nefariouslabs.com - robtex.com

nefariouslabs.com

DNSSEC⚠️ Not signed
A2606:4700:3034::6815:14c9πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3034::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3037::ac43:c261πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3037::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.20.201Cloudflare104.21.16.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.194.97πŸ‡ΊπŸ‡Έ Cloudflare172.67.192.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSmary.ns.cloudflare.com ⭐
A2606:4700:50::adf5:3a86πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmary.ns.cloudflare.com
A2803:f800:50::6ca2:c086πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRmary.ns.cloudflare.com
A2a06:98c1:50::ac40:2086πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRmary.ns.cloudflare.com
A108.162.192.134πŸ‡ΊπŸ‡Έ Cloudflare108.162.192.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmary.ns.cloudflare.com
A172.64.32.134πŸ‡ΊπŸ‡Έ Cloudflare172.64.32.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmary.ns.cloudflare.com
A173.245.58.134πŸ‡ΊπŸ‡Έ Cloudflare173.245.58.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmary.ns.cloudflare.com
NStoby.ns.cloudflare.com
A2606:4700:58::adf5:3befπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtoby.ns.cloudflare.com
A2803:f800:50::6ca2:c1efπŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRtoby.ns.cloudflare.com
A2a06:98c1:50::ac40:21efπŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRtoby.ns.cloudflare.com
A108.162.193.239πŸ‡ΊπŸ‡Έ Cloudflare108.162.193.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtoby.ns.cloudflare.com
A172.64.33.239πŸ‡ΊπŸ‡Έ Cloudflare172.64.33.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtoby.ns.cloudflare.com
A173.245.59.239πŸ‡ΊπŸ‡Έ Cloudflare173.245.59.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtoby.ns.cloudflare.com
MXmonday-relay.mxrouting.net ⭐
A45.43.208.27πŸ‡ΊπŸ‡Έ QUICKPACKET45.43.208.0/24 QuickPacket LLC
PTRmonday.mxrouting.net
MXmonday.mxrouting.net(20)
A45.43.208.27πŸ‡ΊπŸ‡Έ QUICKPACKET45.43.208.0/24 QuickPacket LLC
PTRmonday.mxrouting.net
TXTgoogle-site-verification=gkUYFahkRq4e9OsrKehwkkcwOAYdnxWlj6-IwpGgEiM
TXTv=spf1 a mx ip4:45.58.122.34 ~all
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4104.21.20.201, 172.67.194.97
IPv62606:4700:3034::6815:14c9, 2606:4700:3037::ac43:c261
SOAmary.ns.cloudflare.comdns@cloudflare.com serial=2398307862

com

Same first word

DNS History

18 records (8 active, 10 former)

20162017201820192020202120222023202420252026NSmary.ns.cloudflare.comtoby.ns.cloudflare.comns15.domaincontrol.comns16.domaincontrol.comMXmonday-relay.mxrouting.netmonday.mxrouting.netalt1.aspmx.l.google.comalt2.aspmx.l.google.comaspmx.l.google.comaspmx2.googlemail.comaspmx3.googlemail.comA104.21.20.201172.67.194.972606:4700:3034::6815:14c92606:4700:3037::ac43:c261104.199.116.147104.199.119.1723.92.18.200
●NSmary.ns.cloudflare.com2026-03-04 β†’ 2026-03-24 Β· 3 obs
β—‹ 2020-02-21 23:19:52
● 2026-03-04 13:16:52
● 2026-03-24 07:37:52
β—‹NSns15.domaincontrol.com2015-07-24 β†’ 2020-02-21 Β· 4 obs
● 2015-07-24 11:33:14
● 2020-02-21 23:19:52
β—‹ 2026-03-04 13:16:52
β—‹ 2026-03-24 07:37:52
β—‹NSns16.domaincontrol.com2015-07-24 β†’ 2020-02-21 Β· 4 obs
● 2015-07-24 11:33:14
● 2020-02-21 23:19:52
β—‹ 2026-03-04 13:16:52
β—‹ 2026-03-24 07:37:52
●NStoby.ns.cloudflare.com2026-03-04 β†’ 2026-03-24 Β· 3 obs
β—‹ 2020-02-21 23:19:52
● 2026-03-04 13:16:52
● 2026-03-24 07:37:52
β—‹MXalt1.aspmx.l.google.com2015-07-24 β†’ 2020-02-21 Β· 4 obs
● 2015-07-24 11:33:14
● 2020-02-21 23:19:52
β—‹ 2026-03-04 13:16:52
β—‹ 2026-03-24 07:37:52
β—‹MXalt2.aspmx.l.google.com2015-07-24 β†’ 2020-02-21 Β· 4 obs
● 2015-07-24 11:33:14
● 2020-02-21 23:19:52
β—‹ 2026-03-04 13:16:52
β—‹ 2026-03-24 07:37:52
β—‹MXaspmx.l.google.com2015-07-24 β†’ 2020-02-21 Β· 4 obs
● 2015-07-24 11:33:14
● 2020-02-21 23:19:52
β—‹ 2026-03-04 13:16:52
β—‹ 2026-03-24 07:37:52
β—‹MXaspmx2.googlemail.com2015-07-24 β†’ 2020-02-21 Β· 4 obs
● 2015-07-24 11:33:14
● 2020-02-21 23:19:52
β—‹ 2026-03-04 13:16:52
β—‹ 2026-03-24 07:37:52
β—‹MXaspmx3.googlemail.com2015-07-24 β†’ 2020-02-21 Β· 4 obs
● 2015-07-24 11:33:14
● 2020-02-21 23:19:52
β—‹ 2026-03-04 13:16:52
β—‹ 2026-03-24 07:37:52
●MXmonday-relay.mxrouting.net2026-03-04 β†’ 2026-03-24 Β· 3 obs
β—‹ 2020-02-21 23:19:52
● 2026-03-04 13:16:52
● 2026-03-24 07:37:52
●MXmonday.mxrouting.net2026-03-04 β†’ 2026-03-24 Β· 3 obs
β—‹ 2020-02-21 23:19:52
● 2026-03-04 13:16:52
● 2026-03-24 07:37:52
β—‹A104.199.116.1472017-03-20 β†’ 2017-03-20 Β· 4 obs
β—‹ 2016-07-14 23:37:06
● 2017-03-20 10:12:54
β—‹ 2020-02-21 23:19:52
β—‹ 2026-03-24 07:37:52
β—‹A104.199.119.172020-02-21 β†’ 2020-02-21 Β· 4 obs
β—‹ 2017-03-20 10:12:54
● 2020-02-21 23:19:52
β—‹ 2026-03-04 13:16:52
β—‹ 2026-03-24 07:37:52
●A104.21.20.2012026-03-04 β†’ 2026-03-24 Β· 3 obs
β—‹ 2020-02-21 23:19:52
● 2026-03-04 13:16:52
● 2026-03-24 07:37:52
●A172.67.194.972026-03-04 β†’ 2026-03-24 Β· 3 obs
β—‹ 2020-02-21 23:19:52
● 2026-03-04 13:16:52
● 2026-03-24 07:37:52
β—‹A23.92.18.2002015-07-24 β†’ 2016-07-14 Β· 4 obs
● 2015-07-24 11:33:14
● 2016-07-14 23:37:06
β—‹ 2017-03-20 10:12:54
β—‹ 2026-03-24 07:37:52
●A2606:4700:3034::6815:14c92026-03-04 β†’ 2026-03-24 Β· 3 obs
β—‹ 2020-02-21 23:19:52
● 2026-03-04 13:16:52
● 2026-03-24 07:37:52
●A2606:4700:3037::ac43:c2612026-03-04 β†’ 2026-03-24 Β· 3 obs
β—‹ 2020-02-21 23:19:52
● 2026-03-04 13:16:52
● 2026-03-24 07:37:52

