URLhaus Database

You are currently viewing the URLhaus database entry for https://callonenergy.com/clip/LG@Myfile.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:995182
URL: https://callonenergy.com/clip/LG@Myfile.exe
URL Status:Offline
Host: callonenergy.com
Date added:2021-02-08 13:47:09 UTC
Last online:2021-02-11 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-02-08 13:48:02 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:3 days, 3 hours, 39 minutes Bad (down since 2021-02-11 17:27:04 UTC)
Tags:AgentTesla link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-02-11n/aexe d56f598629f490123fd5f536ed8a275aeab4d27d779c2852285f318bfdb9d971n/a AgentTesla
2021-02-10n/aexe 2aad22b98d172acd7d5cf225896dedf8aa14796602675b78ffe93355fa6e42ccn/a AgentTesla
2021-02-09n/aexe 75778b858694df3940ff56c27549134be9fc139c9bbfc12f95cf947486cb88can/aAgentTesla
2021-02-08n/aexe c9f218a7f4f587d183f0fc93de62d754045e5cfc2f99e33e29b16ff89e496ec4n/a AgentTesla
2021-02-08n/aexe 77cd86680e0217e23e19c9959bba40420c08c8001f22d2e48931a7a8d77296a4Virustotal results 14.29%AgentTesla