malwareprovider.com - robtex.com

malwareprovider.com

DNSSEC⚠️ Not signed
NSalexia.ns.cloudflare.com ⭐
A2606:4700:50::a29f:26afπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRalexia.ns.cloudflare.com
A2803:f800:50::6ca2:c2afπŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRalexia.ns.cloudflare.com
A2a06:98c1:50::ac40:22afπŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRalexia.ns.cloudflare.com
A108.162.194.175πŸ‡ΊπŸ‡Έ Cloudflare108.162.194.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRalexia.ns.cloudflare.com
A162.159.38.175Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRalexia.ns.cloudflare.com
A172.64.34.175πŸ‡ΊπŸ‡Έ Cloudflare172.64.34.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRalexia.ns.cloudflare.com
NSarvind.ns.cloudflare.com
A2606:4700:58::a29f:2ce3πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRarvind.ns.cloudflare.com
A2803:f800:50::6ca2:c3e3πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRarvind.ns.cloudflare.com
A2a06:98c1:50::ac40:23e3πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRarvind.ns.cloudflare.com
A108.162.195.227πŸ‡ΊπŸ‡Έ Cloudflare108.162.195.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRarvind.ns.cloudflare.com
A162.159.44.227Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRarvind.ns.cloudflare.com
A172.64.35.227πŸ‡ΊπŸ‡Έ Cloudflare172.64.35.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRarvind.ns.cloudflare.com
MXroute2.mx.cloudflare.net ⭐
A2606:4700:f5::eπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A2606:4700:f5::fπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A2606:4700:f5::10πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A162.159.205.17Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A162.159.205.18Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A162.159.205.19Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
MXroute1.mx.cloudflare.net(58)
A2606:4700:f5::bπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A2606:4700:f5::cπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A2606:4700:f5::dπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A162.159.205.11Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A162.159.205.12Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A162.159.205.13Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
MXroute3.mx.cloudflare.net(62)
A2606:4700:f5::11πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A2606:4700:f5::12πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A2606:4700:f5::13πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A162.159.205.23Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A162.159.205.24Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A162.159.205.25Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
TXTv=spf1 include:_spf.mx.cloudflare.net ~all
SOAalexia.ns.cloudflare.comdns@cloudflare.com serial=2398950906

com

Same first word

DNS History

17 records (5 active, 12 former)

20162017201820192020202120222023202420252026NSalexia.ns.cloudflare.comarvind.ns.cloudflare.comns-cloud-d1.googledomains.comns-cloud-d2.googledomains.comns-cloud-d3.googledomains.comns-cloud-d4.googledomains.comMXroute1.mx.cloudflare.netroute2.mx.cloudflare.netroute3.mx.cloudflare.netalt1.gmr-smtp-in.l.google.comalt2.gmr-smtp-in.l.google.comalt3.gmr-smtp-in.l.google.comalt4.gmr-smtp-in.l.google.comgmr-smtp-in.l.google.comA192.241.196.9370.162.239.14670.176.172.161
●NSalexia.ns.cloudflare.com2026-03-28 β†’ 2026-03-28 Β· 2 obs
β—‹ 2017-12-05 05:36:34
● 2026-03-28 07:03:02
●NSarvind.ns.cloudflare.com2026-03-28 β†’ 2026-03-28 Β· 2 obs
β—‹ 2017-12-05 05:36:34
● 2026-03-28 07:03:02
β—‹NSns-cloud-d1.googledomains.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
β—‹NSns-cloud-d2.googledomains.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
β—‹NSns-cloud-d3.googledomains.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
β—‹NSns-cloud-d4.googledomains.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
β—‹MXalt1.gmr-smtp-in.l.google.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
β—‹MXalt2.gmr-smtp-in.l.google.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
β—‹MXalt3.gmr-smtp-in.l.google.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
β—‹MXalt4.gmr-smtp-in.l.google.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
β—‹MXgmr-smtp-in.l.google.com2015-05-14 β†’ 2017-12-05 Β· 3 obs
● 2015-05-14 20:37:26
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02
●MXroute1.mx.cloudflare.net2026-03-28 β†’ 2026-03-28 Β· 2 obs
β—‹ 2017-12-05 05:36:34
● 2026-03-28 07:03:02
●MXroute2.mx.cloudflare.net2026-03-28 β†’ 2026-03-28 Β· 2 obs
β—‹ 2017-12-05 05:36:34
● 2026-03-28 07:03:02
●MXroute3.mx.cloudflare.net2026-03-28 β†’ 2026-03-28 Β· 2 obs
β—‹ 2017-12-05 05:36:34
● 2026-03-28 07:03:02
β—‹A192.241.196.932015-05-14 β†’ 2015-05-14 Β· 3 obs
● 2015-05-14 20:37:26
β—‹ 2015-10-22 01:02:00
β—‹ 2026-03-28 07:03:02
β—‹A70.162.239.1462016-04-10 β†’ 2016-04-10 Β· 4 obs
β—‹ 2015-10-22 01:02:00
● 2016-04-10 09:04:52
β—‹ 2016-12-29 19:49:54
β—‹ 2026-03-28 07:03:02
β—‹A70.176.172.1612016-12-29 β†’ 2017-12-05 Β· 4 obs
β—‹ 2016-04-10 09:04:52
● 2016-12-29 19:49:54
● 2017-12-05 05:36:34
β—‹ 2026-03-28 07:03:02

