rootkit.ca - dns.ninja

rootkit.ca

DNSSEC⚠️ Not signed
NSlaunch1.spaceship.net ⭐
A2400:cb00:2049:1::a29f:1a26πŸ‡ΊπŸ‡Έ Cloudflare2400:cb00:2049::/48 , Inc. 101 Townsend Street
A162.159.26.38Cloudflare162.159.26.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
NSlaunch2.spaceship.net
A2400:cb00:2049:1::a29f:1b20πŸ‡ΊπŸ‡Έ Cloudflare2400:cb00:2049::/48 , Inc. 101 Townsend Street
A162.159.27.32Cloudflare162.159.27.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
MXsmtp.google.com ⭐
A2607:f8b0:4004:c1b::1aπŸ‡ΊπŸ‡Έ Google2607:f8b0:4004::/48
PTRwv-in-f26.1e100.net
A2607:f8b0:4004:c1b::1bπŸ‡ΊπŸ‡Έ Google2607:f8b0:4004::/48
PTRwv-in-f27.1e100.net
A2607:f8b0:4004:c29::1aπŸ‡ΊπŸ‡Έ Google2607:f8b0:4004::/48
PTRyuiadum-in-f26.1e100.net
A2607:f8b0:4004:c29::1bπŸ‡ΊπŸ‡Έ Google2607:f8b0:4004::/48
PTRyuiadum-in-f27.1e100.net
A142.251.163.26πŸ‡ΊπŸ‡Έ Google142.251.163.0/24
PTRwv-in-f26.1e100.net
A142.251.163.27πŸ‡ΊπŸ‡Έ Google142.251.163.0/24
PTRwv-in-f27.1e100.net
A142.251.167.27πŸ‡ΊπŸ‡Έ Google142.251.167.0/24
PTRww-in-f27.1e100.net
A173.194.45.26πŸ‡ΊπŸ‡Έ Google173.194.0.0/16
PTRyuiadum-in-f26.1e100.net
A173.194.45.27πŸ‡ΊπŸ‡Έ Google173.194.0.0/16
PTRyuiadum-in-f27.1e100.net
TXTgoogle-site-verification=SWtH7cPI-e6yno6hNSNN0i6CPqAT0yjmlVRGqt0qST4
SOAlaunch1.spaceship.netsupport@spaceship.com serial=1779474342

ca

DNSSECπŸ”’ Signed (DS record present)
NSprd-czp-05.corp.cira.ca ⭐
NSany.ca-servers.ca
NSc.ca-servers.ca
NSd.ca-servers.ca
NSj.ca-servers.ca
SOAprd-czp-05.corp.cira.caadmin-dns@cira.ca serial=2606121830

Same first word

Similar names

DNS History

15 records (3 active, 12 former)

