mail.botexploit.com - robtex.com

mail.botexploit.com

DNSSEC⚠️ Not signed
A2606:4700:3031::6815:5cd0πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3031::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3037::ac43:c6a4πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3037::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.92.208Cloudflare104.21.80.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.198.164πŸ‡ΊπŸ‡Έ Cloudflare172.67.192.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4104.21.92.208, 172.67.198.164
IPv62606:4700:3031::6815:5cd0, 2606:4700:3037::ac43:c6a4

botexploit.com

DNSSEC⚠️ Not signed
A2606:4700:3031::6815:5cd0πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3031::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3037::ac43:c6a4πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3037::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.92.208Cloudflare104.21.80.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.198.164πŸ‡ΊπŸ‡Έ Cloudflare172.67.192.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSbenedict.ns.cloudflare.com ⭐
NSfaye.ns.cloudflare.com
MX_dc-mx.7fcbc15e1343.botexploit.com ⭐
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4104.21.92.208, 172.67.198.164
IPv62606:4700:3031::6815:5cd0, 2606:4700:3037::ac43:c6a4
SOAbenedict.ns.cloudflare.comdns@cloudflare.com serial=2395937923

Previously MX for

Same first word

Similar names

DNS History

5 records (4 active, 1 former)

20162017201820192020202120222023202420252026A104.21.92.208172.67.198.1642606:4700:3031::6815:5cd02606:4700:3037::ac43:c6a454.251.105.196
●A104.21.92.2082026-03-09 β†’ 2026-03-09 Β· 2 obs
β—‹ 2016-09-18 18:57:12
● 2026-03-09 04:58:18
●A172.67.198.1642026-03-09 β†’ 2026-03-09 Β· 2 obs
β—‹ 2016-09-18 18:57:12
● 2026-03-09 04:58:18
●A2606:4700:3031::6815:5cd02026-03-09 β†’ 2026-03-09 Β· 2 obs
β—‹ 2016-09-18 18:57:12
● 2026-03-09 04:58:18
●A2606:4700:3037::ac43:c6a42026-03-09 β†’ 2026-03-09 Β· 2 obs
β—‹ 2016-09-18 18:57:12
● 2026-03-09 04:58:18
β—‹A54.251.105.1962015-05-22 β†’ 2016-09-18 Β· 3 obs
● 2015-05-22 21:33:32
● 2016-09-18 18:57:12
β—‹ 2026-03-09 04:58:18

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
coma.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net...-
botexploit.comfaye.ns.cloudflare.com, benedict.ns.cloudflare.com12 records

βœ… Authoritative Response

Server: 108.162.194.180

NS records: faye.ns.cloudflare.com, benedict.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for botexploit.com (unsigned zone)

⏱️ Timing

Total: 86ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2172.67.198.164, 104.21.92.208
AAAA22606:4700:3031::6815:5cd0, 2606:4700:3037::ac43:c6a4
HTTPS1{"priority":1,"target":".","alpn":["h3",

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (faye.ns.cloudflare.com, faye.ns.cloudflare.com, faye.ns.cloudflare.com...)

Analysis

IP Addresses

mail.botexploit.com refers to four IP numbers: 2606:4700:3031::6815:5cd0, 2606:4700:3037::ac43:c6a4, 104.21.92.208 and 172.67.198.164.

Other host names, for instance www.fd993.com, jgmoagogo.com, insectsofiowa.org, tinetwork.com and www.soprevod.net share IP numbers with mail.botexploit.com.