URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: 92.255.57.112
Firstseen:2025-01-13 15:27:03 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2025-01-13 15:27:05http://92.255.57.112/1/1.pngOfflineascii ClickFix FakeCaptcha powershell ps1 abuse_ch
2025-01-13 15:27:05http://92.255.57.112/1/2.pngOfflineascii AsyncRAT ext ClickFix FakeCaptcha powershell ps1 PureCrypter abuse_ch
2025-01-13 15:27:05http://92.255.57.112/1/3.pngOfflineascii ClickFix FakeCaptcha LummaStealer powershell ps1 abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-01-20 21:03:09d0131ca567b92a13eab0f5630a34a8a8651afbbf2fd9e0a0736ee8ac14db1ebdps1  
2025-01-17 18:18:07ece6e878006902f7e26b12fa0a440251796983884dc918e524d9fd2185f53269ps1LummaStealer
2025-01-17 17:14:176fa1dc24c9579992993ef7e1483ec32f158607e83271bbdc4760f5fe39835f9aps1AsyncRAT
2025-01-17 13:07:07844501cf7ab66c6e4d70b7b827019f0b89f3fe4e83227d5b50b4140194790dfaps1 AsyncRAT
2025-01-17 12:20:54c67808355bfc8b72ca3656320bf7b4a4c519017e55940a1d7be44bc807d3b103ps1  
2025-01-17 11:17:15b4b819cc534a2e954af69c5ebdf04787656b891c875a526e31bceb1013414e41ps1SharpHide
2025-01-17 07:43:1264ec05fdc0bda72cf53549f1808f3e9699a2f1d4339e0be08ab60d0fb42c00a4ps1SharpHide
2025-01-17 07:25:07e3a416dc21ac6a66f0e7d9c2516d934608a58bb8f07f63b3a593bcde84bf4745ps1LummaStealer
2025-01-17 07:06:0371abc3b4eecc13782bc40c8d6146682818692f0f192b82c80bcb61c0b4691a2aps1 
2025-01-15 14:48:142888104b21bf859339cbfd936fc66d8f048ae04199dc9b84c138b6883ecb6be5ps1 LummaStealer
2025-01-14 22:47:19e82de6b368baabcc81ce3316a319f27173e82b9c2e94a043bf42b62458dc5a98ps1PureCrypter
2025-01-14 21:56:29b404ee84e4b5100561bc108c58aedc06cae277cd220067dce59a3c1cc93a3ac1ps1LummaStealer
2025-01-14 21:53:1996f086a38773dab616973d130ab3268762435ce95e5c55876a30901c4a40fbd2ps1 
2025-01-14 19:57:43f5ca9427f0ff363d6f7a3e98a59db7be3371cf576da6b9b69624feeb6f2fdaa0ps1  
2025-01-13 15:27:052a8290c18d10fa8a7e99575855b9fb8e734ea92b1aa7dce9840282c2657ba08cps1AsyncRAT
2025-01-13 15:27:05c00a71c9ff5e42b9ed80e99a3c115350fb956ed6253c48fa2c0d749c7ed9a844ps1 
2025-01-13 15:27:05229385fbe03dd8ab9489ee1f0f4a5916b89be800aa27b7d563b63080211235a9ps1LummaStealer