malwarebytes.eu - dns.ninja

malwarebytes.eu

DNSSEC⚠️ Not signed
A2604:a880:800:14:0:1:f06c:6000πŸ‡ΊπŸ‡Έ DIGITALOCEAN2604:a880:800::/48 DigitalOcean
A134.199.240.162πŸ‡ΊπŸ‡Έ DIGITALOCEAN134.199.240.0/20 DigitalOcean
NSns1.nameshift.com ⭐
A2a13:9500:170::1πŸ‡¬πŸ‡§ AS229272000::/3
A5.83.212.1πŸ‡¬πŸ‡§ ORG-SDL28-RIPE5.83.212.0/24 autogen
NSns2.nameshift.com
A2a13:9500:170::2πŸ‡¬πŸ‡§ AS229272000::/3
A5.83.212.2πŸ‡¬πŸ‡§ ORG-SDL28-RIPE5.83.212.0/24 autogen
NSpoit15.ns3.nameshift.com
A2a13:9500:170::3πŸ‡¬πŸ‡§ AS229272000::/3
A5.83.212.3πŸ‡¬πŸ‡§ ORG-SDL28-RIPE5.83.212.0/24 autogen
TXTv=spf1 -all
TXTafternic-verification-fFfzWTQx5FSsxkzrwJPPXv
TXT99262a05fdba6feaf0310b14cec5ecae48f31ed6
SOAns1.nameshift.comhostmaster@nameshift.com serial=1782176400

eu

DNSSECπŸ”’ Signed (DS record present)
NSsi.dns.eu ⭐
NSbe.dns.eu
NSw.dns.eu
NSx.dns.eu
NSy.dns.eu
SOAsi.dns.eutech@eurid.eu serial=1125438787

Previously MX for

Same first word

Similar names

DNS History

17 records (5 active, 12 former)

20162017201820192020202120222023202420252026NSns1.nameshift.comns2.nameshift.compoit15.ns3.nameshift.coma.gpk.eub.gpk.euc.gpk.eudns.home.pldns2.home.pldns3.home.plMX.malwarebytes.euA134.199.240.1622604:a880:800:14:0:1:f06c:6000209.38.6.612604:a880:4:1d0:0:1:2626:a00052.58.78.1689.161.255.12
β—‹NSa.gpk.eu2021-01-10 β†’ 2021-01-10 Β· 4 obs
β—‹ 2017-01-30 00:53:22
● 2021-01-10 03:17:52
β—‹ 2026-03-31 14:15:36
β—‹ 2026-06-23 01:43:44
β—‹NSb.gpk.eu2021-01-10 β†’ 2021-01-10 Β· 4 obs
β—‹ 2017-01-30 00:53:22
● 2021-01-10 03:17:52
β—‹ 2026-03-31 14:15:36
β—‹ 2026-06-23 01:43:44
β—‹NSc.gpk.eu2021-01-10 β†’ 2021-01-10 Β· 4 obs
β—‹ 2017-01-30 00:53:22
● 2021-01-10 03:17:52
β—‹ 2026-03-31 14:15:36
β—‹ 2026-06-23 01:43:44
β—‹NSdns.home.pl2015-05-14 β†’ 2017-01-30 Β· 4 obs
● 2015-05-14 16:31:00
● 2017-01-30 00:53:22
β—‹ 2021-01-10 03:17:52
β—‹ 2026-06-23 01:43:44
β—‹NSdns2.home.pl2015-05-14 β†’ 2017-01-30 Β· 4 obs
● 2015-05-14 16:31:00
● 2017-01-30 00:53:22
β—‹ 2021-01-10 03:17:52
β—‹ 2026-06-23 01:43:44
β—‹NSdns3.home.pl2015-05-14 β†’ 2017-01-30 Β· 4 obs
● 2015-05-14 16:31:00
● 2017-01-30 00:53:22
β—‹ 2021-01-10 03:17:52
β—‹ 2026-06-23 01:43:44
●NSns1.nameshift.com2026-03-31 β†’ 2026-06-23 Β· 3 obs
β—‹ 2021-01-10 03:17:52
● 2026-03-31 14:15:36
● 2026-06-23 01:43:44
●NSns2.nameshift.com2026-03-31 β†’ 2026-06-23 Β· 3 obs
β—‹ 2021-01-10 03:17:52
● 2026-03-31 14:15:36
● 2026-06-23 01:43:44
●NSpoit15.ns3.nameshift.com2026-03-31 β†’ 2026-06-23 Β· 3 obs
β—‹ 2021-01-10 03:17:52
● 2026-03-31 14:15:36
● 2026-06-23 01:43:44
β—‹MX.2026-03-31 β†’ 2026-06-23 Β· 2 obs
β—‹ 2026-03-31 14:15:36
β—‹ 2026-06-23 01:43:44
β—‹MXmalwarebytes.eu2015-05-14 β†’ 2017-01-30 Β· 4 obs
● 2015-05-14 16:31:00
● 2017-01-30 00:53:22
β—‹ 2021-01-10 03:17:52
β—‹ 2026-06-23 01:43:44
●A134.199.240.1622026-03-31 β†’ 2026-06-23 Β· 3 obs
β—‹ 2021-01-10 03:17:52
● 2026-03-31 14:15:36
● 2026-06-23 01:43:44
β—‹A209.38.6.612026-03-31 β†’ 2026-06-23 Β· 2 obs
β—‹ 2026-03-31 14:15:36
β—‹ 2026-06-23 01:43:44
β—‹A2604:a880:4:1d0:0:1:2626:a0002026-03-31 β†’ 2026-06-23 Β· 2 obs
β—‹ 2026-03-31 14:15:36
β—‹ 2026-06-23 01:43:44
●A2604:a880:800:14:0:1:f06c:60002026-06-08 β†’ 2026-06-23 Β· 3 obs
β—‹ 2026-03-31 14:15:36
● 2026-06-08 09:43:20
● 2026-06-23 01:43:44
β—‹A52.58.78.162021-01-10 β†’ 2021-01-10 Β· 4 obs
β—‹ 2017-01-30 00:53:22
● 2021-01-10 03:17:52
β—‹ 2026-03-31 14:15:36
β—‹ 2026-06-23 01:43:44
β—‹A89.161.255.122015-05-14 β†’ 2017-01-30 Β· 4 obs
● 2015-05-14 16:31:00
● 2017-01-30 00:53:22
β—‹ 2021-01-10 03:17:52
β—‹ 2026-06-23 01:43:44

