suspicious.info - robtex.com

suspicious.info

DNSSEC⚠️ Not signed
A2606:4700:3030::ac43:8d17πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3030::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3037::6815:46fcπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3037::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.70.252Cloudflare104.21.64.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.141.23πŸ‡ΊπŸ‡Έ Cloudflare172.67.128.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSmaya.ns.cloudflare.com ⭐
A2606:4700:50::adf5:3ac2πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmaya.ns.cloudflare.com
A2803:f800:50::6ca2:c0c2πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRmaya.ns.cloudflare.com
A2a06:98c1:50::ac40:20c2πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRmaya.ns.cloudflare.com
A108.162.192.194πŸ‡ΊπŸ‡Έ Cloudflare108.162.192.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmaya.ns.cloudflare.com
A172.64.32.194πŸ‡ΊπŸ‡Έ Cloudflare172.64.32.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmaya.ns.cloudflare.com
A173.245.58.194πŸ‡ΊπŸ‡Έ Cloudflare173.245.58.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRmaya.ns.cloudflare.com
NSricardo.ns.cloudflare.com
A2606:4700:58::a29f:2cd3πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRricardo.ns.cloudflare.com
A2803:f800:50::6ca2:c3d3πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRricardo.ns.cloudflare.com
A2a06:98c1:50::ac40:23d3πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRricardo.ns.cloudflare.com
A108.162.195.211πŸ‡ΊπŸ‡Έ Cloudflare108.162.195.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRricardo.ns.cloudflare.com
A162.159.44.211Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRricardo.ns.cloudflare.com
A172.64.35.211πŸ‡ΊπŸ‡Έ Cloudflare172.64.35.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRricardo.ns.cloudflare.com
MXroute2.mx.cloudflare.net ⭐
A2606:4700:f5::eπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A2606:4700:f5::fπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A2606:4700:f5::10πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A162.159.205.17Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A162.159.205.18Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
A162.159.205.19Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute2.mx.cloudflare.net
MXroute1.mx.cloudflare.net(49)
A2606:4700:f5::bπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A2606:4700:f5::cπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A2606:4700:f5::dπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A162.159.205.11Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A162.159.205.12Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
A162.159.205.13Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute1.mx.cloudflare.net
MXroute3.mx.cloudflare.net(54)
A2606:4700:f5::11πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A2606:4700:f5::12πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A2606:4700:f5::13πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:f5::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A162.159.205.23Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A162.159.205.24Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
A162.159.205.25Cloudflare162.159.205.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRroute3.mx.cloudflare.net
TXTv=spf1 include:_spf.mx.cloudflare.net ~all
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4104.21.70.252, 172.67.141.23
IPv62606:4700:3030::ac43:8d17, 2606:4700:3037::6815:46fc
SOAmaya.ns.cloudflare.comdns@cloudflare.com serial=2399799332

info

DNSSECπŸ”’ Signed (DS record present)
NSa0.info.afilias-nst.info ⭐
NSa2.info.afilias-nst.info
NSb0.info.afilias-nst.org ⚠️ Not in parent delegation
NSb2.info.afilias-nst.org ⚠️ Not in parent delegation
NSc0.info.afilias-nst.info
NSd0.info.afilias-nst.org ⚠️ Not in parent delegation
SOAa0.info.afilias-nst.infohostmaster@donuts.email serial=1773555327

Same first word

DNS History

21 records (9 active, 12 former)

20162017201820192020202120222023202420252026NSmaya.ns.cloudflare.comricardo.ns.cloudflare.combuy.internettraffic.comdns1.registrar-servers.comdns2.registrar-servers.comsell.internettraffic.comMXroute1.mx.cloudflare.netroute2.mx.cloudflare.netroute3.mx.cloudflare.neteforward1.registrar-servers.comeforward2.registrar-servers.comeforward3.registrar-servers.comeforward4.registrar-servers.comeforward5.registrar-servers.comA104.21.70.252172.67.141.232606:4700:3030::ac43:8d172606:4700:3037::6815:46fc162.255.119.1569.172.201.15369.172.201.208
β—‹NSbuy.internettraffic.com2015-07-11 β†’ 2016-07-18 Β· 4 obs
● 2015-07-11 08:18:16
● 2016-07-18 09:03:38
β—‹ 2017-03-27 12:50:22
β—‹ 2026-03-24 06:18:04
β—‹NSdns1.registrar-servers.com2017-03-27 β†’ 2017-03-27 Β· 4 obs
β—‹ 2016-07-18 09:03:38
● 2017-03-27 12:50:22
β—‹ 2026-03-15 00:20:22
β—‹ 2026-03-24 06:18:04
β—‹NSdns2.registrar-servers.com2017-03-27 β†’ 2017-03-27 Β· 4 obs
β—‹ 2016-07-18 09:03:38
● 2017-03-27 12:50:22
β—‹ 2026-03-15 00:20:22
β—‹ 2026-03-24 06:18:04
●NSmaya.ns.cloudflare.com2026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
●NSricardo.ns.cloudflare.com2026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
β—‹NSsell.internettraffic.com2015-07-11 β†’ 2016-07-18 Β· 4 obs
● 2015-07-11 08:18:16
● 2016-07-18 09:03:38
β—‹ 2017-03-27 12:50:22
β—‹ 2026-03-24 06:18:04
β—‹MXeforward1.registrar-servers.com2017-03-27 β†’ 2017-03-27 Β· 3 obs
● 2017-03-27 12:50:22
β—‹ 2026-03-15 00:20:22
β—‹ 2026-03-24 06:18:04
β—‹MXeforward2.registrar-servers.com2017-03-27 β†’ 2017-03-27 Β· 3 obs
● 2017-03-27 12:50:22
β—‹ 2026-03-15 00:20:22
β—‹ 2026-03-24 06:18:04
β—‹MXeforward3.registrar-servers.com2017-03-27 β†’ 2017-03-27 Β· 3 obs
● 2017-03-27 12:50:22
β—‹ 2026-03-15 00:20:22
β—‹ 2026-03-24 06:18:04
β—‹MXeforward4.registrar-servers.com2017-03-27 β†’ 2017-03-27 Β· 3 obs
● 2017-03-27 12:50:22
β—‹ 2026-03-15 00:20:22
β—‹ 2026-03-24 06:18:04
β—‹MXeforward5.registrar-servers.com2017-03-27 β†’ 2017-03-27 Β· 3 obs
● 2017-03-27 12:50:22
β—‹ 2026-03-15 00:20:22
β—‹ 2026-03-24 06:18:04
●MXroute1.mx.cloudflare.net2026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
●MXroute2.mx.cloudflare.net2026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
●MXroute3.mx.cloudflare.net2026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
●A104.21.70.2522026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
β—‹A162.255.119.152017-03-27 β†’ 2017-03-27 Β· 4 obs
β—‹ 2016-07-18 09:03:38
● 2017-03-27 12:50:22
β—‹ 2026-03-15 00:20:22
β—‹ 2026-03-24 06:18:04
●A172.67.141.232026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
●A2606:4700:3030::ac43:8d172026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
●A2606:4700:3037::6815:46fc2026-03-15 β†’ 2026-03-24 Β· 3 obs
β—‹ 2017-03-27 12:50:22
● 2026-03-15 00:20:22
● 2026-03-24 06:18:04
β—‹A69.172.201.1532016-07-18 β†’ 2016-07-18 Β· 4 obs
β—‹ 2016-03-25 10:40:54
● 2016-07-18 09:03:38
β—‹ 2017-03-27 12:50:22
β—‹ 2026-03-24 06:18:04
β—‹A69.172.201.2082015-07-11 β†’ 2016-03-25 Β· 4 obs
● 2015-07-11 08:18:16
● 2016-03-25 10:40:54
β—‹ 2016-07-18 09:03:38
β—‹ 2026-03-24 06:18:04

