CF1762421239496-tsm20251105200708

WWW.ROBTEX.COM - malwareanalysis.net

Search for IP or hostnames:

malwareanalysis.net checked at 2025-11-06T09:27:19.482Z 293ms 253/253/253 100% R:14

malwareanalysis.net

MXmailstore1.secureserver.net
A216.69.141.78๐Ÿ‡บ๐Ÿ‡ธ AS398101
PTRosplibsmtp01-v02.prod.phx3.secureserver.net
A216.69.141.114๐Ÿ‡บ๐Ÿ‡ธ AS398101
PTRosplibsmtp03-v02.prod.phx3.secureserver.net
A216.69.141.162๐Ÿ‡บ๐Ÿ‡ธ AS398101
PTRosplibsmtp02-v02.prod.phx3.secureserver.net
MXsmtp.secureserver.net
A216.69.141.71๐Ÿ‡บ๐Ÿ‡ธ AS398101
PTRosplibsmtp01-v01.prod.phx3.secureserver.net
A216.69.141.84๐Ÿ‡บ๐Ÿ‡ธ AS398101
PTRosplibsmtp02-v01.prod.phx3.secureserver.net
A216.69.141.113๐Ÿ‡บ๐Ÿ‡ธ AS398101
PTRosplibsmtp03-v01.prod.phx3.secureserver.net
NSmona.ns.cloudflare.com
A2606:4700:50::adf5:3ace๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRmona.ns.cloudflare.com
A2803:f800:50::6ca2:c0ce๐Ÿ‡จ๐Ÿ‡ท Cloudflare
PTRmona.ns.cloudflare.com
A2a06:98c1:50::ac40:20ce๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRmona.ns.cloudflare.com
A108.162.192.206๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRmona.ns.cloudflare.com
A172.64.32.206๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRmona.ns.cloudflare.com
A173.245.58.206๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRmona.ns.cloudflare.com
NStoby.ns.cloudflare.com
A2606:4700:58::adf5:3bef๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtoby.ns.cloudflare.com
A2803:f800:50::6ca2:c1ef๐Ÿ‡จ๐Ÿ‡ท Cloudflare
PTRtoby.ns.cloudflare.com
A2a06:98c1:50::ac40:21ef๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtoby.ns.cloudflare.com
A108.162.193.239๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtoby.ns.cloudflare.com
A172.64.33.239๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtoby.ns.cloudflare.com
A173.245.59.239๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtoby.ns.cloudflare.com
A2606:4700:3033::6815:1ee๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
A2606:4700:3037::ac43:9896๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
A104.21.1.238Cloudflare
A172.67.152.150๐Ÿ‡บ๐Ÿ‡ธ Cloudflare

net

NSa.gtld-servers.net
NSb.gtld-servers.net
NSc.gtld-servers.net
NSd.gtld-servers.net
NSe.gtld-servers.net
NSf.gtld-servers.net
NSg.gtld-servers.net
NSh.gtld-servers.net
NSi.gtld-servers.net
NSj.gtld-servers.net
NSk.gtld-servers.net
NSl.gtld-servers.net
NSm.gtld-servers.net

Starts with same word

Starts similarily

AI analysis

Four IP numbers are pointed to by malwareanalysis.net: 2606:4700:3033::6815:1ee, 2606:4700:3037::ac43:9896, 104.21.1.238 and 172.67.152.150.

other host names including dnull.xyz, kodo.in, cacfoodservice.com, www.azgives.org.cdn.cloudflare.net and www.flixmomo.org share IP numbers with malwareanalysis.net.

malwareanalysis.net is delegated to two name servers mona.ns.cloudflare.com and toby.ns.cloudflare.com.

malwareanalysis.net shares the same name server setup as other domains, for instance unionps.org, feelb-infra.ovh, marosgroup.com, bcmfd.com and diverseit.co.nz.

malwareanalysis.net at least partially shares name servers with other domains, for instance malucelli.net, hwj280.com, soundpollution.se, testmo.com and autismabc.cf.

these name servers are often used together with sevki.ns.cloudflare.com, ivan.ns.cloudflare.com, gordon.ns.cloudflare.com and mario.ns.cloudflare.com.

Host names with six IP numbers:

Host name mona.ns.cloudflare.com points to: 2606:4700:50::adf5:3ace, 2803:f800:50::6ca2:c0ce, 2a06:98c1:50::ac40:20ce, 108.162.192.206, 172.64.32.206 and 173.245.58.206.

Host name toby.ns.cloudflare.com points to: 2606:4700:58::adf5:3bef, 2803:f800:50::6ca2:c1ef, 2a06:98c1:50::ac40:21ef, 108.162.193.239, 172.64.33.239 and 173.245.59.239.

Two mail servers handle malwareanalysis.net: mailstore1.secureserver.net and smtp.secureserver.net.

malwareanalysis.net shares the same mail server setup as other domains, for instance inviertecomopro.com, dhc4.com, pvwine.com, wit-mongers.com and weddingvideowalls.com.

Host names with three IPs:

mailstore1.secureserver.net points to 216.69.141.78, 216.69.141.114 and 216.69.141.162.

smtp.secureserver.net points to 216.69.141.71, 216.69.141.84 and 216.69.141.113.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq