botnet.s3oox.com - robtex.com
botnet.s3oox.com
s3oox.com
| DNSSEC | β οΈ Not signed | ||||||
| A | 2600:1900:4001:96e:8000:1:2e42:3317πΊπΈ Google2600:1900:4000::/44 | ||||||
| A | 34.41.139.193πΊπΈ Google34.41.0.0/16 | ||||||
| NS | ns1.hwrn.net β | ||||||
| NS | ns2.hwrn.net | ||||||
| MX | mx1.csof.net β | ||||||
| MX | mx2.csof.net β | ||||||
| TXT | v=spf1 include:_incspfcheck.mailspike.net -all | ||||||
| SOA | ns1.hwrn.nethostmaster@hwrn.net 2026-05-11 #1 | ||||||
β οΈ On DNS blocklist: tif
Same first word
Similar names
DNS History
6 records (6 active, 0 former)
βA2600:1900:4001:96e:8000:1:2e42:33172026-04-13 β 2026-05-11 Β· 2 obs
β 2026-05-11 04:45:56
βA34.41.139.1932026-04-13 β 2026-05-11 Β· 2 obs
β 2026-05-11 04:45:56
π DNS Trace
π Delegation Chain
| Zone | Nameservers | Glue |
|---|---|---|
| com | l.gtld-servers.net, j.gtld-servers.net, h.gtld-servers.net, d.gtld-servers.net... | - |
| s3oox.com | ns2.hwrn.net, ns1.hwrn.net | - |
β Authoritative Response
Server:34.46.191.171
NS records: ns2.hwrn.net, ns1.hwrn.net
π DNSSEC Status
β οΈ Insecure (no DNSSEC)
No DS record for s3oox.com (unsigned zone)
β±οΈ Timing
Total: 467ms | Queries: -
π Records
| Type | Count | Sample Data |
|---|---|---|
| A | 1 | 34.41.139.193 |
| AAAA | 1 | 2600:1900:4001:96e:8000:1:2e42:3317 |
| NS | 2 | ns1.hwrn.net, ns2.hwrn.net |
| MX | 2 | mx2.csof.net (pri: 10), mx1.csof.net (pri: 10) |
| TXT | 1 | v=spf1 include:_incspfcheck.mailspike.ne |
Analysis
IP Addresses
botnet.s3oox.com points to two IPs: 2600:1900:4001:96e:8000:1:2e42:3317 and 34.41.139.193.
Other host names including ddns.cyberium.cc, 13.60.mozcom.net, 10.108.213.mozcom.net, kinotomclick7.kinoteatr.club and cbshost-68-111-40-59.sbcox.net share IP numbers with botnet.s3oox.com.
Name Servers
botnet.s3oox.com's delegation uses two name servers, ns1.hwrn.net and ns2.hwrn.net.
botnet.s3oox.com shares the same name server setup as other domains, for example ametrope.vadilops.ru, novye-multiki.zfilm-hd-2466.online, chaft.dedspac.ru, r1wsefpsv6tvsl.qwo231sdx.club and teuch.dedspac.ru.
Host names with six IP numbers:
ns1.hwrn.net points to: 2600:1900:4000:cb7c:8000::, 2600:1900:4061:58e:8000::, 2600:1900:4081:2f2:8000::, 34.32.207.228, 34.46.191.171 and 35.187.247.195.
ns2.hwrn.net points to: 2600:1900:4000:cb7c:8000:4::, 2600:1900:4061:58e:8000:4::, 2600:1900:4081:2f2:8000:4::, 34.124.162.145, 34.136.0.93 and 34.147.11.210.
Mail Servers
botnet.s3oox.com is handled by two mail servers: mx1.csof.net and mx2.csof.net.
botnet.s3oox.com shares its mail server setup with other domains, including 125.236.146.dynamic-mumbai.nivyah.com, bygane.virosat.ru, 49085.simplecloud.club, dreks.dedspac.ru and adsl.swiftgodfrey.adsl.entanet.co.uk.
Host names with a single IP:
mx1.csof.net points to 46.4.12.146.
mx2.csof.net points to 46.4.10.173.