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
comf.gtld-servers.net, k.gtld-servers.net, g.gtld-servers.net, c.gtld-servers.net...-
malwareprovider.comalexia.ns.cloudflare.com, arvind.ns.cloudflare.com12 records

βœ… Authoritative Response

Server:108.162.194.175

NS records: alexia.ns.cloudflare.com, arvind.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for malwareprovider.com (unsigned zone)

⏱️ Timing

Total: 105ms | Queries: -

πŸ“„ Records

TypeCountSample Data
NS2alexia.ns.cloudflare.com, arvind.ns.cloudflare.com
MX3route1.mx.cloudflare.net (pri: 58), route3.mx.cloudflare.net (pri: 62)...
TXT1v=spf1 include:_spf.mx.cloudflare.net ~a
SOA1alexia.ns.cloudflare.com dns.cloudflare.

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (alexia.ns.cloudflare.com, alexia.ns.cloudflare.com, alexia.ns.cloudflare.com...)

Analysis

Name Servers

Two name servers alexia.ns.cloudflare.com and arvind.ns.cloudflare.com handle the delegation for malwareprovider.com.

malwareprovider.com shares the same name server setup as other domains, for instance ultrablackjacklounge.com, unfk.com, crystalroyalplatform.com, sammamishmortgage.com and summitclub541.com.

malwareprovider.com at least partially shares name servers with other domains, for instance msnetsec.space, freez(0x736578).com, xn--4gqv95an7uftdd21c.com, shoesdna.com and fang59.com.

These name servers are commonly used with the following: plato.ns.cloudflare.com, gail.ns.cloudflare.com, garret.ns.cloudflare.com and meadow.ns.cloudflare.com.

Six IP addresses per host:

alexia.ns.cloudflare.com points to 2606:4700:50::a29f:26af, 2803:f800:50::6ca2:c2af, 2a06:98c1:50::ac40:22af, 108.162.194.175, 162.159.38.175 and 172.64.34.175; arvind.ns.cloudflare.com points to 2606:4700:58::a29f:2ce3, 2803:f800:50::6ca2:c3e3, 2a06:98c1:50::ac40:23e3, 108.162.195.227, 162.159.44.227 and 172.64.35.227

Mail Servers

Three mail servers handle malwareprovider.com: route1.mx.cloudflare.net, route2.mx.cloudflare.net and route3.mx.cloudflare.net.

malwareprovider.com shares at least partially some mail servers with other domains, for instance fb.co.at, s-anand.net, productionstrategies.biz, togatus.com.au and aviabelt.de.

Host names with six IP numbers:

- route1.mx.cloudflare.net points to 2606:4700:f5::b, 2606:4700:f5::c, 2606:4700:f5::d, 162.159.205.11, 162.159.205.12 and 162.159.205.13

- route2.mx.cloudflare.net points to 2606:4700:f5::e, 2606:4700:f5::f, 2606:4700:f5::10, 162.159.205.17, 162.159.205.18 and 162.159.205.19

- route3.mx.cloudflare.net points to 2606:4700:f5::11, 2606:4700:f5::12, 2606:4700:f5::13, 162.159.205.23, 162.159.205.24 and 162.159.205.25