suspiciousdevice.com - dns.ninja
suspiciousdevice.com
| DNSSEC | β οΈ Not signed | ||||||
| A | 2606:4700:3031::ac43:c6b9πΊπΈ Cloudflare2606:4700:3031::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US β In HTTPS hints | ||||||
| A | 2606:4700:3034::6815:2c68πΊπΈ Cloudflare2606:4700:3034::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US β In HTTPS hints | ||||||
| A | 104.21.44.104Cloudflare104.21.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US β In HTTPS hints | ||||||
| A | 172.67.198.185πΊπΈ Cloudflare172.67.192.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US β In HTTPS hints | ||||||
| NS | ignacio.ns.cloudflare.com β | ||||||
| A | 2606:4700:58::a29f:2c52πΊπΈ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | ignacio.ns.cloudflare.com | ||||||
| A | 2803:f800:50::6ca2:c352π¨π· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L | ||||||
| PTR | ignacio.ns.cloudflare.com | ||||||
| A | 2a06:98c1:50::ac40:2352πΊπΈ Cloudflare2a06:98c1:50::/45 | ||||||
| PTR | ignacio.ns.cloudflare.com | ||||||
| A | 108.162.195.82πΊπΈ Cloudflare108.162.195.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | ignacio.ns.cloudflare.com | ||||||
| A | 162.159.44.82Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | ignacio.ns.cloudflare.com | ||||||
| A | 172.64.35.82πΊπΈ Cloudflare172.64.35.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | ignacio.ns.cloudflare.com | ||||||
| NS | kira.ns.cloudflare.com | ||||||
| A | 2606:4700:50::a29f:26c5πΊπΈ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | kira.ns.cloudflare.com | ||||||
| A | 2803:f800:50::6ca2:c2c5π¨π· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L | ||||||
| PTR | kira.ns.cloudflare.com | ||||||
| A | 2a06:98c1:50::ac40:22c5πΊπΈ Cloudflare2a06:98c1:50::/45 | ||||||
| PTR | kira.ns.cloudflare.com | ||||||
| A | 108.162.194.197πΊπΈ Cloudflare108.162.194.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | kira.ns.cloudflare.com | ||||||
| A | 162.159.38.197Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | kira.ns.cloudflare.com | ||||||
| A | 172.64.34.197πΊπΈ Cloudflare172.64.34.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US | ||||||
| PTR | kira.ns.cloudflare.com | ||||||
| MX | fwd1.porkbun.com β | ||||||
| A | 44.226.226.6πΊπΈ Amazon44.224.0.0/11 EC2 PDX prefix | ||||||
| PTR | fwd1.porkbun.com | ||||||
| MX | fwd2.porkbun.com(20) | ||||||
| A | 52.10.201.111πΊπΈ Amazon52.10.0.0/15 EC2 PDX Prefix | ||||||
| PTR | fwd2.porkbun.com | ||||||
| TXT | v=spf1 include:_spf.porkbun.com ~all | ||||||
| HTTPS | HTTP/3, HTTP/2 β hints match | ||||||
| IPv4 hints | 104.21.44.104, 172.67.198.185 | ||||||
| IPv6 hints | 2606:4700:3031::ac43:c6b9, 2606:4700:3034::6815:2c68 | ||||||
| ECH | X25519, HKDF-SHA256 + AES-128-GCM draft, id=69, name=cloudflare-ech.com | ||||||
| SOA | ignacio.ns.cloudflare.comdns@cloudflare.com serial=2405906456 | ||||||
com
| DNSSEC | π Signed (DS record present) | ||||||
| NS | a.gtld-servers.net β | ||||||
| NS | b.gtld-servers.net | ||||||
| NS | c.gtld-servers.net | ||||||
| NS | d.gtld-servers.net | ||||||
| NS | e.gtld-servers.net | ||||||
| NS | f.gtld-servers.net | ||||||
| NS | g.gtld-servers.net | ||||||
| NS | h.gtld-servers.net | ||||||
| NS | i.gtld-servers.net | ||||||
| NS | j.gtld-servers.net | ||||||
| NS | k.gtld-servers.net | ||||||
| NS | l.gtld-servers.net | ||||||
| NS | m.gtld-servers.net | ||||||
| SOA | a.gtld-servers.netnstld@verisign-grs.com serial=1782547520 | ||||||
Same first word
suspiciousdevice.com |
DNS History
14 records (8 active, 6 former)
βNSignacio.ns.cloudflare.com2026-02-25 β 2026-06-27 Β· 2 obs
β 2026-06-27 08:07:40
βNSkira.ns.cloudflare.com2026-02-25 β 2026-06-27 Β· 2 obs
β 2026-06-27 08:07:40
βMXfwd1.porkbun.com2026-02-25 β 2026-06-27 Β· 2 obs
β 2026-06-27 08:07:40
βMXfwd2.porkbun.com2026-02-25 β 2026-06-27 Β· 2 obs
β 2026-06-27 08:07:40
βA104.21.44.1042026-03-25 β 2026-06-27 Β· 6 obs
β 2026-03-25 17:40:10
β 2026-03-30 09:41:32
β 2026-04-02 03:35:54
β 2026-04-29 18:24:14
β 2026-06-27 08:07:40
βA172.67.198.1852026-03-25 β 2026-06-27 Β· 6 obs
