Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with PlugX

Database Entry


Malware:PlugX -
First seen:2018-09-26 09:27:21 UTC
Last seen:never

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-09-26 09:27:21daca24fe121182b8f37276d30c682541Virustotal results 9/69 (13.04%) PlugX91.227.16.125:443
2018-09-26 09:27:21daca24fe121182b8f37276d30c682541Virustotal results 9/69 (13.04%) PlugX91.227.16.125:443