suspiciousdevice.com - dns.ninja

suspiciousdevice.com

DNSSEC⚠️ Not signed
A2606:4700:3031::ac43:c6b9πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3031::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A2606:4700:3034::6815:2c68πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:3034::/48 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A104.21.44.104Cloudflare104.21.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
A172.67.198.185πŸ‡ΊπŸ‡Έ Cloudflare172.67.192.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US βœ“ In HTTPS hints
NSignacio.ns.cloudflare.com ⭐
A2606:4700:58::a29f:2c52πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRignacio.ns.cloudflare.com
A2803:f800:50::6ca2:c352πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRignacio.ns.cloudflare.com
A2a06:98c1:50::ac40:2352πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRignacio.ns.cloudflare.com
A108.162.195.82πŸ‡ΊπŸ‡Έ Cloudflare108.162.195.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRignacio.ns.cloudflare.com
A162.159.44.82Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRignacio.ns.cloudflare.com
A172.64.35.82πŸ‡ΊπŸ‡Έ Cloudflare172.64.35.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRignacio.ns.cloudflare.com
NSkira.ns.cloudflare.com
A2606:4700:50::a29f:26c5πŸ‡ΊπŸ‡Έ Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRkira.ns.cloudflare.com
A2803:f800:50::6ca2:c2c5πŸ‡¨πŸ‡· Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRkira.ns.cloudflare.com
A2a06:98c1:50::ac40:22c5πŸ‡ΊπŸ‡Έ Cloudflare2a06:98c1:50::/45
PTRkira.ns.cloudflare.com
A108.162.194.197πŸ‡ΊπŸ‡Έ Cloudflare108.162.194.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRkira.ns.cloudflare.com
A162.159.38.197Cloudflare162.159.32.0/20 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRkira.ns.cloudflare.com
A172.64.34.197πŸ‡ΊπŸ‡Έ Cloudflare172.64.34.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRkira.ns.cloudflare.com
MXfwd1.porkbun.com ⭐
A44.226.226.6πŸ‡ΊπŸ‡Έ Amazon44.224.0.0/11 EC2 PDX prefix
PTRfwd1.porkbun.com
MXfwd2.porkbun.com(20)
A52.10.201.111πŸ‡ΊπŸ‡Έ Amazon52.10.0.0/15 EC2 PDX Prefix
PTRfwd2.porkbun.com
TXTv=spf1 include:_spf.porkbun.com ~all
HTTPSHTTP/3, HTTP/2 βœ“ hints match
IPv4 hints104.21.44.104, 172.67.198.185
IPv6 hints2606:4700:3031::ac43:c6b9, 2606:4700:3034::6815:2c68
ECHX25519, HKDF-SHA256 + AES-128-GCM draft, id=69, name=cloudflare-ech.com
SOAignacio.ns.cloudflare.comdns@cloudflare.com serial=2405906456

com

Same first word

DNS History

14 records (8 active, 6 former)

NSignacio.ns.cloudflare.comkira.ns.cloudflare.comMXfwd1.porkbun.comfwd2.porkbun.comA104.21.44.104172.67.198.1852606:4700:3031::ac43:c6b92606:4700:3034::6815:2c68188.114.96.0188.114.97.02606:4700:3030::6815:2c682606:4700:3033::ac43:c6b92a06:98c1:3120::2a06:98c1:3121::
●NSignacio.ns.cloudflare.com2026-02-25 β†’ 2026-06-27 Β· 2 obs
● 2026-02-25 01:13:14
● 2026-06-27 08:07:40
●NSkira.ns.cloudflare.com2026-02-25 β†’ 2026-06-27 Β· 2 obs
● 2026-02-25 01:13:14
● 2026-06-27 08:07:40
●MXfwd1.porkbun.com2026-02-25 β†’ 2026-06-27 Β· 2 obs
● 2026-02-25 01:13:14
● 2026-06-27 08:07:40
●MXfwd2.porkbun.com2026-02-25 β†’ 2026-06-27 Β· 2 obs
● 2026-02-25 01:13:14
● 2026-06-27 08:07:40
●A104.21.44.1042026-03-25 β†’ 2026-06-27 Β· 6 obs
β—‹ 2026-02-25 01:13:14
● 2026-03-25 17:40:10
● 2026-03-30 09:41:32
β—‹ 2026-04-02 03:35:54
● 2026-04-29 18:24:14
● 2026-06-27 08:07:40
●A172.67.198.1852026-03-25 β†’ 2026-06-27 Β· 6 obs
β—‹ 2026-02-25 01:13:14
● 2026-03-25 17:40:10
● 2026-03-30 09:41:32
β—‹ 2026-04-02 03:35:54
● 2026-04-29 18:24:14
● 2026-06-27 08:07:40
β—‹A188.114.96.02026-02-25 β†’ 2026-04-02 Β· 6 obs
● 2026-02-25 01:13:14
β—‹ 2026-03-25 17:40:10
β—‹ 2026-03-30 09:41:32
● 2026-04-02 03:35:54
β—‹ 2026-04-29 18:24:14
β—‹ 2026-06-27 08:07:40
β—‹A188.114.97.02026-02-25 β†’ 2026-04-02 Β· 6 obs
● 2026-02-25 01:13:14
β—‹ 2026-03-25 17:40:10
β—‹ 2026-03-30 09:41:32
● 2026-04-02 03:35:54
β—‹ 2026-04-29 18:24:14
β—‹ 2026-06-27 08:07:40
β—‹A2606:4700:3030::6815:2c682026-03-25 β†’ 2026-06-11 Β· 7 obs
β—‹ 2026-02-25 01:13:14
● 2026-03-25 17:40:10
● 2026-03-30 09:41:32
β—‹ 2026-04-02 03:35:54
● 2026-04-29 18:24:14
● 2026-06-11 04:15:30
β—‹ 2026-06-27 08:07:40
●A2606:4700:3031::ac43:c6b92026-06-27 β†’ 2026-06-27 Β· 2 obs
β—‹ 2026-06-11 04:15:30
● 2026-06-27 08:07:40
β—‹A2606:4700:3033::ac43:c6b92026-03-25 β†’ 2026-06-11 Β· 7 obs
β—‹ 2026-02-25 01:13:14
● 2026-03-25 17:40:10
● 2026-03-30 09:41:32
β—‹ 2026-04-02 03:35:54
● 2026-04-29 18:24:14
● 2026-06-11 04:15:30
β—‹ 2026-06-27 08:07:40
●A2606:4700:3034::6815:2c682026-06-27 β†’ 2026-06-27 Β· 2 obs
β—‹ 2026-06-11 04:15:30
● 2026-06-27 08:07:40
β—‹A2a06:98c1:3120::2026-02-25 β†’ 2026-04-02 Β· 6 obs
● 2026-02-25 01:13:14
β—‹ 2026-03-25 17:40:10
β—‹ 2026-03-30 09:41:32
● 2026-04-02 03:35:54
β—‹ 2026-04-29 18:24:14
β—‹ 2026-06-27 08:07:40
β—‹A2a06:98c1:3121::2026-02-25 β†’ 2026-04-02 Β· 6 obs
● 2026-02-25 01:13:14
β—‹ 2026-03-25 17:40:10
β—‹ 2026-03-30 09:41:32
● 2026-04-02 03:35:54
β—‹ 2026-04-29 18:24:14
β—‹ 2026-06-27 08:07:40

