URLhaus Database

You are currently viewing the URLhaus database entry for https://edefa.world/gallery/photo_004.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2568579
URL: https://edefa.world/gallery/photo_004.exe
URL Status:Offline
Host: edefa.world
Date added:2023-03-13 12:44:22 UTC
Last online:2023-03-15 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: andretavare5
Abuse complaint sent (?): Yes (2023-03-13 12:45:10 UTC to abuse{at}cloudflare[dot]com)
Takedown time:6 days, 21 hours, 42 minutes Bad (down since 2023-03-20 10:27:36 UTC)
Tags:Amadey dropped-by-PrivateLoader RedLine link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-20n/aexe 23401e85e243dc031849ce95d93534a051369a01f0dbf09e34a9ff6ae3747808n/a Amadey
2023-03-20n/aexe df3879c3c3a6a607f406c4e36393614a793e50a76e427610564e075cbd9f0e05n/a RedLineStealer
2023-03-20n/aexe cce82439e2641eee772505dfd6804dfe8855d19ce2bb75ed02a03fb4a25bc242n/a Amadey
2023-03-20n/aexe 850a3142e42acc6d7e18bc37d49b8c0c4a76786dda46fb47d7728a21621e5ba2n/a RedLineStealer
2023-03-20n/aexe cc579f33e881c41a25871ba871568dc9e1337d76b8e6a9c37ecc5e6e66048c5bn/a Amadey
2023-03-20n/aexe 9ee6baae913d93426f4d653a6546ca7570d0c752a6e507dd3c373b492722c856n/a RedLineStealer
2023-03-19n/aexe 253f20c41724a3cc0e6a4a4568be809dd090784cb687cfed4b958ae9cc745aa6n/a RedLineStealer
2023-03-19n/aexe 2ded0f3d00b63009f6dfa6cd50f19e204721033dcc2c4dc9048f9cc0c68e4ae0n/a RedLineStealer
2023-03-19n/aexe e1427c9f8769c997f3dd7a868c761ffb432d2e435ce9fc0c408d45b9c2ba837cn/a Amadey
2023-03-19n/aexe 9580eada3b0fc28d924db8b69618fa298eeca75f38c10c9a8cf7962a9e15dfd4n/a RedLineStealer
2023-03-19n/aexe 8e7db155caca123dac23d424daa179ef6671a837e95344956c5e8aa69ebaefbdn/a RedLineStealer
2023-03-19n/aexe b94132e431609bea9bf9eb7690f88d20a8f78111991119738204c19029be0927n/a Amadey
2023-03-19n/aexe 34ebb06ea46399d6fe6e85bebcc859d7b9a762c33ef5dd97932912fecffcf9b9n/a Amadey
2023-03-19n/aexe 9f3399da190bf607ec1f3023f77c807c197a524b04229ba0f2743f820742de04n/a RedLineStealer
2023-03-19n/aexe aeae199ce64a17a7a4fc2547eaf7f047348c066c4e8116d37349794ad250d992n/a Amadey
2023-03-19n/aexe cb9ddff1daa05e888682cda741056028296a3c82ac48f1ffa4f9228a39aefdban/aRedLineStealer
2023-03-19n/aexe b8ae86c46c5d7b83f8d487c83c52264a0aa38284617802c665434cd80afb800an/aRedLineStealer
2023-03-19n/aexe f1b12d155c28e774f2745c793778a4a9c9b23cc0848a8f530e8824e315b8c19en/aRedLineStealer
2023-03-19n/aexe 52cc07ed0a0d86dc04baa07251c557c36d361191466a92e9f58eb09fe1977de3n/aRedLineStealer
