malwareman.com - robtex.com

malwareman.com

DNSSEC⚠️ Not signed
A162.255.119.58πŸ‡ΊπŸ‡Έ NAMCHEAP-PH162.255.119.0/24 Namecheap, Inc. 11400 W. Olympic Blvd. Suite 200 Los Angeles, CA 90064 UNITED STATES
NSdns1.registrar-servers.com ⭐
A2610:a1:1024::200πŸ‡ΊπŸ‡Έ MAINT-ID-120082610:a1:1024::/48 Neustar
PTRdns1.namecheaphosting.com
PTRdns1.registrar-servers.com
A156.154.132.200πŸ‡ΊπŸ‡Έ MAINT-ID-12008156.154.132.0/24 Neustar
PTRdns1.namecheaphosting.com
PTRdns1.registrar-servers.com
NSdns2.registrar-servers.com
A2610:a1:1025::200πŸ‡ΊπŸ‡Έ MAINT-ID-120082610:a1:1025::/48 Neustar
PTRdns2.namecheaphosting.com
PTRdns2.registrar-servers.com
A156.154.133.200πŸ‡ΊπŸ‡Έ MAINT-ID-12008156.154.133.0/24 Neustar
PTRdns2.namecheaphosting.com
PTRdns2.registrar-servers.com
MXeforward1.registrar-servers.com ⭐
A162.255.118.51πŸ‡ΊπŸ‡Έ NAMCHEAP-PH162.255.118.0/24 Namecheap, Inc. 11400 W. Olympic Blvd. Suite 200 Los Angeles, CA 90064 UNITED STATES
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
MXeforward2.registrar-servers.com ⭐
A162.255.118.52πŸ‡ΊπŸ‡Έ NAMCHEAP-PH162.255.118.0/24 Namecheap, Inc. 11400 W. Olympic Blvd. Suite 200 Los Angeles, CA 90064 UNITED STATES
PTReforward2.registrar-servers.com
MXeforward3.registrar-servers.com ⭐
A162.255.118.51πŸ‡ΊπŸ‡Έ NAMCHEAP-PH162.255.118.0/24 Namecheap, Inc. 11400 W. Olympic Blvd. Suite 200 Los Angeles, CA 90064 UNITED STATES
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
MXeforward4.registrar-servers.com(15)
A162.255.118.52πŸ‡ΊπŸ‡Έ NAMCHEAP-PH162.255.118.0/24 Namecheap, Inc. 11400 W. Olympic Blvd. Suite 200 Los Angeles, CA 90064 UNITED STATES
PTReforward2.registrar-servers.com
MXeforward5.registrar-servers.com(20)
A162.255.118.51πŸ‡ΊπŸ‡Έ NAMCHEAP-PH162.255.118.0/24 Namecheap, Inc. 11400 W. Olympic Blvd. Suite 200 Los Angeles, CA 90064 UNITED STATES
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
TXTv=spf1 include:spf.efwd.registrar-servers.com ~all
SOAdns1.registrar-servers.comhostmaster@registrar-servers.com serial=1737541249

com

Same first word

DNS History

24 records (8 active, 16 former)

