RedLine Stealer is a malicious program that collects users’ confidential data from browsers, systems, and installed software. It also infects operating systems with other malware.
Malware Link (DONT Download):File on MEGA
Video That Promote it:https://www.youtube.com/watch?v=H8_ufqH7ibo
IP Address | Country | Region | City |
---|---|---|---|
45.67.228.152 | Netherlands | Drenthe | Meppel |
ISP | Organization | Latitude | Longitude |
PQ HOSTING S.R.L. | PQ HOSTING S.R.L. (pq.hosting) | 52.6958 | 6.1944 |
The “Redline” malware is hosted on his vps
Website:Hosting Provider PQ.Hosting - Hosting provider services - Hosting company PQ.Hosting Lower price
Hosted on port 54641 TCP
any.run reports:https://any.run/report/138fc540c79e7e8dc138a74bcd1d04130c427aa412ce52528da1b301befe6118/0f09a083-35b8-4ea9-88e5-07feeb0d3152
i live chatted with them
abuse email:[email protected]
functions
Steals credentials from Web Browsers
Actions looks like stealing of personal data
Connects to CnC server
REDLINE was detected
Reads the cookies of Mozilla Firefox
Reads the cookies of Google Chrome
Searches for installed software
Reads Environment values
Reads the computer name
Checks supported languages