2023-03-19n/aexe 21e1fb0f7abb572649e7ebd5f6407b60375dd3132131cacc4b2782d3d9011bdbn/aRedLineStealer
2023-03-19n/aexe d9223192651f7cae9a1259e9d0743830f76f5e25e4daeb31a8071e74a94dbd7an/aRedLineStealer
2023-03-18n/aexe b4006834cbda33f61d10adee97e4d778500660376de8e1ccaa8bef01030e23b8n/aRedLineStealer
2023-03-18n/aexe 779d4a715ac6bf4ff7cae5537d392d90c5e487816610a8d266fb9ee5611d8c16n/aRedLineStealer
2023-03-18n/aexe e04befdf3608303c5aeed13bc9c2765c15e7d9ec6614c2d8253013b9ff4c630dn/aRedLineStealer
2023-03-18n/aexe 5888c7642f4a6c2bb91aa49c0d9a4dd98004d242ff4c12db6a8be439d8387bb3n/aRedLineStealer
2023-03-18n/aexe 3264728da488a99bb40480d08064710eaac554be025e5d93851831145b1a822fn/aRedLineStealer
2023-03-18n/aexe 7279dfb27aa05661f1ebdf194f78e0349f62faf393f5f9e10717f8ee376d93e0n/aRedLineStealer
2023-03-18n/aexe 62378ce4a8ecb9214f3a0c0042e18984192dce1ec9dc97102e3534d17c4033b0n/aRedLineStealer
2023-03-18n/aexe bca61e8ac3c154a521b02306d9c83450832bd8e1951063e90cf4cf9b899a955dn/a Amadey
2023-03-18n/aexe 3a2657e3d8fdcf340ebc8e33676529268c3ddbeadda67ccf0909951570d20c51n/a Amadey
2023-03-18n/aexe 00089eecc8ac20425095355305a5b5cd303e33f45372b2178759aedcf9cb8308n/a RedLineStealer
2023-03-18n/aexe d0366e20ed1d48fcbe3b1d1b4e3f90a3b1cf057e2fc308778e25725308900927n/a 
2023-03-18n/aexe a3f154528dd564ff2907b5fdf138f25f673902bf5caa04faff4a4c161d839d6fn/a RedLineStealer
2023-03-18n/aexe 0302b741e8f7b1434bf26a8b23c8cca187cc59a15b8eceab38ce69d7680bd676n/a Amadey
2023-03-18n/aexe b6e8720a9b2303645d6093d2afec2da652eb887cff6e1d26578fd53b1607ae07n/a RedLineStealer
2023-03-18n/aexe 3105d0b4696ca1a2d7532c68e0cef3051a4ac8181bf64623fcca1d79d24717ccn/a RedLineStealer
2023-03-17n/aexe c4bceaa96ee4c14c0a8825b39e8a36384bbff24f56120676070e6b3abd7fa6a9n/a Amadey
2023-03-17n/aexe bb722381ac46ba8d55932c37055c7a5cfc815739d9992b69892aa190245fbf1an/a RedLineStealer
2023-03-17n/aexe fee5e40bed151eda0a4ed1fdc35af339bfc579921b4e781857499667d49b59f5n/a Amadey
2023-03-17n/aexe dca548d6267807a3f02b3fe1043951d79b061890546458f932802b15805feaf1n/a RedLineStealer
2023-03-17n/aexe 6d4c947802a2476e8d7b2a81df189e85a50d1f2c81dc2c3a335115591c6e96d6n/a Amadey
2023-03-17n/aexe 0903000a4603eb0733e594bc724a3bc7f54bc738ea92d45e18ea94beeabc194an/a Amadey
2023-03-17n/aexe 3e4406528f636b7890bd2738332eea8b6d12a34d934d7cb76ea8d1b0a6bb3838n/a RedLineStealer
2023-03-17n/aexe 4af78c6f1a68c770cd5e316f7120d98fb9f57ee012e3b18760c9ca3d6e02cc5dn/a Amadey
2023-03-16n/aexe 25d21e4fc131a2fc482ad5257402e435f9679e6037797884e5d1ab13a8890d0aVirustotal results 43.48%RedLineStealer