β 2026-03-25 17:40:10
β 2026-03-30 09:41:32
β 2026-04-02 03:35:54
β 2026-04-29 18:24:14
β 2026-06-27 08:07:40
βA188.114.96.02026-02-25 β 2026-04-02 Β· 6 obs
β 2026-03-25 17:40:10
β 2026-03-30 09:41:32
β 2026-04-02 03:35:54
β 2026-04-29 18:24:14
β 2026-06-27 08:07:40
βA188.114.97.02026-02-25 β 2026-04-02 Β· 6 obs
β 2026-03-25 17:40:10
β 2026-03-30 09:41:32
β 2026-04-02 03:35:54
β 2026-04-29 18:24:14
β 2026-06-27 08:07:40
βA2606:4700:3030::6815:2c682026-03-25 β 2026-06-11 Β· 7 obs
β 2026-03-25 17:40:10
β 2026-03-30 09:41:32
β 2026-04-02 03:35:54
β 2026-04-29 18:24:14
β 2026-06-11 04:15:30
β 2026-06-27 08:07:40
βA2606:4700:3031::ac43:c6b92026-06-27 β 2026-06-27 Β· 2 obs
β 2026-06-27 08:07:40
βA2606:4700:3033::ac43:c6b92026-03-25 β 2026-06-11 Β· 7 obs
β 2026-03-25 17:40:10
β 2026-03-30 09:41:32
β 2026-04-02 03:35:54
β 2026-04-29 18:24:14
β 2026-06-11 04:15:30
β 2026-06-27 08:07:40
βA2606:4700:3034::6815:2c682026-06-27 β 2026-06-27 Β· 2 obs
β 2026-06-27 08:07:40
βA2a06:98c1:3120::2026-02-25 β 2026-04-02 Β· 6 obs
β 2026-03-25 17:40:10
β 2026-03-30 09:41:32
β 2026-04-02 03:35:54
β 2026-04-29 18:24:14
β 2026-06-27 08:07:40
βA2a06:98c1:3121::2026-02-25 β 2026-04-02 Β· 6 obs
β 2026-03-25 17:40:10
β 2026-03-30 09:41:32
β 2026-04-02 03:35:54
β 2026-04-29 18:24:14
β 2026-06-27 08:07:40
π DNS Trace
π Delegation Chain
| Zone | Nameservers | Glue |
|---|---|---|
| com | c.gtld-servers.net, i.gtld-servers.net, f.gtld-servers.net, b.gtld-servers.net... | - |
| suspiciousdevice.com | kira.ns.cloudflare.com, ignacio.ns.cloudflare.com | 12 records |
β Authoritative Response
Server:108.162.194.197
NS records: kira.ns.cloudflare.com, ignacio.ns.cloudflare.com
π DNSSEC Status
β οΈ Insecure (no DNSSEC)
No DS record for suspiciousdevice.com (unsigned zone)
β±οΈ Timing
Total: 356ms | Queries: -
π Records
| Type | Count | Sample Data |
|---|---|---|
| A | 2 | 104.21.44.104, 172.67.198.185 |
| AAAA | 2 | 2606:4700:3031::ac43:c6b9, 2606:4700:3034::6815:2c68 |
| NS | 2 | ignacio.ns.cloudflare.com, kira.ns.cloudflare.com |
| MX | 2 | fwd1.porkbun.com (pri: 10), fwd2.porkbun.com (pri: 20) |
| TXT | 1 | v=spf1 include:_spf.porkbun.com ~all |
| HTTPS | 1 | {"priority":1,"target":".","alpn":["h3", |
| SOA | 1 | ignacio.ns.cloudflare.com dns.cloudflare |
π Glue Records Collected
Total: 12
Out-of-bailiwick: 12 (kira.ns.cloudflare.com, kira.ns.cloudflare.com, kira.ns.cloudflare.com...)
Analysis
IP Addresses
suspiciousdevice.com directs to four IP numbers, which are 104.21.44.104, 172.67.198.185, 2606:4700:3031::ac43:c6b9 and 2606:4700:3034::6815:2c68.
Additional host names β mplkd.com, www.sip.vn, find-myiphone.help and two others β share IP numbers with suspiciousdevice.com.
Name Servers
The NS records for suspiciousdevice.com delegate to ignacio.ns.cloudflare.com and kira.ns.cloudflare.com.
suspiciousdevice.com shares its name server setup with other domains, including isitwhite.com, ai-simon.com, 30next.com and two others.
The name servers of suspiciousdevice.com overlap at least partially with those of other domains β among them boomerangkasino.eu, hyperinbox.app, dnsrevolve.com and two more.
The name servers aleena.ns.cloudflare.com, rohin.ns.cloudflare.com and wren.ns.cloudflare.com are commonly seen alongside these name servers.
Host names with 6 IP numbers:
ignacio.ns.cloudflare.com maps to 108.162.195.82, 162.159.44.82, 172.64.35.82 and 3 additional IP addresses.
kira.ns.cloudflare.com maps to 108.162.194.197, 162.159.38.197, 172.64.34.197 and 3 additional IP addresses.
Mail Servers
suspiciousdevice.com has two mail servers: fwd1.porkbun.com and fwd2.porkbun.com.
suspiciousdevice.com shares the same mail server setup as other domains, including greenlight.la, owniro.com, gumgoblin.com and two others.
suspiciousdevice.com partially shares its mail servers with other domains β including ipost.rocks, butterfliez.app, eaglemartialartsschool.com and insightsavxstrategy.com.
Both fwd1.porkbun.com and fwd2.porkbun.com have a single IP address each β fwd1.porkbun.com resolves to 44.226.226.6 while fwd2.porkbun.com resolves to 52.10.201.111.