92.122.122.155
Classification: Suspicious
92.122.122.155 is a suspicious IP address. Linked to Bundlore malware. Reported by 2 threat sources, last seen 2018-09-12.
MITRE ATT&CK associations
Malware families: BUNDLORE (S0482)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Phishing site | Hybrid-Analysis | 2018-09-12 05:00:15 | 2018-09-12 05:00:15 | ||
| Generic.Malware | Hybrid-Analysis | 2018-09-09 02:00:10 | 2018-09-12 04:15:09 | ||
| ML.Attribute | Hybrid-Analysis | 2018-09-12 04:00:16 | 2018-09-12 04:00:16 | ||
| Trojan.MSIL | Hybrid-Analysis | 2018-09-12 04:00:14 | 2018-09-12 04:00:14 | ||
| Trojan.Invader | Hybrid-Analysis | 2018-09-12 01:00:09 | 2018-09-12 01:00:09 | ||
| Gen:Variant.Application.Bundler.iStartSurf | Hybrid-Analysis | 2018-09-11 23:15:25 | 2018-09-11 23:15:25 | ||
| Gen:Variant.Kazy | Hybrid-Analysis | 2018-09-11 05:00:16 | 2018-09-11 05:00:16 | ||
| PSWTool.Win64.LSA | Hybrid-Analysis | 2018-09-11 04:45:07 | 2018-09-11 04:45:07 | ||
| PAK_Generic.005 | Hybrid-Analysis | 2018-09-11 02:45:29 | 2018-09-11 02:45:29 | ||
| Spursint.P | Hybrid-Analysis | 2018-09-11 02:00:09 | 2018-09-11 02:00:09 | ||
| Trojan.Zpevdo | Hybrid-Analysis | 2018-09-11 00:00:11 | 2018-09-11 00:00:11 | ||
| Generic.Application.CoinMiner.1 | Hybrid-Analysis | 2018-09-10 23:15:11 | 2018-09-10 23:15:11 | ||
| Sonbokli.A | Hybrid-Analysis | 2018-09-10 23:15:09 | 2018-09-10 23:15:09 | ||
| HEUR:Trojan.Win64.Inject | Hybrid-Analysis | 2018-09-10 05:30:10 | 2018-09-10 05:30:10 | ||
| SecRisk | Hybrid-Analysis | 2018-09-10 00:45:10 | 2018-09-10 00:45:10 | ||
| Suspicious_GEN.F47V0823 | Hybrid-Analysis | 2018-09-10 00:45:08 | 2018-09-10 00:45:08 | ||
| Domepidief.A | Hybrid-Analysis | 2018-09-09 23:45:09 | 2018-09-09 23:45:09 | ||
| Malicious site | Hybrid-Analysis | 2018-09-09 00:30:06 | 2018-09-09 04:30:08 | ||
| Suspicious_GEN.F47V0529 | Hybrid-Analysis | 2018-09-07 05:00:27 | 2018-09-07 05:00:27 | ||
| Trojan.Spambot | Hybrid-Analysis | 2018-04-17 06:00:29 | 2018-04-17 06:00:29 | ||
| DangerousObject.Multi | Hybrid-Analysis | 2018-04-17 04:45:18 | 2018-04-17 04:45:19 | ||
| LooksLike.Macro.Malware.gen | Hybrid-Analysis | 2018-04-17 03:15:34 | 2018-04-17 03:15:34 | ||
| HW32.Packed | Hybrid-Analysis | 2018-04-16 16:11:44 | 2018-04-16 16:11:44 | ||
| installcore ,pua ,pup | Maltiverse | 2018-03-21 21:45:18 | 2018-03-21 21:45:18 | ||
| banker ,downloader ,fareit ,trojan | Maltiverse | 2018-03-21 16:30:39 | 2018-03-21 16:30:39 | ||
| bot ,neutrino | Maltiverse | 2018-03-21 16:15:20 | 2018-03-21 16:15:20 | ||
| backdoor ,evasive ,fallchill ,sality | Maltiverse | 2018-03-21 14:02:38 | 2018-03-21 14:02:38 | ||
