ransomware.org - robtex.com

Search for stuff

ransomware.org

DNSSEC⚠️ Not signed
A162.159.134.42 Cloudflare
A162.159.135.42 Cloudflare
NSns-1478.awsdns-56.org ⭐
A2600:9000:5305:c600::1πŸ‡ΊπŸ‡Έ Amazon
PTRns-1478.awsdns-56.org
A205.251.197.198πŸ‡ΊπŸ‡Έ Amazon
PTRns-1478.awsdns-56.org
NSns-1574.awsdns-04.co.uk
A2600:9000:5306:2600::1πŸ‡ΊπŸ‡Έ Amazon
PTRns-1574.awsdns-04.co.uk
A205.251.198.38πŸ‡ΊπŸ‡Έ Amazon
PTRns-1574.awsdns-04.co.uk
NSns-571.awsdns-07.net
A2600:9000:5302:3b00::1πŸ‡ΊπŸ‡Έ Amazon
PTRns-571.awsdns-07.net
A205.251.194.59πŸ‡ΊπŸ‡Έ Amazon
PTRns-571.awsdns-07.net
NSns-80.awsdns-10.com
A2600:9000:5300:5000::1πŸ‡ΊπŸ‡Έ Amazon
PTRns-80.awsdns-10.com
A205.251.192.80πŸ‡ΊπŸ‡Έ Amazon
PTRns-80.awsdns-10.com
MXmx1.privateemail.com ⭐
A162.255.118.7πŸ‡ΊπŸ‡Έ NAMCHEAP-PH
PTRmx1.privateemail.com
MXmx2.privateemail.com ⭐
A162.255.118.8πŸ‡ΊπŸ‡Έ NAMCHEAP-PH
PTRmx2.privateemail.com
TXTca3-a05d058f82ec451caed6240b0ff3f556
TXTca3-a76b8c2451b144d8a30749016649bf95
TXTgoogle-site-verification=QmC3P9aozeeurlx7DFPohwzShhRzW7Kd--ScvalmuBE
TXTv=spf1 -all
TXTv=spf1 include:servers.mcsv.net -all
TXTv=spf1 include:spf.privateemail.com ~all
SOAns-1478.awsdns-56.orgawsdns-hostmaster@amazon.com serial=1

org

DNSSECπŸ”’ Signed (DS record present)
NSa0.org.afilias-nst.info ⭐ ⚠️ Not in parent delegation
NSa2.org.afilias-nst.info ⚠️ Not in parent delegation
NSb0.org.afilias-nst.org
NSb2.org.afilias-nst.org
NSc0.org.afilias-nst.info ⚠️ Not in parent delegation
NSd0.org.afilias-nst.org
SOAa0.org.afilias-nst.infohostmaster@donuts.email serial=1771291736

Same first word

Similar names

DNS History

15 records (8 active, 7 former)

20162017201820192020202120222023202420252026NSns-1478.awsdns-56.orgns-1574.awsdns-04.co.ukns-571.awsdns-07.netns-80.awsdns-10.comns1.sedoparking.comns2.sedoparking.comMXmx1.privateemail.commx2.privateemail.comlocalhostmail.nickstel.comA162.159.134.42162.159.135.42144.76.0.242144.76.1.13072.52.4.119
●NSns-1478.awsdns-56.org2026-02-18 β†’ 2026-02-18 Β· 2 obs
β—‹ 2017-05-12 22:29:04
● 2026-02-18 13:00:58
●NSns-1574.awsdns-04.co.uk2026-02-18 β†’ 2026-02-18 Β· 2 obs
β—‹ 2017-05-12 22:29:04
● 2026-02-18 13:00:58
●NSns-571.awsdns-07.net2026-02-18 β†’ 2026-02-18 Β· 2 obs
β—‹ 2017-05-12 22:29:04
● 2026-02-18 13:00:58
●NSns-80.awsdns-10.com2026-02-18 β†’ 2026-02-18 Β· 2 obs
β—‹ 2017-05-12 22:29:04
● 2026-02-18 13:00:58
β—‹NSns1.sedoparking.com2015-05-28 β†’ 2017-05-12 Β· 3 obs
● 2015-05-28 13:51:18
● 2017-05-12 22:29:04
β—‹ 2026-02-18 13:00:58
β—‹NSns2.sedoparking.com2015-05-28 β†’ 2017-05-12 Β· 3 obs
● 2015-05-28 13:51:18
● 2017-05-12 22:29:04
β—‹ 2026-02-18 13:00:58
β—‹MXlocalhost2016-09-14 β†’ 2017-05-12 Β· 4 obs
β—‹ 2016-03-27 22:42:14
● 2016-09-14 04:59:28
● 2017-05-12 22:29:04
β—‹ 2026-02-18 13:00:58
β—‹MXmail.nickstel.com2015-05-28 β†’ 2016-03-27 Β· 4 obs
● 2015-05-28 13:51:18
● 2016-03-27 22:42:14
β—‹ 2016-09-14 04:59:28
β—‹ 2026-02-18 13:00:58
●MXmx1.privateemail.com2026-02-18 β†’ 2026-02-18 Β· 2 obs
β—‹ 2017-05-12 22:29:04
● 2026-02-18 13:00:58
●MXmx2.privateemail.com2026-02-18 β†’ 2026-02-18 Β· 2 obs
β—‹ 2017-05-12 22:29:04
● 2026-02-18 13:00:58
β—‹A144.76.0.2422017-05-12 β†’ 2017-05-12 Β· 3 obs
β—‹ 2015-05-28 13:51:18
● 2017-05-12 22:29:04
β—‹ 2026-02-18 13:00:58
β—‹A144.76.1.1302017-05-12 β†’ 2017-05-12 Β· 3 obs
β—‹ 2015-05-28 13:51:18
● 2017-05-12 22:29:04
β—‹ 2026-02-18 13:00:58
●A162.159.134.422026-02-18 β†’ 2026-02-18 Β· 2 obs
β—‹ 2017-05-12 22:29:04
● 2026-02-18 13:00:58
●A162.159.135.422026-02-18 β†’ 2026-02-18 Β· 2 obs
β—‹ 2017-05-12 22:29:04
● 2026-02-18 13:00:58
β—‹A72.52.4.1192015-05-28 β†’ 2017-05-12 Β· 3 obs
● 2015-05-28 13:51:18
● 2017-05-12 22:29:04
β—‹ 2026-02-18 13:00:58

