cloudleaks.cc - robtex.com

cloudleaks.cc

DNSSEC⚠️ Not signed
A2600:1900:4001:96e:8000:1:82d5:95b6πŸ‡ΊπŸ‡Έ Google2600:1900:4000::/44
A34.41.139.193πŸ‡ΊπŸ‡Έ Google34.41.0.0/16
NSns1.hwrn.net ⭐
A2600:1900:4000:cb7c:8000::πŸ‡ΊπŸ‡Έ Google2600:1900:4000::/44
A2600:1900:4061:58e:8000::πŸ‡³πŸ‡± Google2600:1900:4060::/44
A2600:1900:4081:2f2:8000::πŸ‡ΈπŸ‡¬ Google2600:1900:4080::/44
A34.32.207.228πŸ‡³πŸ‡± Google34.32.128.0/17
PTR228.207.32.34.bc.googleusercontent.com
A34.46.191.171πŸ‡ΊπŸ‡Έ Google34.46.0.0/16
PTR171.191.46.34.bc.googleusercontent.com
A35.187.247.195πŸ‡ΈπŸ‡¬ Google35.187.240.0/20
PTR195.247.187.35.bc.googleusercontent.com
NSns2.hwrn.net
A2600:1900:4000:cb7c:8000:4::πŸ‡ΊπŸ‡Έ Google2600:1900:4000::/44
A2600:1900:4061:58e:8000:4::πŸ‡³πŸ‡± Google2600:1900:4060::/44
A2600:1900:4081:2f2:8000:4::πŸ‡ΈπŸ‡¬ Google2600:1900:4080::/44
A34.124.162.145πŸ‡ΈπŸ‡¬ Google34.124.160.0/20
PTR145.162.124.34.bc.googleusercontent.com
A34.136.0.93πŸ‡ΊπŸ‡Έ Google34.136.0.0/20
PTR93.0.136.34.bc.googleusercontent.com
A34.147.11.210πŸ‡³πŸ‡± Google34.147.0.0/20
PTR210.11.147.34.bc.googleusercontent.com
MXmx1.csof.net ⭐
A46.4.12.146πŸ‡©πŸ‡ͺ Hetzner46.4.0.0/16 HETZNER-RZ-FKS-BLK3
PTRstatic.146.12.4.46.clients.your-server.de
MXmx2.csof.net ⭐
A46.4.10.173πŸ‡©πŸ‡ͺ Hetzner46.4.0.0/16 HETZNER-RZ-FKS-BLK3
PTRstatic.173.10.4.46.clients.your-server.de
TXTv=spf1 include:_incspfcheck.mailspike.net -all
SOAns1.hwrn.nethostmaster@hwrn.net 2026-04-23 #2

cc

DNSSECπŸ”’ Signed (DS record present)
NSac1.nstld.com ⭐
NSac2.nstld.com
NSac3.nstld.com
NSac4.nstld.com
SOAac1.nstld.cominfo@verisign-grs.com serial=1776962912
⚠️ On DNS blocklist: tif

Subdomains

Same first word

Similar names

DNS History

6 records (6 active, 0 former)

NSns1.hwrn.netns2.hwrn.netMXmx1.csof.netmx2.csof.netA2600:1900:4001:96e:8000:1:82d5:95b634.41.139.193
●NSns1.hwrn.net2026-03-21 β†’ 2026-04-23 Β· 2 obs
● 2026-03-21 23:43:04
● 2026-04-23 17:15:02
●NSns2.hwrn.net2026-03-21 β†’ 2026-04-23 Β· 2 obs
● 2026-03-21 23:43:04
● 2026-04-23 17:15:02
●MXmx1.csof.net2026-03-21 β†’ 2026-04-23 Β· 2 obs
● 2026-03-21 23:43:04
● 2026-04-23 17:15:02
●MXmx2.csof.net2026-03-21 β†’ 2026-04-23 Β· 2 obs
● 2026-03-21 23:43:04
● 2026-04-23 17:15:02
●A2600:1900:4001:96e:8000:1:82d5:95b62026-03-21 β†’ 2026-04-23 Β· 2 obs
● 2026-03-21 23:43:04
● 2026-04-23 17:15:02
●A34.41.139.1932026-03-21 β†’ 2026-04-23 Β· 2 obs
● 2026-03-21 23:43:04
● 2026-04-23 17:15:02

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
ccac3.nstld.com, ac4.nstld.com, ac1.nstld.com, ac2.nstld.com8 records
cloudleaks.ccns1.hwrn.net, ns2.hwrn.net-

βœ… Authoritative Response

Server:34.32.207.228

NS records: ns1.hwrn.net, ns2.hwrn.net

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for cloudleaks.cc (unsigned zone)

⏱️ Timing

Total: 620ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A134.41.139.193
AAAA12600:1900:4001:96e:8000:1:82d5:95b6
MX2mx1.csof.net (pri: 10), mx2.csof.net (pri: 10)
TXT1v=spf1 include:_incspfcheck.mailspike.ne
SOA1ns1.hwrn.net hostmaster.hwrn.net

πŸ“Œ Glue Records Collected

Total: 8

Out-of-bailiwick: 8 (ac4.nstld.com, ac3.nstld.com, ac2.nstld.com...)

Analysis

Hierarchy

The parent of botnet.cloudleaks.cc is cloudleaks.cc.

IP Addresses

cloudleaks.cc points to two IP numbers: 2600:1900:4001:96e:8000:1:82d5:95b6 and 34.41.139.193.

Other host names such as x403b0516.ip.e-nt.net, sznic5xhda511.biz, 76841.zhongyifg.com, ch5as20-84-255-169.cw-visp.com and xplr-ts-10-van-72-45-65-166.barrettxplore.com share IPs with cloudleaks.cc.

Name Servers

cloudleaks.cc is delegated to two name servers: ns1.hwrn.net and ns2.hwrn.net.

cloudleaks.cc shares the same name server setup as 67-208-144-102.cncndc.net, pryer.dedspac.ru, lebedyan.ads4money.net, n2.tmdhosting112.com and cinestream.club.

Host names with six IP numbers:

ns1.hwrn.net points to 2600:1900:4000:cb7c:8000::, 2600:1900:4061:58e:8000::, 2600:1900:4081:2f2:8000::, 34.32.207.228, 34.46.191.171 and 35.187.247.195.

ns2.hwrn.net points to 2600:1900:4000:cb7c:8000:4::, 2600:1900:4061:58e:8000:4::, 2600:1900:4081:2f2:8000:4::, 34.124.162.145, 34.136.0.93 and 34.147.11.210.

Mail Servers

cloudleaks.cc is handled by two mail servers: mx1.csof.net and mx2.csof.net.

The mail server setup for cloudleaks.cc matches that of other domains, for instance 77a04.zhongyifg.com, ymir.dedspac.ru, coots.vadilops.ru, wsxh.freewww.biz and schul.dedspac.ru.

Host names with a single IP:

mx1.csof.net points to 46.4.12.146.

mx2.csof.net points to 46.4.10.173.