URLhaus Database

You are currently viewing the URLhaus database entry for http://savaswsd.duckdns.org/huhu/titanjr.mipsl which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3592176
URL: http://savaswsd.duckdns.org/huhu/titanjr.mipsl
URL Status:Offline
Host: savaswsd.duckdns.org
Date added:2025-07-29 04:25:45 UTC
Last online:2025-09-20 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-09-20 15:10:12 UTC to abuse{at}cheapy[dot]host)
Takedown time:2 months, 4 days, 5 hours, 32 minutes Bad (down since 2025-10-01 09:59:12 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-20n/aelf d315580b4383b94fd5d2a8aefe186d2b9380cf29081796e7ed82b403f6854bb0n/aMirai
2025-09-13n/aelf ba30de7e2f6efe3a9482fe3c09dc9dbab5c6ffc1c7255d05c0aef6fc4c8f57dbVirustotal results 9.38%
2025-09-01n/aelf a673d0650896e291ca80fd6e82b82c96ace6caf90a89ff7d5d50dba01e0cabc6Virustotal results 32.81%Mirai
2025-08-17n/aelf 6800ed3eb529e69383afc07d502330aaaecd98c7a6a81c99b9a76d71de5c0208Virustotal results 35.94%Mirai
2025-08-16n/aelf 0ca9d7d144ef10502395995d0aac254efcb88274a6e843db7da397b331cc5c47Virustotal results 31.25%Mirai
2025-07-29n/aelf 8e94832a7475e224e2aa769ad2928ca2740b35ba7cfd7562f1e7c55bd3db81baVirustotal results 50.00%Mirai