CF1759921639286-tsm20251008082644

WWW.ROBTEX.COM - rootkit.dk

Search for IP or hostnames:

rootkit.dk checked at 2025-10-08T11:07:19.264Z 302ms 295/295/295 100% R:16

rootkit.dk

MXaspmx2.googlemail.com
A2a00:1450:400b:c02::1b🇮🇪 Google
PTRdj-in-f27.1e100.net
A172.253.116.26🇺🇸 Google
PTRdj-in-f26.1e100.net
MXaspmx3.googlemail.com
A2a00:1450:400c:c00::1a🇧🇪 Google
PTRws-in-f26.1e100.net
PTRws-in-x1a.1e100.net
A173.194.76.26🇺🇸 Google
PTRws-in-f26.1e100.net
NSdiva.ns.cloudflare.com
A2606:4700:50::adf5:3a61🇺🇸 Cloudflare
PTRdiva.ns.cloudflare.com
A2803:f800:50::6ca2:c061🇨🇷 Cloudflare
PTRdiva.ns.cloudflare.com
A2a06:98c1:50::ac40:2061🇺🇸 Cloudflare
PTRdiva.ns.cloudflare.com
A108.162.192.97🇺🇸 Cloudflare
PTRdiva.ns.cloudflare.com
A172.64.32.97🇺🇸 Cloudflare
PTRdiva.ns.cloudflare.com
A173.245.58.97🇺🇸 Cloudflare
PTRdiva.ns.cloudflare.com
NSfrank.ns.cloudflare.com
A2606:4700:58::adf5:3ba6🇺🇸 Cloudflare
PTRfrank.ns.cloudflare.com
A2803:f800:50::6ca2:c1a6🇨🇷 Cloudflare
PTRfrank.ns.cloudflare.com
A2a06:98c1:50::ac40:21a6🇺🇸 Cloudflare
PTRfrank.ns.cloudflare.com
A108.162.193.166🇺🇸 Cloudflare
PTRfrank.ns.cloudflare.com
A172.64.33.166🇺🇸 Cloudflare
PTRfrank.ns.cloudflare.com
A173.245.59.166🇺🇸 Cloudflare
PTRfrank.ns.cloudflare.com
MXaspmx.l.google.com
A2607:f8b0:4023:c06::1a🇺🇸 Google
PTRdz-in-f26.1e100.net
A142.250.101.27🇺🇸 Google
PTRdz-in-f27.1e100.net
MXalt1.aspmx.l.google.com
A2607:f8b0:4023:100f::1a🇺🇸 Google
PTRyudfwra-in-f26.1e100.net
A192.178.220.27🇺🇸 Google
PTRyudfwra-in-f27.1e100.net
MXalt2.aspmx.l.google.com
A2607:f8b0:4003:c30::1b🇺🇸 Google
PTRyutulis-in-f27.1e100.net
A74.125.27.26🇺🇸 Google
PTRyutulis-in-f26.1e100.net
A2606:4700:3035::6815:3e94🇺🇸 Cloudflare
A2606:4700:3037::ac43:88b4🇺🇸 Cloudflare
A104.21.62.148Cloudflare
A172.67.136.180🇺🇸 Cloudflare

dk

NSb.nic.dk
NSc.nic.dk
NSh.nic.dk
NSl.nic.dk
NSs.nic.dk
NSt.nic.dk

Starts with same word

Starts similarily

AI analysis

rootkit.dk resolves to four IP numbers: 2606:4700:3035::6815:3e94, 2606:4700:3037::ac43:88b4, 104.21.62.148 and 172.67.136.180.

other host names for instance 0991lyg.com, fisherjonesfamilydentistry.com, 18hairygirls.com, aspcounts.com and merass.net share IP numbers with rootkit.dk.

rootkit.dk is delegated to two name servers: diva.ns.cloudflare.com and frank.ns.cloudflare.com.

rootkit.dk shares the same name server setup as other domains, for example iboi.pl, valuesec.dk, consolidated.coop, brightenergy.coop and akol.pl.

rootkit.dk at least partially shares name servers with other domains, for instance ftiria.org, lockensmartaccess.com, 1sthosting.dk, fg-express.com and skachat-teamviewer.ru.

Host names with six IP numbers:

diva.ns.cloudflare.com points to: 2606:4700:50::adf5:3a61, 2803:f800:50::6ca2:c061, 2a06:98c1:50::ac40:2061, 108.162.192.97, 172.64.32.97 and 173.245.58.97; frank.ns.cloudflare.com points to: 2606:4700:58::adf5:3ba6, 2803:f800:50::6ca2:c1a6, 2a06:98c1:50::ac40:21a6, 108.162.193.166, 172.64.33.166 and 173.245.59.166.

rootkit.dk is handled by five mail servers: aspmx2.googlemail.com, aspmx3.googlemail.com, aspmx.l.google.com, alt1.aspmx.l.google.com and alt2.aspmx.l.google.com.

rootkit.dk shares mail servers with other domains at least partially, including hefty.co, pluscred.com, dowdellpud.info, gardine.or.id and tierruca.es.

these mail servers are often used with the mail servers aspmx4.googlemail.com, aspmx5.googlemail.com, alt3.aspmx.l.google.com and alt4.aspmx.l.google.com.

Hosts with two IP numbers:

aspmx2.googlemail.com points to 2a00:1450:400b:c02::1b and 172.253.116.26.

aspmx3.googlemail.com points to 2a00:1450:400c:c00::1a and 173.194.76.26.

aspmx.l.google.com points to 2607:f8b0:4023:c06::1a and 142.250.101.27.

alt1.aspmx.l.google.com points to 2607:f8b0:4023:100f::1a and 192.178.220.27.

alt2.aspmx.l.google.com points to 2607:f8b0:4003:c30::1b and 74.125.27.26.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

HARLsml CF johedugfp 2025-10-08