suspicious.actlvity.com - robtex.com

suspicious.actlvity.com

DNSSEC⚠️ Not signed
A2606:4700:3030::ac43:d7c2πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3030::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3034::6815:3b3bπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3034::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.59.59Cloudflare104.21.48.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.215.194πŸ‡ΊπŸ‡Έ Cloudflare172.67.208.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4 hints104.21.59.59, 172.67.215.194
IPv6 hints2606:4700:3030::ac43:d7c2, 2606:4700:3034::6815:3b3b
ECHX25519, HKDF-SHA256 + AES-128-GCM draft, id=142, name=cloudflare-ech.com

actlvity.com

DNSSEC⚠️ Not signed
A2606:4700:3030::ac43:d7c2πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3030::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3034::6815:3b3bπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3034::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.59.59Cloudflare104.21.48.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.215.194πŸ‡ΊπŸ‡Έ Cloudflare172.67.208.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSarcher.ns.cloudflare.com ⭐
NSrosa.ns.cloudflare.com
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4 hints104.21.59.59, 172.67.215.194
IPv6 hints2606:4700:3030::ac43:d7c2, 2606:4700:3034::6815:3b3b
ECHX25519, HKDF-SHA256 + AES-128-GCM draft, id=142, name=cloudflare-ech.com
SOAarcher.ns.cloudflare.comdns@cloudflare.com serial=2407577686

Same first word

DNS History

4 records (4 active, 0 former)

A104.21.59.59172.67.215.1942606:4700:3030::ac43:d7c22606:4700:3034::6815:3b3b
●A104.21.59.592026-06-19 β†’ 2026-08-02 Β· 2 obs
● 2026-06-19 00:15:06
● 2026-08-02 08:36:48
●A172.67.215.1942026-06-19 β†’ 2026-08-02 Β· 2 obs
● 2026-06-19 00:15:06
● 2026-08-02 08:36:48
●A2606:4700:3030::ac43:d7c22026-06-19 β†’ 2026-08-02 Β· 2 obs
● 2026-06-19 00:15:06
● 2026-08-02 08:36:48
●A2606:4700:3034::6815:3b3b2026-06-19 β†’ 2026-08-02 Β· 2 obs
● 2026-06-19 00:15:06
● 2026-08-02 08:36:48

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
coma.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net...-
actlvity.comrosa.ns.cloudflare.com, archer.ns.cloudflare.com12 records

βœ… Authoritative Response

Server:108.162.192.228

NS records: rosa.ns.cloudflare.com, archer.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for actlvity.com (unsigned zone)

⏱️ Timing

Total: 110ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2104.21.59.59, 172.67.215.194
AAAA22606:4700:3030::ac43:d7c2, 2606:4700:3034::6815:3b3b
HTTPS1{"priority":1,"target":".","alpn":["h3",

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (rosa.ns.cloudflare.com, rosa.ns.cloudflare.com, rosa.ns.cloudflare.com...)

Analysis

IP Addresses

suspicious.actlvity.com has four IP addresses: 104.21.59.59, 172.67.215.194, 2606:4700:3030::ac43:d7c2 and 2606:4700:3034::6815:3b3b.

Additional host names β€” shahelps.com, www.wifacets.org, fanels.com and two others β€” share IP numbers with suspicious.actlvity.com.