botnet.su - dns.ninja

botnet.su

DNSSECโš ๏ธ Not signed
A186.2.171.37๐Ÿ‡ง๐Ÿ‡ฟ IQWEB186.2.171.0/24 -LLC NET
PTRmydonate.io
NSns1.reg.ru โญ
A2a00:f940:9::1:1๐Ÿ‡ท๐Ÿ‡บ AS-REGRU2a00:f940:9::/48 Reg.Ru Hosting
A2a00:f940:9::2:1๐Ÿ‡ท๐Ÿ‡บ AS-REGRU2a00:f940:9::/48 Reg.Ru Hosting
A176.99.13.11๐Ÿ‡ท๐Ÿ‡บ AS-REGRU176.99.13.0/24 Reg.Ru
A176.99.13.13๐Ÿ‡ท๐Ÿ‡บ AS-REGRU176.99.13.0/24 Reg.Ru
A176.99.13.15๐Ÿ‡ท๐Ÿ‡บ AS-REGRU176.99.13.0/24 Reg.Ru
A176.99.13.17๐Ÿ‡ท๐Ÿ‡บ AS-REGRU176.99.13.0/24 Reg.Ru
A194.58.117.11๐Ÿ‡ท๐Ÿ‡บ AS-REGRU194.58.117.0/24 Reg.Ru
PTRns1.reg.ru
A194.58.117.13๐Ÿ‡ท๐Ÿ‡บ AS-REGRU194.58.117.0/24 Reg.Ru
PTRns1.reg.ru
A194.58.117.15๐Ÿ‡ท๐Ÿ‡บ AS-REGRU194.58.117.0/24 Reg.Ru
PTRns1.reg.ru
A194.58.117.17๐Ÿ‡ท๐Ÿ‡บ AS-REGRU194.58.117.0/24 Reg.Ru
PTRns1.reg.ru
NSns2.reg.ru
A2a00:f940:9::1:2๐Ÿ‡ท๐Ÿ‡บ AS-REGRU2a00:f940:9::/48 Reg.Ru Hosting
A2a00:f940:9::2:2๐Ÿ‡ท๐Ÿ‡บ AS-REGRU2a00:f940:9::/48 Reg.Ru Hosting
A176.99.13.12๐Ÿ‡ท๐Ÿ‡บ AS-REGRU176.99.13.0/24 Reg.Ru
A176.99.13.14๐Ÿ‡ท๐Ÿ‡บ AS-REGRU176.99.13.0/24 Reg.Ru
A176.99.13.16๐Ÿ‡ท๐Ÿ‡บ AS-REGRU176.99.13.0/24 Reg.Ru
A176.99.13.18๐Ÿ‡ท๐Ÿ‡บ AS-REGRU176.99.13.0/24 Reg.Ru
A194.58.117.12๐Ÿ‡ท๐Ÿ‡บ AS-REGRU194.58.117.0/24 Reg.Ru
PTRns2.reg.ru
A194.58.117.14๐Ÿ‡ท๐Ÿ‡บ AS-REGRU194.58.117.0/24 Reg.Ru
PTRns2.reg.ru
A194.58.117.16๐Ÿ‡ท๐Ÿ‡บ AS-REGRU194.58.117.0/24 Reg.Ru
PTRns2.reg.ru
A194.58.117.18๐Ÿ‡ท๐Ÿ‡บ AS-REGRU194.58.117.0/24 Reg.Ru
PTRns2.reg.ru
SOAns1.reg.ruhostmaster@ns1.reg.ru serial=1778003455

su

DNSSEC๐Ÿ”’ Signed (DS record present)
NSa.dns.ripn.net โญ
NSb.dns.ripn.net
NSd.dns.ripn.net
NSe.dns.ripn.net
NSf.dns.ripn.net
SOAa.dns.ripn.nethostmaster@ripn.net serial=650209620
WOT: SUSPICIOUS (4/100)

Same first word

Similar names

DNS History

22 records (3 active, 19 former)