20162017201820192020202120222023202420252026NSdns1.registrar-servers.comdns2.registrar-servers.comns1.dvllc.cons1.namebrightdns.comns1.vultr.comns2.dvllc.cons2.namebrightdns.comns2.vultr.comnsg1.namebrightdns.comnsg2.namebrightdns.comMXeforward1.registrar-servers.comeforward2.registrar-servers.comeforward3.registrar-servers.comeforward4.registrar-servers.comeforward5.registrar-servers.commx.dvllc.coA162.255.119.58104.238.144.106172.7.164.19745.32.225.9452.1.32.2554.88.133.92CNAMEhdredirect-lb3-890977680.us-east-1.elb.amazonaws.comhdredirect-lb5-1afb6e2973825a56.elb.us-east-1.amazonaws.com
●NSdns1.registrar-servers.com2026-02-16 β†’ 2026-04-23 Β· 3 obs
β—‹ 2019-03-20 21:57:20
● 2026-02-16 07:22:46
● 2026-04-23 11:37:30
●NSdns2.registrar-servers.com2026-02-16 β†’ 2026-04-23 Β· 3 obs
β—‹ 2019-03-20 21:57:20
● 2026-02-16 07:22:46
● 2026-04-23 11:37:30
β—‹NSns1.dvllc.co2015-08-07 β†’ 2015-08-07 Β· 3 obs
● 2015-08-07 12:00:54
β—‹ 2015-11-24 16:07:24
β—‹ 2026-04-23 11:37:30
β—‹NSns1.namebrightdns.com2017-02-12 β†’ 2017-02-12 Β· 4 obs
β—‹ 2016-06-19 03:31:10
● 2017-02-12 07:39:16
β—‹ 2019-03-20 21:57:20
β—‹ 2026-04-23 11:37:30
β—‹NSns1.vultr.com2015-11-24 β†’ 2016-06-19 Β· 5 obs
β—‹ 2015-08-07 12:00:54
● 2015-11-24 16:07:24
● 2016-06-19 03:31:10
β—‹ 2017-02-12 07:39:16
β—‹ 2026-04-23 11:37:30
β—‹NSns2.dvllc.co2015-08-07 β†’ 2015-08-07 Β· 3 obs
● 2015-08-07 12:00:54
β—‹ 2015-11-24 16:07:24
β—‹ 2026-04-23 11:37:30
β—‹NSns2.namebrightdns.com2017-02-12 β†’ 2017-02-12 Β· 4 obs
β—‹ 2016-06-19 03:31:10
● 2017-02-12 07:39:16
β—‹ 2019-03-20 21:57:20
β—‹ 2026-04-23 11:37:30
β—‹NSns2.vultr.com2015-11-24 β†’ 2016-06-19 Β· 5 obs
β—‹ 2015-08-07 12:00:54
● 2015-11-24 16:07:24
● 2016-06-19 03:31:10
β—‹ 2017-02-12 07:39:16
β—‹ 2026-04-23 11:37:30
β—‹NSnsg1.namebrightdns.com2019-03-20 β†’ 2019-03-20 Β· 4 obs
β—‹ 2017-02-12 07:39:16
● 2019-03-20 21:57:20
β—‹ 2026-02-16 07:22:46
β—‹ 2026-04-23 11:37:30
β—‹NSnsg2.namebrightdns.com2019-03-20 β†’ 2019-03-20 Β· 4 obs
β—‹ 2017-02-12 07:39:16
● 2019-03-20 21:57:20
β—‹ 2026-02-16 07:22:46
β—‹ 2026-04-23 11:37:30
●MXeforward1.registrar-servers.com2026-02-16 β†’ 2026-04-23 Β· 3 obs
β—‹ 2017-02-12 07:39:16
● 2026-02-16 07:22:46
● 2026-04-23 11:37:30
●MXeforward2.registrar-servers.com2026-02-16 β†’ 2026-04-23 Β· 3 obs
β—‹ 2017-02-12 07:39:16
● 2026-02-16 07:22:46
● 2026-04-23 11:37:30
●MXeforward3.registrar-servers.com2026-02-16 β†’ 2026-04-23 Β· 3 obs
β—‹ 2017-02-12 07:39:16
● 2026-02-16 07:22:46
● 2026-04-23 11:37:30
●MXeforward4.registrar-servers.com2026-02-16 β†’ 2026-04-23 Β· 3 obs
β—‹ 2017-02-12 07:39:16
● 2026-02-16 07:22:46
● 2026-04-23 11:37:30
●MXeforward5.registrar-servers.com2026-02-16 β†’ 2026-04-23 Β· 3 obs
β—‹ 2017-02-12 07:39:16
● 2026-02-16 07:22:46
● 2026-04-23 11:37:30
β—‹MXmx.dvllc.co2015-08-07 β†’ 2016-06-19 Β· 4 obs
● 2015-08-07 12:00:54
● 2016-06-19 03:31:10
β—‹ 2017-02-12 07:39:16
β—‹ 2026-04-23 11:37:30
β—‹A104.238.144.1062015-11-24 β†’ 2016-02-26 Β· 5 obs
β—‹ 2015-08-07 12:00:54
● 2015-11-24 16:07:24
● 2016-02-26 07:11:28
β—‹ 2016-06-19 03:31:10
β—‹ 2026-04-23 11:37:30
●A162.255.119.582026-02-16 β†’ 2026-04-23 Β· 3 obs
β—‹ 2019-03-20 21:57:20
● 2026-02-16 07:22:46
● 2026-04-23 11:37:30
β—‹A172.7.164.1972015-08-07 β†’ 2015-08-07 Β· 3 obs
● 2015-08-07 12:00:54
β—‹ 2015-11-24 16:07:24
β—‹ 2026-04-23 11:37:30
β—‹A45.32.225.942016-06-19 β†’ 2016-06-19 Β· 4 obs
β—‹ 2016-02-26 07:11:28
● 2016-06-19 03:31:10
β—‹ 2017-02-12 07:39:16
β—‹ 2026-04-23 11:37:30
β—‹A52.1.32.252017-02-12 β†’ 2017-02-12 Β· 4 obs
β—‹ 2016-06-19 03:31:10
● 2017-02-12 07:39:16
β—‹ 2019-03-20 21:57:20
β—‹ 2026-04-23 11:37:30
β—‹A54.88.133.922017-02-12 β†’ 2017-02-12 Β· 4 obs
β—‹ 2016-06-19 03:31:10
● 2017-02-12 07:39:16
β—‹ 2019-03-20 21:57:20
β—‹ 2026-04-23 11:37:30
β—‹CNAMEhdredirect-lb3-890977680.us-east-1.elb.amazonaws.com2017-02-12 β†’ 2017-02-12 Β· 3 obs
● 2017-02-12 07:39:16
β—‹ 2019-03-20 21:57:20
β—‹ 2026-04-23 11:37:30
β—‹CNAMEhdredirect-lb5-1afb6e2973825a56.elb.us-east-1.amazonaws.com2019-03-20 β†’ 2026-02-16 Β· 5 obs
β—‹ 2017-02-12 07:39:16
● 2019-03-20 21:57:20
● 2026-02-16 12:37:24
β—‹ 2026-02-18 22:26:52
β—‹ 2026-04-23 11:37:30

