92.122.122.155

Classification: Suspicious

92.122.122.155 is a suspicious IP address. Linked to Bundlore malware. Reported by 2 threat sources, last seen 2018-09-12.

MITRE ATT&CK associations

Malware families: BUNDLORE (S0482)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Phishing site Hybrid-Analysis 2018-09-12 05:00:15 2018-09-12 05:00:15
Generic.Malware Hybrid-Analysis 2018-09-09 02:00:10 2018-09-12 04:15:09
ML.Attribute Hybrid-Analysis 2018-09-12 04:00:16 2018-09-12 04:00:16
Trojan.MSIL Hybrid-Analysis 2018-09-12 04:00:14 2018-09-12 04:00:14
Trojan.Invader Hybrid-Analysis 2018-09-12 01:00:09 2018-09-12 01:00:09
Gen:Variant.Application.Bundler.iStartSurf Hybrid-Analysis 2018-09-11 23:15:25 2018-09-11 23:15:25
Gen:Variant.Kazy Hybrid-Analysis 2018-09-11 05:00:16 2018-09-11 05:00:16
PSWTool.Win64.LSA Hybrid-Analysis 2018-09-11 04:45:07 2018-09-11 04:45:07
PAK_Generic.005 Hybrid-Analysis 2018-09-11 02:45:29 2018-09-11 02:45:29
Spursint.P Hybrid-Analysis 2018-09-11 02:00:09 2018-09-11 02:00:09
Trojan.Zpevdo Hybrid-Analysis 2018-09-11 00:00:11 2018-09-11 00:00:11
Generic.Application.CoinMiner.1 Hybrid-Analysis 2018-09-10 23:15:11 2018-09-10 23:15:11
Sonbokli.A Hybrid-Analysis 2018-09-10 23:15:09 2018-09-10 23:15:09
HEUR:Trojan.Win64.Inject Hybrid-Analysis 2018-09-10 05:30:10 2018-09-10 05:30:10
SecRisk Hybrid-Analysis 2018-09-10 00:45:10 2018-09-10 00:45:10
Suspicious_GEN.F47V0823 Hybrid-Analysis 2018-09-10 00:45:08 2018-09-10 00:45:08
Domepidief.A Hybrid-Analysis 2018-09-09 23:45:09 2018-09-09 23:45:09
Malicious site Hybrid-Analysis 2018-09-09 00:30:06 2018-09-09 04:30:08
Suspicious_GEN.F47V0529 Hybrid-Analysis 2018-09-07 05:00:27 2018-09-07 05:00:27
Trojan.Spambot Hybrid-Analysis 2018-04-17 06:00:29 2018-04-17 06:00:29
DangerousObject.Multi Hybrid-Analysis 2018-04-17 04:45:18 2018-04-17 04:45:19
LooksLike.Macro.Malware.gen Hybrid-Analysis 2018-04-17 03:15:34 2018-04-17 03:15:34
HW32.Packed Hybrid-Analysis 2018-04-16 16:11:44 2018-04-16 16:11:44
installcore ,pua ,pup Maltiverse 2018-03-21 21:45:18 2018-03-21 21:45:18
banker ,downloader ,fareit ,trojan Maltiverse 2018-03-21 16:30:39 2018-03-21 16:30:39
bot ,neutrino Maltiverse 2018-03-21 16:15:20 2018-03-21 16:15:20
backdoor ,evasive ,fallchill ,sality Maltiverse 2018-03-21 14:02:38 2018-03-21 14:02:38
banker ,evasive ,gozi ,isfb ,panda ,papras ,ursnif ,zbot Maltiverse 2018-03-21 12:46:36 2018-03-21 12:46:36
banker ,lokibot Maltiverse 2018-03-21 12:46:25 2018-03-21 12:46:25
downloader ,evasive ,trojan Maltiverse 2018-03-21 01:32:45 2018-03-21 01:32:45
banker ,evasive ,lokibot Maltiverse 2018-03-20 17:47:20 2018-03-20 17:47:20
evasive ,miner Maltiverse 2018-03-20 17:17:10 2018-03-20 17:17:10
evasive ,trojan Maltiverse 2018-03-18 21:17:05 2018-03-18 21:17:05
evasive ,exploit ,phishing Maltiverse 2018-03-16 09:16:24 2018-03-16 09:16:24
rat Maltiverse 2018-03-15 07:46:24 2018-03-15 07:46:24
trojan Maltiverse 2018-03-14 22:50:52 2018-03-14 22:50:52
evasive ,pua Maltiverse 2018-03-14 13:46:56 2018-03-14 13:46:56
njrat ,rat Maltiverse 2018-03-14 07:46:16 2018-03-14 07:46:16
phishing ,ransomware ,wanacrypt0r ,wannacry ,wcry Maltiverse 2018-03-14 07:15:36 2018-03-14 07:15:36
nemucod ,ransomware Maltiverse 2018-03-14 05:15:28 2018-03-14 05:15:28
evasive ,phishing Maltiverse 2018-03-13 17:19:04 2018-03-13 17:19:04
evasive ,installerex Maltiverse 2018-03-13 16:32:38 2018-03-13 16:32:38
nymaim Maltiverse 2018-03-13 09:01:01 2018-03-13 09:01:01
banker ,emotet ,evasive Maltiverse 2018-03-13 04:15:58 2018-03-13 04:15:58
bundlore ,evasive Maltiverse 2018-03-13 01:34:13 2018-03-13 01:34:13
bundlore Maltiverse 2018-03-05 13:09:52 2018-03-05 13:09:52 S0482 Bundlore
nanocore ,rat Maltiverse 2018-03-02 01:00:20 2018-03-02 01:00:20
evasive Maltiverse 2018-03-01 23:32:17 2018-03-01 23:32:17
ransomware Maltiverse 2018-02-28 01:00:58 2018-02-28 01:00:58
phishing Maltiverse 2018-02-21 19:19:14 2018-02-21 19:19:14
exploit Maltiverse 2018-02-01 04:24:04 2018-02-01 04:24:04
miner Maltiverse 2018-01-31 06:24:38 2018-01-31 06:24:38

Tags

miner exploit phishing ransomware evasive nanocore rat bundlore banker emotet nymaim installerex nemucod wanacrypt0r wannacry wcry njrat pua trojan lokibot downloader gozi isfb panda papras ursnif zbot backdoor fallchill sality bot neutrino fareit installcore pup

Whois information

AS name
AS20940 Akamai International B V
AS registry
ripencc
AS date
2007-11-13 00:00:00
AS CIDR
92.122.122.0/24
City
Brussels
Postal code
1000
Country
BE — Belgium 🇧🇪
First indexed
2018-01-31 06:24:38
Last updated
2025-11-15 00:25:55