🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://genddos.st/bachekuni/ohshit.arm7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3875529
URL: http://genddos.st/bachekuni/ohshit.arm7
URL Status:Offline
Host: genddos.st
Date added:2026-06-24 12:32:25 UTC
Last online:2026-08-19 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Malware domain
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: burger
Abuse complaint sent (?): Yes (2026-08-18 02:48:15 UTC to abuse{at}stormindustries[dot]llc)
Takedown time:2 months, 0 days, 8 hours, 48 minutes Bad (down since 2026-08-23 21:21:40 UTC)
Tags:elf mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-18n/aelf 0c266db1b29e950f1b1674362c00f6c376f1159258278bcd58daee61ba9fc1c9n/aMirai
2026-07-30n/aelf 5b769a715939762d66fdefbed016abfe5e3d63412b53ea17ec79d1731f728fd0n/aMirai
2026-07-20n/aelf 517164c29c0e178b1bb4613d3d5ceb552329c9596791624d8277f2dc5ba37c50n/aMirai
2026-07-19n/aelf 635b3f87384694ca954602b2e3ccf7732056833e8276ab80d8f3545ad420d414n/aMirai
2026-07-05n/aelf a0ddcc91877481c641effcc9ac6d1dc918f24f7dd3f7efdc21e399779c43a01an/aMirai
2026-06-24n/aelf 8d5eec24052138e24c1342dc054a8e25d2837027b27cfcd7c4f1a7aea597dbbfn/aMirai