URLhaus Database

You are currently viewing the URLhaus database entry for http://mussangroup.com/wp-content/images/pic1.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3064410
URL: http://mussangroup.com/wp-content/images/pic1.jpg
URL Status:Offline
Host: mussangroup.com
Date added:2024-07-24 05:07:34 UTC
Last online:2024-09-27 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-07-24 06:49:05 UTC to info{at}veridyen[dot]com)
Takedown time:2 months, 5 days, 2 hours, 20 minutes Bad (down since 2024-09-27 09:09:46 UTC)
Tags:64 exe GoInjector LummaStealer opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-08-27n/aexe bf176161a1a81aa55dd437aa1a20a9b117eb6a6b04e8c7ae4e4bbdf11f84a650n/a 
2024-08-25n/aexe befa0bf6728b13e31d87710224554af14efaad03b716c6ff2326bfaf87643e55Virustotal results 17.33% LummaStealer
2024-08-25n/aexe 9a23be337fcd551842122599ed014c122b040de7c876b4cec0f4790c5ca8bd87Virustotal results 22.67% 
2024-08-22n/aexe 034cd504d1812ec5bec3327fa9453e08ba19ed4c547045dd4fbcd55aebb87e41n/a LummaStealer
2024-08-20n/aexe b1cd8601e724d3f7f86b9557ed561d118fccc5b09810758c5a3e881ea28de4b7n/a 
2024-08-19n/aexe 9c5c97c537897f9280ed511b4680979a098457618854222ea6e1e9ba6aa83b56n/a 
2024-08-18n/aexe d36743870ebee6f28c662d8ff3ed9dc6b1b3d0b857a32ce9d6f865aa45a1b5bbn/a 
2024-08-16n/aexe 88fc2f8eb9c8bcd55aac25400b1ade16ca86b67ac26dcfbbc48fe0dddec0596cVirustotal results 21.33% GoInjector
2024-08-15n/aexe 7560159d0fa15cf57a38699a70bd608945869270f29573b82109e4521bc4e4a5Virustotal results 25.33% 
2024-08-11n/aexe 308825727bb71ac438376b3acc46086ac1a4b6598bff97181e46f5eb5a7d4360n/a GoInjector
2024-08-10n/aexe c6a05171019386cb7331765a0c2c92e5a66e562fe6a8c110f3252735be62a90cn/a GoInjector
2024-08-09n/aexe c3169aabc913316b0c5826521fd77f22493d9d76546d60fd2445fa204667174bn/a 
2024-08-06n/aexe a67bf50d7df33bd44115863a246d5066c05335e6767da154c302d3b73790ba9fVirustotal results 17.81% GoInjector
2024-07-24n/aexe 505968dff5e73b6db05caaa86ea34633140ec3b7bb75b19167af7ce4af641259Virustotal results 56.16% LummaStealer