20162017201820192020202120222023202420252026NSns1.reg.runs2.reg.ruexpirepages-kiae-1.nic.ruexpirepages-kiae-2.nic.runs1.expired.reg.runs1.selectel.orgns2.expired.reg.runs2.selectel.orgns3.selectel.orgns4.selectel.orgMXalt1.aspmx.l.google.comalt2.aspmx.l.google.comaspmx.l.google.comaspmx2.googlemail.comaspmx3.googlemail.comA186.2.171.37109.70.26.37127.0.0.1194.58.112.174194.58.56.66194.85.61.7631.31.204.161
โ—‹NSexpirepages-kiae-1.nic.ru2015-10-11 โ†’ 2015-11-01 ยท 5 obs
โ—‹ 2015-09-27 01:14:50
โ— 2015-10-11 21:20:56
โ— 2015-11-01 23:13:34
โ—‹ 2015-11-12 05:40:06
โ—‹ 2026-06-26 19:58:00
โ—‹NSexpirepages-kiae-2.nic.ru2015-10-11 โ†’ 2015-11-01 ยท 5 obs
โ—‹ 2015-09-27 01:14:50
โ— 2015-10-11 21:20:56
โ— 2015-11-01 23:13:34
โ—‹ 2015-11-12 05:40:06
โ—‹ 2026-06-26 19:58:00
โ—‹NSns1.expired.reg.ru2017-08-19 โ†’ 2017-08-19 ยท 5 obs
โ—‹ 2017-07-12 12:32:08
โ— 2017-08-19 17:14:30
โ— 2017-08-19 17:38:06
โ—‹ 2018-10-09 07:10:46
โ—‹ 2026-06-26 19:58:00
โ—NSns1.reg.ru2016-08-23 โ†’ 2026-06-26 ยท 7 obs
โ—‹ 2015-11-12 05:40:06
โ— 2016-08-23 05:28:12
โ— 2017-07-12 12:32:08
โ—‹ 2017-08-19 17:14:30
โ—‹ 2026-04-30 15:05:34
โ— 2026-05-22 05:35:22
โ— 2026-06-26 19:58:00
โ—‹NSns1.selectel.org2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹NSns2.expired.reg.ru2017-08-19 โ†’ 2017-08-19 ยท 5 obs
โ—‹ 2017-07-12 12:32:08
โ— 2017-08-19 17:14:30
โ— 2017-08-19 17:38:06
โ—‹ 2018-10-09 07:10:46
โ—‹ 2026-06-26 19:58:00
โ—NSns2.reg.ru2016-08-23 โ†’ 2026-06-26 ยท 7 obs
โ—‹ 2015-11-12 05:40:06
โ— 2016-08-23 05:28:12
โ— 2017-07-12 12:32:08
โ—‹ 2017-08-19 17:14:30
โ—‹ 2026-04-30 15:05:34
โ— 2026-05-22 05:35:22
โ— 2026-06-26 19:58:00
โ—‹NSns2.selectel.org2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹NSns3.selectel.org2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹NSns4.selectel.org2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹MXalt1.aspmx.l.google.com2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹MXalt2.aspmx.l.google.com2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹MXaspmx.l.google.com2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹MXaspmx2.googlemail.com2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹MXaspmx3.googlemail.com2015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—‹A109.70.26.372015-10-11 โ†’ 2015-11-01 ยท 5 obs
โ—‹ 2015-09-27 01:14:50
โ— 2015-10-11 21:20:56
โ— 2015-11-01 23:13:34
โ—‹ 2015-11-12 05:40:06
โ—‹ 2026-06-26 19:58:00
โ—‹A127.0.0.12015-08-20 โ†’ 2015-09-27 ยท 4 obs
โ— 2015-08-20 19:28:28
โ— 2015-09-27 01:14:50
โ—‹ 2015-10-11 21:20:56
โ—‹ 2026-06-26 19:58:00
โ—A186.2.171.372026-05-22 โ†’ 2026-06-26 ยท 3 obs
โ—‹ 2018-10-09 07:10:46
โ— 2026-05-22 05:35:22
โ— 2026-06-26 19:58:00
โ—‹A194.58.112.1742017-06-05 โ†’ 2017-07-12 ยท 5 obs
โ—‹ 2017-02-15 14:24:12
โ— 2017-06-05 03:22:40
โ— 2017-07-12 12:32:08
โ—‹ 2017-08-19 17:14:30
โ—‹ 2026-06-26 19:58:00
โ—‹A194.58.56.662017-08-19 โ†’ 2017-08-19 ยท 5 obs
โ—‹ 2017-07-12 12:32:08
โ— 2017-08-19 17:14:30
โ— 2017-08-19 17:38:06
โ—‹ 2018-10-09 07:10:46
โ—‹ 2026-06-26 19:58:00
โ—‹A194.85.61.762015-10-11 โ†’ 2015-11-01 ยท 5 obs
โ—‹ 2015-09-27 01:14:50
โ— 2015-10-11 21:20:56
โ— 2015-11-01 23:13:34
โ—‹ 2015-11-12 05:40:06
โ—‹ 2026-06-26 19:58:00
โ—‹A31.31.204.1612016-08-23 โ†’ 2017-02-15 ยท 5 obs
โ—‹ 2015-11-12 05:40:06
โ— 2016-08-23 05:28:12
โ— 2017-02-15 14:24:12
โ—‹ 2017-06-05 03:22:40
โ—‹ 2026-06-26 19:58:00

๐Ÿ” DNS Trace

๐Ÿ“‹ Delegation Chain

ZoneNameserversGlue
sud.dns.ripn.net, f.dns.ripn.net, a.dns.ripn.net, b.dns.ripn.net...-
botnet.suns2.reg.ru, ns1.reg.ru-

โœ… Authoritative Response

Server:176.99.13.11

NS records: ns2.reg.ru, ns1.reg.ru

๐Ÿ”’ DNSSEC Status

โš ๏ธ Insecure (no DNSSEC)

No DS record for botnet.su (unsigned zone)

โฑ๏ธ Timing

Total: 878ms | Queries: -

๐Ÿ“„ Records

TypeCountSample Data
A1186.2.171.37
NS2ns1.reg.ru, ns2.reg.ru
SOA1ns1.reg.ru hostmaster.ns1.reg.ru

Analysis

IP Addresses

botnet.su resolves to just one IP address, 186.2.171.37.

Two other host names, along with hostworld.fun, nighthvh.space and nethersword.ru, also share IP numbers with botnet.su.

Name Servers

botnet.su is served by two delegated name servers, ns1.reg.ru and ns2.reg.ru.

botnet.su shares its NS records with other domains, for example goodnights.ru, pl-t.ru, mrfashion.ru and two others.

DNS names with 10 IP addresses:

ns1.reg.ru carries IP addresses 176.99.13.11, 176.99.13.13 and 176.99.13.15, with 7 other addresses beyond those.

ns2.reg.ru carries IP addresses 176.99.13.12, 176.99.13.14 and 176.99.13.16, with 7 other addresses beyond those.