CF1761259784390-tsm20251017082432

MXLIST.NET - malware.ltd

Search for IP or hostnames:

malware.ltd checked at 2025-10-23T22:49:44.372Z 235ms 101/101/101 100% R:11

malware.ltd

NSdns1.registrar-servers.com
A2610:a1:1024::200 🇺🇸 Neustar
PTRdns1.namecheaphosting.com
PTRdns1.registrar-servers.com
A156.154.132.200🇺🇸 Neustar
PTRdns1.namecheaphosting.com
PTRdns1.registrar-servers.com
NSdns2.registrar-servers.com
A2610:a1:1025::200 🇺🇸 Neustar
PTRdns2.namecheaphosting.com
PTRdns2.registrar-servers.com
A156.154.133.200🇺🇸 Neustar
PTRdns2.namecheaphosting.com
PTRdns2.registrar-servers.com
MXeforward1.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
MXeforward2.registrar-servers.com
A162.255.118.52🇺🇸 Namecheap
PTReforward2.registrar-servers.com
MXeforward3.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
MXeforward4.registrar-servers.com
A162.255.118.52🇺🇸 Namecheap
PTReforward2.registrar-servers.com
MXeforward5.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
A162.255.119.192🇺🇸 Namecheap

ltd

NSv0n0.nic.ltd
NSv0n1.nic.ltd
NSv0n2.nic.ltd
NSv0n3.nic.ltd
NSv2n0.nic.ltd
NSv2n1.nic.ltd

Starts with same word

Starts similarily

AI analysis

malware.ltd points to IP number 162.255.119.192.

For instance, other host names madarang.org, diamondsndeals.com, quickshuttle.com, comu.co and coolhand.co share IP numbers with malware.ltd.

malware.ltd is delegated to two name servers: dns1.registrar-servers.com and dns2.registrar-servers.com.

malware.ltd uses the same name server setup as other domains such as kfz-mannheim.de, sportcelebritywag.com, 201576.com, swatchwork.com and megaabet.com.

malware.ltd shares name servers with other domains at least partially, for example demandinglife.com, symsim.com, digshot.com, robertjesse.com and senity.co.uk.

These name servers are commonly used with dns3.registrar-servers.com, dns4.registrar-servers.com and dns5.registrar-servers.com.

Host names with two IP numbers:

dns1.registrar-servers.com points to 2610:a1:1024::200 and 156.154.132.200; dns2.registrar-servers.com points to 2610:a1:1025::200 and 156.154.133.200.

Five mail servers handle malware.ltd: eforward1.registrar-servers.com, eforward2.registrar-servers.com, eforward3.registrar-servers.com, eforward4.registrar-servers.com and eforward5.registrar-servers.com.

malware.ltd shares mail servers with other domains at least partially; for instance obiwankimberly.com, 2pg.in, ciscodigital.com, ignistudio.com and alphahotrod.us.

these mail servers are commonly used alongside eforward6.registrar-servers.com and eforward7.registrar-servers.com.

Host names with a single IP:

eforward1.registrar-servers.com points to: 162.255.118.51.

eforward2.registrar-servers.com points to: 162.255.118.52.

eforward3.registrar-servers.com points to: 162.255.118.51.

eforward4.registrar-servers.com points to: 162.255.118.52.

eforward5.registrar-servers.com points to: 162.255.118.51.

Host names that point to 162.255.118.51: eforward1.registrar-servers.com, eforward3.registrar-servers.com and eforward5.registrar-servers.com.

Host names that point to 162.255.118.52: eforward2.registrar-servers.com and eforward4.registrar-servers.com.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

jKqJBXp CF johedugfp 2025-10-23