3rdattackgroup.org - robtex.com
3rdattackgroup.org
| DNSSEC | β οΈ Not signed | ||||||
| A | 2606:4700:3030::6815:5509πΊπΈ Cloudflare2606:4700:3030::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US β In HTTPS hints | ||||||
| A | 2606:4700:3034::ac43:c870πΊπΈ Cloudflare2606:4700:3034::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US β In HTTPS hints | ||||||
| A | 104.21.85.9Cloudflare104.21.80.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US β In HTTPS hints | ||||||
| A | 172.67.200.112πΊπΈ Cloudflare172.67.192.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US β In HTTPS hints | ||||||
| NS | candy.ns.cloudflare.com β | ||||||
| A | 2606:4700:50::adf5:3a4fπΊπΈ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | candy.ns.cloudflare.com | ||||||
| A | 2803:f800:50::6ca2:c04fπ¨π· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L | ||||||
| PTR | candy.ns.cloudflare.com | ||||||
| A | 2a06:98c1:50::ac40:204fπΊπΈ Cloudflare2a06:98c1:50::/45 | ||||||
| PTR | candy.ns.cloudflare.com | ||||||
| A | 108.162.192.79πΊπΈ Cloudflare108.162.192.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | candy.ns.cloudflare.com | ||||||
| A | 172.64.32.79πΊπΈ Cloudflare172.64.32.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | candy.ns.cloudflare.com | ||||||
| A | 173.245.58.79πΊπΈ Cloudflare173.245.58.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | candy.ns.cloudflare.com | ||||||
| NS | jonah.ns.cloudflare.com | ||||||
| A | 2606:4700:58::adf5:3bbaπΊπΈ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | jonah.ns.cloudflare.com | ||||||
| A | 2803:f800:50::6ca2:c1baπ¨π· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L | ||||||
| PTR | jonah.ns.cloudflare.com | ||||||
| A | 2a06:98c1:50::ac40:21baπΊπΈ Cloudflare2a06:98c1:50::/45 | ||||||
| PTR | jonah.ns.cloudflare.com | ||||||
| A | 108.162.193.186πΊπΈ Cloudflare108.162.193.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | jonah.ns.cloudflare.com | ||||||
| A | 172.64.33.186πΊπΈ Cloudflare172.64.33.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | jonah.ns.cloudflare.com | ||||||
| A | 173.245.59.186πΊπΈ Cloudflare173.245.59.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | jonah.ns.cloudflare.com | ||||||
| HTTPS | HTTP/3, HTTP/2 β hints match | ||||||
| IPv4 hints | 104.21.85.9, 172.67.200.112 | ||||||
| IPv6 hints | 2606:4700:3030::6815:5509, 2606:4700:3034::ac43:c870 | ||||||
| ECH | X25519, HKDF-SHA256 + AES-128-GCM draft, id=43, name=cloudflare-ech.com | ||||||
| SOA | candy.ns.cloudflare.comdns@cloudflare.com serial=2401792619 | ||||||
org
| DNSSEC | π Signed (DS record present) | ||||||
| NS | a0.org.afilias-nst.info β β οΈ Not in parent delegation | ||||||
| NS | a2.org.afilias-nst.info β οΈ Not in parent delegation | ||||||
| NS | b0.org.afilias-nst.org | ||||||
| NS | b2.org.afilias-nst.org | ||||||
| NS | c0.org.afilias-nst.info β οΈ Not in parent delegation | ||||||
| NS | d0.org.afilias-nst.org | ||||||
| SOA | a0.org.afilias-nst.infohostmaster@donuts.email serial=1778617019 | ||||||
Same first word
3rdattackgroup.org |
DNS History
17 records (6 active, 11 former)
βNScandy.ns.cloudflare.com2015-11-01 β 2026-05-12 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
βNSjonah.ns.cloudflare.com2015-11-01 β 2026-05-12 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
βNSpdns1.ultradns.net2015-06-26 β 2015-06-26 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
βNSpdns2.ultradns.net2015-06-26 β 2015-06-26 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
