URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host diffenfabrics.com.

Database Entry


Host: diffenfabrics.com
Spamhaus DBL :Malware domain link
SURBL :Not listed
Quad9 :Blocked
AdGuard :Blocked link
Firstseen:2019-01-14 19:29:38 UTC

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-11-23 09:50:32 208.100.26.245ip245.208-100-26.static.steadfastdns.netNot listedAS32748 STEADFAST - Steadfast- USyes
2019-11-22 07:02:33 208.100.26.238ip238.208-100-26.static.steadfastdns.netNot listedAS32748 STEADFAST - Steadfast- USno
2019-11-19 12:45:36 208.100.26.234ip234.208-100-26.static.steadfastdns.netNot listedAS32748 STEADFAST - Steadfast- USno
2019-08-15 14:33:21 208.100.26.251ip251.208-100-26.static.steadfastdns.netNot listedAS32748 STEADFAST - Steadfast- USno
2019-01-14 19:29:42 137.59.148.200md-hk-12.webhostbox.netNot listedAS394695 PUBLIC-DOMAIN-REGISTRY - PDR- INno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-01-18 15:02:04http://diffenfabrics.com/Information/2019-01/Offlinedoc emotet ext heodo ext @Cryptolaemus1
2019-01-16 15:53:07http://diffenfabrics.com/Amazon/Clients/01_19/Offlinedoc emotet ext epoch1 heodo ext @Cryptolaemus1
2019-01-14 19:29:42http://diffenfabrics.com/SFuhk-J4Z3l_Io-SV/PaymentStatus/...Offlineemotet ext epoch2 heodo ext @Cryptolaemus1