malware.putahandleonit.com - robtex.com

malware.putahandleonit.com

DNSSEC⚠️ Not signed
A2606:4700:3031::6815:26d2πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3031::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3031::ac43:a87bπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3031::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.38.210Cloudflare104.21.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.168.123πŸ‡ΊπŸ‡Έ Cloudflare172.67.160.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4 hints104.21.38.210, 172.67.168.123
IPv6 hints2606:4700:3031::6815:26d2, 2606:4700:3031::ac43:a87b
ECHX25519, HKDF-SHA256 + AES-128-GCM draft, id=28, name=cloudflare-ech.com

putahandleonit.com

DNSSEC⚠️ Not signed
A2606:4700:3031::6815:26d2πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3031::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3031::ac43:a87bπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3031::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.38.210Cloudflare104.21.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.168.123πŸ‡ΊπŸ‡Έ Cloudflare172.67.160.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSsloan.ns.cloudflare.com ⭐
NSyoxall.ns.cloudflare.com
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4 hints104.21.38.210, 172.67.168.123
IPv6 hints2606:4700:3031::6815:26d2, 2606:4700:3031::ac43:a87b
ECHX25519, HKDF-SHA256 + AES-128-GCM draft, id=28, name=cloudflare-ech.com
SOAsloan.ns.cloudflare.comdns@cloudflare.com serial=2400933045
WOT: SAFE (62/100)
WOT: UNKNOWN (68/100)

Same first word

Similar names

DNS History

4 records (4 active, 0 former)

A104.21.38.210172.67.168.1232606:4700:3031::6815:26d22606:4700:3031::ac43:a87b
●A104.21.38.2102026-04-04 β†’ 2026-04-13 Β· 2 obs
● 2026-04-04 19:32:24
● 2026-04-13 12:59:22
●A172.67.168.1232026-04-04 β†’ 2026-04-13 Β· 2 obs
● 2026-04-04 19:32:24
● 2026-04-13 12:59:22
●A2606:4700:3031::6815:26d22026-04-04 β†’ 2026-04-13 Β· 2 obs
● 2026-04-04 19:32:24
● 2026-04-13 12:59:22
●A2606:4700:3031::ac43:a87b2026-04-04 β†’ 2026-04-13 Β· 2 obs
● 2026-04-04 19:32:24
● 2026-04-13 12:59:22

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
coml.gtld-servers.net, j.gtld-servers.net, h.gtld-servers.net, d.gtld-servers.net...-
putahandleonit.comsloan.ns.cloudflare.com, yoxall.ns.cloudflare.com12 records

βœ… Authoritative Response

Server:108.162.195.47

NS records: sloan.ns.cloudflare.com, yoxall.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for putahandleonit.com (unsigned zone)

⏱️ Timing

Total: 117ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2172.67.168.123, 104.21.38.210
AAAA22606:4700:3031::ac43:a87b, 2606:4700:3031::6815:26d2
HTTPS1{"priority":1,"target":".","alpn":["h3",

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (sloan.ns.cloudflare.com, sloan.ns.cloudflare.com, sloan.ns.cloudflare.com...)

Analysis

IP Addresses

malware.putahandleonit.com points to four IP numbers: 2606:4700:3031::6815:26d2, 2606:4700:3031::ac43:a87b, 104.21.38.210 and 172.67.168.123.

Other host names, for instance bd-bet247.com, muralpaintings.us, yzxdgg.com, vujilex.com and schellerpescagoya.com.ar share IP numbers with malware.putahandleonit.com.