malwarewarrior.com - robtex.com

malwarewarrior.com

DNSSEC⚠️ Not signed
A2606:4700:3032::ac43:d85eπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3032::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3033::6815:4b45πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3033::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.75.69Cloudflare104.21.64.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.216.94πŸ‡ΊπŸ‡Έ Cloudflare172.67.208.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSmarge.ns.cloudflare.com ⭐
A2606:4700:50::adf5:3abfπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmarge.ns.cloudflare.com
A2803:f800:50::6ca2:c0bfπŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRmarge.ns.cloudflare.com
A2a06:98c1:50::ac40:20bfπŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRmarge.ns.cloudflare.com
A108.162.192.191πŸ‡ΊπŸ‡Έ Cloudflare108.162.192.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmarge.ns.cloudflare.com
A172.64.32.191πŸ‡ΊπŸ‡Έ Cloudflare172.64.32.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmarge.ns.cloudflare.com
A173.245.58.191πŸ‡ΊπŸ‡Έ Cloudflare173.245.58.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmarge.ns.cloudflare.com
NSsterling.ns.cloudflare.com
A2606:4700:58::a29f:2c8fπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRsterling.ns.cloudflare.com
A2803:f800:50::6ca2:c38fπŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRsterling.ns.cloudflare.com
A2a06:98c1:50::ac40:238fπŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRsterling.ns.cloudflare.com
A108.162.195.143πŸ‡ΊπŸ‡Έ Cloudflare108.162.195.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRsterling.ns.cloudflare.com
A162.159.44.143Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRsterling.ns.cloudflare.com
A172.64.35.143πŸ‡ΊπŸ‡Έ Cloudflare172.64.35.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRsterling.ns.cloudflare.com
TXTgoogle-site-verification=xAd7x297UUZnc0IRL8rEBn29RHicxbq-bT78mC-KaR4
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4104.21.75.69, 172.67.216.94
IPv62606:4700:3032::ac43:d85e, 2606:4700:3033::6815:4b45
SOAmarge.ns.cloudflare.comdns@cloudflare.com serial=2396124982

com

Same first word

DNS History

13 records (6 active, 7 former)

20162017201820192020202120222023202420252026NSmarge.ns.cloudflare.comsterling.ns.cloudflare.comns1.exclusivehosting.netns2.exclusivehosting.netns3.exclusivehosting.netns4.exclusivehosting.netMXmx1.exclusivehosting.netmx2.exclusivehosting.netA104.21.75.69172.67.216.942606:4700:3032::ac43:d85e2606:4700:3033::6815:4b45162.210.97.18
●NSmarge.ns.cloudflare.com2026-03-13 β†’ 2026-03-23 Β· 3 obs
β—‹ 2017-01-04 10:05:04
● 2026-03-13 14:50:16
● 2026-03-23 02:57:26
β—‹NSns1.exclusivehosting.net2015-11-27 β†’ 2017-01-04 Β· 4 obs
● 2015-11-27 17:02:40
● 2017-01-04 10:05:04
β—‹ 2026-03-13 14:50:16
β—‹ 2026-03-23 02:57:26
β—‹NSns2.exclusivehosting.net2015-11-27 β†’ 2017-01-04 Β· 4 obs
● 2015-11-27 17:02:40
● 2017-01-04 10:05:04
β—‹ 2026-03-13 14:50:16
β—‹ 2026-03-23 02:57:26
β—‹NSns3.exclusivehosting.net2015-11-27 β†’ 2017-01-04 Β· 4 obs
● 2015-11-27 17:02:40
● 2017-01-04 10:05:04
β—‹ 2026-03-13 14:50:16
β—‹ 2026-03-23 02:57:26
β—‹NSns4.exclusivehosting.net2015-11-27 β†’ 2017-01-04 Β· 4 obs
● 2015-11-27 17:02:40
● 2017-01-04 10:05:04
β—‹ 2026-03-13 14:50:16
β—‹ 2026-03-23 02:57:26
●NSsterling.ns.cloudflare.com2026-03-13 β†’ 2026-03-23 Β· 3 obs
β—‹ 2017-01-04 10:05:04
● 2026-03-13 14:50:16
● 2026-03-23 02:57:26
β—‹MXmx1.exclusivehosting.net2015-11-27 β†’ 2017-01-04 Β· 4 obs
● 2015-11-27 17:02:40
● 2017-01-04 10:05:04
β—‹ 2026-03-13 14:50:16
β—‹ 2026-03-23 02:57:26
β—‹MXmx2.exclusivehosting.net2015-11-27 β†’ 2017-01-04 Β· 4 obs
● 2015-11-27 17:02:40
● 2017-01-04 10:05:04
β—‹ 2026-03-13 14:50:16
β—‹ 2026-03-23 02:57:26
●A104.21.75.692026-03-13 β†’ 2026-03-23 Β· 3 obs
β—‹ 2017-01-04 10:05:04
● 2026-03-13 14:50:16
● 2026-03-23 02:57:26
β—‹A162.210.97.182015-11-27 β†’ 2017-01-04 Β· 4 obs
● 2015-11-27 17:02:40
● 2017-01-04 10:05:04
β—‹ 2026-03-13 14:50:16
β—‹ 2026-03-23 02:57:26
●A172.67.216.942026-03-13 β†’ 2026-03-23 Β· 3 obs
β—‹ 2017-01-04 10:05:04
● 2026-03-13 14:50:16
● 2026-03-23 02:57:26
●A2606:4700:3032::ac43:d85e2026-03-13 β†’ 2026-03-23 Β· 3 obs
β—‹ 2017-01-04 10:05:04
● 2026-03-13 14:50:16
● 2026-03-23 02:57:26
●A2606:4700:3033::6815:4b452026-03-13 β†’ 2026-03-23 Β· 3 obs
β—‹ 2017-01-04 10:05:04
● 2026-03-13 14:50:16
● 2026-03-23 02:57:26

