf44161cebf8c60bf244913ecab7144f97500ff285445f29d6045c6Virustotal results 29.58% RemcosRAT
2022-11-14n/aexe 3b6230848d1a806ee90954b3e2a6ccaf020ed90d91eb29f231badf12cebf0dcfVirustotal results 33.33%RemcosRAT
2022-11-14n/aexe a0c0dbf6aada0b9d7d5ba9ef43bc8519d33401214ed6d044180d93a067f13f33n/a RemcosRAT
2022-11-10n/aexe ab6cac56777db33f1066f42ade1006a046b5e53bc330dfd6c71301da385cc6c7n/aNanoCore
2022-11-10n/aexe 5e080ae679b6a3ca135bdc54533a9410e121da4e729c7837ac20184c50edd2bfn/aNanoCore
2022-11-09n/aexe f7f7a09c83f4a5ae327e02aa2eacc52ec0460d3f7dc8fc60c13039f14c9a539fn/aRemcosRAT
2022-11-09n/aexe bb1d45eb0cad32a9458ba080b0fd48cc19f0170002cd0f1a62adf644106e4563n/aRemcosRAT
2022-11-08n/aexe a25c4d0ef5afa1991e30cedabbc3d4104dee76cbe92ed788b508a3f595f0ced3n/aRemcosRAT
2022-11-08n/aexe b5e3a7e634b02b6e61732c2468ec1d493058bd0c44dce657cd8cb0d64d247b6an/a RemcosRAT
2022-11-06n/aexe e1674eb90c907ed40236d78cee591aad9cd034965bacaa20f69bc6c5e124c432n/a RemcosRAT
2022-11-04n/aexe 8a30ec1b66ef03adde9757a0b8c1fb554bd0a09a9ff5d2486da51a4a1ab7d940n/aRemcosRAT
2022-11-04n/aexe 2c59459ca6467913297ed13460ee6f5ec2aa85b4824d339a8f9ac01d83b86dean/aRemcosRAT
2022-11-03n/aexe 7337db69a20a40af35453369ceabe00d6bff13e5ba8199a294f7bad7c0ee007dn/aRemcosRAT
2022-11-03n/aexe 1c64ec517c691c29d701145d08a3eae4d783b73d6c79aef024ff9d801c54bcd1n/aRemcosRAT
2022-10-13n/aexe 6dbd8532b9abb17b65c79bc2ad78da7776e64a979d744359e09585bfab399625n/aRemcosRAT
2022-10-10n/aexe e72503cda07751718e862d2a609e39b86ae49753cd46b44d93a2acb1707c0a32n/aRemcosRAT
2022-10-10n/aexe 6480badeb1492b49f21ce850e0288a0c3f1d4ac6f99c052a00b1c7d661ee11den/a 
2022-10-09n/aexe b626692f57e0e92f63368429dde7316b712d46e4d03472f75414a318630306ebn/a RemcosRAT
2022-10-07n/aexe 8b7e14a31f878895d8533e6f2b2318b47cfecd876db209d5e39b38c4e8549c83n/a RemcosRAT
2022-10-07n/aexe 440cf58dc6b8e4724c669e148969ecd8d424c9bf6dbdec6e358fdca7e72b3734Virustotal results 38.89%RemcosRAT
2022-10-07n/aexe 20fd264385703e640aad4c63896b41e8d3ce0ea8f2a71e9d841a4f8cdebf8920Virustotal results 16.67% 
2022-10-06n/aexe 61a576cbf239d8e25ba3ea9109f42c1579287514f1a0921ae53c386c649dad67n/aRemcosRAT
2022-10-06n/aexe c699c6b1b668b088471e74e8ac09145ced97a45a0db6c59657040257fdc8508en/aRemcosRAT
2022-10-06n/aexe 69372bffe2fde76d9ff14e2c60dd8ec83575a6da07ea03ccc5cfa35aeb78afc3n/aRemcosRAT
2022-10-06n/aexe a95d1bd61ab3f5a0725acf0b700287cbd46524b8d864611fed243135458b077an/aAgentTesla
2022-10-04n/aexe 19ba232cb63d28c85f64966dc6961149b4952453f7627ac7ca8fc5709ba4e9b8n/a AgentTesla
2022-10-03n/aexe 4f34482c6ed40c4c88fa63645ded532cba42034875b5fef920f30d3570db52b0n/aAgentTesla
2022-10-03n/aexe 17589e726e9a629be05b4a39848c3a399549b646c38bbe9ac4c301a261dacc8fn/aAgentTesla
2022-09-27n/aexe 16ab4c3282419f791ae1d9192a1976964d1a1152a83fe8d09a7ce2152aed6296n/aAgentTesla
2022-09-26n/aexe 09971407dfa530ecd5ab466ed1c9155cf1ec47d22619285602a565eb06b509e1n/aAgentTesla
2022-09-26n/aexe 112dc41a2dfefecd437219db319a9359c036e1319a4361dcfa2f7e9b2d25620cn/aAgentTesla
2022-09-23n/aexe 8f1b867615f0f773b24de6a6790ed08a6d49dcace18fdcb47fa6bbd576ef67f5n/aAgentTesla
