CF1757713776810-tsm20250912070358

DNSWHOIS.INFO - malware.wtf

Search for IP or hostnames:

malware.wtf checked at 2025-09-12T21:49:36.714Z 925ms 79/79/79 100% R:9

malware.wtf

NSgeorge.ns.cloudflare.com
A2606:4700:58::adf5:3ba7 🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
A2803:f800:50::6ca2:c1a7 🇨🇷 Cloudflare
PTRgeorge.ns.cloudflare.com
A2a06:98c1:50::ac40:21a7 🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
A108.162.193.167🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
A172.64.33.167🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
A173.245.59.167🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
NSlily.ns.cloudflare.com
A2606:4700:50::adf5:3a82 🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com
A2803:f800:50::6ca2:c082 🇨🇷 Cloudflare
PTRlily.ns.cloudflare.com
A2a06:98c1:50::ac40:2082 🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com
A108.162.192.130🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com
A172.64.32.130🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com
A173.245.58.130🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com

wtf

NSv0n0.nic.wtf
NSv0n1.nic.wtf
NSv0n2.nic.wtf
NSv0n3.nic.wtf
NSv2n0.nic.wtf
NSv2n1.nic.wtf

Starts with same word

Starts similarily

AI analysis

Two name servers, george.ns.cloudflare.com and lily.ns.cloudflare.com, are delegated to malware.wtf.

The name server setup of malware.wtf is shared with other domains such as hypecase.com, certimail.ca, ruststake.com, pf1.co.il, and caixas.com.

The domain malware.wtf shares its name servers at least partially with other domains such as rewu.net, leg.co.za, 71387.top, iqnu.com, and skycop.lt.

The name servers ian.ns.cloudflare.com are commonly utilized in conjunction.

george.ns.cloudflare.com and lily.ns.cloudflare.com both point to six IP numbers each: 2606:4700:58::adf5:3ba7, 2803:f800:50::6ca2:c1a7, 2a06:98c1:50::ac40:21a7, 108.162.193.167, 172.64.33.167, and 173.245.59.167 for george.ns.cloudflare.com, and 2606:4700:50::adf5:3a82, 2803:f800:50::6ca2:c082, 2a06:98c1:50::ac40:2082, 108.162.192.130, 172.64.32.130, and 173.245.58.130 for lily.ns.cloudflare.com.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

lDvbeFv CF johedugfp 2025-09-12