CF1757198054283-tsm20250906182357

WWW.RTSAK.COM - scam.so

Search for IP or hostnames:

scam.so checked at 2025-09-06T22:34:14.267Z 326ms 69/69/69 100% R:14

scam.so

MX.
NSns1.afternic.com
A2603:5:2126::45 🇺🇸 GODADDY-DNS
PTRns1.afternic.com
A97.74.98.69🇺🇸 GODADDY-DNS
PTRns1.afternic.com
NSns2.afternic.com
A2603:5:2226::45 🇺🇸 GODADDY-DNS
PTRns2.afternic.com
A173.201.66.69🇺🇸 GODADDY-DNS
PTRns2.afternic.com
A99.83.161.153🇺🇸 Amazon
PTRa2b7bf3398455f345.awsglobalaccelerator.com
A166.117.110.61🇺🇸 SANOFI-SG

so

NSd.nic.so
NSe.nic.so

AI analysis

The parent of appldnld.scam.so, admin.scam.so, and ardownload.scam.so is scam.so.

scam.so is configured to point to two IP addresses: 99.83.161.153 and 166.117.110.61.

IP numbers are shared between scam.so and other host names such as likeables.com, kyle.digital, 662727.com, lubricat.com, and mistermediator.com.

Two name servers, ns1.afternic.com and ns2.afternic.com, have been delegated to scam.so.

The name server setup of scam.so is identical to that of other domains such as malama.xyz, paybycreditcard.com, gal.ltd, kdhair.com, and smackbet.com.

ns1.afternic.com and ns2.afternic.com both point to two IP numbers each: 2603:5:2126::45, 97.74.98.69 for ns1.afternic.com and 2603:5:2226::45, 173.201.66.69 for ns2.afternic.com.

The mail server, ., handles scam.so.

Like other domains such as vamue.com, nutech.org, dnlawyer.org, dna.supply, and doublecrossed.org, scam.so also has the same mail server setup.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

HHCdkBc CF johedugfp 2025-09-06