URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: botnet.denvert.pro
Domain registrar:REG.RU -
Domain registration date:2023-04-05 18:51:54 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-06-15 08:21:10 UTC
Total malware sites :9
Online malware sites :0 (0%)
Offline Malware sites :9 (100%)
A record(s) observed :6

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-11-14 17:21:45 34.41.139.193193.139.41.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-11-18 18:07:34 35.225.54.236236.54.225.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2023-06-15 08:21:28 217.114.43.149Not listedAS199785 CHSN-AS- RUno
2023-06-15 23:35:21 193.42.32.101Not listedAS214396 SUDOLIO-AS- SKno
2025-11-19 15:35:52 34.132.102.66.102.132.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-11-19 15:35:52 34.136.111.8181.111.136.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-06-15 08:22:34http://botnet.denvert.pro/sh4Offlineelf gafgyt ext mirai ext r3dbU7z
2023-06-15 08:22:30http://botnet.denvert.pro/ppcOfflineelf mirai ext r3dbU7z
2023-06-15 08:22:30http://botnet.denvert.pro/arm7Offlineelf mirai ext r3dbU7z
2023-06-15 08:22:29http://botnet.denvert.pro/m68kOfflineelf mirai ext r3dbU7z
2023-06-15 08:21:29http://botnet.denvert.pro/arm6Offlineelf mirai ext r3dbU7z
2023-06-15 08:21:29http://botnet.denvert.pro/arm5Offlineelf mirai ext r3dbU7z
2023-06-15 08:21:29http://botnet.denvert.pro/mipsOfflineelf mirai ext r3dbU7z
2023-06-15 08:21:28http://botnet.denvert.pro/armOfflineelf mirai ext r3dbU7z
2023-06-15 08:21:28http://botnet.denvert.pro/mpslOfflineelf mirai ext r3dbU7z

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-06-19 23:25:05a907ac4296193739f1b46741755796e0754d752177ba864a39f19f54fe48d585elf  
2023-06-19 23:19:4079db93a12eb290318d6772d53ce47ab7396652c4ae213103c0cb03750969de32elf  
2023-06-19 23:16:2094edd810eb834a0a26d2213f0fdb1b4901fdb878379059b01b9615a8f4698a84elf  
2023-06-19 23:04:374ab4e2e2efd8adf0d19243f8b6fa60dccfd1a6e18f78e974e82d3293b7769245elf  
2023-06-19 22:59:05f3dd95710bddd3d1b0b1175986745fe9aeb4add27f6e2579f05c5205169b6ef0elf  
2023-06-19 22:56:57088693f5db6d6595a92f05be9f5d90a682ac4f0aa0c27d22702187ca71dd257eelf  
2023-06-19 22:56:54319292732641b7d97a72c1cfb986971ca50c42b136cfc2afede87d37c5a657c9elf  
2023-06-19 22:54:38b83a64bc33be3ccdca669a1d0bf5ae09331a2f817c2d200a5d7738e4799fcfd1elf  
2023-06-19 22:42:19019e526948519db460a1c2591f87628eefd6b5b257a6ec3ddc1bf260e7651916elf  
2023-06-16 00:53:37a22acc5035d05a111879a9763f09d8c1dfb6778d65ea59efc99dbdb045681a66elf  
2023-06-16 00:51:123c3c0eda0d601e32865f15b91c2e1c18037e2526f0d4cf3e882b24cb9650e726elf  
2023-06-16 00:49:2857861fd6bd657864d32b08e375f7e0d3b9ff79ef4a439e610bbbb4dfc613859belf  
2023-06-16 00:48:121ecc3e42df8576b391bbcb5d615470a852883626850160fc0fed663a84f0f195elf  
2023-06-16 00:41:4625901801b56d27bab90acf9de7049263299a40213e1886cf68492c1aec54bfe6elf  
2023-06-16 00:35:43acfc6236ee8b915e55f0158a5e05801481588c4f1984617a1d5998f9ff9a06eeelf  
2023-06-16 00:24:0364d62a0dec2b62ff1d0896716b4ee5a2f23f8ef817d129e736b39ac73ce0e7deelf  
2023-06-16 00:10:20910cdba98957d029ee26fc838067711dcbb64630bb82dcf8990b3c5124f56396elf  
2023-06-15 23:41:42737dd7dbfb04132e90d875ba0f9d8e633452f93b050642fad8905a6391599711elf  
2023-06-15 08:22:341fa865aa0b7b96327fc616bb62f67fe05e7319f100bcb4f225dc840fc5adb2eaelfGafgyt
2023-06-15 08:22:30fe6203ca9424a3473985a8b4eb5e765be4015f5a7ddd4a0a1b11bfd336464e0eelf  
2023-06-15 08:22:30e7ba50e0c3c37dcb5472a553275f6880b5de5557b405a36400e586c5a0fa0a74elfMirai
2023-06-15 08:22:294bb8d32e6aa77a495127912ba6eb505b93029e4a847b6b63e896642c09f35d8celfMirai
2023-06-15 08:21:29561233818f9344b9ae0d795b28f2e3ada83bc5698c2a385a10777f051c38158eelfMirai
2023-06-15 08:21:2947dc8aa35f51da8650a0f57aac2777c26af2f4167354b168a9d5fea6febe453eelfMirai
2023-06-15 08:21:29fe47fabc535d4c73f87444bb3c517619700c0d0752e4330447565c83544e68f1elfMirai
2023-06-15 08:21:28c31c3047eb25f6544b274882820363a2469cbf22b1e4c61934160a7988d06109elfMirai
2023-06-15 08:21:2833597920555feac2c2906b2579f5109b4e2dff3f22344c771ab538290d420eabelfMirai