URLhaus Database

You are currently viewing the URLhaus database entry for http://www.vmklsfdv.duckdns.org/huhu/titanjr.i486 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3592240
URL: http://www.vmklsfdv.duckdns.org/huhu/titanjr.i486
URL Status:Offline
Host: www.vmklsfdv.duckdns.org
Date added:2025-07-29 04:26:01 UTC
Last online:2025-09-20 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-09-20 15:57:09 UTC to abuse{at}cheapy[dot]host)
Takedown time:1 month, 27 days, 2 hours, 56 minutes Bad (down since 2025-09-24 07:22:36 UTC)
Tags:botnetdomain elf mirai link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-20n/aelf 56f04b6a7987032d21da319edbb0f2abe30f83c3e67baf3e8e4c17f41c45a6beVirustotal results 26.15%Mirai
2025-09-13n/aelf a6e1232d124372fbb7b2a90f8db7a03ba3f712574c86a3f1aa36d9884adf40bdVirustotal results 9.84%Mirai
2025-09-01n/aelf 40885c9df6ee36ab2b90ac2a1f7394a8f79f562808a786604e08bb4a5f2126e0Virustotal results 23.08%Mirai
2025-08-17n/aelf 3fde61648c8dcfcccad4e12b519aca8e2423d4d529daefd118f7e26834c931afn/aMirai
2025-08-16n/aelf 32b4e76c6b61877b5931fa07dd936ff91454c13dd32ba5fe2264b20255d280a5Virustotal results 21.54%Mirai
2025-07-29n/aelf 0860a1f15d0cdc2514a599079873eadc374d363f1ee20cdeba841dcb0e3d0d45Virustotal results 41.54%Mirai