CF1759977132070-tsm20251008212832

WWW.RTSAK.COM - malware.1337age.com

Search for IP or hostnames:

malware.1337age.com checked at 2025-10-09T02:32:12.039Z 154ms 149/149/149 100% R:10

malware.1337age.com

MXmx1.juandefu.ca
A2600:3c01::f03c:91ff:fe37:d956 🇺🇸 Linode AS63949
A2600:3c01::f03c:91ff:fe93:8009 🇺🇸 Linode AS63949
A45.56.88.110🇺🇸 Linode AS63949
PTRli890-110.members.linode.com
A173.255.250.175🇺🇸 Linode AS63949
PTRli260-175.members.linode.com
MXmx2.juandefu.ca
A2600:3c01::f03c:91ff:fe37:d956 🇺🇸 Linode AS63949
A2600:3c01::f03c:91ff:fe93:8009 🇺🇸 Linode AS63949
A45.56.88.110🇺🇸 Linode AS63949
PTRli890-110.members.linode.com
A173.255.250.175🇺🇸 Linode AS63949
PTRli260-175.members.linode.com
MXmx3.juandefu.ca
A2600:3c01::f03c:91ff:fe37:d956 🇺🇸 Linode AS63949
A2600:3c01::f03c:91ff:fe93:8009 🇺🇸 Linode AS63949
A45.56.88.110🇺🇸 Linode AS63949
PTRli890-110.members.linode.com
A173.255.250.175🇺🇸 Linode AS63949
PTRli260-175.members.linode.com
MXmx4.juandefu.ca
A2600:3c01::f03c:91ff:fe37:d956 🇺🇸 Linode AS63949
A2600:3c01::f03c:91ff:fe93:8009 🇺🇸 Linode AS63949
A45.56.88.110🇺🇸 Linode AS63949
PTRli890-110.members.linode.com
A173.255.250.175🇺🇸 Linode AS63949
PTRli260-175.members.linode.com
MXmx5.juandefu.ca
A2600:3c01::f03c:91ff:fe37:d956 🇺🇸 Linode AS63949
A2600:3c01::f03c:91ff:fe93:8009 🇺🇸 Linode AS63949
A45.56.88.110🇺🇸 Linode AS63949
PTRli890-110.members.linode.com
A173.255.250.175🇺🇸 Linode AS63949
PTRli260-175.members.linode.com
A2600:3c01::f03c:91ff:fe37:d956 🇺🇸 Linode AS63949
A2600:3c01::f03c:91ff:fe93:8009 🇺🇸 Linode AS63949
A45.56.88.110🇺🇸 Linode AS63949
PTRli890-110.members.linode.com
A173.255.250.175🇺🇸 Linode AS63949
PTRli260-175.members.linode.com

1337age.com

MXmx1.juandefu.ca
MXmx2.juandefu.ca
MXmx3.juandefu.ca
MXmx4.juandefu.ca
MXmx5.juandefu.ca
NSns1.linode.com
NSns2.linode.com
NSns3.linode.com
NSns4.linode.com
NSns5.linode.com
A2600:3c01::f03c:91ff:fe37:d956 🇺🇸 Linode AS63949
A2600:3c01::f03c:91ff:fe93:8009 🇺🇸 Linode AS63949
A45.56.88.110🇺🇸 Linode AS63949
A173.255.250.175🇺🇸 Linode AS63949

Starts with same word

Starts similarily

AI analysis

malware.1337age.com resolves to four IP numbers: 2600:3c01::f03c:91ff:fe37:d956, 2600:3c01::f03c:91ff:fe93:8009, 45.56.88.110 and 173.255.250.175.

Other host names such as mail.bigboytable.com, ostra.ca, ns1.1337age.net, ns2.1337age.com and mx2.juandefu.ca share IPs with malware.1337age.com.

Five mail servers handle malware.1337age.com: mx1.juandefu.ca, mx2.juandefu.ca, mx3.juandefu.ca, mx4.juandefu.ca and mx5.juandefu.ca.

malware.1337age.com shares at least partially some mail servers with other domains, including mail.juandefu.ca, ostracon.net, 0in.co, www.1337age.com and leetage.net.

Host names with four IP numbers:

The host names mx1.juandefu.ca, mx2.juandefu.ca, mx3.juandefu.ca, mx4.juandefu.ca and mx5.juandefu.ca point to: 2600:3c01::f03c:91ff:fe37:d956, 2600:3c01::f03c:91ff:fe93:8009, 45.56.88.110 and 173.255.250.175.

Host names that point to 2600:3c01::f03c:91ff:fe37:d956: mx1.juandefu.ca, mx2.juandefu.ca, mx3.juandefu.ca, mx4.juandefu.ca and mx5.juandefu.ca.

Host names that point to 2600:3c01::f03c:91ff:fe93:8009: mx1.juandefu.ca, mx2.juandefu.ca, mx3.juandefu.ca, mx4.juandefu.ca and mx5.juandefu.ca.

Host names that point to 45.56.88.110: mx1.juandefu.ca, mx2.juandefu.ca, mx3.juandefu.ca, mx4.juandefu.ca and mx5.juandefu.ca.

Host names that point to 173.255.250.175: mx1.juandefu.ca, mx2.juandefu.ca, mx3.juandefu.ca, mx4.juandefu.ca and mx5.juandefu.ca.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

GYVKXbU CF johedugfp 2025-10-09