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
infoa0.info.afilias-nst.info, a2.info.afilias-nst.info, c0.info.afilias-nst.info-
suspicious.infomaya.ns.cloudflare.com, ricardo.ns.cloudflare.com-

βœ… Authoritative Response

Server:108.162.192.194

NS records: maya.ns.cloudflare.com, ricardo.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for suspicious.info (unsigned zone)

⏱️ Timing

Total: 780ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2104.21.70.252, 172.67.141.23
AAAA22606:4700:3030::ac43:8d17, 2606:4700:3037::6815:46fc
NS2maya.ns.cloudflare.com, ricardo.ns.cloudflare.com
MX3route2.mx.cloudflare.net (pri: 13), route1.mx.cloudflare.net (pri: 49)...
TXT1v=spf1 include:_spf.mx.cloudflare.net ~a
HTTPS1{"priority":1,"target":".","alpn":["h3",
SOA1maya.ns.cloudflare.com dns.cloudflare.co

Analysis

IP Addresses

Four IP numbers are pointed to by suspicious.info: 2606:4700:3030::ac43:8d17, 2606:4700:3037::6815:46fc, 104.21.70.252 and 172.67.141.23.

other host names including sabseupar.in, etoink.com, pospadan.com, cixiu345.net and puzzledsean.com share IP numbers with suspicious.info.

Name Servers

suspicious.info is delegated to two name servers maya.ns.cloudflare.com and ricardo.ns.cloudflare.com.

suspicious.info shares the same name server setup as other domains, for instance lutvit.de, jackpotdreamspro.com, kulturkokoska.rs, hchan.org and casinoempiresonline.com.

suspicious.info at least partially shares name servers with other domains, for instance afnanparfum.com, 353.tv, eur.su, healthquotes.us and relawannusantara.id.

These name servers are commonly used alongside mia.ns.cloudflare.com and sunny.ns.cloudflare.com.

Host names with six IP numbers:

Host name maya.ns.cloudflare.com points to: 2606:4700:50::adf5:3ac2, 2803:f800:50::6ca2:c0c2, 2a06:98c1:50::ac40:20c2, 108.162.192.194, 172.64.32.194 and 173.245.58.194.

Host name ricardo.ns.cloudflare.com points to: 2606:4700:58::a29f:2cd3, 2803:f800:50::6ca2:c3d3, 2a06:98c1:50::ac40:23d3, 108.162.195.211, 162.159.44.211 and 172.64.35.211.

Mail Servers

suspicious.info is handled by three mail servers: route1.mx.cloudflare.net, route2.mx.cloudflare.net and route3.mx.cloudflare.net.

suspicious.info shares some mail servers with other domains, at least partially, for instance revsgaard.dk, spinbara.one, loli.us, ccmco.biz and ratner.com.

Host names with six IP numbers:

Host name route1.mx.cloudflare.net points to: 2606:4700:f5::b, 2606:4700:f5::c, 2606:4700:f5::d, 162.159.205.11, 162.159.205.12 and 162.159.205.13.

Host name route2.mx.cloudflare.net points to: 2606:4700:f5::e, 2606:4700:f5::f, 2606:4700:f5::10, 162.159.205.17, 162.159.205.18 and 162.159.205.19.

Host name route3.mx.cloudflare.net points to: 2606:4700:f5::11, 2606:4700:f5::12, 2606:4700:f5::13, 162.159.205.23, 162.159.205.24 and 162.159.205.25.