reverse.connection.shellcode.ws - dns.ninja

reverse.connection.shellcode.ws

connection.shellcode.ws

DNSSEC⚠️ Not signed
A64.70.19.203🇺🇸 AS356164.70.0.0/18
MXmail.hope-mail.com
TXTv=spf1 ip6:fdd0:951e:ede7::/48 -all

Same first word

Similar names

DNS History

2 records (2 active, 0 former)

MXmail.hope-mail.comA64.70.19.203
MXmail.hope-mail.com2026-02-25 → 2026-06-10 · 2 obs
● 2026-02-25 03:39:58
● 2026-06-10 21:11:30
A64.70.19.2032026-02-25 → 2026-06-10 · 2 obs
● 2026-02-25 03:39:58
● 2026-06-10 21:11:30

🔍 DNS Trace

📋 Delegation Chain

ZoneNameserversGlue
wsa.dns.ws, us3.dns.ws, ns2.dns.ws, us4.dns.ws...8 records

✅ Authoritative Response

Server:64.70.78.70

NS records: a.dns.ws, us3.dns.ws, ns2.dns.ws, us4.dns.ws, ns5.dns.ws, s.dns.ws

🔒 DNSSEC Status

🔐 Secure (DNSSEC validated)

Chain of trust verified from root to domain

⏱️ Timing

Total: 848ms | Queries: -

📄 Records

TypeCountSample Data
A164.70.19.203
MX1mail.hope-mail.com (pri: 1)
TXT1v=spf1 ip6:fdd0:951e:ede7::/48 -all

📌 Glue Records Collected

Total: 8

In-bailiwick: 8 (a.dns.ws, a.dns.ws, us3.dns.ws...)

Analysis

IP Addresses

reverse.connection.shellcode.ws has exactly one IP address — 64.70.19.203.

crappy.ws, htmlwebsite.ws, d574aed08e54dd994e265c711eeae1fc91.ws plus two other host names have IP numbers in common with reverse.connection.shellcode.ws.

Mail Servers

reverse.connection.shellcode.ws uses one mail server — mail.hope-mail.com.

The mail server setup of reverse.connection.shellcode.ws matches that of other domains such as www.wtlqflbe.ws, kobsuii.mujxk.com, j6082b0bf42d86e2bc36ea1b030174febf.ws and two others.

mail.hope-mail.com points to two IP addresses: 5.161.182.241 and 159.65.192.215.