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
euw.dns.eu, x.dns.eu, y.dns.eu, be.dns.eu...-
malwarebytes.eupoit15.ns3.nameshift.com, ns1.nameshift.com, ns2.nameshift.com-

βœ… Authoritative Response

Server:5.83.212.2

NS records: poit15.ns3.nameshift.com, ns1.nameshift.com, ns2.nameshift.com

πŸ”’ DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for malwarebytes.eu (unsigned zone)

⏱️ Timing

Total: 402ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A1134.199.240.162
AAAA12604:a880:800:14:0:1:f06c:6000
NS3ns1.nameshift.com, ns2.nameshift.com...
MX1. (pri: 0)
TXT3v=spf1 -all, afternic-verification-fFfzWTQx5FSsxkzrwJ...
SOA1ns1.nameshift.com hostmaster.nameshift.c

Analysis

IP Addresses

malwarebytes.eu directs to two IP numbers, 134.199.240.162 and 2604:a880:800:14:0:1:f06c:6000

vislab.de, cet.nl, www.frv.se and two other host names share IP numbers with malwarebytes.eu.

Name Servers

Three name servers are authoritative for malwarebytes.eu: ns1.nameshift.com, ns2.nameshift.com and poit15.ns3.nameshift.com.

malwarebytes.eu has at least partial name server overlap with other domains, such as br.uk, tqo.nl, creditcard.cheap and two others.

xmhvxw.ns3.nameshift.com, lb9d7c.ns3.nameshift.com and 5vyid0.ns3.nameshift.com β€” plus 5 other name servers β€” are commonly paired with these name servers.

ns1.nameshift.com resolves to 5.83.212.1 and 2a13:9500:170::1. ns2.nameshift.com resolves to 5.83.212.2 and 2a13:9500:170::2. poit15.ns3.nameshift.com resolves to 5.83.212.3 and 2a13:9500:170::3. All three hostnames point to two IP numbers each.