URLhaus Database

You are currently viewing the URLhaus database entry for http://www.savaswsd.duckdns.org/huhu/titanjr.mips which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3592225
URL: http://www.savaswsd.duckdns.org/huhu/titanjr.mips
URL Status:Offline
Host: www.savaswsd.duckdns.org
Date added:2025-07-29 04:25:57 UTC
Last online:2025-09-20 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-09-20 14:23:10 UTC to abuse{at}cheapy[dot]host)
Takedown time:1 month, 27 days, 3 hours, 40 minutes Bad (down since 2025-09-24 08:06:24 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-20titanjr.mipself 7023374287293202bd9794076550553181695ad19f51a5a8b242ec334644b84dVirustotal results 40.62%Mirai
2025-09-13titanjr.mipself 1daf6da9dc7ceb9fe690672aee5a6e006ae355a989eab93c7cbdb35cd4a56479Virustotal results 12.50%
2025-09-01titanjr.mipself f5d21a60ba4b784cbbe041e598ff5c799dd3e817e9da4dcb9b7d2c1da950b54cVirustotal results 35.94%Mirai
2025-08-18titanjr.mipself 5f2da7cdf4fab98caa9fb3c832e4233886c6cd2017ab659c15484b1d221bba4aVirustotal results 43.75%Mirai
2025-08-16titanjr.mipself 75d31bea72108654a15940eeddd7708de62942beca48e45cbfd5761197a666e7n/aMirai
2025-07-29titanjr.mipself 8c97c967e57bc14a44456f20aa4b29c6118f5002fe31466f52069f77983b2cc9Virustotal results 48.44%Mirai