URLhaus Database

You are currently viewing the URLhaus database entry for https://mussangroup.com/wp-content/images/pic2.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2923981
URL: https://mussangroup.com/wp-content/images/pic2.jpg
URL Status:Offline
Host: mussangroup.com
Date added:2024-07-04 11:54:12 UTC
Last online:2024-09-27 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Casperinous
Abuse complaint sent (?): Yes (2024-07-04 11:55:17 UTC to info{at}veridyen[dot]com)
Takedown time:2 months, 24 days, 20 hours, 45 minutes Bad (down since 2024-09-27 08:40:51 UTC)
Tags:dropped-by-SmokeLoader exe LummaStealer meduza opendir Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-08-28n/aexe 813f1c9e5019549447539c5aa77e478dca6e515cbf3d059835c5f1ecb4031792Virustotal results 10.67% 
2024-08-27n/aexe 685f3cc81518e0feccc03f7596b6f13a2f1e5342995bd5acaf6e3eb4936889c0Virustotal results 14.86%LummaStealer
2024-08-26n/aexe 8ddf88965ab1fd9eadc5968e54519b6c9b41f726f285407a1af655c72fc119beVirustotal results 6.67% Meduza
2024-08-25n/aexe 42d83f7c2c5ea8326c062ad0d2e496425183dbaa2a46852a91a9e467c438f684Virustotal results 20.00% LummaStealer
2024-08-06n/aexe f1530d12529d8b0ed379457feee1a7cfc223596f455ea0d0771f414699bc88f5Virustotal results 51.35% 
2024-08-05n/aexe c19382db08c7fa1a2899490fe566a6f3c668216a8200243f302ea7b6a0ae9f00Virustotal results 21.62% LummaStealer
2024-08-01n/aexe 180c032ffd0dc64b46efb3dad37a1bbf1bb7289b50b620584fa1f5703c423897Virustotal results 21.33%
2024-07-22n/aexe 8373fd9dc1d9e618e52060f22265030d1558e46fdb635b8855e9f8dfffe2bbbdn/a 
2024-07-18n/aexe 16c08ff53ad10a13261f855fc33e82a9806efbd71a0442608c8900ff6c3b99ecn/a 
2024-07-17n/aexe c59bc09e4e4ec6af9227891bc5304faa138b9e3887a7950b926e70b9cd09d5f4Virustotal results 5.48% 
2024-07-15n/aexe c5b94a0adcd40ec07d7f70781e92a955902a9aabf9d59e92057511358e7d1cd2n/a 
2024-07-14n/aexe d096a6be11075d444fcb7ed37cd2b5ce22f0b1333c119afb3b1cf4c2701364b1n/a 
2024-07-12n/aexe 3fba110be404dea946e856f524f318c5557fa564bd305a65862bb677f2d07d60n/a Vidar
2024-07-11n/aexe cb08d8a7bca589704d20b421768ad01f7c38be0c3ea11b4b77777e6d0b5e5956n/a 
2024-07-10n/aexe 481d6d581cbcfabaa7af705e8ee1d72b845c73e4fd926217ce14cf3120f916c2n/a 
2024-07-04n/aexe cae992788853230af91501546f6ead07cfd767cb8429c98a273093a90bbcb5adVirustotal results 72.97%LummaStealer