ROBTEX.COM - malware.zip
Search for IP or hostnames:
malware.zip checked at 2025-12-06T08:50:53.497Z 2680ms 90/90/90 100% R:9 allDone:true timedOut:false malware.zip
| NS | sandy.ns.cloudflare.com | ||||||
| A | 2606:4700:50::adf5:3adb๐บ๐ธ Cloudflare | ||||||
| PTR | sandy.ns.cloudflare.com | ||||||
| A | 2803:f800:50::6ca2:c0db๐จ๐ท Cloudflare | ||||||
| PTR | sandy.ns.cloudflare.com | ||||||
| A | 2a06:98c1:50::ac40:20db๐บ๐ธ Cloudflare | ||||||
| PTR | sandy.ns.cloudflare.com | ||||||
| A | 108.162.192.219๐บ๐ธ Cloudflare | ||||||
| PTR | sandy.ns.cloudflare.com | ||||||
| A | 172.64.32.219๐บ๐ธ Cloudflare | ||||||
| PTR | sandy.ns.cloudflare.com | ||||||
| A | 173.245.58.219๐บ๐ธ Cloudflare | ||||||
| PTR | sandy.ns.cloudflare.com | ||||||
| NS | trace.ns.cloudflare.com | ||||||
| A | 2606:4700:58::a29f:2cac๐บ๐ธ Cloudflare | ||||||
| PTR | trace.ns.cloudflare.com | ||||||
| A | 2803:f800:50::6ca2:c3ac๐จ๐ท Cloudflare | ||||||
| PTR | trace.ns.cloudflare.com | ||||||
| A | 2a06:98c1:50::ac40:23ac๐บ๐ธ Cloudflare | ||||||
| PTR | trace.ns.cloudflare.com | ||||||
| A | 108.162.195.172๐บ๐ธ Cloudflare | ||||||
| PTR | trace.ns.cloudflare.com | ||||||
| A | 162.159.44.172 Cloudflare | ||||||
| PTR | trace.ns.cloudflare.com | ||||||
| A | 172.64.35.172๐บ๐ธ Cloudflare | ||||||
| PTR | trace.ns.cloudflare.com | ||||||
| A | 88.198.57.211๐ฉ๐ช Hetzner | ||||||
| PTR | static.88-198-57-211.clients.your-server.de | ||||||
zip
| NS | ns-tld1.charlestonroadregistry.com | ||||||
| NS | ns-tld2.charlestonroadregistry.com | ||||||
| NS | ns-tld3.charlestonroadregistry.com | ||||||
| NS | ns-tld4.charlestonroadregistry.com | ||||||
| NS | ns-tld5.charlestonroadregistry.com | ||||||
Starts with same word
Starts similarily
AI analysis
malware.zip resolves to a single IP address: 88.198.57.211.
Other host names, for instance static.88-198-57-211.clients.your-server.de, share IP numbers with malware.zip.
malware.zip's delegation uses two name servers, sandy.ns.cloudflare.com and trace.ns.cloudflare.com.
malware.zip shares the same name server setup as other domains, for instance ownaship.co.nz.
malware.zip at least partially shares name servers with other domains, including gading.de, ok-bus.com, physicsinventions.com, conclude.co.za and fmknation.eu.com.
These name servers are commonly used with becky.ns.cloudflare.com and jerry.ns.cloudflare.com.
Host names with six IP numbers:
sandy.ns.cloudflare.com points to: 2606:4700:50::adf5:3adb, 2803:f800:50::6ca2:c0db, 2a06:98c1:50::ac40:20db, 108.162.192.219, 172.64.32.219 and 173.245.58.219.
trace.ns.cloudflare.com points to: 2606:4700:58::a29f:2cac, 2803:f800:50::6ca2:c3ac, 2a06:98c1:50::ac40:23ac, 108.162.195.172, 162.159.44.172 and 172.64.35.172.