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
comc.gtld-servers.net, i.gtld-servers.net, f.gtld-servers.net, b.gtld-servers.net...-
suspiciousdevice.comkira.ns.cloudflare.com, ignacio.ns.cloudflare.com12 records

βœ… Authoritative Response

Server:108.162.194.197

NS records: kira.ns.cloudflare.com, ignacio.ns.cloudflare.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for suspiciousdevice.com (unsigned zone)

⏱️ Timing

Total: 356ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A2104.21.44.104, 172.67.198.185
AAAA22606:4700:3031::ac43:c6b9, 2606:4700:3034::6815:2c68
NS2ignacio.ns.cloudflare.com, kira.ns.cloudflare.com
MX2fwd1.porkbun.com (pri: 10), fwd2.porkbun.com (pri: 20)
TXT1v=spf1 include:_spf.porkbun.com ~all
HTTPS1{"priority":1,"target":".","alpn":["h3",
SOA1ignacio.ns.cloudflare.com dns.cloudflare

πŸ“Œ Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (kira.ns.cloudflare.com, kira.ns.cloudflare.com, kira.ns.cloudflare.com...)

Analysis

IP Addresses

suspiciousdevice.com directs to four IP numbers, which are 104.21.44.104, 172.67.198.185, 2606:4700:3031::ac43:c6b9 and 2606:4700:3034::6815:2c68.

Additional host names β€” mplkd.com, www.sip.vn, find-myiphone.help and two others β€” share IP numbers with suspiciousdevice.com.

Name Servers

The NS records for suspiciousdevice.com delegate to ignacio.ns.cloudflare.com and kira.ns.cloudflare.com.

suspiciousdevice.com shares its name server setup with other domains, including isitwhite.com, ai-simon.com, 30next.com and two others.

The name servers of suspiciousdevice.com overlap at least partially with those of other domains β€” among them boomerangkasino.eu, hyperinbox.app, dnsrevolve.com and two more.

The name servers aleena.ns.cloudflare.com, rohin.ns.cloudflare.com and wren.ns.cloudflare.com are commonly seen alongside these name servers.

Host names with 6 IP numbers:

ignacio.ns.cloudflare.com maps to 108.162.195.82, 162.159.44.82, 172.64.35.82 and 3 additional IP addresses.

kira.ns.cloudflare.com maps to 108.162.194.197, 162.159.38.197, 172.64.34.197 and 3 additional IP addresses.

Mail Servers

suspiciousdevice.com has two mail servers: fwd1.porkbun.com and fwd2.porkbun.com.

suspiciousdevice.com shares the same mail server setup as other domains, including greenlight.la, owniro.com, gumgoblin.com and two others.

suspiciousdevice.com partially shares its mail servers with other domains β€” including ipost.rocks, butterfliez.app, eaglemartialartsschool.com and insightsavxstrategy.com.

Both fwd1.porkbun.com and fwd2.porkbun.com have a single IP address each β€” fwd1.porkbun.com resolves to 44.226.226.6 while fwd2.porkbun.com resolves to 52.10.201.111.