βNSpdns3.ultradns.org2015-06-26 β 2015-06-26 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
βNSpdns4.ultradns.org2015-06-26 β 2015-06-26 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
βNSpdns5.ultradns.info2015-06-26 β 2015-06-26 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
βNSpdns6.ultradns.co.uk2015-06-26 β 2015-06-26 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
βA104.21.85.92026-04-14 β 2026-05-12 Β· 3 obs
β 2026-04-14 11:33:24
β 2026-05-12 20:27:02
βA104.27.160.1042015-11-01 β 2017-01-08 Β· 5 obs
β 2015-11-01 16:07:38
β 2017-01-08 13:46:28
β 2026-04-14 11:33:24
β 2026-05-12 20:27:02
βA104.27.161.1042015-11-01 β 2017-01-08 Β· 5 obs
β 2015-11-01 16:07:38
β 2017-01-08 13:46:28
β 2026-04-14 11:33:24
β 2026-05-12 20:27:02
βA172.67.200.1122026-04-14 β 2026-05-12 Β· 3 obs
β 2026-04-14 11:33:24
β 2026-05-12 20:27:02
βA2400:cb00:2048:1::681b:a0682015-11-01 β 2017-01-08 Β· 5 obs
β 2015-11-01 16:07:38
β 2017-01-08 13:46:28
β 2026-04-14 11:33:24
β 2026-05-12 20:27:02
βA2400:cb00:2048:1::681b:a1682015-11-01 β 2017-01-08 Β· 5 obs
β 2015-11-01 16:07:38
β 2017-01-08 13:46:28
β 2026-04-14 11:33:24
β 2026-05-12 20:27:02
βA2606:4700:3030::6815:55092026-04-14 β 2026-05-12 Β· 3 obs
β 2026-04-14 11:33:24
β 2026-05-12 20:27:02
βA2606:4700:3034::ac43:c8702026-04-14 β 2026-05-12 Β· 3 obs
β 2026-04-14 11:33:24
β 2026-05-12 20:27:02
βA72.52.4.952015-06-26 β 2015-06-26 Β· 3 obs
β 2015-11-01 16:07:38
β 2026-05-12 20:27:02
π DNS Trace
π Delegation Chain
| Zone | Nameservers | Glue |
|---|---|---|
| org | b0.org.afilias-nst.org, b2.org.afilias-nst.org, d0.org.afilias-nst.org | - |
| 3rdattackgroup.org | jonah.ns.cloudflare.com, candy.ns.cloudflare.com | - |
β Authoritative Response
Server:173.245.58.79
NS records: jonah.ns.cloudflare.com, candy.ns.cloudflare.com
π DNSSEC Status
β οΈ Insecure (no DNSSEC)
No DS record for 3rdattackgroup.org (unsigned zone)
β±οΈ Timing
Total: 975ms | Queries: -
π Records
| Type | Count | Sample Data |
|---|---|---|
| A | 2 | 172.67.200.112, 104.21.85.9 |
| AAAA | 2 | 2606:4700:3030::6815:5509, 2606:4700:3034::ac43:c870 |
| NS | 2 | candy.ns.cloudflare.com, jonah.ns.cloudflare.com |
| HTTPS | 1 | {"priority":1,"target":".","alpn":["h3", |
| SOA | 1 | candy.ns.cloudflare.com dns.cloudflare.c |
Analysis
IP Addresses
Four IP numbers are pointed to by 3rdattackgroup.org: 2606:4700:3030::6815:5509, 2606:4700:3034::ac43:c870, 104.21.85.9 and 172.67.200.112.
other host names including status.bholmes.net, www.dahrouge.com, alfia-europe.com, losangelesgalaxyfansclub.com and idy01.com share IP numbers with 3rdattackgroup.org.
Name Servers
3rdattackgroup.org is delegated to two name servers candy.ns.cloudflare.com and jonah.ns.cloudflare.com.
3rdattackgroup.org shares the same name server setup as other domains, for instance crypxq.com, crypzz.vip, plusminus.io, crypqq.com and crypbwn.com.
3rdattackgroup.org at least partially shares name servers with other domains, for instance external-intelligence.com, usafp.org, krabi5.cc, dailyblogsupdate.com and womenintheworld.net.
These name servers are commonly used alongside henry.ns.cloudflare.com and andy.ns.cloudflare.com.
Host names with six IP numbers:
Host name candy.ns.cloudflare.com points to: 2606:4700:50::adf5:3a4f, 2803:f800:50::6ca2:c04f, 2a06:98c1:50::ac40:204f, 108.162.192.79, 172.64.32.79 and 173.245.58.79.
Host name jonah.ns.cloudflare.com points to: 2606:4700:58::adf5:3bba, 2803:f800:50::6ca2:c1ba, 2a06:98c1:50::ac40:21ba, 108.162.193.186, 172.64.33.186 and 173.245.59.186.