phishingmails.de - robtex.com

phishingmails.de

DNSSECโš ๏ธ Not signed
A202.61.246.146๐Ÿ‡ฆ๐Ÿ‡น netcup-AS202.61.244.0/22
PTRv220210262663144333.megasrv.de
NSns1.resellerinterface.de โญ
A2001:67c:1bc::21๐Ÿ‡ฆ๐Ÿ‡น RCODEZERO-ANYCAST-SEC1-TLD2001:67c:1bc::/48 IPCom-NET Anycast
PTRns1.mainns.de
A192.174.68.21๐Ÿ‡ฆ๐Ÿ‡น RCODEZERO-ANYCAST-SEC1-TLD192.174.68.0/24 NICat-anycast-net
PTRns1.mainns.de
NSns2.resellerinterface.de
A2001:67c:10b8::21๐Ÿ‡จ๐Ÿ‡ญ RCODEZERO-ANYCAST-SEC22001:67c:10b8::/48 IPCOM-anycast-net
PTRns2.mainns.eu
A176.97.158.21๐Ÿ‡ฆ๐Ÿ‡น RCODEZERO-ANYCAST-SEC2176.97.158.0/24 NICat-anycast-net
PTRns2.mainns.eu
NSns3.resellerinterface.de
A2001:67c:1bc::20๐Ÿ‡ฆ๐Ÿ‡น RCODEZERO-ANYCAST-SEC1-TLD2001:67c:1bc::/48 IPCom-NET Anycast
PTRns3.mainns.net
A192.174.68.20๐Ÿ‡ฆ๐Ÿ‡น RCODEZERO-ANYCAST-SEC1-TLD192.174.68.0/24 NICat-anycast-net
PTRns3.mainns.net
SOAns1.resellerinterface.dezoltan\@kovacsnies.googlemail.com serial=1773273600

de

DNSSEC๐Ÿ”’ Signed (DS record present)
NSf.nic.de โญ
NSa.nic.de
NSl.de.net โš ๏ธ Not in parent delegation
NSn.de.net โš ๏ธ Not in parent delegation
NSs.de.net โš ๏ธ Not in parent delegation
NSz.nic.de
SOAf.nic.dedns-operations@denic.de serial=1771291602
WOT: SAFE (61/100)

DNS History

14 records (4 active, 10 former)