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
coml.gtld-servers.net, j.gtld-servers.net, h.gtld-servers.net, d.gtld-servers.net...-
nefariouslabs.commary.ns.cloudflare.com, toby.ns.cloudflare.com12 records

βœ… Authoritative Response

Server:108.162.193.239

NS records: mary.ns.cloudflare.com, toby.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for nefariouslabs.com (unsigned zone)

⏱️ Timing

Total: 145ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2104.21.20.201, 172.67.194.97
AAAA22606:4700:3037::ac43:c261, 2606:4700:3034::6815:14c9
NS2mary.ns.cloudflare.com, toby.ns.cloudflare.com
MX2monday.mxrouting.net (pri: 10), monday-relay.mxrouting.net (pri: 20)
TXT2google-site-verification=gkUYFahkRq4e9Os, v=spf1 a mx ip4:45.58.122.34 ~all
HTTPS1{"priority":1,"target":".","alpn":["h3",
SOA1mary.ns.cloudflare.com dns.cloudflare.co

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (mary.ns.cloudflare.com, mary.ns.cloudflare.com, mary.ns.cloudflare.com...)

Analysis

IP Addresses

Four IP numbers are pointed to by nefariouslabs.com: 2606:4700:3034::6815:14c9, 2606:4700:3037::ac43:c261, 104.21.20.201 and 172.67.194.97.

other host names including epajumo.top, www.hd(0x706f726e)free.tv, simeon.ws, lipnews1.com and trendymodernoptical.com share IP numbers with nefariouslabs.com.

Name Servers

nefariouslabs.com is delegated to two name servers mary.ns.cloudflare.com and toby.ns.cloudflare.com.

nefariouslabs.com shares the same name server setup as other domains, for instance bansoft.com, segurancadotrabalhonwn.com, everlastting.com, thevack.ru and software-clinic.pl.

nefariouslabs.com at least partially shares name servers with other domains, for instance helen-volga.com, bons2reduction.com, fisitihaoncollective.digital, vanmeer.com and munabe.es.

these name servers are commonly used alongside ollie.ns.cloudflare.com.

Host names with six IP numbers:

Host name mary.ns.cloudflare.com points to: 2606:4700:50::adf5:3a86, 2803:f800:50::6ca2:c086, 2a06:98c1:50::ac40:2086, 108.162.192.134, 172.64.32.134 and 173.245.58.134.

Host name toby.ns.cloudflare.com points to: 2606:4700:58::adf5:3bef, 2803:f800:50::6ca2:c1ef, 2a06:98c1:50::ac40:21ef, 108.162.193.239, 172.64.33.239 and 173.245.59.239.

Mail Servers

Two mail servers handle nefariouslabs.com: monday-relay.mxrouting.net and monday.mxrouting.net.

nefariouslabs.com shares the same mail server setup as other domains, for instance paulovic.com, greenwoodny.gov, icandoathing.com, wehas(0x706f726e).com and dallastxgaragedoor.com.

nefariouslabs.com shares some mail servers with other domains, at least partially, for instance kinda-awesome.com, pimpin101.net, 2nedev.co.uk, wopr.net and rassin.net.

Host names with a single IP:

monday-relay.mxrouting.net points to 45.43.208.27.

monday.mxrouting.net points to 45.43.208.27.

Host names pointing to 45.43.208.27: monday-relay.mxrouting.net and monday.mxrouting.net.