Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
ref26159.com
Domain ⚠ 4 PULSE HITS ⚡ CACHED
↓ CSV ↓ JSON
35
/100
MEDIUM
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
MEDIUM 35/100 confidence
Some evidence of suspicious activity. Further investigation recommended before action.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
20/30
4 pulses
VIRUSTOTAL
15/35
4/94 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
NOT LISTED
General Information
Indicatorref26159.com
Whois Domainhttp://whois.domaintools.com/ref26159.com
Typedomain
AlienVault OTX Analysis ↗ View on OTX
4
PULSE HITS
Pulse Hits 4
Indicator Type Domain
Threat Level
Source ⚡ CACHED
ASSOCIATED PULSES
PULSE NAMEDATE
Phishing | Mar 11, 2026 | Part 321/776 2026-03-10
Phishing | Feb 15, 2026 | Part 295/754 2026-02-14
Phishing | Feb 11, 2026 | Part 319/783 2026-02-11
Phishing | 2026-01-31 | Part 79/163 2026-02-03
VirusTotal Analysis ↗ View on VirusTotal
4/94
DETECTIONS
SUSPICIOUS
Malicious 4
Suspicious 1
Harmless 56
Undetected 33
Reputation 0
TOP DETECTIONS
VENDORRESULT
ADMINUSLabs malicious
Phishing Database phishing
SOCRadar phishing
Sophos malware
alphaMountain.ai suspicious
URLhaus (abuse.ch) ↗ View on URLhaus
⚠ HTTPSConnectionPool(host='urlhaus-api.abuse.ch', port=443): Max retries exceeded with url: /v1/host/ (Caused by NameResolutionError("<urllib3.connection.HTTPSConnection object at 0x7b06fa6edb50>: Failed to resolve 'urlhaus-api.abuse.ch' ([Errno -3] Temporary failure in name resolution)"))