20162017201820192020202120222023202420252026NSlaunch1.spaceship.netlaunch2.spaceship.netdns1.registrar-servers.comdns2.registrar-servers.comdns3.registrar-servers.comdns4.registrar-servers.comdns5.registrar-servers.comMXsmtp.google.comalt1.aspmx.l.google.comalt2.aspmx.l.google.comaspmx.l.google.comaspmx2.googlemail.comaspmx3.googlemail.commail.rootkit.caA88.198.110.168
β—‹NSdns1.registrar-servers.com2015-06-20 β†’ 2017-03-31 Β· 4 obs
● 2015-06-20 11:37:30
● 2017-03-31 05:11:34
β—‹ 2018-10-09 04:54:52
β—‹ 2026-06-12 19:10:08
β—‹NSdns2.registrar-servers.com2015-06-20 β†’ 2017-03-31 Β· 4 obs
● 2015-06-20 11:37:30
● 2017-03-31 05:11:34
β—‹ 2018-10-09 04:54:52
β—‹ 2026-06-12 19:10:08
β—‹NSdns3.registrar-servers.com2015-06-20 β†’ 2016-07-21 Β· 4 obs
● 2015-06-20 11:37:30
● 2016-07-21 17:09:42
β—‹ 2017-03-31 05:11:34
β—‹ 2026-06-12 19:10:08
β—‹NSdns4.registrar-servers.com2015-06-20 β†’ 2016-07-21 Β· 4 obs
● 2015-06-20 11:37:30
● 2016-07-21 17:09:42
β—‹ 2017-03-31 05:11:34
β—‹ 2026-06-12 19:10:08
β—‹NSdns5.registrar-servers.com2015-06-20 β†’ 2016-07-21 Β· 4 obs
● 2015-06-20 11:37:30
● 2016-07-21 17:09:42
β—‹ 2017-03-31 05:11:34
β—‹ 2026-06-12 19:10:08
●NSlaunch1.spaceship.net2026-04-07 β†’ 2026-06-12 Β· 3 obs
β—‹ 2018-10-09 04:54:52
● 2026-04-07 19:25:52
● 2026-06-12 19:10:08
●NSlaunch2.spaceship.net2026-04-07 β†’ 2026-06-12 Β· 3 obs
β—‹ 2018-10-09 04:54:52
● 2026-04-07 19:25:52
● 2026-06-12 19:10:08
β—‹MXalt1.aspmx.l.google.com2026-04-07 β†’ 2026-06-12 Β· 2 obs
β—‹ 2026-04-07 19:25:52
β—‹ 2026-06-12 19:10:08
β—‹MXalt2.aspmx.l.google.com2026-04-07 β†’ 2026-06-12 Β· 2 obs
β—‹ 2026-04-07 19:25:52
β—‹ 2026-06-12 19:10:08
β—‹MXaspmx.l.google.com2026-04-07 β†’ 2026-06-12 Β· 2 obs
β—‹ 2026-04-07 19:25:52
β—‹ 2026-06-12 19:10:08
β—‹MXaspmx2.googlemail.com2026-04-07 β†’ 2026-06-12 Β· 2 obs
β—‹ 2026-04-07 19:25:52
β—‹ 2026-06-12 19:10:08
β—‹MXaspmx3.googlemail.com2026-04-07 β†’ 2026-06-12 Β· 2 obs
β—‹ 2026-04-07 19:25:52
β—‹ 2026-06-12 19:10:08
β—‹MXmail.rootkit.ca2015-06-20 β†’ 2017-03-31 Β· 4 obs
● 2015-06-20 11:37:30
● 2017-03-31 05:11:34
β—‹ 2018-10-09 04:54:52
β—‹ 2026-06-12 19:10:08
●MXsmtp.google.com2026-04-07 β†’ 2026-06-12 Β· 3 obs
β—‹ 2018-10-09 04:54:52
● 2026-04-07 19:25:52
● 2026-06-12 19:10:08
β—‹A88.198.110.1682015-06-20 β†’ 2017-03-31 Β· 4 obs
● 2015-06-20 11:37:30
● 2017-03-31 05:11:34
β—‹ 2018-10-09 04:54:52
β—‹ 2026-06-12 19:10:08

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
cac.ca-servers.ca, d.ca-servers.ca, j.ca-servers.ca, any.ca-servers.ca-
rootkit.calaunch1.spaceship.net, launch2.spaceship.net-

βœ… Authoritative Response

Server:162.159.26.38

NS records: launch1.spaceship.net, launch2.spaceship.net

πŸ”’ DNSSEC Status

πŸ” Secure (DNSSEC validated)

Chain of trust verified from root to domain

⏱️ Timing

Total: 1280ms | Queries: -

πŸ“„ Records

TypeCountSample Data
NS2launch2.spaceship.net, launch1.spaceship.net
MX1smtp.google.com (pri: 1)
TXT1google-site-verification=SWtH7cPI-e6yno6
SOA1launch1.spaceship.net support.spaceship.

Analysis

Name Servers

Two name servers handle the delegation for rootkit.ca: launch1.spaceship.net and launch2.spaceship.net.

rootkit.ca shares its NS records with other domains, for example zenex.site, compute.tv, 025181.cc and two others.

launch1.spaceship.net and launch2.spaceship.net both carry two IP addresses. The A records for launch1.spaceship.net are 162.159.26.38 and 2400:cb00:2049:1::a29f:1a26; the A records for launch2.spaceship.net are 162.159.27.32 and 2400:cb00:2049:1::a29f:1b20.

Mail Servers

The sole mail server for rootkit.ca is smtp.google.com.

Among the domains sharing a mail server setup with rootkit.ca are dixonenterprisegroup.com, mx.pidan.it, adad.com.tr and two others.

There is at least a partial MX overlap between rootkit.ca and other domains, including smodis.net, leparc.com.ec, yerimhazir.com and two others.

The mail servers alt1.aspmx.l.google.com and alt2.aspmx.l.google.com are commonly paired with these mail servers.

With 9 IP addresses total, smtp.google.com resolves to 142.251.163.26, 142.251.163.27, 142.251.167.27 and 6 others.