CF1757342483577-tsm20250907181809

WWW.RTSAK.COM - phantom.us

Search for IP or hostnames:

phantom.us checked at 2025-09-08T14:41:23.560Z 195ms 124/124/124 100% R:14

phantom.us

NSns1.markmonitor.com
A2620:10a:80a8::1 🇨🇦 CIRA-CLOUD1
A149.112.160.1🇨🇦 CIRA-CLOUD1
NSns2.markmonitor.com
A2001:67c:10b8::1 🇨🇭 RCODEZERO-ANYCAST-SEC2
PTRns2.markmonitor.com
A176.97.158.1🇦🇹 RCODEZERO-ANYCAST-SEC2
PTRns2.markmonitor.com
NSns3.markmonitor.com
A2620:10a:80a9::1 🇨🇦 CIRA-CLOUD2
A149.112.161.1🇨🇦 CIRA-CLOUD2
NSns4.markmonitor.com
A2001:67c:1bc::1 🇦🇹 RcodeZero Anycast DNS
PTRns1.markmonitor.com
A192.174.68.1🇦🇹 RcodeZero Anycast DNS
PTRns1.markmonitor.com
NSns5.markmonitor.com
A2620:10a:80a8::2 🇨🇦 CIRA-CLOUD1
A149.112.160.2🇨🇦 CIRA-CLOUD1
NSns6.markmonitor.com
A2001:67c:10b8::3 🇨🇭 RCODEZERO-ANYCAST-SEC2
PTRns6.markmonitor.com
A176.97.158.3🇦🇹 RCODEZERO-ANYCAST-SEC2
PTRns6.markmonitor.com
NSns7.markmonitor.com
A2620:10a:80a9::2 🇨🇦 CIRA-CLOUD2
A149.112.161.2🇨🇦 CIRA-CLOUD2
MXmx1.splunk.iphmx.com
A68.232.146.108🇺🇸 HPS // Cisco Cloud Email Security (CES) / IronPort
A68.232.148.147🇺🇸 HPS // Cisco Cloud Email Security (CES) / IronPort
MXmx2.splunk.iphmx.com
A68.232.146.108🇺🇸 HPS // Cisco Cloud Email Security (CES) / IronPort
A68.232.148.147🇺🇸 HPS // Cisco Cloud Email Security (CES) / IronPort

us

NSb.cctld.us
NSf.cctld.us
NSk.cctld.us
NSm.cctld.us
NSn.cctld.us
NSw.cctld.us
NSx.cctld.us
NSy.cctld.us

AI analysis

The parent of www.phantom.us is phantom.us.

The delegation of phantom.us is to seven name servers: ns1.markmonitor.com, ns2.markmonitor.com, ns3.markmonitor.com, ns4.markmonitor.com, ns5.markmonitor.com, ns6.markmonitor.com, and ns7.markmonitor.com.

The domain phantom.us partially shares its name servers with other domains such as compeed.com, rental-cars.org.tt, azureus.ie, rentalcars.tt, and door1.in.

ns1.markmonitor.com, ns2.markmonitor.com, ns3.markmonitor.com, ns4.markmonitor.com, ns5.markmonitor.com, ns6.markmonitor.com, and ns7.markmonitor.com each point to two IP numbers: 2620:10a:80a8::1 and 149.112.160.1, 2001:67c:10b8::1 and 176.97.158.1, 2620:10a:80a9::1 and 149.112.161.1, 2001:67c:1bc::1 and 192.174.68.1, 2620:10a:80a8::2 and 149.112.160.2, 2001:67c:10b8::3 and 176.97.158.3, 2620:10a:80a9::2 and 149.112.161.2 respectively.

Two mail servers, mx1.splunk.iphmx.com and mx2.splunk.iphmx.com, are responsible for handling phantom.us.

Like the domains rigor.com, trustar.co, signalfx.com, victorops.net, and caspida.com, phantom.us also has the same mail server setup.

Both mx1.splunk.iphmx.com and mx2.splunk.iphmx.com point to the same two IP numbers: 68.232.146.108 and 68.232.148.147.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

BGVTGjm CF johedugfp 2025-09-08