| banker ,evasive ,gozi ,isfb ,panda ,papras ,ursnif ,zbot | Maltiverse | 2018-03-21 12:46:36 | 2018-03-21 12:46:36 | ||
| banker ,lokibot | Maltiverse | 2018-03-21 12:46:25 | 2018-03-21 12:46:25 | ||
| downloader ,evasive ,trojan | Maltiverse | 2018-03-21 01:32:45 | 2018-03-21 01:32:45 | ||
| banker ,evasive ,lokibot | Maltiverse | 2018-03-20 17:47:20 | 2018-03-20 17:47:20 | ||
| evasive ,miner | Maltiverse | 2018-03-20 17:17:10 | 2018-03-20 17:17:10 | ||
| evasive ,trojan | Maltiverse | 2018-03-18 21:17:05 | 2018-03-18 21:17:05 | ||
| evasive ,exploit ,phishing | Maltiverse | 2018-03-16 09:16:24 | 2018-03-16 09:16:24 | ||
| rat | Maltiverse | 2018-03-15 07:46:24 | 2018-03-15 07:46:24 | ||
| trojan | Maltiverse | 2018-03-14 22:50:52 | 2018-03-14 22:50:52 | ||
| evasive ,pua | Maltiverse | 2018-03-14 13:46:56 | 2018-03-14 13:46:56 | ||
| njrat ,rat | Maltiverse | 2018-03-14 07:46:16 | 2018-03-14 07:46:16 | ||
| phishing ,ransomware ,wanacrypt0r ,wannacry ,wcry | Maltiverse | 2018-03-14 07:15:36 | 2018-03-14 07:15:36 | ||
| nemucod ,ransomware | Maltiverse | 2018-03-14 05:15:28 | 2018-03-14 05:15:28 | ||
| evasive ,phishing | Maltiverse | 2018-03-13 17:19:04 | 2018-03-13 17:19:04 | ||
| evasive ,installerex | Maltiverse | 2018-03-13 16:32:38 | 2018-03-13 16:32:38 | ||
| nymaim | Maltiverse | 2018-03-13 09:01:01 | 2018-03-13 09:01:01 | ||
| banker ,emotet ,evasive | Maltiverse | 2018-03-13 04:15:58 | 2018-03-13 04:15:58 | ||
| bundlore ,evasive | Maltiverse | 2018-03-13 01:34:13 | 2018-03-13 01:34:13 | ||
| bundlore | Maltiverse | 2018-03-05 13:09:52 | 2018-03-05 13:09:52 | S0482 Bundlore | |
| nanocore ,rat | Maltiverse | 2018-03-02 01:00:20 | 2018-03-02 01:00:20 | ||
| evasive | Maltiverse | 2018-03-01 23:32:17 | 2018-03-01 23:32:17 | ||
| ransomware | Maltiverse | 2018-02-28 01:00:58 | 2018-02-28 01:00:58 | ||
| phishing | Maltiverse | 2018-02-21 19:19:14 | 2018-02-21 19:19:14 | ||
| exploit | Maltiverse | 2018-02-01 04:24:04 | 2018-02-01 04:24:04 | ||
| miner | Maltiverse | 2018-01-31 06:24:38 | 2018-01-31 06:24:38 |
Tags
miner exploit phishing ransomware evasive nanocore rat bundlore banker emotet nymaim installerex nemucod wanacrypt0r wannacry wcry njrat pua trojan lokibot downloader gozi isfb panda papras ursnif zbot backdoor fallchill sality bot neutrino fareit installcore pupWhois information
- AS name
- AS20940 Akamai International B V
- AS registry
- ripencc
- AS date
- 2007-11-13 00:00:00
- AS CIDR
- 92.122.122.0/24
- City
- Brussels
- Postal code
- 1000
- Country
- BE — Belgium 🇧🇪
- First indexed
- 2018-01-31 06:24:38
- Last updated
- 2025-11-15 00:25:55