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
coma.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net...-
malwarewarrior.commarge.ns.cloudflare.com, sterling.ns.cloudflare.com12 records

βœ… Authoritative Response

Server:108.162.192.191

NS records: marge.ns.cloudflare.com, sterling.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for malwarewarrior.com (unsigned zone)

⏱️ Timing

Total: 158ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2172.67.216.94, 104.21.75.69
AAAA22606:4700:3033::6815:4b45, 2606:4700:3032::ac43:d85e
NS2marge.ns.cloudflare.com, sterling.ns.cloudflare.com
TXT1google-site-verification=xAd7x297UUZnc0I
HTTPS1{"priority":1,"target":".","alpn":["h3",
SOA1marge.ns.cloudflare.com dns.cloudflare.c

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (marge.ns.cloudflare.com, marge.ns.cloudflare.com, marge.ns.cloudflare.com...)

Analysis

IP Addresses

malwarewarrior.com points to four IP numbers: 2606:4700:3032::ac43:d85e, 2606:4700:3033::6815:4b45, 104.21.75.69 and 172.67.216.94.

Other host names, for instance www.institutomundobiblico.com.br, stageapi.justgreen.in, usdccs.de, coline.nl and domino365.com share IP numbers with malwarewarrior.com.

Name Servers

malwarewarrior.com is delegated to two name servers: marge.ns.cloudflare.com and sterling.ns.cloudflare.com.

malwarewarrior.com uses the same name server setup as other domains, for instance sportwetten-live.net, androsd.com, eric.org.uk, viralsita.com and nfd-jp-002.top.

malwarewarrior.com shares name servers with other domains at least partially, for instance aeronetwork.nl, 81df75.com, boost.ink, ottamplant.pro and bizsp.biz.

these name servers are commonly used together with sima.ns.cloudflare.com and dave.ns.cloudflare.com.

Host names with six IP numbers: marge.ns.cloudflare.com points to 2606:4700:50::adf5:3abf, 2803:f800:50::6ca2:c0bf, 2a06:98c1:50::ac40:20bf, 108.162.192.191, 172.64.32.191 and 173.245.58.191; sterling.ns.cloudflare.com points to 2606:4700:58::a29f:2c8f, 2803:f800:50::6ca2:c38f, 2a06:98c1:50::ac40:238f, 108.162.195.143, 162.159.44.143 and 172.64.35.143.