URLhaus Database

You are currently viewing the URLhaus database entry for http://172.245.155.116/img/optimized_MSI.png which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3766008
URL: http://172.245.155.116/img/optimized_MSI.png
URL Status:flame Online (spreading malware for 23 days, 18 hours, 50 minutes)
Host: 172.245.155.116
Date added:2026-01-30 09:40:09 UTC
Threat:Malware download Malware download
Reporter: JAMESWT_WT
Abuse complaint sent (?): Yes (2026-01-30 09:41:15 UTC to abuse{at}colocrossing[dot]com,net-abuse-global{at}hostpapa[dot]com)
Tags:msi-stego stego

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-02-16optimized_MSI.pngunknown 656991f4dabe0e5d989be730dac86a2cf294b6b538b08d7db7a0a72f0c6c484bn/a 
2026-02-09optimized_MSI.pngunknown 63429c406e72a033455a6dced8e1b3e644297703fd88da8827600db7dc1c5fc4n/a 
2026-02-04optimized_MSI.pngunknown 2b65163cb782092d7018e39b9e4a6d2d56b6f934fd03e4995c9d86bb316e01d1n/a 
2026-02-01optimized_MSI.pngunknown 3ccd84c6fad4189bd2b127e6eddbb6a8b7a0dcf8dd5cca203003983d34cbf81cn/a 
2026-01-30optimized_MSI.pngunknown 3f4c3c16f63fb90d1fd64b031d8a9803035f3cb18332e198850896881fb42fe5n/a