URLhaus Database

You are currently viewing the URLhaus database entry for https://zang1.almashreaq.top/_errorpages/plugmanzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2734937
URL: https://zang1.almashreaq.top/_errorpages/plugmanzx.exe
URL Status:Offline
Host: zang1.almashreaq.top
Date added:2023-11-24 06:18:06 UTC
Last online:2023-11-24 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-11-24 06:19:07 UTC to abuse{at}cloudflare[dot]com)
Takedown time:16 days, 18 hours, 0 minutes Bad (down since 2023-12-11 00:19:33 UTC)
Tags:32 AgentTesla link exe NanoCore link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-12-07n/aexe 2539ee8586edab950757a807f1a766ca94703963850ed101a0bcdc4574577b73n/a
2023-12-06n/aexe e3c48ba70cb42a88e5ebe7e22a5c28ddf8993f9c5106d0ab7e38450229f374c6n/aAgentTesla
2023-12-06n/aexe 286a74a3334c854df367f5a885a38acb68a0a000526054ef8426d15779549474Virustotal results 26.79%AgentTesla
2023-12-06n/aexe 7f83ce8d8a358060a86621e58e4feb4842613b257d2ad51f193cba4a1e2de36cVirustotal results 22.22%AgentTesla
2023-12-05n/aexe cfaae9c47bf878627929342f50da998d65f9e7912c5add3c511e6797d4c5f755n/a NanoCore
2023-12-04n/aexe 6e4a05f7b769a8cb12f932281af71be353b058d68a3f96bd00a38b63e78bae70Virustotal results 27.78%NanoCore
2023-12-04n/aexe 340afda65e77e299379392aa25dd7dd040d1a87e51f2249547d083a1d85641dfVirustotal results 22.54%NanoCore
2023-11-28n/aexe e3f6a75a8004412643549e095af1150d8329a3c46a06aef839842b90d54933a5n/aNanoCore
2023-11-28n/aexe 87e9f553b96d552b75210d1a5278039153eedc43e2a10b1166f106e9eba60572Virustotal results 27.78%NanoCore
2023-11-24n/aexe 874f9ec9a67d5ecb2c131a9aa0c4738af6bc7be28dae7b47c797d8eecdd9961aVirustotal results 26.39% NanoCore
2023-11-24n/aexe 674427173a5e079caa90209387e6131f19ebafea2f2a0b7c580fa8ea7d4eaa45Virustotal results 37.50%NanoCore