malware.su - dns.ninja

malware.su

DNSSEC⚠️ Not signed
A2a00:f940:2:2:1:1:0:256🇷🇺 AS-REGRU2a00:f940:2::/48 Reg.Ru Hosting Route
A31.31.196.17🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
NSserver256.hosting.reg.ru
A31.31.196.17🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
PTRserver256.hosting.reg.ru
NSns1.hosting.reg.ru
A31.31.194.245🇷🇺 AS-REGRU31.31.194.0/24 Reg.Ru
PTRns1.hosting.reg.ru
A31.31.194.251🇷🇺 AS-REGRU31.31.194.0/24 Reg.Ru
PTRns17-1.hosting.reg.ru
A31.31.196.37🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
PTRns18-2.hosting.reg.ru
A31.31.196.52🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
PTRns1.hosting.reg.ru
A31.31.196.61🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
PTRns30-2.hosting.reg.ru
A31.31.196.180🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
PTRns31-1.hosting.reg.ru
A31.31.198.177🇷🇺 AS-REGRU31.31.198.0/24 Reg.Ru
PTRns2.hosting.reg.ru
A37.140.192.20🇷🇺 AS-REGRU37.140.192.0/24 Reg.Ru
PTRns29-1.hosting.reg.ru
A37.140.192.93🇷🇺 AS-REGRU37.140.192.0/24 Reg.Ru
PTRns32-1.hosting.reg.ru
A37.140.193.121🇷🇺 AS-REGRU37.140.193.0/24 Reg.Ru
PTRns2.hosting.reg.ru
A37.140.196.144🇷🇺 AS-REGRU37.140.196.0/24 Reg.Ru
PTRns37-1.hosting.reg.ru
A194.58.91.38🇷🇺 AS-REGRU194.58.91.0/24 Reg.Ru
PTRns38-1.hosting.reg.ru
A194.67.73.6🇷🇺 AS-REGRU194.67.73.0/24 Reg.Ru-M9
PTRns33-1.hosting.reg.ru
A194.67.73.9🇷🇺 AS-REGRU194.67.73.0/24 Reg.Ru-M9
PTRns34-2.hosting.reg.ru
NSns2.hosting.reg.ru
A31.31.194.244🇷🇺 AS-REGRU31.31.194.0/24 Reg.Ru
PTRns1.hosting.reg.ru
A31.31.196.34🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
PTRns17-2.hosting.reg.ru
A31.31.196.53🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
PTRns1.hosting.reg.ru
A31.31.196.71🇷🇺 AS-REGRU31.31.196.0/24 Reg.Ru
PTRns32-2.hosting.reg.ru
A31.31.198.161🇷🇺 AS-REGRU31.31.198.0/24 Reg.Ru
PTRns29-2.hosting.reg.ru
A31.31.198.178🇷🇺 AS-REGRU31.31.198.0/24 Reg.Ru
PTRns2.hosting.reg.ru
A37.140.192.31🇷🇺 AS-REGRU37.140.192.0/24 Reg.Ru
PTRns37-2.hosting.reg.ru
A37.140.192.55🇷🇺 AS-REGRU37.140.192.0/24 Reg.Ru
PTRns30-1.hosting.reg.ru
A37.140.192.58🇷🇺 AS-REGRU37.140.192.0/24 Reg.Ru
PTRns18-1.hosting.reg.ru
A37.140.192.160🇷🇺 AS-REGRU37.140.192.0/24 Reg.Ru
PTRns31-2.hosting.reg.ru
A37.140.193.120🇷🇺 AS-REGRU37.140.193.0/24 Reg.Ru
PTRns2.hosting.reg.ru
A37.140.194.37🇷🇺 AS-REGRU37.140.194.0/24 Reg.Ru
PTRns38-2.hosting.reg.ru
A194.67.73.7🇷🇺 AS-REGRU194.67.73.0/24 Reg.Ru-M9
PTRns33-2.hosting.reg.ru
A194.67.73.8🇷🇺 AS-REGRU194.67.73.0/24 Reg.Ru-M9
PTRns34-1.hosting.reg.ru
SOAserver256.hosting.reg.rusupport@reg.ru 2024-08-23 #12

su

DNSSEC🔒 Signed (DS record present)
NSa.dns.ripn.net
NSb.dns.ripn.net
NSd.dns.ripn.net
NSe.dns.ripn.net
NSf.dns.ripn.net
SOAa.dns.ripn.nethostmaster@ripn.net serial=650209545

Same first word

Similar names

DNS History

11 records (5 active, 6 former)

