phishfactor.com - robtex.com

phishfactor.com

DNSSEC⚠️ Not signed
A3.145.232.22πŸ‡ΊπŸ‡Έ Amazon3.144.0.0/13 EC2 CMH Prefix
PTRec2-3-145-232-22.us-east-2.compute.amazonaws.com
A3.145.232.23πŸ‡ΊπŸ‡Έ Amazon3.144.0.0/13 EC2 CMH Prefix
NSns-1418.awsdns-49.org ⭐
A2600:9000:5305:8a00::1πŸ‡ΊπŸ‡Έ Amazon2600:9000:5305::/48 - CloudFront
PTRns-1418.awsdns-49.org
A205.251.197.138πŸ‡ΊπŸ‡Έ Amazon205.251.197.0/24 prefix
PTRns-1418.awsdns-49.org
NSns-1947.awsdns-51.co.uk
A2600:9000:5307:9b00::1πŸ‡ΊπŸ‡Έ Amazon2600:9000:5307::/48 - CloudFront
PTRns-1947.awsdns-51.co.uk
A205.251.199.155πŸ‡ΊπŸ‡Έ Amazon205.251.199.0/24 prefix
PTRns-1947.awsdns-51.co.uk
NSns-293.awsdns-36.com
A2600:9000:5301:2500::1πŸ‡ΊπŸ‡Έ Amazon2600:9000:5301::/48 - CloudFront
PTRns-293.awsdns-36.com
A205.251.193.37πŸ‡ΊπŸ‡Έ Amazon205.251.193.0/24 prefix
PTRns-293.awsdns-36.com
NSns-789.awsdns-34.net
A2600:9000:5303:1500::1πŸ‡ΊπŸ‡Έ Amazon2600:9000:5303::/48 - CloudFront
PTRns-789.awsdns-34.net
A205.251.195.21πŸ‡ΊπŸ‡Έ Amazon205.251.195.0/24 prefix
PTRns-789.awsdns-34.net
MXmailhost.spearphish.com ⭐
A3.145.232.18πŸ‡ΊπŸ‡Έ Amazon3.144.0.0/13 EC2 CMH Prefix
PTRmailhost.spearphish.com
A3.145.232.19πŸ‡ΊπŸ‡Έ Amazon3.144.0.0/13 EC2 CMH Prefix
PTRmailhost.spearphish.com
TXTgoogle-site-verification=Rr45FDZ8jMIPuwLMWZR-YYEnpPfXa6-wISowk9reGPo
TXTv=spf1 mx ip4:3.145.232.16/28 -all
SOAns-1418.awsdns-49.orgawsdns-hostmaster@amazon.com serial=1

com

⚠️ On DNS blocklist: tif

Subdomains

Same first word

DNS History

20 records (7 active, 13 former)

20162017201820192020202120222023202420252026NSns-1418.awsdns-49.orgns-1947.awsdns-51.co.ukns-293.awsdns-36.comns-789.awsdns-34.netns1.p03.dynect.netns2.p03.dynect.netns3.p03.dynect.netns4.p03.dynect.netns5.dnsmadeeasy.comns6.dnsmadeeasy.comns7.dnsmadeeasy.comMXmailhost.spearphish.commail.spearphish.commail1.spearphish.commail2.spearphish.commail3.spearphish.comA3.145.232.223.145.232.2364.132.201.9274.203.211.12
●NSns-1418.awsdns-49.org2026-02-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-05-27 04:03:00
● 2026-02-15 05:25:34
● 2026-03-24 14:14:42
●NSns-1947.awsdns-51.co.uk2026-02-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-05-27 04:03:00
● 2026-02-15 05:25:34
● 2026-03-24 14:14:42
●NSns-293.awsdns-36.com2026-02-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-05-27 04:03:00
● 2026-02-15 05:25:34
● 2026-03-24 14:14:42
●NSns-789.awsdns-34.net2026-02-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-05-27 04:03:00
● 2026-02-15 05:25:34
● 2026-03-24 14:14:42
β—‹NSns1.p03.dynect.net2015-07-22 β†’ 2017-05-27 Β· 4 obs
● 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹NSns2.p03.dynect.net2015-07-22 β†’ 2017-05-27 Β· 4 obs
● 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹NSns3.p03.dynect.net2015-07-22 β†’ 2017-05-27 Β· 4 obs
● 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹NSns4.p03.dynect.net2015-07-22 β†’ 2017-05-27 Β· 4 obs
● 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹NSns5.dnsmadeeasy.com2017-05-27 β†’ 2017-05-27 Β· 4 obs
β—‹ 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹NSns6.dnsmadeeasy.com2017-05-27 β†’ 2017-05-27 Β· 4 obs
β—‹ 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹NSns7.dnsmadeeasy.com2017-05-27 β†’ 2017-05-27 Β· 4 obs
β—‹ 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹MXmail.spearphish.com2015-07-22 β†’ 2017-05-27 Β· 4 obs
● 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹MXmail1.spearphish.com2015-07-22 β†’ 2017-05-27 Β· 4 obs
● 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹MXmail2.spearphish.com2015-07-22 β†’ 2017-05-27 Β· 4 obs
● 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
β—‹MXmail3.spearphish.com2015-07-22 β†’ 2017-05-27 Β· 4 obs
● 2015-07-22 09:56:44
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42
●MXmailhost.spearphish.com2026-02-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-05-27 04:03:00
● 2026-02-15 05:25:34
● 2026-03-24 14:14:42
●A3.145.232.222026-02-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-05-27 04:03:00
● 2026-02-15 05:25:34
● 2026-03-24 14:14:42
●A3.145.232.232026-02-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-05-27 04:03:00
● 2026-02-15 05:25:34
● 2026-03-24 14:14:42
β—‹A64.132.201.922016-04-19 β†’ 2016-04-19 Β· 4 obs
β—‹ 2016-03-22 15:15:48
● 2016-04-19 06:56:58
β—‹ 2016-04-26 21:33:30
β—‹ 2026-03-24 14:14:42
β—‹A74.203.211.122015-07-22 β†’ 2017-05-27 Β· 7 obs
● 2015-07-22 09:56:44
● 2016-03-22 15:15:48
β—‹ 2016-04-19 06:56:58
● 2016-04-26 21:33:30
● 2017-05-27 04:03:00
β—‹ 2026-02-15 05:25:34
β—‹ 2026-03-24 14:14:42

