🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://genddos.st/bachekuni/ohshit.spc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3875522
URL: http://genddos.st/bachekuni/ohshit.spc
URL Status:Offline
Host: genddos.st
Date added:2026-06-24 12:31:31 UTC
Last online:2026-08-18 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Malware domain
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: burger
Abuse complaint sent (?): Yes (2026-08-18 03:01:16 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:2 months, 0 days, 8 hours, 2 minutes Bad (down since 2026-08-23 20:34:36 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-18ohshit.spcelf 4761db60d6a1727521098f97729f339a1f011717eba30d433a62cc24476e4831n/aMirai
2026-07-30ohshit.spcelf bb6662d5d7bfb2b9d0dde6d3f9446a1e022e1948f40fbe58ac3ef981fbba8c80n/aMirai
2026-07-20ohshit.spcelf 338b19ba5a4d15cca22d48c02c298064164d9db9654e7473880d12211f3cd185n/aMirai
2026-07-19ohshit.spcelf 0aa485506ebf9f1fb8c3931f0834875f1284776e86ef6d7d34e381df68f1d9ddn/aMirai
2026-07-05ohshit.spcelf a452bec6a3870ff512d0bf8a2c01b9e052752a6a1c6b1c2b8dd4e61d97cb611en/aMirai
2026-06-24ohshit.spcelf 69e3b714d2a4fac4a6ba67c144a248714349c094d48fb40b2f11ddaff72ee27cn/aMirai