CF1757524916918-tsm20250910161120

WWW.ROBTEX.COM - malwareanalysis.net

Search for IP or hostnames:

malwareanalysis.net checked at 2025-09-10T17:21:56.898Z 318ms 250/250/250 100% R:16

malwareanalysis.net

MXmailstore1.secureserver.net
A216.69.141.78🇺🇸 AS398101
PTRosplibsmtp01-v02.prod.phx3.secureserver.net
A216.69.141.114🇺🇸 AS398101
PTRosplibsmtp03-v02.prod.phx3.secureserver.net
A216.69.141.162🇺🇸 AS398101
PTRosplibsmtp02-v02.prod.phx3.secureserver.net
MXsmtp.secureserver.net
A216.69.141.71🇺🇸 AS398101
PTRosplibsmtp01-v01.prod.phx3.secureserver.net
A216.69.141.84🇺🇸 AS398101
PTRosplibsmtp02-v01.prod.phx3.secureserver.net
A216.69.141.113🇺🇸 AS398101
PTRosplibsmtp03-v01.prod.phx3.secureserver.net
NSmona.ns.cloudflare.com
A2606:4700:50::adf5:3ace🇺🇸 Cloudflare
PTRmona.ns.cloudflare.com
A2803:f800:50::6ca2:c0ce🇨🇷 Cloudflare
PTRmona.ns.cloudflare.com
A2a06:98c1:50::ac40:20ce🇺🇸 Cloudflare
PTRmona.ns.cloudflare.com
A108.162.192.206🇺🇸 Cloudflare
PTRmona.ns.cloudflare.com
A172.64.32.206🇺🇸 Cloudflare
PTRmona.ns.cloudflare.com
A173.245.58.206🇺🇸 Cloudflare
PTRmona.ns.cloudflare.com
NStoby.ns.cloudflare.com
A2606:4700:58::adf5:3bef🇺🇸 Cloudflare
PTRtoby.ns.cloudflare.com
A2803:f800:50::6ca2:c1ef🇨🇷 Cloudflare
PTRtoby.ns.cloudflare.com
A2a06:98c1:50::ac40:21ef🇺🇸 Cloudflare
PTRtoby.ns.cloudflare.com
A108.162.193.239🇺🇸 Cloudflare
PTRtoby.ns.cloudflare.com
A172.64.33.239🇺🇸 Cloudflare
PTRtoby.ns.cloudflare.com
A173.245.59.239🇺🇸 Cloudflare
PTRtoby.ns.cloudflare.com
A2606:4700:3033::6815:1ee🇺🇸 Cloudflare
A2606:4700:3037::ac43:9896🇺🇸 Cloudflare
A104.21.1.238Cloudflare
A172.67.152.150🇺🇸 Cloudflare

net

NSa.gtld-servers.net
NSb.gtld-servers.net
NSc.gtld-servers.net
NSd.gtld-servers.net
NSe.gtld-servers.net
NSf.gtld-servers.net
NSg.gtld-servers.net
NSh.gtld-servers.net
NSi.gtld-servers.net
NSj.gtld-servers.net
NSk.gtld-servers.net
NSl.gtld-servers.net
NSm.gtld-servers.net

AI analysis

malwareanalysis.net is associated with the following four IP addresses: 2606:4700:3033::6815:1ee, 2606:4700:3037::ac43:9896, 104.21.1.238, and 172.67.152.150.

IP numbers are shared between malwareanalysis.net and other host names such as dnull.xyz, kodo.in, www.azgives.org.cdn.cloudflare.net, lzboat.com, and idautu.com.

Two name servers, mona.ns.cloudflare.com and toby.ns.cloudflare.com, are the delegation for malwareanalysis.net.

The name server setup of malwareanalysis.net is shared with other domains such as unionps.org, feelb-infra.ovh, marosgroup.com, bcmfd.com, and diverseit.co.nz.

The name servers of malwareanalysis.net are at least partially shared with other domains such as malucelli.net, soundpollution.se, autismabc.cf, aaja.co, and porn-seekr.com.

mona.ns.cloudflare.com and toby.ns.cloudflare.com each point to six IP numbers: 2606:4700:50::adf5:3ace, 2803:f800:50::6ca2:c0ce, 2a06:98c1:50::ac40:20ce, 108.162.192.206, 172.64.32.206, and 173.245.58.206 for mona.ns.cloudflare.com, and 2606:4700:58::adf5:3bef, 2803:f800:50::6ca2:c1ef, 2a06:98c1:50::ac40:21ef, 108.162.193.239, 172.64.33.239, and 173.245.59.239 for toby.ns.cloudflare.com.

Two mail servers, mailstore1.secureserver.net and smtp.secureserver.net, manage malwareanalysis.net.

Just like other domains such as inviertecomopro.com, dhc4.com, pvwine.com, wit-mongers.com, and weddingvideowalls.com, malwareanalysis.net also has the same mail server setup.

mailstore1.secureserver.net and smtp.secureserver.net are DNS records that point to three IP numbers each: 216.69.141.78, 216.69.141.114, 216.69.141.162 and 216.69.141.71, 216.69.141.84, 216.69.141.113 respectively.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

CIRnDvc CF johedugfp 2025-09-10