2022-09-22n/aexe b8198cf62e5dca7a78a56bc04437682bfde203d0b4e53aa68262955f50efcde7n/aAgentTesla
2022-09-22n/aexe 9bef97a88743c2e93fbeeedfdc30a51f8f88a2b7b958f562ef9b4aa9c07bd756n/aAgentTesla
2022-09-20n/aexe c23db396b6a833b77f5b7e2ffd0b248d16c59ecceefa9393966e3e214cf9894an/aAgentTesla
2022-09-19n/aexe c206f59aad3a6ea4a685de9213595085de9840eab8c3de542eb7b4679b063055n/aAgentTesla
2022-09-19n/aexe ecba867393ee4f65a1f8122df6d49dc011a4a8ff5b4ca02a058a9183b33ee2b8n/a AgentTesla
2022-09-19n/aexe a6eae4034919359c04de1679911fbe0b6a03f769939b917553bf662e06a90368n/aAgentTesla
2022-09-17n/aexe ec37cbed3a60491401fdc64aa7afcf7436f0b367a77f8ad3df7b6e994d91e53dn/aAgentTesla
2022-09-15n/aexe 17d08ddf2a1d49c96d8f9076f79a68ae8d5fe5cfe87953cdca84077d08bf3d7fn/a AgentTesla
2022-09-15n/aexe 4908cff77c77714a25324233a860b5507b449d311a45bfe66d4b68806bef680dn/aAgentTesla
2022-09-14n/aexe a6541f542aee46042906a0cddb1ef3e4fdf3cae69a37c8011bb0c4fce27d6693n/aAgentTesla
2022-09-14n/aexe f412632bebcaca6378f86d146dc85d9eebf36f0804c82f2e6e31da31e0e0830cn/aAgentTesla
2022-09-13n/aexe 3f6123720c00142db2e4e991de07c950ffa9ed1974711fabab2fdf8ee91a0b6fVirustotal results 36.62%AgentTesla
2022-09-12n/aexe f3512a156b4b598a9947a95ef5cd5fddd94793a08cf8a8aee6c12cef3fffce36n/aNanoCore
2022-09-12n/aexe da9ca371e55c5038fb258edd2fda1c788934b7fad232e3b9bd0949fc50a26d92n/aNanoCore
2022-09-09n/aexe 3b720f756e0821d9a49c74f32f0f7f6c0b54ec71dc4b37d63ce476edc198bd44Virustotal results 29.58% NanoCore
2022-09-09n/aexe 633981f98a22e845f7fcb2f7e92c8549085ff32f9d43a886e1fc07129cff1d9dn/a NanoCore
2022-09-09n/aexe 37e8ce0bcc51e43c027175428f8267558b67de8a4838eb47a73da03ada41fcf7Virustotal results 28.17% NanoCore
2022-09-05n/aexe aa29265f5e201b2526817c8dde62991a3bb3bdc1dd80e6b20394fbb3d6ea53adn/aNanoCore
2022-08-31n/aexe fc7e75ee589dc972a703c2431d406f8b095cc27ebf9e951ddf990e56839f37d8n/aNanoCore
2022-08-30n/aexe a8bda5751a1abcf26082042d8cd7e4157a692547d909ccbe9eb4a6a3eb50e560n/aNanoCore
2022-08-30n/aexe 7b62508fcf05f9989d0d6a144accac87cf058ee8151d3024393b0f769fd86bfan/aNanoCore
2022-08-29n/aexe 189de068ddcd7dce84ba934933c073486a55f13a2b0b0a3a29e734531e3ef97bn/aNanoCore
2022-08-26n/aexe 50632d0cc2b173a5f68c0a4893b37f97ce3d73be2dd6c4ea9b2f36e5a0756bdcn/aNanoCore
2022-08-25n/aexe 0a1932a1a9e983f0fec1ec52d92271a431055b52b9e5a6b68379138f68893e90Virustotal results 19.72%NanoCore
2022-08-22n/aexe 286de23f6df70f2bb2a69976f46f90299e8897e1ec9113ba539ac374632fc9a6n/a NanoCore
2022-08-22n/aexe 77ec85f10b4bd4847f5db6c938547d78c35417c0a5503f1a7bdd4a2594964c95n/aNanoCore
2022-08-22n/aexe ef7e5697201c1bf2fb0525850f6061b3496f11d1f2f2145c6f52faf6a733c644Virustotal results 17.14%NanoCore
2022-08-22n/aexe 6bbc33a7b99107d0a4ac7f7401dbcf392622be37f6ee80abe438cf6a0de24ac7n/aNanoCore
2022-08-19n/aexe 4623af5b7e0f5c9152f80b20c8db6116cb267ca7b3542613404a2842418640cfn/aNanoCore
2022-08-19n/aexe 559677a1d45d71a470e1bbee725126b5bee89e12e1439b606096ed21d2d7f95en/a NanoCore
2022-08-18n/aexe ffa2ce1e10c871f5db8d0a470784ff62138e2e66b4232e20ff3907194eaae4aen/a NanoCore
