CF1759211020134-tsm20250929235914

WWW.RTSAK.COM - malware.ltd

Search for IP or hostnames:

malware.ltd checked at 2025-09-30T05:43:40.085Z 192ms 101/101/101 100% R:11

malware.ltd

NSdns1.registrar-servers.com
A2610:a1:1024::200 🇺🇸 Neustar
PTRdns1.namecheaphosting.com
PTRdns1.registrar-servers.com
A156.154.132.200🇺🇸 Neustar
PTRdns1.namecheaphosting.com
PTRdns1.registrar-servers.com
NSdns2.registrar-servers.com
A2610:a1:1025::200 🇺🇸 Neustar
PTRdns2.namecheaphosting.com
PTRdns2.registrar-servers.com
A156.154.133.200🇺🇸 Neustar
PTRdns2.namecheaphosting.com
PTRdns2.registrar-servers.com
MXeforward1.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
MXeforward2.registrar-servers.com
A162.255.118.52🇺🇸 Namecheap
PTReforward2.registrar-servers.com
MXeforward3.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
MXeforward4.registrar-servers.com
A162.255.118.52🇺🇸 Namecheap
PTReforward2.registrar-servers.com
MXeforward5.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
A162.255.119.192🇺🇸 Namecheap

ltd

NSv0n0.nic.ltd
NSv0n1.nic.ltd
NSv0n2.nic.ltd
NSv0n3.nic.ltd
NSv2n0.nic.ltd
NSv2n1.nic.ltd

Starts with same word

Starts similarily

AI analysis

malware.ltd resolves to a single IP address: 162.255.119.192.

Other host names including diamondsndeals.com, quickshuttle.com, comu.co, coolhand.co and parcville.ca share IP numbers with malware.ltd.

malware.ltd's delegation uses two name servers, dns1.registrar-servers.com and dns2.registrar-servers.com.

malware.ltd shares the same name server setup as other domains, for example kfz-mannheim.de, sportcelebritywag.com, 201576.com, swatchwork.com and megaabet.com.

malware.ltd at least partially shares name servers with other domains, including coraor.com, demandinglife.com, symsim.com, digshot.com and robertjesse.com.

these name servers are commonly used together with dns3.registrar-servers.com, dns4.registrar-servers.com and dns5.registrar-servers.com.

Host names with two IPs:

dns1.registrar-servers.com points to: 2610:a1:1024::200 and 156.154.132.200

dns2.registrar-servers.com points to: 2610:a1:1025::200 and 156.154.133.200

malware.ltd is handled by five mail servers: eforward1.registrar-servers.com, eforward2.registrar-servers.com, eforward3.registrar-servers.com, eforward4.registrar-servers.com and eforward5.registrar-servers.com.

The mail servers for malware.ltd are shared with other domains, for instance obiwankimberly.com, 2pg.in, ciscodigital.com, 7areef.com and ignistudio.com.

These mail servers are commonly used alongside eforward6.registrar-servers.com and eforward7.registrar-servers.com.

Host names sharing one IP number:

eforward1.registrar-servers.com points to 162.255.118.51.

eforward2.registrar-servers.com points to 162.255.118.52.

eforward3.registrar-servers.com points to 162.255.118.51.

eforward4.registrar-servers.com points to 162.255.118.52.

eforward5.registrar-servers.com points to 162.255.118.51.

Host names that point to 162.255.118.51: eforward1.registrar-servers.com, eforward3.registrar-servers.com and eforward5.registrar-servers.com.

Host names that point to 162.255.118.52: eforward2.registrar-servers.com and eforward4.registrar-servers.com.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

OTfLTbt CF johedugfp 2025-09-30