forensicblogs.com - robtex.com

forensicblogs.com

DNSSEC⚠️ Not signed
A2606:4700:3033::6815:48a8πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3033::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3034::ac43:bb21πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3034::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.72.168Cloudflare104.21.64.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.187.33πŸ‡ΊπŸ‡Έ Cloudflare172.67.176.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSmona.ns.cloudflare.com ⭐
A2606:4700:50::adf5:3aceπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmona.ns.cloudflare.com
A2803:f800:50::6ca2:c0ceπŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRmona.ns.cloudflare.com
A2a06:98c1:50::ac40:20ceπŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRmona.ns.cloudflare.com
A108.162.192.206πŸ‡ΊπŸ‡Έ Cloudflare108.162.192.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmona.ns.cloudflare.com
A172.64.32.206πŸ‡ΊπŸ‡Έ Cloudflare172.64.32.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmona.ns.cloudflare.com
A173.245.58.206πŸ‡ΊπŸ‡Έ Cloudflare173.245.58.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmona.ns.cloudflare.com
NStoby.ns.cloudflare.com
A2606:4700:58::adf5:3befπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtoby.ns.cloudflare.com
A2803:f800:50::6ca2:c1efπŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRtoby.ns.cloudflare.com
A2a06:98c1:50::ac40:21efπŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRtoby.ns.cloudflare.com
A108.162.193.239πŸ‡ΊπŸ‡Έ Cloudflare108.162.193.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtoby.ns.cloudflare.com
A172.64.33.239πŸ‡ΊπŸ‡Έ Cloudflare172.64.33.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtoby.ns.cloudflare.com
A173.245.59.239πŸ‡ΊπŸ‡Έ Cloudflare173.245.59.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtoby.ns.cloudflare.com
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4 hints104.21.72.168, 172.67.187.33
IPv6 hints2606:4700:3033::6815:48a8, 2606:4700:3034::ac43:bb21
ECHX25519, HKDF-SHA256 + AES-128-GCM draft, id=199, name=cloudflare-ech.com
SOAmona.ns.cloudflare.comdns@cloudflare.com serial=2401430750

com

Same first word

DNS History

11 records (6 active, 5 former)

20162017201820192020202120222023202420252026NSmona.ns.cloudflare.comtoby.ns.cloudflare.comns1.dreamhost.comns2.dreamhost.comns3.dreamhost.comA104.21.72.168172.67.187.332606:4700:3033::6815:48a82606:4700:3034::ac43:bb2169.163.152.20869.163.212.121
●NSmona.ns.cloudflare.com2026-03-08 β†’ 2026-04-25 Β· 3 obs
β—‹ 2017-04-10 04:03:18
● 2026-03-08 19:51:56
● 2026-04-25 12:24:00
β—‹NSns1.dreamhost.com2015-07-21 β†’ 2017-04-10 Β· 4 obs
● 2015-07-21 04:03:40
● 2017-04-10 04:03:18
β—‹ 2026-03-08 19:51:56
β—‹ 2026-04-25 12:24:00
β—‹NSns2.dreamhost.com2015-07-21 β†’ 2017-04-10 Β· 4 obs
● 2015-07-21 04:03:40
● 2017-04-10 04:03:18
β—‹ 2026-03-08 19:51:56
β—‹ 2026-04-25 12:24:00
β—‹NSns3.dreamhost.com2015-07-21 β†’ 2017-04-10 Β· 4 obs
● 2015-07-21 04:03:40
● 2017-04-10 04:03:18
β—‹ 2026-03-08 19:51:56
β—‹ 2026-04-25 12:24:00
●NStoby.ns.cloudflare.com2026-03-08 β†’ 2026-04-25 Β· 3 obs
β—‹ 2017-04-10 04:03:18
● 2026-03-08 19:51:56
● 2026-04-25 12:24:00
●A104.21.72.1682026-03-08 β†’ 2026-04-25 Β· 3 obs
β—‹ 2017-04-10 04:03:18
● 2026-03-08 19:51:56
● 2026-04-25 12:24:00
●A172.67.187.332026-03-08 β†’ 2026-04-25 Β· 3 obs
β—‹ 2017-04-10 04:03:18
● 2026-03-08 19:51:56
● 2026-04-25 12:24:00
●A2606:4700:3033::6815:48a82026-03-08 β†’ 2026-04-25 Β· 3 obs
β—‹ 2017-04-10 04:03:18
● 2026-03-08 19:51:56
● 2026-04-25 12:24:00
●A2606:4700:3034::ac43:bb212026-03-08 β†’ 2026-04-25 Β· 3 obs
β—‹ 2017-04-10 04:03:18
● 2026-03-08 19:51:56
● 2026-04-25 12:24:00
β—‹A69.163.152.2082016-07-15 β†’ 2017-04-10 Β· 5 obs
β—‹ 2016-03-11 23:27:54
● 2016-07-15 18:13:18
● 2017-04-10 04:03:18
β—‹ 2026-03-08 19:51:56
β—‹ 2026-04-25 12:24:00
β—‹A69.163.212.1212015-07-21 β†’ 2016-03-11 Β· 4 obs
● 2015-07-21 04:03:40
● 2016-03-11 23:27:54
β—‹ 2016-07-15 18:13:18
β—‹ 2026-04-25 12:24:00

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
coma.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net...-
forensicblogs.comtoby.ns.cloudflare.com, mona.ns.cloudflare.com12 records

βœ… Authoritative Response

Server:108.162.192.206

NS records: toby.ns.cloudflare.com, mona.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for forensicblogs.com (unsigned zone)

⏱️ Timing

Total: 214ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2104.21.72.168, 172.67.187.33
AAAA22606:4700:3033::6815:48a8, 2606:4700:3034::ac43:bb21
NS2mona.ns.cloudflare.com, toby.ns.cloudflare.com
HTTPS1{"priority":1,"target":".","alpn":["h3",
SOA1mona.ns.cloudflare.com dns.cloudflare.co

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (toby.ns.cloudflare.com, toby.ns.cloudflare.com, toby.ns.cloudflare.com...)

Analysis

IP Addresses

forensicblogs.com resolves to four IP numbers: 2606:4700:3033::6815:48a8, 2606:4700:3034::ac43:bb21, 104.21.72.168 and 172.67.187.33.

Other host names such as signes.pl, rwtro.com, owlnest.com.au, live.nfccore.online and termitecontrol.cn share IPs with forensicblogs.com.

Name Servers

forensicblogs.com is delegated to two name servers: mona.ns.cloudflare.com and toby.ns.cloudflare.com.

forensicblogs.com shares the same name server setup as maliciouscode.net, megalight.am, monkeycheesepants.com, stpatricksmapleridge.ca and affiliride.com.

forensicblogs.com at least partially shares name servers with other domains, for instance rocket-space.de, dalefx.com, pagbetsite.com, alfakitap.com and servek.ru.

These name servers are commonly used with ollie.ns.cloudflare.com and ridge.ns.cloudflare.com.

Host names with six IP numbers:

mona.ns.cloudflare.com points to 2606:4700:50::adf5:3ace, 2803:f800:50::6ca2:c0ce, 2a06:98c1:50::ac40:20ce, 108.162.192.206, 172.64.32.206 and 173.245.58.206.

toby.ns.cloudflare.com points to 2606:4700:58::adf5:3bef, 2803:f800:50::6ca2:c1ef, 2a06:98c1:50::ac40:21ef, 108.162.193.239, 172.64.33.239 and 173.245.59.239.