CF1760668948510-tsm20251016114356

DNSWHOIS.INFO - malwareintel.com

Search for IP or hostnames:

malwareintel.com checked at 2025-10-17T02:42:28.494Z 499ms 117/117/117 100% R:12

malwareintel.com

MXinbound-smtp.us-east-1.amazonaws.com
A3.211.210.226πŸ‡ΊπŸ‡Έ Amazon
PTRec2-3-211-210-226.compute-1.amazonaws.com
A44.206.9.87πŸ‡ΊπŸ‡Έ Amazon
PTRec2-44-206-9-87.compute-1.amazonaws.com
A44.210.166.32πŸ‡ΊπŸ‡Έ Amazon
PTRec2-44-210-166-32.compute-1.amazonaws.com
A54.164.173.191πŸ‡ΊπŸ‡Έ Amazon
PTRec2-54-164-173-191.compute-1.amazonaws.com
A54.197.5.236πŸ‡ΊπŸ‡Έ Amazon
PTRec2-54-197-5-236.compute-1.amazonaws.com
NSevangeline.ns.cloudflare.com
A2606:4700:50::a29f:2606 πŸ‡ΊπŸ‡Έ Cloudflare
PTRevangeline.ns.cloudflare.com
A2803:f800:50::6ca2:c206 πŸ‡¨πŸ‡· Cloudflare
PTRevangeline.ns.cloudflare.com
A2a06:98c1:50::ac40:2206 πŸ‡ΊπŸ‡Έ Cloudflare
PTRevangeline.ns.cloudflare.com
A108.162.194.6πŸ‡ΊπŸ‡Έ Cloudflare
PTRevangeline.ns.cloudflare.com
A162.159.38.6 Cloudflare
PTRevangeline.ns.cloudflare.com
A172.64.34.6πŸ‡ΊπŸ‡Έ Cloudflare
PTRevangeline.ns.cloudflare.com
NSsonny.ns.cloudflare.com
A2606:4700:58::a29f:2c42 πŸ‡ΊπŸ‡Έ Cloudflare
PTRsonny.ns.cloudflare.com
A2803:f800:50::6ca2:c342 πŸ‡¨πŸ‡· Cloudflare
PTRsonny.ns.cloudflare.com
A2a06:98c1:50::ac40:2342 πŸ‡ΊπŸ‡Έ Cloudflare
PTRsonny.ns.cloudflare.com
A108.162.195.66πŸ‡ΊπŸ‡Έ Cloudflare
PTRsonny.ns.cloudflare.com
A162.159.44.66 Cloudflare
PTRsonny.ns.cloudflare.com
A172.64.35.66πŸ‡ΊπŸ‡Έ Cloudflare
PTRsonny.ns.cloudflare.com

com

NSa.gtld-servers.net
NSb.gtld-servers.net
NSc.gtld-servers.net
NSd.gtld-servers.net
NSe.gtld-servers.net
NSf.gtld-servers.net
NSg.gtld-servers.net
NSh.gtld-servers.net
NSi.gtld-servers.net
NSj.gtld-servers.net
NSk.gtld-servers.net
NSl.gtld-servers.net
NSm.gtld-servers.net

Starts with same word

Starts similarily

AI analysis

malwareintel.com's delegation uses two name servers: evangeline.ns.cloudflare.com and sonny.ns.cloudflare.com.

malwareintel.com uses the same name server setup as other domains, such as popupasia.com, clownstrike.com, cr0vvdstrike.com, cdpince.hu and miriam.mx.

malwareintel.com at least partially shares name servers with other domains, including cdhcjz.com, jordanretro-11.us.com, ssspread.com, kenyanbigboy.com and smileexpo.ru.

These name servers are often used with deborah.ns.cloudflare.com and desiree.ns.cloudflare.com.

Host names with six IP numbers:

evangeline.ns.cloudflare.com points to 2606:4700:50::a29f:2606, 2803:f800:50::6ca2:c206, 2a06:98c1:50::ac40:2206, 108.162.194.6, 162.159.38.6 and 172.64.34.6.

sonny.ns.cloudflare.com points to 2606:4700:58::a29f:2c42, 2803:f800:50::6ca2:c342, 2a06:98c1:50::ac40:2342, 108.162.195.66, 162.159.44.66 and 172.64.35.66.

A single mail server handles malwareintel.com, inbound-smtp.us-east-1.amazonaws.com.

malwareintel.com shares the same mail server setup as other domains, for instance luckyhunangardenbf.com, swiftapp.com.br, chinakingbuffeter.com, j-body.org and iposcentral-qa.com.

malwareintel.com shares at least some mail servers with other domains, for example redmap.atlassian.net, indigoag.atlassian.net, rivianautomotivellc.atlassian.net, wastelogics.atlassian.net and lucidtech.ai.

These mail servers are commonly used with inbound-smtp.us-west-2.amazonaws.com, aspmx.l.google.com, alt1.aspmx.l.google.com, alt2.aspmx.l.google.com, alt3.aspmx.l.google.com and alt4.aspmx.l.google.com.

inbound-smtp.us-east-1.amazonaws.com points to five IP numbers: 3.211.210.226, 44.206.9.87, 44.210.166.32, 54.164.173.191 and 54.197.5.236.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

PPUnvqA CF johedugfp 2025-10-17