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
comg.gtld-servers.net, e.gtld-servers.net, h.gtld-servers.net, l.gtld-servers.net...-
malwareman.comdns1.registrar-servers.com, dns2.registrar-servers.com4 records

βœ… Authoritative Response

Server:156.154.132.200

NS records: dns1.registrar-servers.com, dns2.registrar-servers.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for malwareman.com (unsigned zone)

⏱️ Timing

Total: 184ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A1162.255.119.58
NS2dns1.registrar-servers.com, dns2.registrar-servers.com
MX5eforward1.registrar-servers.com (pri: 10, eforward2.registrar-servers.com (pri: 10...
TXT1v=spf1 include:spf.efwd.registrar-server
SOA1dns1.registrar-servers.com hostmaster.re

πŸ“Œ Glue Records Collected

Total: 4

Out-of-bailiwick: 4 (dns1.registrar-servers.com, dns1.registrar-servers.com, dns2.registrar-servers.com...)

Analysis

IP Addresses

malwareman.com resolves to one IP number: 162.255.119.58.

other host names including icily.co, www.scumlords.com, polisea.com, nmyhr.com and provine.org share IP numbers with malwareman.com.

Name Servers

malwareman.com is delegated to two name servers dns1.registrar-servers.com and dns2.registrar-servers.com.

malwareman.com shares the same name server setup as other domains, for instance ebenshapiro.com, tazz(0x706f726e).com, nslsrv.dev, andrew-kraemer.com and hubbo.io.

malwareman.com at least partially shares name servers with other domains, for instance vanharten.ca, profetutor.com, oprsr.us, ysl688.net and katherineweber.com.

These name servers are commonly used with dns3.registrar-servers.com, dns4.registrar-servers.com and dns5.registrar-servers.com.

Host names with two IP numbers:

The host name dns1.registrar-servers.com points to 2610:a1:1024::200 and 156.154.132.200; the host name dns2.registrar-servers.com points to 2610:a1:1025::200 and 156.154.133.200.

Mail Servers

malwareman.com is handled by five mail servers: eforward1.registrar-servers.com, eforward2.registrar-servers.com, eforward3.registrar-servers.com, eforward4.registrar-servers.com and eforward5.registrar-servers.com.

malwareman.com shares some mail servers with other domains, at least partially, for instance cjwgaragedoors.com, lumandco.com, cadbimsolutions.com, devoted2.com and noxborn.com.

These mail servers are commonly used alongside eforward6.registrar-servers.com and eforward7.registrar-servers.com.

Host names with a single IP

eforward1.registrar-servers.com points to: 162.255.118.51

eforward2.registrar-servers.com points to: 162.255.118.52

eforward3.registrar-servers.com points to: 162.255.118.51

eforward4.registrar-servers.com points to: 162.255.118.52

eforward5.registrar-servers.com points to: 162.255.118.51

Host names that point to 162.255.118.51: eforward1.registrar-servers.com, eforward3.registrar-servers.com and eforward5.registrar-servers.com

Host names that point to 162.255.118.52: eforward2.registrar-servers.com and eforward4.registrar-servers.com