20162017201820192020202120222023202420252026NSns1.resellerinterface.dens2.resellerinterface.dens3.resellerinterface.dens-de.1and1-dns.bizns-de.1and1-dns.comns-de.1and1-dns.dens-de.1and1-dns.orgMXmx00.kundenserver.demx01.kundenserver.deA202.61.246.1462001:8d8:100f:f000::27b2001:8d8:964:295f:c4fc:87d9:e610:0212.227.137.197217.160.0.146
โ—‹NSns-de.1and1-dns.biz2015-07-09 โ†’ 2017-01-31 ยท 4 obs
โ— 2015-07-09 22:37:34
โ— 2017-01-31 20:55:08
โ—‹ 2026-03-13 22:49:14
โ—‹ 2026-03-13 22:49:16
โ—‹NSns-de.1and1-dns.com2015-07-09 โ†’ 2017-01-31 ยท 4 obs
โ— 2015-07-09 22:37:34
โ— 2017-01-31 20:55:08
โ—‹ 2026-03-13 22:49:14
โ—‹ 2026-03-13 22:49:16
โ—‹NSns-de.1and1-dns.de2015-07-09 โ†’ 2017-01-31 ยท 4 obs
โ— 2015-07-09 22:37:34
โ— 2017-01-31 20:55:08
โ—‹ 2026-03-13 22:49:14
โ—‹ 2026-03-13 22:49:16
โ—‹NSns-de.1and1-dns.org2015-07-09 โ†’ 2017-01-31 ยท 4 obs
โ— 2015-07-09 22:37:34
โ— 2017-01-31 20:55:08
โ—‹ 2026-03-13 22:49:14
โ—‹ 2026-03-13 22:49:16
โ—NSns1.resellerinterface.de2026-03-13 โ†’ 2026-03-13 ยท 3 obs
โ—‹ 2017-01-31 20:55:08
โ— 2026-03-13 22:49:14
โ— 2026-03-13 22:49:16
โ—NSns2.resellerinterface.de2026-03-13 โ†’ 2026-03-13 ยท 3 obs
โ—‹ 2017-01-31 20:55:08
โ— 2026-03-13 22:49:14
โ— 2026-03-13 22:49:16
โ—NSns3.resellerinterface.de2026-03-13 โ†’ 2026-03-13 ยท 3 obs
โ—‹ 2017-01-31 20:55:08
โ— 2026-03-13 22:49:14
โ— 2026-03-13 22:49:16
โ—‹MXmx00.kundenserver.de2015-07-09 โ†’ 2017-01-31 ยท 4 obs
โ— 2015-07-09 22:37:34
โ— 2017-01-31 20:55:08
โ—‹ 2026-03-13 22:49:14
โ—‹ 2026-03-13 22:49:16
โ—‹MXmx01.kundenserver.de2015-07-09 โ†’ 2017-01-31 ยท 4 obs
โ— 2015-07-09 22:37:34
โ— 2017-01-31 20:55:08
โ—‹ 2026-03-13 22:49:14
โ—‹ 2026-03-13 22:49:16
โ—‹A2001:8d8:100f:f000::27b2016-05-29 โ†’ 2017-01-31 ยท 5 obs
โ—‹ 2016-02-09 12:14:24
โ— 2016-05-29 09:25:04
โ— 2017-01-31 20:55:08
โ—‹ 2026-03-13 22:49:14
โ—‹ 2026-03-13 22:49:16
โ—‹A2001:8d8:964:295f:c4fc:87d9:e610:02015-07-09 โ†’ 2016-02-09 ยท 4 obs
โ— 2015-07-09 22:37:34
โ— 2016-02-09 12:14:24
โ—‹ 2016-05-29 09:25:04
โ—‹ 2026-03-13 22:49:16
โ—A202.61.246.1462026-03-13 โ†’ 2026-03-13 ยท 3 obs
โ—‹ 2017-01-31 20:55:08
โ— 2026-03-13 22:49:14
โ— 2026-03-13 22:49:16
โ—‹A212.227.137.1972015-07-09 โ†’ 2016-02-09 ยท 4 obs
โ— 2015-07-09 22:37:34
โ— 2016-02-09 12:14:24
โ—‹ 2016-05-29 09:25:04
โ—‹ 2026-03-13 22:49:16
โ—‹A217.160.0.1462016-05-29 โ†’ 2017-01-31 ยท 5 obs
โ—‹ 2016-02-09 12:14:24
โ— 2016-05-29 09:25:04
โ— 2017-01-31 20:55:08
โ—‹ 2026-03-13 22:49:14
โ—‹ 2026-03-13 22:49:16

๐Ÿ” DNS Trace

๐Ÿ“‹ Delegation Chain

ZoneNameserversGlue
dea.nic.de, f.nic.de, z.nic.de-
phishingmails.dens2.resellerinterface.de, ns3.resellerinterface.de, ns1.resellerinterface.de-

โœ… Authoritative Response

Server: 176.97.158.21

NS records: ns2.resellerinterface.de, ns3.resellerinterface.de, ns1.resellerinterface.de

๐Ÿ”’ DNSSEC Status

โš ๏ธ Insecure (no DNSSEC)

No DS record for phishingmails.de (unsigned zone)

โฑ๏ธ Timing

Total: 665ms | Queries: -

๐Ÿ“„ Records

TypeCountSample Data
A1202.61.246.146
NS3ns1.resellerinterface.de, ns2.resellerinterface.de...
SOA1ns1.resellerinterface.de zoltan\.kovacsn

Analysis

IP Addresses

phishingmails.de resolves to one IP number: 202.61.246.146.

other host names including mail.byowner.de, chirurg-online.de, mail.conita.de, einstand.de and coveru.de share IP numbers with phishingmails.de.

Name Servers

phishingmails.de is delegated to three name servers ns1.resellerinterface.de, ns2.resellerinterface.de and ns3.resellerinterface.de.

phishingmails.de at least partially shares name servers with other domains, for instance webserviceberlin.de, snut2008.de, leadassemblyofgod.com, 22d.de and vetipedia.net.

Host names with two IP numbers:

ns1.resellerinterface.de points to: 2001:67c:1bc::21 and 192.174.68.21.

ns2.resellerinterface.de points to: 2001:67c:10b8::21 and 176.97.158.21.

ns3.resellerinterface.de points to: 2001:67c:1bc::20 and 192.174.68.20.