URLhaus Database

You are currently viewing the URLhaus database entry for http://top1miku.duckdns.org/giga.sh which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3592539
URL: http://top1miku.duckdns.org/giga.sh
URL Status:Offline
Host: top1miku.duckdns.org
Date added:2025-07-29 06:47:36 UTC
Last online:2025-08-17 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-08-11 18:04:10 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 month, 13 days, 19 hours, 36 minutes Bad (down since 2025-09-11 02:27:35 UTC)
Tags:botnetdomain gafgyt link mirai link sh ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-11giga.shsh e067f622e732b809876f95f19fc254d4c09cf281fdedc81492ec1f1af85cda2dn/aMirai
2025-08-10giga.shsh 5b2a668eef667cb00af10ef025d68689394f32ac711b3250b85717e8f251a7ean/a
2025-08-03giga.shsh d1cc2ab9ba5338df6b6eb6d7010eb64ee9d642fdb6a6281fbb21f16a29ae57c7Virustotal results 54.84%Mirai
2025-07-31giga.shsh 3f0be4730da078e8bde3bc8a98c8cfbda1771a1df293575348734e16d45557f6n/aMirai
2025-07-29giga.shsh 053b7a1cfa02b3689216af734df0e9eb5dbfa0ebf9df53105021079b51586b24n/aGafgyt