URLhaus Database

You are currently viewing the URLhaus database entry for http://45.66.230.149/offer/updEdge.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2681321
URL: http://45.66.230.149/offer/updEdge.exe
URL Status:Offline
Host: 45.66.230.149
Date added:2023-07-12 13:30:14 UTC
Last online:2023-08-27 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-07-12 13:31:11 UTC to abuse{at}des[dot]capital)
Takedown time:1 month, 16 days, 9 hours, 33 minutes Bad (down since 2023-08-27 23:04:40 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-08-22n/aexe 12ef20574e20162986cb62efd4a0529aaaa4ac417e67a2a0e7882ef411d1cafan/a 
2023-07-30n/aexe 223f8d67c784e3f6cc85c721dd718af53510f6884dbc1ea4dd328cc26da03f5en/aRedLineStealer
2023-07-25n/aexe 1ed33d760f151b33b3d20bf9e6d0b722fe39cbd302ecebb5c6e3d0ee09e4ee05n/aRedLineStealer
2023-07-21n/aexe b2ce15fdc2b519d9a71fdc576dddd336a1b3a25335bc4ded9c8ec9120e92bbf1n/a 
2023-07-19n/aexe b0e4d761ebaa601cd4fa602aa55e06c3615b228c9df0b67fec2dd73857f8ca6en/a 
2023-07-17n/aexe 8b11bff6246c53c7a2488b7375ce50a193a3e7a01e1f9bd4856bc55d90fb9e7cn/aRedLineStealer
2023-07-15n/aexe 753fbc1dfa05d6007c5dfa534a7d019cbb24d07224b67ae9d48c9772039c63cdn/a RedLineStealer
2023-07-12n/aexe 1ca6070d9a141d51ccc4f75ab90095cc7fa3791c54ec10ee042b96a815822c94n/aRedLineStealer
2023-07-12n/aexe 46ef6daecec030061841713f7afb387a0a7ce913e2a5d63bc46126628daf19e1Virustotal results 71.43%RedLineStealer