URLhaus Database

You are currently viewing the URLhaus database entry for http://62.122.184.98/1/2.png which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3400374
URL: http://62.122.184.98/1/2.png
URL Status:Offline
Host: 62.122.184.98
Date added:2025-01-14 17:07:07 UTC
Last online:2025-01-20 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2025-01-14 17:08:10 UTC to abuse{at}changway[dot]hk)
Takedown time:6 days, 1 hours, 51 minutes Bad (down since 2025-01-20 18:59:42 UTC)
Tags:AsyncRAT link rat stealer xworm

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-17n/aps1 3649e0a708a65c8179a1e04cb6d1b176a56fea07e40f1f804023a79f8b3a1743n/aXWorm
2025-01-17n/aps1 7e84a382d7c154f98ccb33980ba7c5eefbb21674a2e596735b5ae87e88b7e143n/a
2025-01-14n/aps1 88996d47655243b3a2fc1062f99a0e5e6ff6ea9623d824df434eb72fbf274c73n/a 
2025-01-14n/aps1 2fbeb35402b8e7d05d2d1265de6b4645878698193024fa2c8e8e5ad86fb637e4n/aAsyncRAT