shellcode.sh - dns.ninja

shellcode.sh

DNSSEC⚠️ Not signed
A15.235.207.91🇸🇬 OVH15.235.128.0/17 Hosting route
PTRpremiumdoms.io
NSns1.premiumdoms.io
A15.235.207.91🇸🇬 OVH15.235.128.0/17 Hosting route
PTRpremiumdoms.io
NSns2.premiumdoms.io
A15.235.207.91🇸🇬 OVH15.235.128.0/17 Hosting route
PTRpremiumdoms.io
TXT2cw5ntfsdpkgd5ynahgmhpyqnu
TXTd0add6ccb21bd461f70d01ccc3bf106d4867cd053b384de201e3022b05f1ccac
TXT39705e7dbd9865f4e600700bdb849a2cd21d9f16
TXTsaw-market=2bedfc79-a526-4a9c-864e-c17cc5efaa50
TXT56bbda8726764ffcad38ff5414fc4ce7
TXT961de0bf-0042-4654-85ab-37e418504448
TXTnameshift=cw0gk2
TXTafternic-verification-WAGbpNQ88xSRJxZ7EbbzF2
TXT3edae6422655b544fadec6f8d044fa4f88331ed6
TXTsaw-market=0433858a-23e2-42ca-a150-27e418e66710
SOAns1.premiumdoms.ioroot@host.premiumdoms.io 2026-06-08 #1

sh

DNSSEC🔒 Signed (DS record present)
NSa0.nic.sh
NSa2.nic.sh
NSb0.nic.sh
NSc0.nic.sh
SOAa0.nic.shhostmaster@donuts.email serial=1781036736

Same first word

Similar names

DNS History

25 records (3 active, 22 former)

20192020202120222023202420252026NSns1.premiumdoms.ions2.premiumdoms.iocdns.ovh.netdns101.registrar-servers.comdns102.registrar-servers.comns1.iwantmyname.netns2.iwantmyname.netns3.iwantmyname.netns4.iwantmyname.netvps-d31c452c.vps.ovh.caMXmx.plingest.commx.zoho.commx2.zoho.commx3.zoho.comA15.235.207.91172.234.24.211172.239.57.1172001:4860:4802:32::152001:4860:4802:34::152001:4860:4802:36::152001:4860:4802:38::15216.239.32.21216.239.34.21216.239.36.21216.239.38.21
NScdns.ovh.net2026-04-25 → 2026-05-20 · 5 obs
○ 2026-03-26 08:43:26
● 2026-04-25 11:32:10
● 2026-05-20 00:10:46
○ 2026-06-09 06:14:38
○ 2026-06-09 21:07:18
NSdns101.registrar-servers.com2026-03-26 → 2026-06-09 · 2 obs
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
NSdns102.registrar-servers.com2026-03-26 → 2026-06-09 · 2 obs
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
NSns1.iwantmyname.net2018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
NSns1.premiumdoms.io2026-04-25 → 2026-06-09 · 3 obs
○ 2026-03-26 08:43:26
● 2026-04-25 11:32:10
● 2026-06-09 21:07:18
NSns2.iwantmyname.net2018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
NSns2.premiumdoms.io2026-04-25 → 2026-06-09 · 3 obs
○ 2026-03-26 08:43:26
● 2026-04-25 11:32:10
● 2026-06-09 21:07:18
NSns3.iwantmyname.net2018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
NSns4.iwantmyname.net2018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
NSvps-d31c452c.vps.ovh.ca2026-04-25 → 2026-05-20 · 5 obs
○ 2026-03-26 08:43:26
● 2026-04-25 11:32:10
● 2026-05-20 00:10:46
○ 2026-06-09 06:14:38
○ 2026-06-09 21:07:18
MXmx.plingest.com2026-03-26 → 2026-06-09 · 2 obs
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
MXmx.zoho.com2018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
MXmx2.zoho.com2018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
MXmx3.zoho.com2018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A15.235.207.912026-04-25 → 2026-06-09 · 3 obs
○ 2026-03-26 08:43:26
● 2026-04-25 11:32:10
● 2026-06-09 21:07:18
A172.234.24.2112026-03-26 → 2026-06-09 · 2 obs
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A172.239.57.1172026-03-26 → 2026-06-09 · 2 obs
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A2001:4860:4802:32::152018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A2001:4860:4802:34::152018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A2001:4860:4802:36::152018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A2001:4860:4802:38::152018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A216.239.32.212018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A216.239.34.212018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A216.239.36.212018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18
A216.239.38.212018-09-17 → 2018-09-17 · 3 obs
● 2018-09-17 02:35:52
○ 2026-03-26 08:43:26
○ 2026-06-09 21:07:18

🔍 DNS Trace

📋 Delegation Chain

ZoneNameserversGlue
shb0.nic.sh, a0.nic.sh, a2.nic.sh, c0.nic.sh8 records
shellcode.shns1.premiumdoms.io, ns2.premiumdoms.io-

✅ Authoritative Response

Server:15.235.207.91

NS records: ns1.premiumdoms.io, ns2.premiumdoms.io

🔒 DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for shellcode.sh (unsigned zone)

⏱️ Timing

Total: 1960ms | Queries: -

📄 Records

TypeCountSample Data
A115.235.207.91
NS2ns2.premiumdoms.io, ns1.premiumdoms.io
TXT102cw5ntfsdpkgd5ynahgmhpyqnu, d0add6ccb21bd461f70d01ccc3bf106d4867cd05...
SOA1ns1.premiumdoms.io root.host.premiumdoms

📌 Glue Records Collected

Total: 8

In-bailiwick: 8 (c0.nic.sh, b0.nic.sh, a2.nic.sh...)

Analysis

IP Addresses

shellcode.sh has exactly one IP address — 15.235.207.91.

footer.co, script.ag, easy.to plus two other host names have IP numbers in common with shellcode.sh.

Name Servers

DNS delegation for shellcode.sh points to two name servers: ns1.premiumdoms.io and ns2.premiumdoms.io.

The name server configuration of shellcode.sh is shared with other domains, for instance what.sh, algo.ws, torrent.to and two others.

The name servers of shellcode.sh overlap at least partially with those of other domains — among them ble.ai, poc.dev, flashloan.io and two more.

These name servers commonly appear alongside the name servers cdns.ovh.net and vps-d31c452c.vps.ovh.ca.

Both ns1.premiumdoms.io and ns2.premiumdoms.io have a single IP address, 15.235.207.91, and share it.

Host names pointing to 15.235.207.91 IP addresses: ns1.premiumdoms.io and ns2.premiumdoms.io.