CF1761594376905-tsm20251027103946

MXLIST.NET - malware.watch

Search for IP or hostnames:

malware.watch checked at 2025-10-27T19:46:16.880Z 161ms 123/123/123 100% R:14

malware.watch

MXmail.protonmail.ch
A176.119.200.128๐Ÿ‡จ๐Ÿ‡ญ Proton AG
PTRmail.protonmail.ch
A185.70.42.128๐Ÿ‡จ๐Ÿ‡ญ Proton AG
PTRmail.protonmail.ch
A185.205.70.128๐Ÿ‡ซ๐Ÿ‡ท Proton AG
PTRmail.protonmail.ch
MXmailsec.protonmail.ch
A176.119.200.129๐Ÿ‡จ๐Ÿ‡ญ Proton AG
PTRmailsec.protonmail.ch
A185.70.42.129๐Ÿ‡จ๐Ÿ‡ญ Proton AG
PTRmailsec.protonmail.ch
A185.205.70.129๐Ÿ‡ซ๐Ÿ‡ท Proton AG
PTRmailsec.protonmail.ch
NSjosh.ns.cloudflare.com
A2606:4700:58::adf5:3b7e ๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRjosh.ns.cloudflare.com
A2803:f800:50::6ca2:c17e ๐Ÿ‡จ๐Ÿ‡ท Cloudflare
PTRjosh.ns.cloudflare.com
A2a06:98c1:50::ac40:217e ๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRjosh.ns.cloudflare.com
A108.162.193.126๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRjosh.ns.cloudflare.com
A172.64.33.126๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRjosh.ns.cloudflare.com
A173.245.59.126๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRjosh.ns.cloudflare.com
NSlara.ns.cloudflare.com
A2606:4700:50::adf5:3a80 ๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRlara.ns.cloudflare.com
A2803:f800:50::6ca2:c080 ๐Ÿ‡จ๐Ÿ‡ท Cloudflare
PTRlara.ns.cloudflare.com
A2a06:98c1:50::ac40:2080 ๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRlara.ns.cloudflare.com
A108.162.192.128๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRlara.ns.cloudflare.com
A172.64.32.128๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRlara.ns.cloudflare.com
A173.245.58.128๐Ÿ‡บ๐Ÿ‡ธ Cloudflare
PTRlara.ns.cloudflare.com

watch

NSv0n0.nic.watch
NSv0n1.nic.watch
NSv0n2.nic.watch
NSv0n3.nic.watch
NSv2n0.nic.watch
NSv2n1.nic.watch

Up

Starts with same word

Starts similarily

AI analysis

malware.watch is the parent of lists.malware.watch.

malware.watch is delegated to two name servers: josh.ns.cloudflare.com and lara.ns.cloudflare.com.

malware.watch shares the same name server setup as other domains, for example longviewadvisors.com, greeneforcongress2020.com, teamcam.org, spirepress.com and nwnn.org.

malware.watch at least partially shares name servers with other domains, for instance hashtagchatter.com, ewastech.com, asfl.us, tigertropin.com and yazilimtoplulugu.com.

These name servers are commonly used with the name servers alice.ns.cloudflare.com.

Host names with six IP numbers:

josh.ns.cloudflare.com points to: 2606:4700:58::adf5:3b7e, 2803:f800:50::6ca2:c17e, 2a06:98c1:50::ac40:217e, 108.162.193.126, 172.64.33.126 and 173.245.59.126; lara.ns.cloudflare.com points to: 2606:4700:50::adf5:3a80, 2803:f800:50::6ca2:c080, 2a06:98c1:50::ac40:2080, 108.162.192.128, 172.64.32.128 and 173.245.58.128.

malware.watch is handled by two mail servers: mail.protonmail.ch and mailsec.protonmail.ch.

malware.watch shares the same mail server setup as other domains, for instance sjablonen4you.nl, djrefor.com, footballcollectible.com, jewishmafia.org and pro-tech.fr.

malware.watch shares mail servers with other domains at least partially, including synhack.org, lodwich.net, celsmail.com, maestrosoft.gr and goestav.com.

Host names with three IP numbers:

mail.protonmail.ch points to: 176.119.200.128, 185.70.42.128 and 185.205.70.128.

mailsec.protonmail.ch points to: 176.119.200.129, 185.70.42.129 and 185.205.70.129.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

GMaYMRq CF johedugfp 2025-10-27