CF1759528309437-tsm20251003185623

WWW.ROBTEX.COM - malwareintel.com

Search for IP or hostnames:

malwareintel.com checked at 2025-10-03T21:51:49.422Z 151ms 202/202/202 100% R:14

malwareintel.com

MXinbound-smtp.us-east-1.amazonaws.com
A3.211.210.226🇺🇸 Amazon
PTRec2-3-211-210-226.compute-1.amazonaws.com
A44.206.9.87🇺🇸 Amazon
PTRec2-44-206-9-87.compute-1.amazonaws.com
A44.210.166.32🇺🇸 Amazon
PTRec2-44-210-166-32.compute-1.amazonaws.com
A54.164.173.191🇺🇸 Amazon
PTRec2-54-164-173-191.compute-1.amazonaws.com
A54.197.5.236🇺🇸 Amazon
PTRec2-54-197-5-236.compute-1.amazonaws.com
NSevangeline.ns.cloudflare.com
A2606:4700:50::a29f:2606🇺🇸 Cloudflare
PTRevangeline.ns.cloudflare.com
A2803:f800:50::6ca2:c206🇨🇷 Cloudflare
PTRevangeline.ns.cloudflare.com
A2a06:98c1:50::ac40:2206🇺🇸 Cloudflare
PTRevangeline.ns.cloudflare.com
A108.162.194.6🇺🇸 Cloudflare
PTRevangeline.ns.cloudflare.com
A162.159.38.6Cloudflare
PTRevangeline.ns.cloudflare.com
A172.64.34.6🇺🇸 Cloudflare
PTRevangeline.ns.cloudflare.com
NSsonny.ns.cloudflare.com
A2606:4700:58::a29f:2c42🇺🇸 Cloudflare
PTRsonny.ns.cloudflare.com
A2803:f800:50::6ca2:c342🇨🇷 Cloudflare
PTRsonny.ns.cloudflare.com
A2a06:98c1:50::ac40:2342🇺🇸 Cloudflare
PTRsonny.ns.cloudflare.com
A108.162.195.66🇺🇸 Cloudflare
PTRsonny.ns.cloudflare.com
A162.159.44.66Cloudflare
PTRsonny.ns.cloudflare.com
A172.64.35.66🇺🇸 Cloudflare
PTRsonny.ns.cloudflare.com

com

NSa.gtld-servers.net
NSb.gtld-servers.net
NSc.gtld-servers.net
NSd.gtld-servers.net
NSe.gtld-servers.net
NSf.gtld-servers.net
NSg.gtld-servers.net
NSh.gtld-servers.net
NSi.gtld-servers.net
NSj.gtld-servers.net
NSk.gtld-servers.net
NSl.gtld-servers.net
NSm.gtld-servers.net

Starts with same word

Starts similarily

AI analysis

malwareintel.com's delegation uses two name servers: evangeline.ns.cloudflare.com and sonny.ns.cloudflare.com.

malwareintel.com uses the same name server setup as other domains, such as popupasia.com, clownstrike.com, cr0vvdstrike.com, cdpince.hu and miriam.mx.

malwareintel.com at least partially shares name servers with other domains, including cdhcjz.com, jordanretro-11.us.com, ssspread.com, kenyanbigboy.com and smileexpo.ru.

These name servers are often used with deborah.ns.cloudflare.com and desiree.ns.cloudflare.com.

Host names with six IP numbers:

evangeline.ns.cloudflare.com points to 2606:4700:50::a29f:2606, 2803:f800:50::6ca2:c206, 2a06:98c1:50::ac40:2206, 108.162.194.6, 162.159.38.6 and 172.64.34.6.

sonny.ns.cloudflare.com points to 2606:4700:58::a29f:2c42, 2803:f800:50::6ca2:c342, 2a06:98c1:50::ac40:2342, 108.162.195.66, 162.159.44.66 and 172.64.35.66.

A single mail server handles malwareintel.com, inbound-smtp.us-east-1.amazonaws.com.

malwareintel.com shares the same mail server setup as other domains, for instance luckyhunangardenbf.com, swiftapp.com.br, chinakingbuffeter.com, j-body.org and iposcentral-qa.com.

malwareintel.com shares at least some mail servers with other domains, for example redmap.atlassian.net, indigoag.atlassian.net, rivianautomotivellc.atlassian.net, wastelogics.atlassian.net and lucidtech.ai.

These mail servers are commonly used with inbound-smtp.us-west-2.amazonaws.com, aspmx.l.google.com, alt1.aspmx.l.google.com, alt2.aspmx.l.google.com, alt3.aspmx.l.google.com and alt4.aspmx.l.google.com.

inbound-smtp.us-east-1.amazonaws.com points to five IP numbers: 3.211.210.226, 44.206.9.87, 44.210.166.32, 54.164.173.191 and 54.197.5.236.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

kQBhIHE CF johedugfp 2025-10-03