fraudulent-google.com - robtex.com

fraudulent-google.com

DNSSEC⚠️ Not signed
A2606:4700:3036::6815:177eπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3036::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3036::ac43:d317πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3036::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.23.126Cloudflare104.21.16.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.211.23πŸ‡ΊπŸ‡Έ Cloudflare172.67.208.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSbob.ns.cloudflare.com ⭐
A2606:4700:58::adf5:3b68πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRbob.ns.cloudflare.com
A2803:f800:50::6ca2:c168πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRbob.ns.cloudflare.com
A2a06:98c1:50::ac40:2168πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRbob.ns.cloudflare.com
A108.162.193.104πŸ‡ΊπŸ‡Έ Cloudflare108.162.193.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRbob.ns.cloudflare.com
A172.64.33.104πŸ‡ΊπŸ‡Έ Cloudflare172.64.33.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRbob.ns.cloudflare.com
A173.245.59.104πŸ‡ΊπŸ‡Έ Cloudflare173.245.59.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRbob.ns.cloudflare.com
NSnola.ns.cloudflare.com
A2606:4700:50::adf5:3ad4πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRnola.ns.cloudflare.com
A2803:f800:50::6ca2:c0d4πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRnola.ns.cloudflare.com
A2a06:98c1:50::ac40:20d4πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRnola.ns.cloudflare.com
A108.162.192.212πŸ‡ΊπŸ‡Έ Cloudflare108.162.192.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRnola.ns.cloudflare.com
A172.64.32.212πŸ‡ΊπŸ‡Έ Cloudflare172.64.32.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRnola.ns.cloudflare.com
A173.245.58.212πŸ‡ΊπŸ‡Έ Cloudflare173.245.58.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRnola.ns.cloudflare.com
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4 hints104.21.23.126, 172.67.211.23
IPv6 hints2606:4700:3036::6815:177e, 2606:4700:3036::ac43:d317
ECHX25519, HKDF-SHA256 + AES-128-GCM draft, id=185, name=cloudflare-ech.com
SOAbob.ns.cloudflare.comdns@cloudflare.com serial=2401066895

com

⚠️ On DNS blocklist: light, multi, pro, pro.plus, tif, ultimate

Same first word

DNS History

6 records (6 active, 0 former)

NSbob.ns.cloudflare.comnola.ns.cloudflare.comA104.21.23.126172.67.211.232606:4700:3036::6815:177e2606:4700:3036::ac43:d317
●NSbob.ns.cloudflare.com2026-04-10 β†’ 2026-04-13 Β· 2 obs
● 2026-04-10 18:04:20
● 2026-04-13 04:41:06
●NSnola.ns.cloudflare.com2026-04-10 β†’ 2026-04-13 Β· 2 obs
● 2026-04-10 18:04:20
● 2026-04-13 04:41:06
●A104.21.23.1262026-04-10 β†’ 2026-04-13 Β· 2 obs
● 2026-04-10 18:04:20
● 2026-04-13 04:41:06
●A172.67.211.232026-04-10 β†’ 2026-04-13 Β· 2 obs
● 2026-04-10 18:04:20
● 2026-04-13 04:41:06
●A2606:4700:3036::6815:177e2026-04-10 β†’ 2026-04-13 Β· 2 obs
● 2026-04-10 18:04:20
● 2026-04-13 04:41:06
●A2606:4700:3036::ac43:d3172026-04-10 β†’ 2026-04-13 Β· 2 obs
● 2026-04-10 18:04:20
● 2026-04-13 04:41:06

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
comh.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net...-
fraudulent-google.combob.ns.cloudflare.com, nola.ns.cloudflare.com12 records

βœ… Authoritative Response

Server:108.162.193.104

NS records: bob.ns.cloudflare.com, nola.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for fraudulent-google.com (unsigned zone)

⏱️ Timing

Total: 153ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2172.67.211.23, 104.21.23.126
AAAA22606:4700:3036::ac43:d317, 2606:4700:3036::6815:177e
NS2bob.ns.cloudflare.com, nola.ns.cloudflare.com
HTTPS1{"priority":1,"target":".","alpn":["h3",
SOA1bob.ns.cloudflare.com dns.cloudflare.com

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (bob.ns.cloudflare.com, bob.ns.cloudflare.com, bob.ns.cloudflare.com...)

Analysis

IP Addresses

fraudulent-google.com maps to four IP numbers: 2606:4700:3036::6815:177e, 2606:4700:3036::ac43:d317, 104.21.23.126 and 172.67.211.23.

Other host names, for instance yabonujoqonanalytics.sbs, openleft.com, amerginconsulting.com, fb7k.com.cdn.cloudflare.net and nuvida.com share IP numbers with fraudulent-google.com.

Name Servers

Two name servers bob.ns.cloudflare.com and nola.ns.cloudflare.com handle delegation for fraudulent-google.com.

fraudulent-google.com uses the same name server setup as other domains, for example restaurantedelangel.com, funasfjallen.se, colegio-simonbolivar.com, al(0x666170)acimpresion.com and alptel.ch.

fraudulent-google.com partially shares name servers with other domains; examples include veza360.com, pathuman.com, unigen.com.tr, hellomyschoolbag.com and arrowsforcharity.org.

These name servers are commonly used with hayes.ns.cloudflare.com, abby.ns.cloudflare.com and may.ns.cloudflare.com.

Host names with six IP numbers: bob.ns.cloudflare.com points to: 2606:4700:58::adf5:3b68, 2803:f800:50::6ca2:c168, 2a06:98c1:50::ac40:2168, 108.162.193.104, 172.64.33.104 and 173.245.59.104; nola.ns.cloudflare.com points to: 2606:4700:50::adf5:3ad4, 2803:f800:50::6ca2:c0d4, 2a06:98c1:50::ac40:20d4, 108.162.192.212, 172.64.32.212 and 173.245.58.212.