threat-surface.com - robtex.com

threat-surface.com

DNSSECโš ๏ธ Not signed
A2606:4700:3033::6815:6077๐Ÿ‡บ๐Ÿ‡ธ Cloudflare2606:4700:3033::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US โœ“ In HTTPS hints
A2606:4700:3037::ac43:b40c๐Ÿ‡บ๐Ÿ‡ธ Cloudflare2606:4700:3037::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US โœ“ In HTTPS hints
A104.21.96.119Cloudflare104.21.96.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US โœ“ In HTTPS hints
A172.67.180.12๐Ÿ‡บ๐Ÿ‡ธ Cloudflare172.67.176.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US โœ“ In HTTPS hints
NSaarav.ns.cloudflare.com โญ
A2606:4700:58::a29f:2c3c๐Ÿ‡บ๐Ÿ‡ธ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRaarav.ns.cloudflare.com
A2803:f800:50::6ca2:c33c๐Ÿ‡จ๐Ÿ‡ท Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRaarav.ns.cloudflare.com
A2a06:98c1:50::ac40:233c๐Ÿ‡บ๐Ÿ‡ธ Cloudflare2a06:98c1:50::/45
PTRaarav.ns.cloudflare.com
A108.162.195.60๐Ÿ‡บ๐Ÿ‡ธ Cloudflare108.162.195.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRaarav.ns.cloudflare.com
A162.159.44.60Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRaarav.ns.cloudflare.com
A172.64.35.60๐Ÿ‡บ๐Ÿ‡ธ Cloudflare172.64.35.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRaarav.ns.cloudflare.com
NScora.ns.cloudflare.com
A2606:4700:50::a29f:26c3๐Ÿ‡บ๐Ÿ‡ธ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRcora.ns.cloudflare.com
A2803:f800:50::6ca2:c2c3๐Ÿ‡จ๐Ÿ‡ท Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRcora.ns.cloudflare.com
A2a06:98c1:50::ac40:22c3๐Ÿ‡บ๐Ÿ‡ธ Cloudflare2a06:98c1:50::/45
PTRcora.ns.cloudflare.com
A108.162.194.195๐Ÿ‡บ๐Ÿ‡ธ Cloudflare108.162.194.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRcora.ns.cloudflare.com
A162.159.38.195Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRcora.ns.cloudflare.com
A172.64.34.195๐Ÿ‡บ๐Ÿ‡ธ Cloudflare172.64.34.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRcora.ns.cloudflare.com
MXthreatsurface-com01e.mail.protection.outlook.com โญ
A2a01:111:f403:ca04::10๐Ÿ‡ฎ๐Ÿ‡ช Microsoft2a01:111:f000::/36
PTRmail-dbapr03cu00100.inbound.protection.outlook.com
A2a01:111:f403:ca09::6๐Ÿ‡ณ๐Ÿ‡ฑ Microsoft2a01:111:f000::/36
PTRmail-am4pr0401cu00106.inbound.protection.outlook.com
A2a01:111:f403:ca09::8๐Ÿ‡ณ๐Ÿ‡ฑ Microsoft2a01:111:f000::/36
PTRmail-as2pr05cu00100.inbound.protection.outlook.com
A2a01:111:f403:ca09::b๐Ÿ‡ณ๐Ÿ‡ฑ Microsoft2a01:111:f000::/36
PTRmail-am7pr05cu00103.inbound.protection.outlook.com
A52.101.68.0๐Ÿ‡ฎ๐Ÿ‡ช Microsoft52.96.0.0/12 MICROSOFT
PTRmail-db3pr0202cu00100.inbound.protection.outlook.com
A52.101.68.18๐Ÿ‡ฎ๐Ÿ‡ช Microsoft52.96.0.0/12 MICROSOFT
PTRmail-db4pr02cu00302.inbound.protection.outlook.com
A52.101.73.2๐Ÿ‡ณ๐Ÿ‡ฑ Microsoft52.96.0.0/12 MICROSOFT
PTRmail-as9pr07cu00302.inbound.protection.outlook.com
A52.101.73.11๐Ÿ‡ณ๐Ÿ‡ฑ Microsoft52.96.0.0/12 MICROSOFT
PTRmail-am1pr04cu00103.inbound.protection.outlook.com
TXTMS=ms35683708
TXTgoogle-site-verification=4mbEHsvSf7W1MCnSNXx0HC9j3GTBASefcdk4Y6cq3KU
TXTv=spf1 include:spf.protection.outlook.com -all
HTTPSHTTP/3, HTTP/2 โœ“ hints match
IPv4 hints104.21.96.119, 172.67.180.12
IPv6 hints2606:4700:3033::6815:6077, 2606:4700:3037::ac43:b40c
ECHX25519, HKDF-SHA256 + AES-128-GCM draft, id=166, name=cloudflare-ech.com
SOAaarav.ns.cloudflare.comdns@cloudflare.com serial=2404210099

com

๐Ÿ”’ HSTS Preload (+subdomains)

