malwareanalysis.net - dns.ninja
malwareanalysis.net
net
| DNSSEC | π Signed (DS record present) | ||||||
| NS | a.gtld-servers.net β | ||||||
| NS | b.gtld-servers.net | ||||||
| NS | c.gtld-servers.net | ||||||
| NS | d.gtld-servers.net | ||||||
| NS | e.gtld-servers.net | ||||||
| NS | f.gtld-servers.net | ||||||
| NS | g.gtld-servers.net | ||||||
| NS | h.gtld-servers.net | ||||||
| NS | i.gtld-servers.net | ||||||
| NS | j.gtld-servers.net | ||||||
| NS | k.gtld-servers.net | ||||||
| NS | l.gtld-servers.net | ||||||
| NS | m.gtld-servers.net | ||||||
| SOA | a.gtld-servers.netnstld@verisign-grs.com serial=1783149716 | ||||||
Same first word
malwareanalysis.com |
malwareanalysis.co.kr |
malwareanalysis.net |
malwareanalysis.co |
DNS History
11 records (8 active, 3 former)
βNSmona.ns.cloudflare.com2026-02-16 β 2026-07-04 Β· 3 obs
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
βNSns31.domaincontrol.com2015-08-15 β 2017-01-31 Β· 4 obs
β 2017-01-31 18:00:08
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
βNSns32.domaincontrol.com2015-08-15 β 2017-01-31 Β· 4 obs
β 2017-01-31 18:00:08
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
βNStoby.ns.cloudflare.com2026-02-16 β 2026-07-04 Β· 3 obs
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
βMXmailstore1.secureserver.net2015-08-15 β 2026-07-04 Β· 2 obs
β 2026-07-04 07:50:52
βMXsmtp.secureserver.net2015-08-15 β 2026-07-04 Β· 2 obs
β 2026-07-04 07:50:52
βA104.21.1.2382026-02-16 β 2026-07-04 Β· 3 obs
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
βA172.67.152.1502026-02-16 β 2026-07-04 Β· 3 obs
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
βA2606:4700:3033::6815:1ee2026-02-16 β 2026-07-04 Β· 3 obs
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
βA2606:4700:3037::ac43:98962026-02-16 β 2026-07-04 Β· 3 obs
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
βA50.63.202.552015-08-15 β 2017-01-31 Β· 4 obs
β 2017-01-31 18:00:08
β 2026-02-16 00:37:26
β 2026-07-04 07:50:52
π DNS Trace
π Delegation Chain
| Zone | Nameservers | Glue |
|---|---|---|
| net | e.gtld-servers.net, l.gtld-servers.net, f.gtld-servers.net, d.gtld-servers.net... | - |
| malwareanalysis.net | toby.ns.cloudflare.com, mona.ns.cloudflare.com | - |
β Authoritative Response
Server:108.162.192.206
NS records: toby.ns.cloudflare.com, mona.ns.cloudflare.com
π DNSSEC Status
β οΈ Insecure (no DNSSEC)
No DS record for malwareanalysis.net (unsigned zone)
β±οΈ Timing
Total: 502ms | Queries: -
π Records
| Type | Count | Sample Data |
|---|---|---|
| A | 2 | 104.21.1.238, 172.67.152.150 |
| AAAA | 2 | 2606:4700:3033::6815:1ee, 2606:4700:3037::ac43:9896 |
| NS | 2 | mona.ns.cloudflare.com, toby.ns.cloudflare.com |
| MX | 2 | smtp.secureserver.net (pri: 0), mailstore1.secureserver.net (pri: 10) |
| HTTPS | 1 | {"priority":1,"target":".","alpn":["h3", |
| SOA | 1 | mona.ns.cloudflare.com dns.cloudflare.co |
Analysis
IP Addresses
malwareanalysis.net points to the four IP addresses 104.21.1.238, 172.67.152.150, 2606:4700:3033::6815:1ee and 2606:4700:3037::ac43:9896.
madisonwm.com, zbeshop.com, bestkebabkatowice.pl plus two other host names have IP numbers in common with malwareanalysis.net.
Name Servers
DNS delegation for malwareanalysis.net points to two name servers: mona.ns.cloudflare.com and toby.ns.cloudflare.com.
The name server configuration of malwareanalysis.net is shared with other domains, for instance unionps.org, feelb-infra.ovh, marosgroup.com and two others.
There is at least partial name server overlap between malwareanalysis.net and other domains β malucelli.net, hwj280.com, soundpollution.se and two more among them.
The name servers ollie.ns.cloudflare.com, ridge.ns.cloudflare.com and ruben.ns.cloudflare.com are often found in combination with these name servers.
Hosts with 6 IP addresses each:
mona.ns.cloudflare.com has IP addresses 108.162.192.206, 172.64.32.206 and 173.245.58.206, plus 3 other.
toby.ns.cloudflare.com has IP addresses 108.162.193.239, 172.64.33.239 and 173.245.59.239, plus 3 other.
Mail Servers
malwareanalysis.net uses two mail servers, mailstore1.secureserver.net and smtp.secureserver.net.
The mail server setup of malwareanalysis.net matches that of other domains such as inviertecomopro.com, dhc4.com, pvwine.com and two others.
mailstore1.secureserver.net points to 216.69.141.78, 216.69.141.114 and 216.69.141.162. smtp.secureserver.net points to 216.69.141.71, 216.69.141.84 and 216.69.141.113. Both hosts resolve to three IP numbers.