cryptomalware.com - robtex.com

cryptomalware.com

com

Same first word

DNS History

12 records (5 active, 7 former)

2017201820192020202120222023202420252026NSns1.afternic.comns2.afternic.comverification-jncwal45hvxccyan6n2epz.ns101.verify.hnns39.domaincontrol.comns40.domaincontrol.comMX.mailstore1.secureserver.netsmtp.secureserver.netA13.248.169.4876.223.54.146184.168.221.58217.194.186.250
●NSns1.afternic.com2026-02-15 β†’ 2026-03-13 Β· 3 obs
β—‹ 2017-12-09 06:11:38
● 2026-02-15 21:15:32
● 2026-03-13 21:09:36
●NSns2.afternic.com2026-02-15 β†’ 2026-03-13 Β· 3 obs
β—‹ 2017-12-09 06:11:38
● 2026-02-15 21:15:32
● 2026-03-13 21:09:36
β—‹NSns39.domaincontrol.com2016-12-18 β†’ 2017-12-09 Β· 4 obs
● 2016-12-18 18:49:38
● 2017-12-09 06:11:38
β—‹ 2026-02-15 21:15:32
β—‹ 2026-03-13 21:09:36
β—‹NSns40.domaincontrol.com2016-12-18 β†’ 2017-12-09 Β· 4 obs
● 2016-12-18 18:49:38
● 2017-12-09 06:11:38
β—‹ 2026-02-15 21:15:32
β—‹ 2026-03-13 21:09:36
●NSverification-jncwal45hvxccyan6n2epz.ns101.verify.hn2026-02-15 β†’ 2026-03-13 Β· 3 obs
β—‹ 2017-12-09 06:11:38
● 2026-02-15 21:15:32
● 2026-03-13 21:09:36
β—‹MX.2026-02-15 β†’ 2026-02-15 Β· 4 obs
β—‹ 2016-12-18 18:49:38
● 2026-02-15 21:15:32
β—‹ 2026-03-13 21:09:34
β—‹ 2026-03-13 21:09:36
β—‹MXmailstore1.secureserver.net2016-12-18 β†’ 2026-02-15 Β· 4 obs
● 2016-12-18 18:49:38
● 2026-02-15 21:15:32
β—‹ 2026-03-13 21:09:34
β—‹ 2026-03-13 21:09:36
β—‹MXsmtp.secureserver.net2016-12-18 β†’ 2026-02-15 Β· 4 obs
● 2016-12-18 18:49:38
● 2026-02-15 21:15:32
β—‹ 2026-03-13 21:09:34
β—‹ 2026-03-13 21:09:36
●A13.248.169.482026-02-15 β†’ 2026-03-13 Β· 3 obs
β—‹ 2017-12-09 06:11:38
● 2026-02-15 21:15:32
● 2026-03-13 21:09:36
β—‹A184.168.221.582016-12-18 β†’ 2016-12-18 Β· 3 obs
● 2016-12-18 18:49:38
β—‹ 2017-12-09 06:11:38
β—‹ 2026-03-13 21:09:36
β—‹A217.194.186.2502017-12-09 β†’ 2017-12-09 Β· 4 obs
β—‹ 2016-12-18 18:49:38
● 2017-12-09 06:11:38
β—‹ 2026-02-15 21:15:32
β—‹ 2026-03-13 21:09:36
●A76.223.54.1462026-02-15 β†’ 2026-03-13 Β· 3 obs
β—‹ 2017-12-09 06:11:38
● 2026-02-15 21:15:32
● 2026-03-13 21:09:36

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
coma.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net...-
cryptomalware.comns1.afternic.com, ns2.afternic.com, verification-jncwal45hvxccyan6n2epz.ns101.verify.hn4 records

βœ… Authoritative Response

Server: 97.74.98.69

NS records: ns1.afternic.com, ns2.afternic.com, verification-jncwal45hvxccyan6n2epz.ns101.verify.hn

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for cryptomalware.com (unsigned zone)

⏱️ Timing

Total: 4308ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A276.223.54.146, 13.248.169.48
NS2ns1.afternic.com, ns2.afternic.com
MX1. (pri: 0)
TXT1v=spf1 -all
SOA1ns1.afternic.com dns.jomax.net

πŸ“Œ Glue Records Collected

Total: 4

Out-of-bailiwick: 4 (ns1.afternic.com, ns1.afternic.com, ns2.afternic.com...)

Analysis

IP Addresses

cryptomalware.com resolves to two IPs: 13.248.169.48 and 76.223.54.146.

other host names for instance songd.com, www.sporeo.com, lee.ltd, app-i.com and latexart.com share IP numbers with cryptomalware.com.

Name Servers

cryptomalware.com is delegated to three name servers: ns1.afternic.com, ns2.afternic.com and verification-jncwal45hvxccyan6n2epz.ns101.verify.hn.

cryptomalware.com at least partially shares name servers with other domains, for instance raingro.com, africatunes.com, nicheflow.com, www.jardigital.com and fogdo.com.

These name servers are often used with verification-urj2ap2akmgcchkhharttb.ns101.verify.hn and verification-stk7bnbwvtufs4tupru3mn.ns101.verify.hn.

Host names with two IP numbers:

Host ns1.afternic.com points to 2603:5:2126::45 and 97.74.98.69.

Host ns2.afternic.com points to 2603:5:2226::45 and 173.201.66.69.

Host verification-jncwal45hvxccyan6n2epz.ns101.verify.hn points to 13.248.169.48 and 76.223.54.146.