20162017201820192020202120222023202420252026NSns1.hosting.reg.runs2.hosting.reg.ruserver256.hosting.reg.runs0.ns0.runs1.ns0.ruMXmail.ru.gw0.rumx1.hosting.reg.rumx2.hosting.reg.ruA2a00:f940:2:2:1:1:0:25631.31.196.1788.151.116.7
NSns0.ns0.ru2015-07-16 → 2017-09-19 · 4 obs
● 2015-07-16 03:51:38
● 2017-09-19 23:18:14
○ 2026-02-20 11:21:34
○ 2026-06-20 14:26:40
NSns1.hosting.reg.ru2026-02-20 → 2026-06-20 · 3 obs
○ 2017-09-19 23:18:14
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
NSns1.ns0.ru2015-07-16 → 2017-09-19 · 4 obs
● 2015-07-16 03:51:38
● 2017-09-19 23:18:14
○ 2026-02-20 11:21:34
○ 2026-06-20 14:26:40
NSns2.hosting.reg.ru2026-02-20 → 2026-06-20 · 3 obs
○ 2017-09-19 23:18:14
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
NSserver256.hosting.reg.ru2026-02-20 → 2026-06-20 · 3 obs
○ 2017-09-19 23:18:14
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
MXmail.ru.gw0.ru2015-07-16 → 2017-09-19 · 4 obs
● 2015-07-16 03:51:38
● 2017-09-19 23:18:14
○ 2026-02-20 11:21:34
○ 2026-06-20 14:26:40
MXmx1.hosting.reg.ru2026-02-20 → 2026-02-24 · 5 obs
○ 2017-09-19 23:18:14
● 2026-02-20 11:21:34
● 2026-02-24 07:33:20
○ 2026-02-25 07:08:24
○ 2026-06-20 14:26:40
MXmx2.hosting.reg.ru2026-02-20 → 2026-02-24 · 5 obs
○ 2017-09-19 23:18:14
● 2026-02-20 11:21:34
● 2026-02-24 07:33:20
○ 2026-02-25 07:08:24
○ 2026-06-20 14:26:40
A2a00:f940:2:2:1:1:0:2562026-02-20 → 2026-06-20 · 3 obs
○ 2017-09-19 23:18:14
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
A31.31.196.172026-02-20 → 2026-06-20 · 3 obs
○ 2017-09-19 23:18:14
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
A88.151.116.72015-07-16 → 2017-09-19 · 4 obs
● 2015-07-16 03:51:38
● 2017-09-19 23:18:14
○ 2026-02-20 11:21:34
○ 2026-06-20 14:26:40

🔍 DNS Trace

📋 Delegation Chain

ZoneNameserversGlue
sua.dns.ripn.net, b.dns.ripn.net, d.dns.ripn.net, e.dns.ripn.net...10 records
malware.suns1.hosting.reg.ru, ns2.hosting.reg.ru-

✅ Authoritative Response

Server:31.31.194.245

NS records: ns1.hosting.reg.ru, ns2.hosting.reg.ru

🔒 DNSSEC Status

⚠️ Insecure (no DNSSEC)

No DS record for malware.su (unsigned zone)

⏱️ Timing

Total: 1438ms | Queries: -

📄 Records

TypeCountSample Data
A131.31.196.17
AAAA12a00:f940:2:2:1:1:0:256
NS2ns1.hosting.reg.ru, ns2.hosting.reg.ru
SOA1server256.hosting.reg.ru support.reg.ru

📌 Glue Records Collected

Total: 10

Out-of-bailiwick: 10 (a.dns.ripn.net, a.dns.ripn.net, b.dns.ripn.net...)

Analysis

IP Addresses

malware.su directs to two IP numbers, 31.31.196.17 and 2a00:f940:2:2:1:1:0:256

Additional host names — www.interfactor.ru, strunin.org, pop.dalee-20.ru and two others — share IP numbers with malware.su.

Name Servers

malware.su has three name servers — ns1.hosting.reg.ru, ns2.hosting.reg.ru and server256.hosting.reg.ru.

malware.su has at least partial name server overlap with other domains, such as svetobox.ru, yalf.ru, madmuazel.club and two others.

server279.hosting.reg.ru, server55.hosting.reg.ru and server62.hosting.reg.ru — plus 3 other name servers — are commonly paired with these name servers.

Host names with 14 IP numbers:

ns1.hosting.reg.ru points to 31.31.194.245, 31.31.194.251, 31.31.196.37 and 11 other IP addresses.

ns2.hosting.reg.ru points to 31.31.194.244, 31.31.196.34, 31.31.196.53 and 11 other IP addresses.

Host names pointing to a single IP address:

server256.hosting.reg.ru resolves to 31.31.196.17.