URLhaus Database

You are currently viewing the URLhaus database entry for https://mussangroup.com/wp-content/images/pic6.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3063083
URL: https://mussangroup.com/wp-content/images/pic6.jpg
URL Status:Offline
Host: mussangroup.com
Date added:2024-07-23 13:22:34 UTC
Last online:2024-08-25 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-07-23 14:56:05 UTC to info{at}veridyen[dot]com)
Takedown time:1 month, 3 days, 3 hours, 29 minutes Bad (down since 2024-08-25 18:25:27 UTC)
Tags:32 CoinMiner dcrat exe LummaStealer opendir RedLineStealer link Rhadamanthys

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-08-21n/aexe 3eaff93f37edbe1e8dd8dfd4e854bde5e0d5c41973042e59a29b95b4de788fceVirustotal results 20.00% RedLineStealer
2024-08-19n/aexe 8b738c9057baa2c3219120919226e95659cccec0dc61aca579bba58c7090719eVirustotal results 8.00%Rhadamanthys
2024-08-19n/aexe c97c029e6368bf6502e9c9c9ee0fc079c61da9e79c3798e8a246d19446b5afa8n/a 
2024-08-18n/aexe 6fb48941b958b735d4f3843ccfc60181df2a8860cf3dea8e5c65fab040a679f7n/a 
2024-08-18n/aexe 66a7355317475674e27308e8971afa13f8f56ce7ee36715dc769b3cca65c3cd1Virustotal results 40.00% 
2024-08-14n/aexe 43d965d931e0bdbbb5478581ff3c690ecc540d552a072bccaee1a22319733e5dVirustotal results 56.76% 
2024-08-10n/aexe 419f4b2b780057cb6244ed20ccf34817473c21becf8e21d2f3ade6d8c63d298bVirustotal results 17.19% CoinMiner
2024-08-02n/aexe a4b0581aaea685234f0216f02c47c714a645a44f31a5df7412ec79de2f1d1bcbVirustotal results 48.00% 
2024-08-01n/aexe a7b88ddc5db298b583cd2a62cc4efa025800e9a3e3c0e199c2e4f949f783666en/a 
2024-08-01n/aexe f5940f1232708379cbc6f63e5aee408383db2545374df6c17e0943c7740953aen/a LummaStealer
2024-08-01n/aexe c4d0fd6611ed5f56e7a948c6cb43924b8e313e6b5e1970ec4659a8e8b4278845n/a 
2024-07-31n/aexe 04158128dfc64e6db4cb1804b3c707ee9981454fa05574e859a7e7138763a3d9n/a 
2024-07-31n/aexe 17c1ebc7c6164cd6c7329f979debe674b5dd59c26abec71eb022aa9f2880eae4n/a LummaStealer
2024-07-31n/aexe 2083c6d2ab049f21c15cf93b454b833f25d5d3aad20357f5e2488cfb838b13f5n/aLummaStealer
2024-07-30n/aexe ba798cd45fb45a29a58e7ebe18c40cb7ec4b57cbc4a3c95148fc4dfda4154037Virustotal results 36.00% DCRat
2024-07-29n/aexe aace578e2713bc277bad061978488035b847cce32037979b1e43e27cbd87e20an/a 
2024-07-28n/aexe 592c2a5abc3afab818a67af90ba2bc122da3ab611cdf0ba8e03229b756e2a11en/a 
2024-07-28n/aexe 5c3d55b9cdc2c36500ce1bcbd76d20b7c1398ebb0b34b60dedab463082c62edcVirustotal results 29.33% 
2024-07-23n/aexe 1099655a13691a6c4856fa29fa038e89805c8ff7ba6d04c6c56128728be19ff4Virustotal results 62.16%CoinMiner