URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: mussangroup.com
Domain registrar: n/a
Domain registration date:2017-04-28 17:45:23 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2024-07-04 11:54:06 UTC
Total malware sites :13
Online malware sites :0 (0%)
Offline Malware sites :13 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2024-07-04 11:54:12 185.149.100.242jonas.veridyen.comNot listedAS209853 VERIDYEN- TRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2024-08-26 06:15:09https://mussangroup.com/wp-content/images/pic12...OfflineRedLine ext boruch
2024-08-02 12:54:08http://mussangroup.com/wp-content/images/pic2.jpgOfflineLummaStealer meduza Wingo abus3reports
2024-08-02 12:54:08http://mussangroup.com/wp-content/images/pic5.jpgOfflinejpg LummaStealer VenomRAT abus3reports
2024-08-02 12:54:08http://mussangroup.com/wp-content/images/pic6.jpgOfflineCoinMiner jpg RedLineStealer ext Rhadamanthys abus3reports
2024-08-02 12:54:08http://mussangroup.com/wp-content/images/pic3.jpgOfflinejpg Vidar ext abus3reports
2024-08-02 12:54:07http://mussangroup.com/wp-content/images/pic7.jpgOfflinejpg LummaStealer MeshAgent abus3reports
2024-07-24 05:07:34http://mussangroup.com/wp-content/images/pic1.jpgOffline64 exe GoInjector LummaStealer opendir zbetcheckin
2024-07-23 13:22:34https://mussangroup.com/wp-content/images/pic6.jpgOffline32 CoinMiner dcrat exe LummaStealer opendir RedLineStealer ext Rhadamanthys zbetcheckin
2024-07-21 10:34:08https://mussangroup.com/wp-content/images/pic5.jpgOffline64 dcrat exe LummaStealer N-W0rm opendir povertystealer VenomRAT zbetcheckin
2024-07-05 04:02:35https://mussangroup.com/wp-content/images/pic1.jpgOffline64 CoinMiner dcrat exe GoInjector LummaStealer opendir zbetcheckin
2024-07-05 03:56:15http://mussangroup.com/wp-content/images/pic4.jpgOffline64 exe LummaStealer MeshAgent opendir RedLineStealer ext zbetcheckin
2024-07-04 11:55:21https://mussangroup.com/wp-content/images/pic4.jpgOfflinedropped-by-SmokeLoader exe LummaStealer MeshAgent opendir RedLineStealer ext Casperinous
2024-07-04 11:54:12https://mussangroup.com/wp-content/images/pic2.jpgOfflinedropped-by-SmokeLoader exe LummaStealer meduza opendir Vidar ext Casperinous

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2024-09-10 16:37:228404f00f5b3ecc24bfd2e4947b0114545d8df7da0713568a2fbd835b36cbe749exe  
2024-08-28 16:43:39813f1c9e5019549447539c5aa77e478dca6e515cbf3d059835c5f1ecb4031792exe  
2024-08-28 11:13:53813f1c9e5019549447539c5aa77e478dca6e515cbf3d059835c5f1ecb4031792exe  
2024-08-28 00:32:23ffc6c7ec46ef8cc1d6001f2f12fd439322925ba22b5639a01fe32d7f8ac58bd5exe LummaStealer
2024-08-27 23:01:48ffc6c7ec46ef8cc1d6001f2f12fd439322925ba22b5639a01fe32d7f8ac58bd5exe LummaStealer
2024-08-27 13:04:02bf176161a1a81aa55dd437aa1a20a9b117eb6a6b04e8c7ae4e4bbdf11f84a650exe  
2024-08-27 12:18:59bf176161a1a81aa55dd437aa1a20a9b117eb6a6b04e8c7ae4e4bbdf11f84a650exe  