2022-08-18n/aexe 7db4f3914412b3478a92745863915eda6e1b89448af2525f269c89c6e4f262een/aNanoCore
2022-08-17n/aexe 56daa83452fd79c8045ec1fcc463d6578e73c5b66800fdf69142f735b18a4d47n/aNanoCore
2022-08-17n/aexe a74a1a543982980d4ef3cc3ab37465995147ae0e3e1e806e5b18dea07feedd52n/aNanoCore
2022-08-16n/aexe 91e42804233e0414668609facbf8c7213a90244cd4764e7d15bef810f56e71e5n/aNanoCore
2022-08-16n/aexe 510f49c72fba84db305f4289f00ef14fca8dfc644456ab423a449fb8762ab98dVirustotal results 25.71% 
2022-08-15n/aexe 1255663f8fbbb4454bc52f2d80bc61ea4b333e3f816272dd3f5efd91f1cf3235n/aNanoCore
2022-08-15n/aexe 0e452f1a29c4454498ca8ba5ebecb50d9bac6516609050902594a49d8c755718n/aNanoCore
2022-08-14n/aexe d8e48fe772cf45133747514c3922388451f7243f8062d76cdf97c70c50dd21ddn/aNanoCore
2022-08-12n/aexe f8b172fef8728a9ec1ad7b73e5f59c6750d53244dbce42a769c910b673669236n/aNanoCore
2022-08-12n/aexe 66b83ea08aae693557315e3e62fcdc14e3ab57c51d43a10a4bacf1d5e05c6988n/aNanoCore
2022-08-12n/aexe 42160df191b53ba66deac9a1dcb81f52f1712831a07d359d7c4bf9b5574c4707n/aNanoCore
2022-08-11n/aexe efc5e38081320031708585d42e346cd6080b7b0bf8d16f5872f2fbe457c3c0can/aNanoCore
2022-08-11n/aexe f663b05654ba0575b3b7d15e4b40939fb2cebf9b34bc8b996b06771055f4d98bn/a NanoCore
2022-08-11n/aexe dd12864487637cdc6dfb1496bc2969903a780920d3f7963fb5f6343e328bedafn/aNanoCore
2022-08-05n/aexe 2d44e2456bba829eced7c4ea8af67a1f826e199a12c5f4f0aa748148f45e4d67Virustotal results 43.48%NanoCore
2022-08-04n/aexe a6612f9f8d59916b3cad6b6feafbafe478373b63f94a2ba316e659db22effa75n/a NanoCore
2022-08-03n/aexe 4e8ac31a9398a014baf30bab2e812e388a57fb30d65f72fccb3b2d1663d2010bn/aNanoCore
2022-08-02n/aexe d404c5c21e05bc1d59b88190b7d156d33788a7c6041b03dd7b2ed69019c880d1n/aNanoCore
2022-07-29n/aexe e3948b7ff05b7e3c9328e928d16c79b979b51519d8db852896d860a20ab7be98n/aNanoCore
2022-07-29n/aexe fcf292ea325e888bbf4db0055a712f8559111a8b416182867e3b5874c6932b2en/aNanoCore
2022-07-28n/aexe 7a22ca358100f4ef7ac23fcc0ccca9e2598bdfa912d645d5a2e8295a7242e119Virustotal results 25.35%NanoCore
2022-07-28n/aexe d37fc78eb5f2966457190f592db5a3eb21dda12fba5955883412e32cd2812c55n/a NanoCore
2022-07-28n/aexe e60dc22766ac170d9dd494cd52ad85328e1acae8ce69c96a98e661c86a5925a8n/a NanoCore
2022-07-27n/aexe fef352daf4406a5ca5d0e53c28a1e62ca51864449fcb9440878b157f6ed52bdcn/aNanoCore
2022-07-26n/aexe 0fa4a909bca937bd8f9d12a8c5b84f6cc63e1b37a3bf130b34fdcaa25be63dedn/aNanoCore
2022-07-26n/aexe fcdf39985da32de4575c36dff4d20b559f50d285227b8a5d7ba1a0d3604999b2n/aNanoCore
2022-07-26n/aexe 66ff672b93bcc0ef9e19ba4a45b6f6c1943c21fe6256d2a0e448bd73049a7a6dn/aNanoCore
2022-07-26n/aexe 7cf6987c1d9a592a6093dbf2826a28a3f6c1f4ea552f53c58f111fd047ad3e26Virustotal results 18.57%NanoCore
2022-07-26n/aexe 442bad09c1091bfbe52a4b7c5b0a39b2691f0b56eedff731b8e90aa6f80cd388n/aNanoCore
2022-07-25n/aexe e50bad4ff6bfecab12f99bcbb4152b0fda73f59bbff3a856b65a1c42ac65975bn/aNanoCore
2022-07-25n/aexe b555dbdcad4c6b11b68bfe29c05f4c46f026f3c8f648f83ca8856dd3b3a9f82cVirustotal results 42.25%NanoCore