Back to Threat Groups

aGl0bGVyCg

INACTIVE

ransomware group

This ransomware group (notably stylized as aGl0bGVyCg) has extremely limited publicly available information. No confirmed active period is documented, nor is there evidence of whether it operates as a RaaS (Ransomware-as-a-Service). Similarly, there is no known data about its extortion type (single or double), preferred targets, intrusion methods, encryption techniques, file extensions, or ransom note behavior. The only identifiable detail is the blog URL hitleransomware.cf, which appears to serve as its public-facing leak or command-and-control site. Overall, public threat intelligence remains too sparse to draw even basic conclusions beyond the existence of the blog site.

Victims
0
records
First Discovered
victim
Last Discovered
Jul 12, 2026
victim
Inactive Since
Countries
0
hit
Avg Discount
no settlements

Group Activity

Last 12 months
Sep
2025
Oct
2025
Nov
2025
Dec
2025
Jan
2026
Feb
2026
Mar
2026
Apr
2026
May
2026
Jun
2026
Jul
2026
Aug
2026

Victims (0)

No victims recorded

Infrastructure

leak site
OFFLINE

unreachable

http://hitleransomware.cf

317ms

3d ago