2024-08-27 12:13:08685f3cc81518e0feccc03f7596b6f13a2f1e5342995bd5acaf6e3eb4936889c0exeLummaStealer
2024-08-27 11:52:13685f3cc81518e0feccc03f7596b6f13a2f1e5342995bd5acaf6e3eb4936889c0exeLummaStealer
2024-08-27 09:39:514b16b9168f582448d16e99701ac2350175a369004fe52367bb0fdd4fbf423efbexe  
2024-08-27 05:08:534b16b9168f582448d16e99701ac2350175a369004fe52367bb0fdd4fbf423efbexe  
2024-08-26 18:23:428ddf88965ab1fd9eadc5968e54519b6c9b41f726f285407a1af655c72fc119beexe Meduza
2024-08-26 18:22:248ddf88965ab1fd9eadc5968e54519b6c9b41f726f285407a1af655c72fc119beexe Meduza
2024-08-25 18:44:51befa0bf6728b13e31d87710224554af14efaad03b716c6ff2326bfaf87643e55exe LummaStealer
2024-08-25 16:36:56befa0bf6728b13e31d87710224554af14efaad03b716c6ff2326bfaf87643e55exe LummaStealer
2024-08-25 11:55:0442d83f7c2c5ea8326c062ad0d2e496425183dbaa2a46852a91a9e467c438f684exe LummaStealer
2024-08-25 09:21:0042d83f7c2c5ea8326c062ad0d2e496425183dbaa2a46852a91a9e467c438f684exe LummaStealer
2024-08-25 08:59:559a23be337fcd551842122599ed014c122b040de7c876b4cec0f4790c5ca8bd87exe  
2024-08-25 08:06:199a23be337fcd551842122599ed014c122b040de7c876b4cec0f4790c5ca8bd87exe  
2024-08-22 22:51:4212304b7c8fa917092a9b51195bc8fa9f8ab33e4fe7dd0a5c62d2e9014d05233fexe MeshAgent
2024-08-22 15:56:01034cd504d1812ec5bec3327fa9453e08ba19ed4c547045dd4fbcd55aebb87e41exe LummaStealer
2024-08-22 14:47:043252b35388e4d56228d6f577139050dbd1ae1b61b6a457d85c03e4dee055eb87exe  
2024-08-22 14:43:25034cd504d1812ec5bec3327fa9453e08ba19ed4c547045dd4fbcd55aebb87e41exe LummaStealer
2024-08-21 20:50:333eaff93f37edbe1e8dd8dfd4e854bde5e0d5c41973042e59a29b95b4de788fceexe RedLineStealer
2024-08-21 15:47:003eaff93f37edbe1e8dd8dfd4e854bde5e0d5c41973042e59a29b95b4de788fceexe RedLineStealer
2024-08-20 15:04:22b1cd8601e724d3f7f86b9557ed561d118fccc5b09810758c5a3e881ea28de4b7exe  
2024-08-20 14:34:11b1cd8601e724d3f7f86b9557ed561d118fccc5b09810758c5a3e881ea28de4b7exe  
2024-08-19 23:33:143b4e957af06ccd4e6286552e543f216bd829abffa0e7a93eeaffb80a9c4a7a92exe  
2024-08-19 23:26:548b738c9057baa2c3219120919226e95659cccec0dc61aca579bba58c7090719eexeRhadamanthys
2024-08-19 23:13:043b4e957af06ccd4e6286552e543f216bd829abffa0e7a93eeaffb80a9c4a7a92exe  
2024-08-19 22:55:428b738c9057baa2c3219120919226e95659cccec0dc61aca579bba58c7090719eexeRhadamanthys
2024-08-19 22:10:3961d54685e7599b3252c6c2b293249cf6085819201efef6b2f4fa312c800aeff3exe LummaStealer
2024-08-19 15:24:529c5c97c537897f9280ed511b4680979a098457618854222ea6e1e9ba6aa83b56exe  
2024-08-19 12:02:21c97c029e6368bf6502e9c9c9ee0fc079c61da9e79c3798e8a246d19446b5afa8exe  
2024-08-19 11:25:1164c753b6290b57c01b8e9de93c48ab3546f0cdb3d43c5ddc683005606ba70183exe RedLineStealer
2024-08-19 11:22:3864c753b6290b57c01b8e9de93c48ab3546f0cdb3d43c5ddc683005606ba70183exe RedLineStealer
2024-08-19 11:22:019c5c97c537897f9280ed511b4680979a098457618854222ea6e1e9ba6aa83b56exe  
