URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: majesticeverest.com
Domain registrar:Domain.com -
Domain registration date:2020-10-16 02:15:07 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 11:59:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-10-20 12:44:51 209.99.64.52209-99-64-52.fwd.datafoundry.comNot listedAS23005 SWITCH-LTD- USno
2022-11-17 18:12:29 209.99.64.53209-99-64-53.fwd.datafoundry.comNot listedAS23005 SWITCH-LTD- USno
2022-01-11 11:59:04 195.201.179.80free-hosting-clients.freehosting.comNot listedAS24940 HETZNER-AS- DEno
2022-01-12 09:57:16 91.195.240.45Not listedAS47846 SEDO-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 12:09:04http://majesticeverest.com/webmaster/hYnVFJfDKC...Offlineemotet ext epoch4 heodo ext SilentBuilder xls Anonymous
2022-01-11 11:59:04http://majesticeverest.com/webmaster/hYnVFJfDKC4/Offlineemotet ext epoch4 redir-doc xls waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-11 23:12:37a7fe36211a0be63df4c3929830b8fc4e21fc0548b5446377ce9c83b3d1fd9339xlsSilentBuilder
2022-01-11 22:44:27e48f10cc12e08a32f523982c024f49dca076b06c6bd47b5cdf3d43aee5097091xlsHeodo
2022-01-11 22:14:45a3977aa3c358df0d9777be64e5c10b4a874fd0eac63183e92837d58038e5c4c1xls Heodo
2022-01-11 21:33:4362ec5aff1c6c20ac27c09077ff459dbe375a4d8841b6b47f85c7e51b7d26fd9bxls SilentBuilder
2022-01-11 17:06:07b68760371e947df68d4f69a1f9b43a56de082932df771b0ef088adaae130931cxls SilentBuilder
2022-01-11 16:42:281289c645dc8d8ff1a81ca74c01191f7f2deaa2b0b5337e534dc094a4510fd865xlsSilentBuilder
2022-01-11 16:35:41a6854cf37029a39a9a86de7f468e16d520cc046bef6fcd50290cd7c19843cd74xlsHeodo
2022-01-11 16:22:127955874a069fbde3eb5144ea8420f8b9e80d0c8ccd822c21b54150e53608116cxlsSilentBuilder
2022-01-11 15:51:320b52372793be51e4313df2cb64a2b43650e47eb55920506fa6ac3f0726da0a89xlsSilentBuilder
2022-01-11 15:41:31a9a04324ae8262b057c35e0caeb66a3ac8d63f947bfee642fa3893c3de491691html  
2022-01-11 12:53:50a1713a6e838656d686b56ed5f3822eac423bddd1637b56f9e24b3245ed798d99xls SilentBuilder
2022-01-11 12:41:0703c7dce022ba5927f0047e1ff4eae1b193016b57a701ea176975290263d7893fxls SilentBuilder
2022-01-11 12:26:35bd340cd4783cfc7f2e8d3362be0e846c95b1a0f89d28d9df48ed36cbfec86e87xls Heodo
2022-01-11 12:09:0307ba265b088af587be86368377a4266ac868709decd8fc747c2c4af835eea5edxls Heodo
2022-01-11 11:59:04b32f61a4a3718cc7169506d0495369fb9089834a72aea8f6e745faca5d408b02html