URLhaus Database

You are currently viewing the URLhaus database entry for http://92.255.85.66/rt.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3470435
URL: http://92.255.85.66/rt.exe
URL Status:Offline
Host: 92.255.85.66
Date added:2025-03-07 13:41:03 UTC
Last online:2025-03-12 22:XX:XX UTC
Threat:Malware download Malware download
Reporter:Anonymous
Abuse complaint sent (?): Yes (2025-03-07 13:42:06 UTC to abuse{at}changway[dot]hk)
Takedown time:5 days, 9 hours, 14 minutes Bad (down since 2025-03-12 22:56:14 UTC)
Tags:AsyncRAT link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-12n/aexe 509038cb2f1959326696ed06dec84c5b544a638156b2c15f3188abd338a25c9en/a AsyncRAT
2025-03-10n/aexe dbaa0d613dfaed740281038e4710e81d7797bf76c166390d7d8d1bd9f8ecd25an/a AsyncRAT
2025-03-08n/aexe 98a87f096f12468eef8b3e080c248c524db19cbea131006a89c7dfd1dd5defdan/a AsyncRAT
2025-03-07n/aexe 167f580207b3f640e0b68cbd3bf38770f7499c8be0b4f6deddbc7c8d212120bfVirustotal results 34.72%AsyncRAT