2024-08-19 11:14:37c97c029e6368bf6502e9c9c9ee0fc079c61da9e79c3798e8a246d19446b5afa8exe  
2024-08-18 22:20:546fb48941b958b735d4f3843ccfc60181df2a8860cf3dea8e5c65fab040a679f7exe  
2024-08-18 22:19:126fb48941b958b735d4f3843ccfc60181df2a8860cf3dea8e5c65fab040a679f7exe  
2024-08-18 18:39:22d36743870ebee6f28c662d8ff3ed9dc6b1b3d0b857a32ce9d6f865aa45a1b5bbexe  
2024-08-18 17:57:2212304b7c8fa917092a9b51195bc8fa9f8ab33e4fe7dd0a5c62d2e9014d05233fexe MeshAgent
2024-08-18 17:44:4912304b7c8fa917092a9b51195bc8fa9f8ab33e4fe7dd0a5c62d2e9014d05233fexe MeshAgent
2024-08-18 17:23:28d36743870ebee6f28c662d8ff3ed9dc6b1b3d0b857a32ce9d6f865aa45a1b5bbexe  
2024-08-18 03:27:5166a7355317475674e27308e8971afa13f8f56ce7ee36715dc769b3cca65c3cd1exe  
2024-08-18 02:33:5366a7355317475674e27308e8971afa13f8f56ce7ee36715dc769b3cca65c3cd1exe  
2024-08-16 23:45:2988fc2f8eb9c8bcd55aac25400b1ade16ca86b67ac26dcfbbc48fe0dddec0596cexe GoInjector
2024-08-16 23:13:0888fc2f8eb9c8bcd55aac25400b1ade16ca86b67ac26dcfbbc48fe0dddec0596cexe GoInjector
2024-08-16 18:45:477c4b4f1a1f108f68b76b671c61733f392114bbff28813279b67b63c5fe3939b9exe  
2024-08-16 16:28:197c4b4f1a1f108f68b76b671c61733f392114bbff28813279b67b63c5fe3939b9exe  
2024-08-16 15:04:4533dc6f89d505ad4b2df91ba98bff96bb2767e12eac2ba716246615c83dffbde5exe PovertyStealer
2024-08-16 12:51:477636d2367079eabd9da2bb40935df3da580affc47473fd93ed3b2e01ee6c46e5exe RedLineStealer
2024-08-15 17:27:547560159d0fa15cf57a38699a70bd608945869270f29573b82109e4521bc4e4a5exe  
2024-08-15 15:09:477560159d0fa15cf57a38699a70bd608945869270f29573b82109e4521bc4e4a5exe  
2024-08-15 14:07:147a15dd944f05b7280ae9d297f7707f5ee712821fbae770930bae1539cf9e0b4eexe  
2024-08-14 16:25:5243d965d931e0bdbbb5478581ff3c690ecc540d552a072bccaee1a22319733e5dexe  
2024-08-14 13:51:28db97cda7ff3499cd07525da8e7b9fac658abc66114e9a6e0f4ef261bff07b72dexe  
2024-08-14 13:42:04db97cda7ff3499cd07525da8e7b9fac658abc66114e9a6e0f4ef261bff07b72dexe  
2024-08-14 13:10:4943d965d931e0bdbbb5478581ff3c690ecc540d552a072bccaee1a22319733e5dexe  
2024-08-12 21:10:449d25b565f166c9adb610fd56fff3abc551330bb17bad085a61774033cde35d7aexe  
2024-08-12 00:47:08308825727bb71ac438376b3acc46086ac1a4b6598bff97181e46f5eb5a7d4360exe GoInjector
2024-08-11 23:42:54308825727bb71ac438376b3acc46086ac1a4b6598bff97181e46f5eb5a7d4360exe GoInjector
2024-08-11 10:46:124127c9695c9aa08cf6e36097b5666c0305768372a07d4e607b7c4eee01bafe52exe  
2024-08-11 09:11:074127c9695c9aa08cf6e36097b5666c0305768372a07d4e607b7c4eee01bafe52exe  
2024-08-11 06:07:07ad10046a15cc39d5cd5189866042caddaf8c4db6622523b7b4a54436f0682655exe LummaStealer
2024-08-10 20:07:0124b5de5dff6997d0dc7e1f400e61bcb4bd6806eadbaa2367d62cddf82a2dedfcexeLummaStealer
2024-08-10 19:04:49419f4b2b780057cb6244ed20ccf34817473c21becf8e21d2f3ade6d8c63d298bexe CoinMiner
2024-08-10 18:22:39c6a05171019386cb7331765a0c2c92e5a66e562fe6a8c110f3252735be62a90cexe GoInjector
2024-08-10 17:45:21c6a05171019386cb7331765a0c2c92e5a66e562fe6a8c110f3252735be62a90cexe GoInjector
