malware.su - dns.ninja
malware.su
su
| DNSSEC | 🔒 Signed (DS record present) | ||||||
| NS | a.dns.ripn.net ⭐ | ||||||
| NS | b.dns.ripn.net | ||||||
| NS | d.dns.ripn.net | ||||||
| NS | e.dns.ripn.net | ||||||
| NS | f.dns.ripn.net | ||||||
| SOA | a.dns.ripn.nethostmaster@ripn.net serial=650209545 | ||||||
Same first word
Similar names
lawream.com |
mawlare.net |
wealarm.com |
malwear.co |
malwear.org |
realawm.com |
amerlaw.com |
reamlaw.net |
reamlaw.com |
meralaw.com |
walmare.com |
marwael.fr |
malwear.wtf |
amlware.com |
elmarwa.com |
malwear.com |
amrelaw.com |
rawmale.com |
DNS History
11 records (5 active, 6 former)
○NSns0.ns0.ru2015-07-16 → 2017-09-19 · 4 obs
● 2017-09-19 23:18:14
○ 2026-02-20 11:21:34
○ 2026-06-20 14:26:40
●NSns1.hosting.reg.ru2026-02-20 → 2026-06-20 · 3 obs
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
○NSns1.ns0.ru2015-07-16 → 2017-09-19 · 4 obs
● 2017-09-19 23:18:14
○ 2026-02-20 11:21:34
○ 2026-06-20 14:26:40
●NSns2.hosting.reg.ru2026-02-20 → 2026-06-20 · 3 obs
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
●NSserver256.hosting.reg.ru2026-02-20 → 2026-06-20 · 3 obs
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
○MXmail.ru.gw0.ru2015-07-16 → 2017-09-19 · 4 obs
● 2017-09-19 23:18:14
○ 2026-02-20 11:21:34
○ 2026-06-20 14:26:40
○MXmx1.hosting.reg.ru2026-02-20 → 2026-02-24 · 5 obs
● 2026-02-20 11:21:34
● 2026-02-24 07:33:20
○ 2026-02-25 07:08:24
○ 2026-06-20 14:26:40
○MXmx2.hosting.reg.ru2026-02-20 → 2026-02-24 · 5 obs
● 2026-02-20 11:21:34
● 2026-02-24 07:33:20
○ 2026-02-25 07:08:24
○ 2026-06-20 14:26:40
●A2a00:f940:2:2:1:1:0:2562026-02-20 → 2026-06-20 · 3 obs
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
●A31.31.196.172026-02-20 → 2026-06-20 · 3 obs
● 2026-02-20 11:21:34
● 2026-06-20 14:26:40
○A88.151.116.72015-07-16 → 2017-09-19 · 4 obs
● 2017-09-19 23:18:14
○ 2026-02-20 11:21:34
○ 2026-06-20 14:26:40
🔍 DNS Trace
📋 Delegation Chain
| Zone | Nameservers | Glue |
|---|---|---|
| su | a.dns.ripn.net, b.dns.ripn.net, d.dns.ripn.net, e.dns.ripn.net... | 10 records |
| malware.su | ns1.hosting.reg.ru, ns2.hosting.reg.ru | - |
✅ Authoritative Response
Server:31.31.194.245
NS records: ns1.hosting.reg.ru, ns2.hosting.reg.ru
🔒 DNSSEC Status
⚠️ Insecure (no DNSSEC)
No DS record for malware.su (unsigned zone)
⏱️ Timing
Total: 1438ms | Queries: -
📄 Records
| Type | Count | Sample Data |
|---|---|---|
| A | 1 | 31.31.196.17 |
| AAAA | 1 | 2a00:f940:2:2:1:1:0:256 |
| NS | 2 | ns1.hosting.reg.ru, ns2.hosting.reg.ru |
| SOA | 1 | server256.hosting.reg.ru support.reg.ru |
📌 Glue Records Collected
Total: 10
Out-of-bailiwick: 10 (a.dns.ripn.net, a.dns.ripn.net, b.dns.ripn.net...)
Analysis
IP Addresses
malware.su directs to two IP numbers, 31.31.196.17 and 2a00:f940:2:2:1:1:0:256
Additional host names — www.interfactor.ru, strunin.org, pop.dalee-20.ru and two others — share IP numbers with malware.su.
Name Servers
malware.su has three name servers — ns1.hosting.reg.ru, ns2.hosting.reg.ru and server256.hosting.reg.ru.
malware.su has at least partial name server overlap with other domains, such as svetobox.ru, yalf.ru, madmuazel.club and two others.
server279.hosting.reg.ru, server55.hosting.reg.ru and server62.hosting.reg.ru — plus 3 other name servers — are commonly paired with these name servers.
Host names with 14 IP numbers:
ns1.hosting.reg.ru points to 31.31.194.245, 31.31.194.251, 31.31.196.37 and 11 other IP addresses.
ns2.hosting.reg.ru points to 31.31.194.244, 31.31.196.34, 31.31.196.53 and 11 other IP addresses.
Host names pointing to a single IP address:
server256.hosting.reg.ru resolves to 31.31.196.17.