🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://genddos.st/bachekuni/ohshit.ppc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3875516
URL: http://genddos.st/bachekuni/ohshit.ppc
URL Status:Offline
Host: genddos.st
Date added:2026-06-24 12:31:26 UTC
Last online:2026-08-18 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Malware domain
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: burger
Abuse complaint sent (?): Yes (2026-08-17 23:46:16 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:2 months, 0 days, 7 hours, 31 minutes Bad (down since 2026-08-23 20:04:23 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-17ohshit.ppcelf 352f7d9b84371291a62dbce9cb485245b1008bae4ba53c121b762270d5016a5en/aMirai
2026-07-30ohshit.ppcelf a91f8ea006fb7ffa3c8b7646e356ebc4fb297609e3b693b161cdd12598fe51e6n/aMirai
2026-07-20ohshit.ppcelf c0685aa4c68bbecb0bc5a61c3ee46eb9056ae33ded414784761d8ccac48e5bbdn/aMirai
2026-07-19ohshit.ppcelf 22c63729f11246f5e0eccfb6815c58366b7acd1a27173850f4ab09267817e2ecn/aMirai
2026-07-05ohshit.ppcelf 3c79d4fb9210a9fe2d202cb35eea82f4b0af46f8f34418e44bf10f2b65b862d3n/aMirai
2026-06-24ohshit.ppcelf ccb82d2519b1e47d3cbc68aee066d76a41faaf096a7ef76f26ff06fbfd9b7cb9n/aMirai