2024-08-10 17:13:55ad10046a15cc39d5cd5189866042caddaf8c4db6622523b7b4a54436f0682655exe LummaStealer
2024-08-10 16:52:2424b5de5dff6997d0dc7e1f400e61bcb4bd6806eadbaa2367d62cddf82a2dedfcexeLummaStealer
2024-08-10 16:41:30419f4b2b780057cb6244ed20ccf34817473c21becf8e21d2f3ade6d8c63d298bexe CoinMiner
2024-08-09 20:29:42d4aafdf7261fb41ef48370eca3e4d70a9086528d7c3d14fc8c82fcb8b69710cbexeLummaStealer
2024-08-09 19:50:24d4aafdf7261fb41ef48370eca3e4d70a9086528d7c3d14fc8c82fcb8b69710cbexeLummaStealer
2024-08-09 17:38:33c3169aabc913316b0c5826521fd77f22493d9d76546d60fd2445fa204667174bexe  
2024-08-09 17:09:44c3169aabc913316b0c5826521fd77f22493d9d76546d60fd2445fa204667174bexe  
2024-08-08 00:48:267b61dae8513cbd3bb0617a191e4c0306989a632632e7700db7a0d68d154fdc16exe  
2024-08-07 23:48:237b61dae8513cbd3bb0617a191e4c0306989a632632e7700db7a0d68d154fdc16exe  
2024-08-07 18:54:58b1ccda9f7ba76b222d9387f6ee8cbbd3222af3dc3723a247c6e80cb0a5626676exe  
2024-08-07 18:26:33b1ccda9f7ba76b222d9387f6ee8cbbd3222af3dc3723a247c6e80cb0a5626676exe  
2024-08-06 18:15:55a67bf50d7df33bd44115863a246d5066c05335e6767da154c302d3b73790ba9fexe GoInjector
2024-08-06 16:49:06e4ff7372f55485d5d9dcf1849985eb7e79ccc1945b71c7293dc0b2b5a2034606exe VenomRAT
2024-08-06 16:40:27f1530d12529d8b0ed379457feee1a7cfc223596f455ea0d0771f414699bc88f5exe  
2024-08-06 16:11:43208cf6b8c728eb97c9347ee014dbc3dabfc13445531a2c6f27883fd38f3bd02eexe  
2024-08-06 16:08:35a67bf50d7df33bd44115863a246d5066c05335e6767da154c302d3b73790ba9fexe GoInjector
2024-08-06 15:44:09208cf6b8c728eb97c9347ee014dbc3dabfc13445531a2c6f27883fd38f3bd02eexe  
2024-08-06 15:42:35f1530d12529d8b0ed379457feee1a7cfc223596f455ea0d0771f414699bc88f5exe  
2024-08-06 15:29:09e4ff7372f55485d5d9dcf1849985eb7e79ccc1945b71c7293dc0b2b5a2034606exe VenomRAT
2024-08-06 05:30:0068e0b6f27bbcdc97b12e97d597dd59e5ec7267bd7d11e39cc1c718acc5058564exe  
2024-08-05 23:01:2068e0b6f27bbcdc97b12e97d597dd59e5ec7267bd7d11e39cc1c718acc5058564exe  
2024-08-05 21:59:26010ce4677fb5a23b6de42891e4d6aa13e42268890de78380041992ae6da06935exe 
2024-08-05 15:19:18c19382db08c7fa1a2899490fe566a6f3c668216a8200243f302ea7b6a0ae9f00exe LummaStealer
2024-08-05 14:31:26c19382db08c7fa1a2899490fe566a6f3c668216a8200243f302ea7b6a0ae9f00exe LummaStealer
2024-08-03 22:13:49f1530d12529d8b0ed379457feee1a7cfc223596f455ea0d0771f414699bc88f5exe  
2024-08-03 22:00:59f1530d12529d8b0ed379457feee1a7cfc223596f455ea0d0771f414699bc88f5exe  
2024-08-02 15:09:25a4b0581aaea685234f0216f02c47c714a645a44f31a5df7412ec79de2f1d1bcbexe  
2024-08-02 12:54:08180c032ffd0dc64b46efb3dad37a1bbf1bb7289b50b620584fa1f5703c423897exe 
2024-08-02 12:54:08389302b364b2896c0df6c8f5f1476a1f1c0665f0279ad82c239cc1530edc33b1exe  
2024-08-02 12:54:08a4b0581aaea685234f0216f02c47c714a645a44f31a5df7412ec79de2f1d1bcbexe  
2024-08-02 12:54:08faa73427d0d73392514ef5f4843ca8b0229d7bbd62a8b48d77027f22309c79daexe Vidar