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
ransomware.orgns-80.awsdns-10.com, ns-1574.awsdns-04.co.uk, ns-1478.awsdns-56.org, ns-571.awsdns-07.net-

βœ… Authoritative Response

Server: 205.251.194.59

NS records: ns-80.awsdns-10.com, ns-1574.awsdns-04.co.uk, ns-1478.awsdns-56.org, ns-571.awsdns-07.net

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for ransomware.org (unsigned zone)

⏱️ Timing

Total: 83ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2162.159.134.42, 162.159.135.42
NS4ns-1478.awsdns-56.org, ns-1574.awsdns-04.co.uk...
MX2mx1.privateemail.com (pri: 10), mx2.privateemail.com (pri: 10)
TXT6ca3-a05d058f82ec451caed6240b0ff3f556, ca3-a76b8c2451b144d8a30749016649bf95...
SOA1ns-1478.awsdns-56.org awsdns-hostmaster.

AI analysis

ransomware.org resolves to two IPs: 162.159.134.42 and 162.159.135.42.

other host names for instance moneyandking.com, acmchem.com, sui.lop.net, drsisco.com and www.smytheinsolvency.com share IP numbers with ransomware.org.

ransomware.org is delegated to four name servers: ns-80.awsdns-10.com, ns-571.awsdns-07.net, ns-1478.awsdns-56.org and ns-1574.awsdns-04.co.uk.

ransomware.org at least partially shares name servers with other domains, for instance yinzoo.com, d1z43etpa00ikg.cloudfront.net, pass.co.kr, science.last-mile.a2z.com and calcara.net.

These name servers are commonly used with the name servers ns-869.awsdns-44.net, ns-1496.awsdns-59.org, ns-1892.awsdns-44.co.uk, ns-93.awsdns-11.com, ns-1881.awsdns-43.co.uk, ns-1110.awsdns-10.org, ns-1466.awsdns-55.org, ns-424.awsdns-53.com and ns-1547.awsdns-01.co.uk.

Host names with two IP numbers:

Host name ns-80.awsdns-10.com points to: 2600:9000:5300:5000::1 and 205.251.192.80.

Host name ns-571.awsdns-07.net points to: 2600:9000:5302:3b00::1 and 205.251.194.59.

Host name ns-1478.awsdns-56.org points to: 2600:9000:5305:c600::1 and 205.251.197.198.

Host name ns-1574.awsdns-04.co.uk points to: 2600:9000:5306:2600::1 and 205.251.198.38.

ransomware.org is handled by two mail servers: mx1.privateemail.com and mx2.privateemail.com.

ransomware.org shares the same mail server setup as other domains, for instance slick0.net, panafricanjobs.com, slim-chews.com, adinterestpro.com and beforegallery.com.

ransomware.org shares at least partially some mail servers with other domains, for instance emale.net, enartech.com and cloudmeet.us.

Host names with one IP number:

The host mx1.privateemail.com points to 162.255.118.7 and the host mx2.privateemail.com points to 162.255.118.8.