CF1757249034692-tsm20250907123650

DNSWHOIS.INFO - xo.wtf

Search for IP or hostnames:

xo.wtf checked at 2025-09-07T12:43:54.669Z 239ms 163/163/163 100% R:15

xo.wtf

MXmx1.improvmx.com
A2a05:d012:412:e201:88aa:e7b9:7a43:12d7 🇫🇷 Amazon
A2a05:d012:412:e202:f36:2c1f:1a49:d38a 🇫🇷 Amazon
A2a05:d012:412:e203:373a:f51a:4a85:1d25 🇫🇷 Amazon
A13.37.195.136🇫🇷 Amazon
PTRec2-13-37-195-136.eu-west-3.compute.amazonaws.com
A15.236.236.160🇫🇷 Amazon
PTRec2-15-236-236-160.eu-west-3.compute.amazonaws.com
A35.181.18.45🇫🇷 Amazon
PTRec2-35-181-18-45.eu-west-3.compute.amazonaws.com
MXmx2.improvmx.com
A2a05:d012:412:e201:1f6e:f6e4:8fd7:4678 🇫🇷 Amazon
A2a05:d012:412:e202:e81e:cc44:3b53:8a3d 🇫🇷 Amazon
A2a05:d012:412:e203:7e33:3d9c:28d7:ee20 🇫🇷 Amazon
A13.36.107.63🇫🇷 Amazon
PTRec2-13-36-107-63.eu-west-3.compute.amazonaws.com
A13.36.222.39🇫🇷 Amazon
PTRec2-13-36-222-39.eu-west-3.compute.amazonaws.com
A15.236.61.92🇫🇷 Amazon
PTRec2-15-236-61-92.eu-west-3.compute.amazonaws.com
NSlloyd.ns.cloudflare.com
A2606:4700:58::adf5:3bc5 🇺🇸 Cloudflare
PTRlloyd.ns.cloudflare.com
A2803:f800:50::6ca2:c1c5 🇨🇷 Cloudflare
PTRlloyd.ns.cloudflare.com
A2a06:98c1:50::ac40:21c5 🇺🇸 Cloudflare
PTRlloyd.ns.cloudflare.com
A108.162.193.197🇺🇸 Cloudflare
PTRlloyd.ns.cloudflare.com
A172.64.33.197🇺🇸 Cloudflare
PTRlloyd.ns.cloudflare.com
A173.245.59.197🇺🇸 Cloudflare
PTRlloyd.ns.cloudflare.com
NStess.ns.cloudflare.com
A2606:4700:50::adf5:3ae3 🇺🇸 Cloudflare
PTRtess.ns.cloudflare.com
A2803:f800:50::6ca2:c0e3 🇨🇷 Cloudflare
PTRtess.ns.cloudflare.com
A2a06:98c1:50::ac40:20e3 🇺🇸 Cloudflare
PTRtess.ns.cloudflare.com
A108.162.192.227🇺🇸 Cloudflare
PTRtess.ns.cloudflare.com
A172.64.32.227🇺🇸 Cloudflare
PTRtess.ns.cloudflare.com
A173.245.58.227🇺🇸 Cloudflare
PTRtess.ns.cloudflare.com
A2603:c021:1:c700::1337:cafe 🇨🇦 Oracle Cloud Infrastructure
A129.153.63.167🇨🇦 Oracle Cloud Infrastructure

wtf

NSv0n0.nic.wtf
NSv0n1.nic.wtf
NSv0n2.nic.wtf
NSv0n3.nic.wtf
NSv2n0.nic.wtf
NSv2n1.nic.wtf

AI analysis

The parent of haida.xo.wtf and legoshi.xo.wtf is xo.wtf.

xo.wtf is configured to point to two IP addresses: 2603:c021:1:c700::1337:cafe and 129.153.63.167.

IP numbers are shared between xo.wtf and other host names, such as haida.xo.wtf and legoshi.xo.wtf.

Two name servers, lloyd.ns.cloudflare.com and tess.ns.cloudflare.com, are delegated to xo.wtf.

The name server setup of xo.wtf is shared with other domains such as lwh.dk, screenshot.download, flyfish.dk, zgtec.com, and itechcorp.com.vn.

The domain xo.wtf partially shares name servers with other domains such as ap-advances.com, glups.fr, lamainverte.fr, harlancenter.com, and printondemand.id.

The name servers abby.ns.cloudflare.com are frequently utilized in conjunction.

lloyd.ns.cloudflare.com points to the following IP numbers: 2606:4700:58::adf5:3bc5, 2803:f800:50::6ca2:c1c5, 2a06:98c1:50::ac40:21c5, 108.162.193.197, 172.64.33.197, and 173.245.59.197, while tess.ns.cloudflare.com points to: 2606:4700:50::adf5:3ae3, 2803:f800:50::6ca2:c0e3, 2a06:98c1:50::ac40:20e3, 108.162.192.227, 172.64.32.227, and 173.245.58.227.

Two mail servers, mx1.improvmx.com and mx2.improvmx.com, manage xo.wtf.

Just like the domains topspinpromotions.com, podkarpackie.online, hirethings.co.nz, nietzsche.at, and pika.blue, xo.wtf also has the same mail server setup.

Some mail servers are at least partially shared by xo.wtf with other domains, such as lackon.de, myvisualproject.com, and neogenos.com.

mx1.improvmx.com points to the following IP numbers: 2a05:d012:412:e201:88aa:e7b9:7a43:12d7, 2a05:d012:412:e202:f36:2c1f:1a49:d38a, 2a05:d012:412:e203:373a:f51a:4a85:1d25, 13.37.195.136, 15.236.236.160, and 35.181.18.45, while mx2.improvmx.com points to: 2a05:d012:412:e201:1f6e:f6e4:8fd7:4678, 2a05:d012:412:e202:e81e:cc44:3b53:8a3d, 2a05:d012:412:e203:7e33:3d9c:28d7:ee20, 13.36.107.63, 13.36.222.39, and 15.236.61.92.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

YuERIxK CF johedugfp 2025-09-07