Same first word

DNS History

7 records (7 active, 0 former)

NSaarav.ns.cloudflare.comcora.ns.cloudflare.comMXthreatsurface-com01e.mail.protection.outlook.comA104.21.96.119172.67.180.122606:4700:3033::6815:60772606:4700:3037::ac43:b40c
โ—NSaarav.ns.cloudflare.com2026-05-07 โ†’ 2026-05-14 ยท 2 obs
โ— 2026-05-07 20:01:06
โ— 2026-05-14 21:54:56
โ—NScora.ns.cloudflare.com2026-05-07 โ†’ 2026-05-14 ยท 2 obs
โ— 2026-05-07 20:01:06
โ— 2026-05-14 21:54:56
โ—MXthreatsurface-com01e.mail.protection.outlook.com2026-05-07 โ†’ 2026-05-14 ยท 2 obs
โ— 2026-05-07 20:01:06
โ— 2026-05-14 21:54:56
โ—A104.21.96.1192026-05-07 โ†’ 2026-05-14 ยท 2 obs
โ— 2026-05-07 20:01:06
โ— 2026-05-14 21:54:56
โ—A172.67.180.122026-05-07 โ†’ 2026-05-14 ยท 2 obs
โ— 2026-05-07 20:01:06
โ— 2026-05-14 21:54:56
โ—A2606:4700:3033::6815:60772026-05-07 โ†’ 2026-05-14 ยท 2 obs
โ— 2026-05-07 20:01:06
โ— 2026-05-14 21:54:56
โ—A2606:4700:3037::ac43:b40c2026-05-07 โ†’ 2026-05-14 ยท 2 obs
โ— 2026-05-07 20:01:06
โ— 2026-05-14 21:54:56

๐Ÿ” DNS Trace

๐Ÿ“‹ Delegation Chain

ZoneNameserversGlue
coma.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net...-
threat-surface.comcora.ns.cloudflare.com, aarav.ns.cloudflare.com12 records

โœ… Authoritative Response

Server:108.162.195.60

NS records: cora.ns.cloudflare.com, aarav.ns.cloudflare.com

๐Ÿ”’ DNSSEC Status

๐Ÿ” Secure (DNSSEC validated)

Chain of trust verified from root to domain

โฑ๏ธ Timing

Total: 145ms | Queries: -

๐Ÿ“„ Records

TypeCountSample Data
A2104.21.96.119, 172.67.180.12
AAAA22606:4700:3037::ac43:b40c, 2606:4700:3033::6815:6077
NS2aarav.ns.cloudflare.com, cora.ns.cloudflare.com
MX1threatsurface-com01e.mail.protection.out
TXT3MS=ms35683708, google-site-verification=4mbEHsvSf7W1MCn...
HTTPS1{"priority":1,"target":".","alpn":["h3",
SOA1aarav.ns.cloudflare.com dns.cloudflare.c

๐Ÿ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (cora.ns.cloudflare.com, cora.ns.cloudflare.com, cora.ns.cloudflare.com...)

Analysis

IP Addresses

threat-surface.com resolves to four IP numbers: 2606:4700:3033::6815:6077, 2606:4700:3037::ac43:b40c, 104.21.96.119 and 172.67.180.12.

Other host names such as key3.net, tesd-74949.supersauto.ru, pruebas.juventudesgente.gob.mx, mail2.grannybet.com and tesd-35876.ntksteel.ru share IPs with threat-surface.com.

Name Servers

threat-surface.com is delegated to two name servers: aarav.ns.cloudflare.com and cora.ns.cloudflare.com.

threat-surface.com shares the same name server setup as uvm.cl, mengqiqi.org, apgsaas.com, mnunitedtickets.com and flyingpeas.com.

threat-surface.com at least partially shares name servers with other domains, for instance gulit.win, jodo.net, oldmangay(0x706f726e).com, xn-----8kcagdjjtibd4cwcwaa.xn--p1ai and thejumpyplacekyle.com.

These name servers are commonly used with ines.ns.cloudflare.com and tia.ns.cloudflare.com.

Host names with six IP numbers:

aarav.ns.cloudflare.com points to 2606:4700:58::a29f:2c3c, 2803:f800:50::6ca2:c33c, 2a06:98c1:50::ac40:233c, 108.162.195.60, 162.159.44.60 and 172.64.35.60.

cora.ns.cloudflare.com points to 2606:4700:50::a29f:26c3, 2803:f800:50::6ca2:c2c3, 2a06:98c1:50::ac40:22c3, 108.162.194.195, 162.159.38.195 and 172.64.34.195.

Mail Servers

threat-surface.com is handled by a single mail server, threatsurface-com01e.mail.protection.outlook.com.

Host name threatsurface-com01e.mail.protection.outlook.com points to eight IP numbers: 2a01:111:f403:ca04::10, 2a01:111:f403:ca09::6, 2a01:111:f403:ca09::8, 2a01:111:f403:ca09::b, 52.101.68.0, 52.101.68.18, 52.101.73.2 and 52.101.73.11.