CF1763491553890-tsm20251116095642

DNSWHOIS.INFO - russianmalware.com

Search for IP or hostnames:

russianmalware.com checked at 2025-11-18T18:45:53.641Z 4043ms 105/105/105 100% R:12 allDone:true timedOut:false

russianmalware.com

NSns-40.awsdns-05.com
A2600:9000:5300:2800::1 🇺🇸 Amazon
PTRns-40.awsdns-05.com
A205.251.192.40🇺🇸 Amazon
PTRns-40.awsdns-05.com
NSns-608.awsdns-12.net
A2600:9000:5302:6000::1 🇺🇸 Amazon
PTRns-608.awsdns-12.net
A205.251.194.96🇺🇸 Amazon
PTRns-608.awsdns-12.net
NSns-1104.awsdns-10.org
A2600:9000:5304:5000::1 🇺🇸 Amazon
PTRns-1104.awsdns-10.org
A205.251.196.80🇺🇸 Amazon
PTRns-1104.awsdns-10.org
NSns-1705.awsdns-21.co.uk
A2600:9000:5306:a900::1 🇺🇸 Amazon
PTRns-1705.awsdns-21.co.uk
A205.251.198.169🇺🇸 Amazon
PTRns-1705.awsdns-21.co.uk
MXrussianmalware-com.mail.protection.outlook.com
A2a01:111:f403:c922:: 🇺🇸 Microsoft
PTRmail-bl0pr03cu00200.inbound.protection.outlook.com
A2a01:111:f403:f901::2 🇺🇸 Microsoft
PTRmail-bl2pr02cu00402.inbound.protection.outlook.com
A2a01:111:f403:f908:: 🇺🇸 Microsoft
PTRmail-bn1pr21cu00100.inbound.protection.outlook.com
A2a01:111:f403:f90d:: 🇺🇸 Microsoft
PTRmail-sn1pr0501cu00200.inbound.protection.outlook.com
A52.101.10.5🇺🇸 Microsoft
PTRmail-bn6pr04cu00105.inbound.protection.outlook.com
A52.101.42.6🇺🇸 Microsoft
PTRmail-mw2pr02cu00306.inbound.protection.outlook.com
A52.101.42.16🇺🇸 Microsoft
PTRmail-co1pr05cu00300.inbound.protection.outlook.com
A52.101.194.4🇺🇸 Microsoft
PTRmail-ch4pr04cu00104.inbound.protection.outlook.com

com

NSa.gtld-servers.net
NSb.gtld-servers.net
NSc.gtld-servers.net
NSd.gtld-servers.net
NSe.gtld-servers.net
NSf.gtld-servers.net
NSg.gtld-servers.net
NSh.gtld-servers.net
NSi.gtld-servers.net
NSj.gtld-servers.net
NSk.gtld-servers.net
NSl.gtld-servers.net
NSm.gtld-servers.net

Starts with same word

Starts similarily

AI analysis

russianmalware.com's delegation is handled by four name servers: ns-40.awsdns-05.com, ns-608.awsdns-12.net, ns-1104.awsdns-10.org and ns-1705.awsdns-21.co.uk.

russianmalware.com partially shares name servers with other domains; examples include d25iu6foaj00gh.cloudfront.net, egeappliances.com, collegely.io, murabahasaleplatform.com and carissbrain.jp.

These name servers are commonly used with ns-1465.awsdns-55.org, ns-1763.awsdns-28.co.uk, ns-1498.awsdns-59.org, ns-964.awsdns-56.net, ns-1199.awsdns-21.org and ns-1648.awsdns-14.co.uk.

Host names with two IPs:

ns-40.awsdns-05.com points to 2600:9000:5300:2800::1 and 205.251.192.40

ns-608.awsdns-12.net points to 2600:9000:5302:6000::1 and 205.251.194.96

ns-1104.awsdns-10.org points to 2600:9000:5304:5000::1 and 205.251.196.80

ns-1705.awsdns-21.co.uk points to 2600:9000:5306:a900::1 and 205.251.198.169

russianmalware.com is handled by a single mail server, russianmalware-com.mail.protection.outlook.com.

Hostname russianmalware-com.mail.protection.outlook.com points to eight IP numbers: 2a01:111:f403:c922::, 2a01:111:f403:f901::2, 2a01:111:f403:f908::, 2a01:111:f403:f90d::, 52.101.10.5, 52.101.42.6, 52.101.42.16 and 52.101.194.4.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq