CF1757179741855-tsm20250906081701

WWW.ROBTEX.COM - botnet.pw

Search for IP or hostnames:

botnet.pw checked at 2025-09-06T17:29:01.832Z 215ms 173/173/173 100% R:12

botnet.pw

MXmailforward31.cloudns.net
A2a00:1768:1001:9::31:2🇳🇱 NFOrce Internet Services :: 43350
PTRmf31.cloudmails.net
A109.201.133.112🇳🇱 NFOrce Internet Services :: 43350
PTRmf31.cloudmails.net
MXmailforward32.cloudns.net
A2a0b:1640:1:1:1:1:9d1:4b5a🇧🇬 Publicloud
PTRmf32-de.cloudmails.net
A185.206.180.109🇩🇪 Publicloud
PTRmf32-de.cloudmails.net
NSpns31.cloudns.net
A2a06:fb00:1::1:66🇧🇬 ClouDNS
PTRpns31.cloudns.net
A185.136.96.66🇺🇸 ClouDNS
PTRpns31.cloudns.net
NSpns32.cloudns.net
A2a06:fb00:1::2:66🇧🇬 ClouDNS
PTRpns32.cloudns.net
A185.136.97.66ClouDNS
PTRpns32.cloudns.net
NSpns33.cloudns.net
A2a06:fb00:1::3:66🇧🇬 ClouDNS
PTRpns33.cloudns.net
A185.136.98.66🇺🇸 ClouDNS
PTRpns33.cloudns.net
NSpns34.cloudns.net
A2a06:fb00:1::4:66🇧🇬 ClouDNS
PTRpns34.cloudns.net
A185.136.99.66ClouDNS
PTRpns34.cloudns.net
A127.0.0.1Netlen Internet
PTRlocalhost

pw

NSns1.nic.pw
NSns2.nic.pw
NSns5.nic.pw
NSns6.nic.pw

AI analysis

IP number 127.0.0.1 is pointed to by botnet.pw.

IP numbers are shared between botnet.pw and other host names such as 0.0.0.0.0.0.0.0.0.0.0.0.3.1.0.0.5.d.f.f.0.b.8.0.1.0.0.2.ip6.arpa, 50-56-202-157.static.cloud-ips.com, 204.44.96.228.static.quadranet.com, karlheinz.host.sk, and mv95.de.

Four name servers, pns31.cloudns.net, pns32.cloudns.net, pns33.cloudns.net, and pns34.cloudns.net, are delegated to botnet.pw.

The name servers of botnet.pw are at least partially shared with other domains such as suzukimotorcycle.co.za, kiparistour.ru, kumria.com, cxxi.ca, and imatico.de.

The name servers ns33.cloudns.net, ns34.cloudns.net, ns31.cloudns.net, and ns32.cloudns.net are typically utilized in conjunction.

pns31.cloudns.net, 2a06:fb00:1::1:66, and 185.136.96.66 are associated in DNS.

pns32.cloudns.net, 2a06:fb00:1::2:66, and 185.136.97.66 are also connected in DNS.

pns33.cloudns.net, 2a06:fb00:1::3:66, and 185.136.98.66 point to each other in DNS.

pns34.cloudns.net, 2a06:fb00:1::4:66, and 185.136.99.66 are linked through DNS as well.

Two mail servers, mailforward31.cloudns.net and mailforward32.cloudns.net, manage botnet.pw.

Just like other domains such as accordionsanonymous.org, trans-ip.ma, latestspecials.co.za, nferreira.com.br, and kimbino.bg, botnet.pw also has the same mail server setup.

Other domains such as bekido.com, mike.to, limir.de, xhoo.de, and prestixstudio.com share at least some mail servers with botnet.pw.

mailforward31.cloudns.net and mailforward32.cloudns.net each point to two IP numbers: 2a00:1768:1001:9::31:2, 109.201.133.112 and 2a0b:1640:1:1:1:1:9d1:4b5a, 185.206.180.109 respectively.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

djUzjMr CF johedugfp 2025-09-06