URLhaus Database

You are currently viewing the URLhaus database entry for http://sadiqgill.com/assets/fonts/PLG.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:505026
URL: http://sadiqgill.com/assets/fonts/PLG.exe
URL Status:Offline
Host: sadiqgill.com
Date added:2020-09-14 23:55:36 UTC
Last online:2020-10-01 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: gorimpthon
Abuse complaint sent (?): Yes (2020-09-14 23:56:33 UTC to abuse{at}dimenoc[dot]com)
Takedown time:16 days, 14 hours, 10 minutes Bad (down since 2020-10-01 14:06:47 UTC)
Tags:AgentTesla link exe NanoCore link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29n/aexe f3ec548dc4f4e0f0a10db2a967365f9db1ef530ed6367ec1fa75aba70f01d0bdn/a AgentTesla
2020-09-28n/aexe 39957002a8ae300c8d46bab1097a3494f359cc33e88ab042529910c353849cf3n/a 
2020-09-28n/aexe 806db3533fa0a3bd8a62d3d419f94ecd7afb2bdaf411f28c4a92b57807e2766cn/a AgentTesla
2020-09-27n/aexe f65fe54d1597f5accaedf0b45afde9d8b7375214035225f039c99c8627a9bd72n/aAgentTesla
2020-09-25n/aexe 00c0720db185618e9ce9f91b819fcd1c2dfdc909fb4c3eeb224ad83d2551abb2n/aAgentTesla
2020-09-24n/aexe a18ca0bf12891d5a6be52ede096daed97a37896ce17d3cfc0296d0db4a5fa80cn/a 
2020-09-24n/aexe a49c1be213b2dbca8ad90cf4d212b0d125cfc12eed597b6f0bf0edcbca1a4282n/aAgentTesla
2020-09-23n/aexe bb7137f657b117d9f81a63c868e6e252184f0581052966aeff79ae5b298d9c44n/aAgentTesla
2020-09-22n/aexe f6a4999a8aea1261b2881fac106243d4a6d5843867cc9353e2e9e469a962232cn/a 
2020-09-22n/aexe bbcd8a285471ae1c6d5e445f77558e9ad2e108d7db00650b800b971da717267eVirustotal results 15.49% AgentTesla
2020-09-22n/aexe 526f87693e2d7f735a067d8529a0b0657fcd96576d4de6656d3e41cf0784ddf5n/a AgentTesla
2020-09-22n/aexe 65546a19e28e6ba179d70d2c96578c4b6a2c325a96546e99495e13e94f68e837n/a 
2020-09-21n/aexe 0c47fc9a18a27c82ed3847b10398a132de3b9d0c7d395fdc9113d91a996566a6n/a AgentTesla
2020-09-21n/aexe bcdc4f0c16e292b16148ff3d311154bb27c8f4e68f4676336b35b8979e292989n/a AgentTesla
2020-09-20n/aexe 5a443d5b69315505260e98bbb16ebce941f2cf8450fd45ce5dd6f401110770bbn/aAgentTesla
2020-09-18n/aexe 8a170584ad7402c1bee5b9c0932475bce9eef45d40b0774594a8df01eb9737dbn/aNanoCore
2020-09-17n/aexe 65f814d425b7ee87879f36e26f9de1442a5c37b064fc47032e256373f45491b6n/aAgentTesla
2020-09-17n/aexe a0b476fe2bdb60012eced8218c176b51b2d4fe2ae718a20780f0af439926253an/aAgentTesla
2020-09-17n/aexe 3cf46258d9197bcdb3795096bc5a6b3bf97b4d900fe2fd75146de9090f2c8629n/aAgentTesla
2020-09-16n/aexe 34211ac8efc5cd484f507cbe89d3e1b0999f403fb6a53ef7ae8665918e417a30n/a 
2020-09-16n/aexe f2931e727b9d337c32f7fffeac4fd0685638490ba8f58391de89f7a4364b4ac2n/a AgentTesla
2020-09-15n/aexe 7e4c8b90325ad70ef6bb29f8c6fcabc10cb1451601f9a5fa1f18a1f3492f899fn/a AgentTesla
2020-09-15n/aexe c83d1de6588bfc8fde4db24a20f2cdcbecd2917faf45e5f3327fccd01e80b953n/aAgentTesla
2020-09-14n/aexe a74aa4ad9ddfcc9a2e8ce9ad85ef55b57526e630fad8b20dc01bd26b13e878edn/aAgentTesla