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
comb.gtld-servers.net, c.gtld-servers.net, e.gtld-servers.net, g.gtld-servers.net...-
phishfactor.comns-293.awsdns-36.com, ns-789.awsdns-34.net, ns-1947.awsdns-51.co.uk, ns-1418.awsdns-49.org1 record

βœ… Authoritative Response

Server:205.251.197.138

NS records: ns-293.awsdns-36.com, ns-789.awsdns-34.net, ns-1947.awsdns-51.co.uk, ns-1418.awsdns-49.org

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for phishfactor.com (unsigned zone)

⏱️ Timing

Total: 605ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A23.145.232.23, 3.145.232.22
NS4ns-1418.awsdns-49.org, ns-1947.awsdns-51.co.uk...
MX1mailhost.spearphish.com (pri: 5)
TXT2google-site-verification=Rr45FDZ8jMIPuwL, v=spf1 mx ip4:3.145.232.16/28 -all
SOA1ns-1418.awsdns-49.org awsdns-hostmaster.

πŸ“Œ Glue Records Collected

Total: 1

Out-of-bailiwick: 1 (ns-293.awsdns-36.com)

Analysis

Hierarchy

The parent of www.phishfactor.com is phishfactor.com.

IP Addresses

Two IP numbers are pointed to by phishfactor.com: 3.145.232.22 and 3.145.232.23.

other host names include enviroptix.com, auction-it-all.com, email365access.com, frauddetected.info and thisisphishing.info; they share IP numbers with phishfactor.com.

Name Servers

phishfactor.com delegates to four name servers: ns-293.awsdns-36.com, ns-789.awsdns-34.net, ns-1418.awsdns-49.org and ns-1947.awsdns-51.co.uk.

phishfactor.com at least partially shares name servers with other domains, for instance mitsloan.pl, d1qb9rz1z8xru8.cloudfront.net, 255.9.203.in-addr.arpa, 356racing.com and wooxabst.top.

These name servers are commonly used alongside ns-350.awsdns-43.com, ns-529.awsdns-02.net and ns-1742.awsdns-25.co.uk.

Host names with two IP numbers: ns-293.awsdns-36.com points to 2600:9000:5301:2500::1 and 205.251.193.37; ns-789.awsdns-34.net points to 2600:9000:5303:1500::1 and 205.251.195.21; ns-1418.awsdns-49.org points to 2600:9000:5305:8a00::1 and 205.251.197.138; ns-1947.awsdns-51.co.uk points to 2600:9000:5307:9b00::1 and 205.251.199.155.

Mail Servers

phishfactor.com is handled by a single mail server, mailhost.spearphish.com.

phishfactor.com uses the same mail server setup as other domains, for instance amcarebank.com, neverclick.net, joinmyconferenc.com, yourchance2winit.com and orderprocessinginfo.com.

phishfactor.com shares at least some mail servers with other domains, for instance vedastaad.com.

mailhost.spearphish.com resolves to two IPs: 3.145.232.18 and 3.145.232.19.