CF1762376217718-tsm20251105200708

WWW.ROBTEX.COM - malware.zip

Search for IP or hostnames:

malware.zip checked at 2025-11-05T20:56:57.706Z 203ms 155/155/155 100% R:15

malware.zip

NSsandy.ns.cloudflare.com
A2606:4700:50::adf5:3adb๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRsandy.ns.cloudflare.com
A2803:f800:50::6ca2:c0db๐Ÿ‡จ๐Ÿ‡ท Cloudflare
PTRsandy.ns.cloudflare.com
A2a06:98c1:50::ac40:20db๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRsandy.ns.cloudflare.com
A108.162.192.219๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRsandy.ns.cloudflare.com
A172.64.32.219๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRsandy.ns.cloudflare.com
A173.245.58.219๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRsandy.ns.cloudflare.com
NStrace.ns.cloudflare.com
A2606:4700:58::a29f:2cac๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtrace.ns.cloudflare.com
A2803:f800:50::6ca2:c3ac๐Ÿ‡จ๐Ÿ‡ท Cloudflare
PTRtrace.ns.cloudflare.com
A2a06:98c1:50::ac40:23ac๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtrace.ns.cloudflare.com
A108.162.195.172๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtrace.ns.cloudflare.com
A162.159.44.172Cloudflare
PTRtrace.ns.cloudflare.com
A172.64.35.172๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRtrace.ns.cloudflare.com
A88.198.57.211๐Ÿ‡ฉ๐Ÿ‡ช Hetzner
PTRstatic.88-198-57-211.clients.your-server.de

zip

NSns-tld1.charlestonroadregistry.com
NSns-tld2.charlestonroadregistry.com
NSns-tld3.charlestonroadregistry.com
NSns-tld4.charlestonroadregistry.com
NSns-tld5.charlestonroadregistry.com

Starts with same word

Starts similarily

AI analysis

malware.zip resolves to one IP number: 88.198.57.211.

Other host names, for instance static.88-198-57-211.clients.your-server.de, share IP numbers with malware.zip.

malware.zip is delegated to two name servers sandy.ns.cloudflare.com and trace.ns.cloudflare.com.

malware.zip uses the same name server configuration as other domains, such as ownaship.co.nz.

malware.zip at least partially shares name servers with other domains, for instance gading.de, ok-bus.com, physicsinventions.com, fmknation.eu.com and shenzhentiebiaoji.com.

These name servers are commonly used alongside becky.ns.cloudflare.com and jerry.ns.cloudflare.com.

Host names with six IP numbers:

Host name sandy.ns.cloudflare.com points to: 2606:4700:50::adf5:3adb, 2803:f800:50::6ca2:c0db, 2a06:98c1:50::ac40:20db, 108.162.192.219, 172.64.32.219 and 173.245.58.219.

Host name trace.ns.cloudflare.com points to: 2606:4700:58::a29f:2cac, 2803:f800:50::6ca2:c3ac, 2a06:98c1:50::ac40:23ac, 108.162.195.172, 162.159.44.172 and 172.64.35.172.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq