URLhaus Database

You are currently viewing the URLhaus database entry for http://92.255.85.34/1/2.png which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3332611
URL: http://92.255.85.34/1/2.png
URL Status:Offline
Host: 92.255.85.34
Date added:2024-12-06 07:32:09 UTC
Last online:2025-01-31 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2025-01-07 15:30:22 UTC to abuse{at}changway[dot]hk)
Takedown time:23 days, 9 hours, 12 minutes Bad (down since 2025-01-31 00:42:28 UTC)
Tags:Amadey AsyncRAT link jpg png ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-22n/aps1 4967e5e5892a7dc472bbf85007bc833c4263867200fd0870997e8f3fa6235cb4n/a AsyncRAT
2025-01-19n/aps1 3a88598c06ed2d49652942ca2236ef3779e01d3bf7d9806c6d45f64d1caa5170n/aAmadey
2025-01-18n/aps1 bc56580ba14331b809629451eb94000411ac62d46220b03259b30b85066f7c18n/a 
2025-01-14n/aps1 896b0ffbef49f8c1eac90adf8f23f07b1485acd2f7f22281d2590cfcba241421n/a 
2025-01-07n/aps1 68c9e034c7bce75fb8851d7492d12873a66c2e139fe3e15242b6e0e23051e662n/a AsyncRAT