URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: monsterseries.in
Domain registrar:Public Domain Registry -
Domain registration date:2015-12-20 05:54:15 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 23:14:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-04-10 13:45:27 23.88.97.194wmr.phr.bgNot listedAS24940 HETZNER-AS- DEno
2022-01-11 23:14:05 89.163.208.34antel.domainNot listedAS24961 MYLOC-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 23:14:05https://monsterseries.in/wp-content/053_5937/?i=1Offlinedoc emotet ext epoch4 heodo ext SilentBuilder Cryptolaemus1
2022-01-11 23:14:05https://monsterseries.in/wp-content/053_5937/Offlineemotet ext epoch4 redir-doc xls waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-12 05:00:38aa65a34067b0c50e89c1078d0c7ff08de43e5036241404574f846265de6ff6bdxlsHeodo
2022-01-12 04:43:5276b0bb588e68acc2effd49579f838a7d30263b8404de96f93e1dc720f3685d9axls SilentBuilder
2022-01-12 04:12:50d57efe94adedaeac797cbb79d71e10325536f42c27c9cf5154fddaeb7bc797bexls Heodo
2022-01-12 03:48:225e9d0d9f2cd3b4494155094028cb99d48ed8c70d5517ae27a23af4610cef3997xls SilentBuilder
2022-01-12 03:12:503f4b1c98cb91608ce0ef51a77efb1ba624e38ff17e01567f9d61747a5e49421dxlsHeodo
2022-01-12 02:44:09bfef414d160297040d78c63e659994d668374244c68cdf1ff2220420460fc9e2xlsSilentBuilder
2022-01-12 02:11:12e74813a3530752434c9dae40f5f1cbd367cc16a541547e3a2d5b35295539390dxlsHeodo
2022-01-12 01:50:03ca65e9146957f09c7cdbb479666279a91d9065b309e29fea80fc5e3b7bd49393xls SilentBuilder
2022-01-12 01:32:00b4e5abec6cda8d6601e77495e9eaf91756cfc834e816faa0fd327029da72d881xls SilentBuilder
2022-01-12 01:05:08c51d8cb997287ed9a94d3d5dfd322c073e1eeea0634bfe18f7d92a3d7fd85543xls Heodo
2022-01-12 00:38:14a196a7f762ccc713b4c96a96ad4d8d50c3a27964758730b87741f65f609c91abxls SilentBuilder
2022-01-12 00:11:221c5ad6e4718ec14f2180c8f047a7867ba5ce9f4498024dd2a4f66974ca1cdfcexlsSilentBuilder
2022-01-11 23:46:3466f5d61a2c4246c3bc39141c46e41bdc84c3f12a7db0b2ec3090eace070392d6xls SilentBuilder
2022-01-11 23:14:0444c675302c6fd62e15e5c9ae9bb98325870093ceed92a30601a13ad1dc2bd4f2xls SilentBuilder
2022-01-11 23:14:043a40147fc19ea2c26392705f778b6b8320556398cdf9de92409ade39efc2e999html