ransompump.com - robtex.com

ransompump.com

DNSSEC⚠️ Not signed
A3.33.251.168πŸ‡ΊπŸ‡Έ Amazon
PTRaec037177372cc6cd.awsglobalaccelerator.com
A15.197.225.128πŸ‡ΊπŸ‡Έ Amazon
NSns37.domaincontrol.com ⭐
A2603:5:21c1::13πŸ‡ΊπŸ‡Έ GODADDY-DNS
PTRns37.domaincontrol.com
A97.74.108.19πŸ‡ΊπŸ‡Έ GODADDY-DNS
PTRns37.domaincontrol.com
NSns38.domaincontrol.com
A2603:5:22c1::13πŸ‡ΊπŸ‡Έ GODADDY-DNS
PTRns38.domaincontrol.com
A173.201.76.19πŸ‡ΊπŸ‡Έ GODADDY-DNS
PTRns38.domaincontrol.com
MXmxa-009d4401.gslb.pphosted.com ⭐
A66.159.248.6πŸ‡ΊπŸ‡Έ Proofpoint
PTRmx0a-009d4401.pphosted.com
MXmxb-009d4401.gslb.pphosted.com ⭐
A66.159.239.231πŸ‡ΊπŸ‡Έ Proofpoint
PTRmx0b-009d4401.pphosted.com
TXTv=spf1 include:spf.protection.outlook.com include:spfus.rocketseed.com includ...
TXTMS=ms60007447
TXTMS=ms49058496
TXTppe-7bcb3298f83aa777126d69d920abf0c5b3a7cb5f
SOAns37.domaincontrol.comdns@jomax.net 2025-09-18 #2

com

DNS History

13 records (6 active, 7 former)

20162017201820192020202120222023202420252026NSns37.domaincontrol.comns38.domaincontrol.comns11.glowhost.netns12.glowhost.netns29.glowhost.netns30.glowhost.netMXmxa-009d4401.gslb.pphosted.commxb-009d4401.gslb.pphosted.comransompump.comA15.197.225.1283.33.251.168209.95.35.3850.115.127.4
β—‹NSns11.glowhost.net2016-09-19 β†’ 2017-05-21 Β· 4 obs
β—‹ 2016-03-30 14:56:34
● 2016-09-19 19:38:56
● 2017-05-21 10:00:08
β—‹ 2026-02-21 19:39:52
β—‹NSns12.glowhost.net2016-09-19 β†’ 2017-05-21 Β· 4 obs
β—‹ 2016-03-30 14:56:34
● 2016-09-19 19:38:56
● 2017-05-21 10:00:08
β—‹ 2026-02-21 19:39:52
β—‹NSns29.glowhost.net2015-05-09 β†’ 2016-03-30 Β· 4 obs
● 2015-05-09 21:24:00
● 2016-03-30 14:56:34
β—‹ 2016-09-19 19:38:56
β—‹ 2026-02-21 19:39:52
β—‹NSns30.glowhost.net2015-05-09 β†’ 2016-03-30 Β· 4 obs
● 2015-05-09 21:24:00
● 2016-03-30 14:56:34
β—‹ 2016-09-19 19:38:56
β—‹ 2026-02-21 19:39:52
●NSns37.domaincontrol.com2026-02-21 β†’ 2026-02-21 Β· 2 obs
β—‹ 2017-05-21 10:00:08
● 2026-02-21 19:39:52
●NSns38.domaincontrol.com2026-02-21 β†’ 2026-02-21 Β· 2 obs
β—‹ 2017-05-21 10:00:08
● 2026-02-21 19:39:52
●MXmxa-009d4401.gslb.pphosted.com2026-02-21 β†’ 2026-02-21 Β· 2 obs
β—‹ 2017-05-21 10:00:08
● 2026-02-21 19:39:52
●MXmxb-009d4401.gslb.pphosted.com2026-02-21 β†’ 2026-02-21 Β· 2 obs
β—‹ 2017-05-21 10:00:08
● 2026-02-21 19:39:52
β—‹MXransompump.com2015-05-09 β†’ 2017-05-21 Β· 3 obs
● 2015-05-09 21:24:00
● 2017-05-21 10:00:08
β—‹ 2026-02-21 19:39:52
●A15.197.225.1282026-02-21 β†’ 2026-02-21 Β· 2 obs
β—‹ 2017-05-21 10:00:08
● 2026-02-21 19:39:52
β—‹A209.95.35.382016-09-19 β†’ 2017-05-21 Β· 4 obs
β—‹ 2016-03-30 14:56:34
● 2016-09-19 19:38:56
● 2017-05-21 10:00:08
β—‹ 2026-02-21 19:39:52
●A3.33.251.1682026-02-21 β†’ 2026-02-21 Β· 2 obs
β—‹ 2017-05-21 10:00:08
● 2026-02-21 19:39:52
β—‹A50.115.127.42015-05-09 β†’ 2016-03-30 Β· 4 obs
● 2015-05-09 21:24:00
● 2016-03-30 14:56:34
β—‹ 2016-09-19 19:38:56
β—‹ 2026-02-21 19:39:52

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
ransompump.comns37.domaincontrol.com, ns38.domaincontrol.com-

βœ… Authoritative Response

Server: 97.74.108.19

NS records: ns37.domaincontrol.com, ns38.domaincontrol.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for ransompump.com (unsigned zone)

⏱️ Timing

Total: 54ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A215.197.225.128, 3.33.251.168
NS2ns37.domaincontrol.com, ns38.domaincontrol.com
MX2mxb-009d4401.gslb.pphosted.com (pri: 10), mxa-009d4401.gslb.pphosted.com (pri: 10)
TXT4v=spf1 include:spf.protection.outlook.co, MS=ms60007447...
SOA1ns37.domaincontrol.com dns.jomax.net

AI analysis

ransompump.com points to two IP numbers: 3.33.251.168 and 15.197.225.128.

Other host names such as thenoseprint.com, alfuttaim.group, bahrain-sms.com, sccorella.com and thewelcomingchurch.com share IP numbers with ransompump.com.

ransompump.com is delegated to two name servers: ns37.domaincontrol.com and ns38.domaincontrol.com.

ransompump.com uses the same name server setup as other domains, including logicore.net, faxhound.com, cabintes.com, lookhere.in and trailernomads.com.

Host names with two IP numbers:

ns37.domaincontrol.com points to 2603:5:21c1::13 and 97.74.108.19.

ns38.domaincontrol.com points to 2603:5:22c1::13 and 173.201.76.19.

ransompump.com is handled by two mail servers: mxa-009d4401.gslb.pphosted.com and mxb-009d4401.gslb.pphosted.com.

ransompump.com uses the same mail server setup as other domains, for instance semraz.com, aetnaplastics.com, cortrol.com, hipco.com and es-technologies.com.

Hostnames with a single IP

mxa-009d4401.gslb.pphosted.com resolves to: 66.159.248.6.

mxb-009d4401.gslb.pphosted.com resolves to: 66.159.239.231.