URLhaus Database

You are currently viewing the URLhaus database entry for http://www.savaswsd.duckdns.org/huhu/titanjr.x86_32 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3592229
URL: http://www.savaswsd.duckdns.org/huhu/titanjr.x86_32
URL Status:Offline
Host: www.savaswsd.duckdns.org
Date added:2025-07-29 04:25:57 UTC
Last online:2025-09-20 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-09-20 14:23:10 UTC to abuse{at}cheapy[dot]host)
Takedown time:1 month, 27 days, 3 hours, 3 minutes Bad (down since 2025-09-24 07:30:17 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-20n/aelf 36138be064c2ad56445d84f82d31a5bedac0f6301e0231be49ebeda59cbdc9d9Virustotal results 38.46%Mirai
2025-09-13n/aelf aa5c0ea78ca37ec005dd9663dfed9108c5055a94ef5117763dc10bb6ed632dbdVirustotal results 16.92%Mirai
2025-09-01n/aelf 27adca0faa0a2b4539d8c24314db8813c05884d0c7c3eb3de16a4cbfe4a0232cVirustotal results 26.98%Mirai
2025-08-17n/aelf 1288ed279240452b2ee99f9d1a9bf10aa7d0ec3b9bf41081b98ba8879402e945Virustotal results 24.62%Mirai
2025-08-16n/aelf 644b442badff09bf5c1a7e14f46dab18cae741c8cf8ea31279fe37efee534a9dVirustotal results 24.62%Mirai
2025-07-29n/aelf e7bec6ab2ae9b707965e4d26d46680063f41a76e4e4f1ad2c83f4aae8d68e790Virustotal results 50.77%Mirai