2023-03-16n/aexe 1b5be735a6adf3a8780d10ad06f83082429e89a4de7f06bb022b3146b8089f71n/a Amadey
2023-03-16n/aexe 9494e33cf4fb20eca0ba7249dc219c90d7cf111b61107e9b4ea5b07d2f158fc9n/a Amadey
2023-03-16n/aexe d6b10bd99e99d33b33e6946fb2575a7f0c53814bfa2efed8707dcd5449be5d8cVirustotal results 34.78% Amadey
2023-03-16n/aexe 5720f9df1af66ac42cf8dc90266672bf4583fbd25b1229ff7775adabcb234796n/a RedLineStealer
2023-03-16n/aexe 12a2a9060e7f0efe068d20c1b7b2898a78e2f10f06cb71a39de7f74787f4d003n/a Amadey
2023-03-16n/aexe a1a1ddbc64547ad0452b4770c9e2643ab59f27ea9830272ddc050f48e55d2da3n/a RedLineStealer
2023-03-16n/aexe 8ce009fe7fadda76ddcc21248231af4358fa92e7f877e73f0e37726476f85b01n/a Amadey
2023-03-16n/aexe ed3b812d3b47876465882af780edfbd8fc9a4486a0e91ee0700815405eba8593Virustotal results 38.10% RedLineStealer
2023-03-16n/aexe 207d96a3f74b6234156483342ad7909ada2ce20980a020f22eec5901781f7ff0n/a Amadey
2023-03-16n/aexe d162796de4746e8f787f6bb6cc8bb7244895da8cd15ea8f360df2c84de044a88n/a RedLineStealer
2023-03-16n/aexe 9371de30ad4b7e099c0d8802838cd8011fe8539f9bfd804f348fdc47326d3656n/a RedLineStealer
2023-03-15n/aexe 20bc6085bd1970d83800c7de8d1ac67a3132fbf8a35570baf0cbc20a3d8d671en/a RedLineStealer
2023-03-15n/aexe c4fd3d411d44e0270ace2586aa57e66c067801c719463dde54c9dfb622980c98n/a Amadey
2023-03-15n/aexe 988a612470d854decf5665a3007953ad0ac8f9571eed19c60ac60c59a73ab4ecVirustotal results 39.13% RedLineStealer
2023-03-15n/aexe a72f0503a3d40a5b8245eb24277cbf46077172498b60cbe4c76a8af363b63067Virustotal results 52.17% Amadey
2023-03-15n/aexe 253fc4eba3f73e553e19d8e60a7bb09ddc741684e8a832bd64a1ee6318fa3b26n/a RedLineStealer
2023-03-15n/aexe fc0ea5e05abddee9721e4c2a2a9b56b46e038e8ebd08acd1d06ba1afe8fd9271Virustotal results 50.72% RedLineStealer
2023-03-15n/aexe e09de205e1b4fab9488c47adbecb91af999965d3661b93998abe3672c8856f32n/a RedLineStealer
2023-03-15n/aexe 4b6a9a16e6550de1ec254fef7df86904cabdc63fef9a337975de7a3e158a6457n/aRedLineStealer
2023-03-15n/aexe 40f54bf04e20209a77681f52b9744b1b8de7c02f3fea098b121dc1d601db8069n/a Amadey
2023-03-15n/aexe 5ec9b0c2cacdea46a573784e51b7ef1d50c334fbe76af47f4501bb085fa8ab0en/a Amadey
2023-03-15n/aexe b7a02a9fcbacb1aa46d333f5404d5c8dd20d35c8d9ea2e00514e3ef6725cc049n/a Amadey
2023-03-15n/aexe a0eae79bb59870437e1dce9b4263ecfcd563c5c1d69bd0d00c22d34a5db807b8n/a RedLineStealer
2023-03-15n/aexe 246584e1c6c5f8c255db428c55b60589dd2017615dda241aae3b9718fc591ce1n/a Amadey
