not-malware.zip - robtex.com

not-malware.zip

DNSSEC⚠️ Not signed
A2606:4700:3034::ac43:af25πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3034::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3035::6815:3003πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3035::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.48.3Cloudflare104.21.48.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.175.37πŸ‡ΊπŸ‡Έ Cloudflare172.67.160.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NStim.ns.cloudflare.com ⭐
A2606:4700:58::adf5:3b91πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtim.ns.cloudflare.com
A2803:f800:50::6ca2:c191πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRtim.ns.cloudflare.com
A2a06:98c1:50::ac40:2191πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRtim.ns.cloudflare.com
A108.162.193.145πŸ‡ΊπŸ‡Έ Cloudflare108.162.193.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtim.ns.cloudflare.com
A172.64.33.145πŸ‡ΊπŸ‡Έ Cloudflare172.64.33.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtim.ns.cloudflare.com
A173.245.59.145πŸ‡ΊπŸ‡Έ Cloudflare173.245.59.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtim.ns.cloudflare.com
NSval.ns.cloudflare.com
A2606:4700:50::adf5:3aeaπŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRval.ns.cloudflare.com
A2803:f800:50::6ca2:c0eaπŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRval.ns.cloudflare.com
A2a06:98c1:50::ac40:20eaπŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRval.ns.cloudflare.com
A108.162.192.234πŸ‡ΊπŸ‡Έ Cloudflare108.162.192.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRval.ns.cloudflare.com
A172.64.32.234πŸ‡ΊπŸ‡Έ Cloudflare172.64.32.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRval.ns.cloudflare.com
A173.245.58.234πŸ‡ΊπŸ‡Έ Cloudflare173.245.58.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRval.ns.cloudflare.com
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4104.21.48.3, 172.67.175.37
IPv62606:4700:3034::ac43:af25, 2606:4700:3035::6815:3003
SOAtim.ns.cloudflare.comdns@cloudflare.com serial=2399630524

zip

DNSSECπŸ”’ Signed (DS record present)
NSns-tld1.charlestonroadregistry.com ⭐
NSns-tld2.charlestonroadregistry.com
NSns-tld3.charlestonroadregistry.com
NSns-tld4.charlestonroadregistry.com
NSns-tld5.charlestonroadregistry.com
SOAns-tld1.charlestonroadregistry.comcloud-dns-hostmaster@google.com serial=1
⚠️ On DNS blocklist: tif
πŸ”’ HSTS Preload (+subdomains)

Same first word

Similar names

DNS History

6 records (6 active, 0 former)

NStim.ns.cloudflare.comval.ns.cloudflare.comA104.21.48.3172.67.175.372606:4700:3034::ac43:af252606:4700:3035::6815:3003
●NStim.ns.cloudflare.com2026-03-18 β†’ 2026-03-29 Β· 2 obs
● 2026-03-18 20:56:58
● 2026-03-29 07:51:00
●NSval.ns.cloudflare.com2026-03-18 β†’ 2026-03-29 Β· 2 obs
● 2026-03-18 20:56:58
● 2026-03-29 07:51:00
●A104.21.48.32026-03-29 β†’ 2026-03-29 Β· 1 obs
● 2026-03-29 07:51:00
●A172.67.175.372026-03-29 β†’ 2026-03-29 Β· 1 obs
● 2026-03-29 07:51:00
●A2606:4700:3034::ac43:af252026-03-29 β†’ 2026-03-29 Β· 1 obs
● 2026-03-29 07:51:00
●A2606:4700:3035::6815:30032026-03-29 β†’ 2026-03-29 Β· 1 obs
● 2026-03-29 07:51:00

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
zipns-tld3.charlestonroadregistry.com, ns-tld5.charlestonroadregistry.com, ns-tld4.charlestonroadregistry.com, ns-tld2.charlestonroadregistry.com...10 records
not-malware.zipval.ns.cloudflare.com, tim.ns.cloudflare.com-

βœ… Authoritative Response

Server:173.245.59.145

NS records: val.ns.cloudflare.com, tim.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for not-malware.zip (unsigned zone)

⏱️ Timing

Total: 356ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2172.67.175.37, 104.21.48.3
AAAA22606:4700:3034::ac43:af25, 2606:4700:3035::6815:3003
NS2tim.ns.cloudflare.com, val.ns.cloudflare.com
HTTPS1{"priority":1,"target":".","alpn":["h3",
SOA1tim.ns.cloudflare.com dns.cloudflare.com

πŸ“Œ Glue Records Collected

Total: 10

Out-of-bailiwick: 10 (ns-tld5.charlestonroadregistry.com, ns-tld4.charlestonroadregistry.com, ns-tld3.charlestonroadregistry.com...)

Analysis

IP Addresses

not-malware.zip maps to four IP numbers: 2606:4700:3034::ac43:af25, 2606:4700:3035::6815:3003, 104.21.48.3 and 172.67.175.37.

Other host names, for instance selodireitoshumanos.com.br, sourcesforstudents.com, kicksyellclub.com.co, ultrapartnerspoint.digital and canonpro1000.com share IP numbers with not-malware.zip.

Name Servers

Two name servers tim.ns.cloudflare.com and val.ns.cloudflare.com are delegated to not-malware.zip.

not-malware.zip uses the same name server configuration as other domains, such as rice.network, basicamente.pt, abooaly.xyz, largemeats.com and mecurito.pt.

not-malware.zip at least partially shares name servers with other domains such as gearsclothing.com, raviolino.com, m-cg.ru, gharvista.com and epic.dk.

These name servers are commonly used with adrian.ns.cloudflare.com and olga.ns.cloudflare.com.

Host names with six IP numbers: Host name tim.ns.cloudflare.com points to 2606:4700:58::adf5:3b91, 2803:f800:50::6ca2:c191, 2a06:98c1:50::ac40:2191, 108.162.193.145, 172.64.33.145 and 173.245.59.145; host name val.ns.cloudflare.com points to 2606:4700:50::adf5:3aea, 2803:f800:50::6ca2:c0ea, 2a06:98c1:50::ac40:20ea, 108.162.192.234, 172.64.32.234 and 173.245.58.234.