2023-03-14n/aexe 4c65796225b3a64987c66a43e4ff8e8420bbb4c68122b0a4781b5a744878e5ean/a Amadey
2023-03-14n/aexe 8c484ab61da45ed78fedc8b5ad290b77316219218287b8257943700a847446b3n/a Amadey
2023-03-14n/aexe 17c124207212834a6d37feca337f3a972793942ff15a5fdd391a5f645d9cef67n/a RedLineStealer
2023-03-14n/aexe f4de22efaffdf35134fa7a20f22d1f0f49a845742107c41773b4748e4ee4a0d5Virustotal results 28.99% RedLineStealer
2023-03-14n/aexe a8732280ed66ae4f3c54f8022ecf3858fea82f69d11c502f93552964ae579290n/a Amadey
2023-03-14n/aexe acfa8628bf2229a79e440e41f34723d8f269305b59c6a880b00da575d38e2597n/a Amadey
2023-03-14n/aexe f47f14e132a2978ba2574a8b8a6858c18d5d5994117c101b5de3999400759ff9n/a RedLineStealer
2023-03-14n/aexe 88dcf08aed97bc573199d09fce6849c66ad0b72336e69965e7fa6805789185ecn/a Amadey
2023-03-14n/aexe c52760d8575b76a418509ae092c10817e3eaa08dc8aeae3adff757fb7f7a967dn/a RedLineStealer
2023-03-14n/aexe dae40a4a5d4fd2cb34d540208163ddff8b8b5aba34cde10bb6973b6ded13427an/a RedLineStealer
2023-03-14n/aexe 03b0804d3e5b0e29cf4f9c99b9b6f6a10ca0b2f56a1cb457dbe28f5a3b9b055dn/a Amadey
2023-03-14n/aexe 77fbd11940e7f7245e6d1c1679325c05478d68fc494e6a7b3ce08dc81fac946fn/a RedLineStealer
2023-03-14n/aexe c7fef6d330db9367e50efdbabe695ffd12a69f61e68e40228e39f6fbf5c82260n/a RedLineStealer
2023-03-14n/aexe 42a6515ab42fab298288590f647b62aa480d84fbdb21c06f223129b65d74505cn/a RedLineStealer
2023-03-14n/aexe 4ca54ee004d5d3c9a771d558469f2fad4b8653dcf54ea14287a9a7eae9b2ce0en/a RedLineStealer
2023-03-14n/aexe 7e91e290361f0b70b244a4f074a556178631d0dd874f682685cbe55adc6b6d4an/a RedLineStealer
2023-03-14n/aexe 764a4f9b7ba38dca58e352e763f02cd6b80083537873dff7db8d0ea6aef753ddn/a RedLineStealer
2023-03-13n/aexe 213f7750f4be8b4dc89b4bd03637949b858d0d69bc7c19f20fb2ad5d04fdac9fn/a Amadey
2023-03-13n/aexe b88ee68a0067da610be0fc4d5ce54d12ac0255e226014e8d5887bc803e23151aVirustotal results 37.68% RedLineStealer
2023-03-13n/aexe d1ca04194c69fe034f47c50c120a8c629d6e52874418cae873583cad3261a786Virustotal results 39.13% Amadey
2023-03-13n/aexe a1f603d9766cd460652e99d9307ac663cd8343eac1a56075cb2dcdf83a7d245dn/a RedLineStealer
2023-03-13n/aexe ee4625f5efa3e9444242a196bd9dc53e2a69c4af7c1d4c22f4a958cca25a8687n/a Amadey
2023-03-13n/aexe 5a7a7c36c85f8987526ca29ea42292aa56c719319ceedc8889ad31847579b102n/a RedLineStealer
2023-03-13n/aexe 2677c774f242077b7e9e993e319868da1b4f866d26ce6f3b372f9ce22aab9c32Virustotal results 37.68%RedLineStealer
2023-03-13n/aexe 0d64b882a5b48e265aaee979d9c8125a1143f35bef16f1617b88cc65002d64c7n/a RedLineStealer