CF1760357031469-tsm20251012143351

MXLIST.NET - rootkit.be

Search for IP or hostnames:

rootkit.be checked at 2025-10-13T12:03:51.456Z 282ms 93/93/93 100% R:20

rootkit.be

MXmailscanner1.boxed-it.com
A2001:67c:344:1010::c3c8:e05b 🇬🇧 Boxed IT Ltd.
PTRmailscanner1.boxed-it.com
A195.200.224.91🇬🇧 Boxed IT Ltd.
PTRmailscanner1.boxed-it.com
NSns1.boxed-it.com
A2001:67c:344:1010::c3c8:e06e 🇬🇧 Boxed IT Ltd.
PTRns1.boxed-it.com
A195.200.224.110🇬🇧 Boxed IT Ltd.
PTRns1.boxed-it.com
NSns3.boxed-it.eu
A2604:a880:400:d0::15:a001 🇺🇸 DigitalOcean
PTRns3.boxed-it.eu
A192.34.56.77🇺🇸 DigitalOcean
PTRns3.boxed-it.eu
NSns2.boxed-it.co.uk
A2001:67c:344:200::c3c8:e10c 🇬🇧 Boxed IT Ltd.
PTRns2.boxed-it.co.uk
A195.200.225.12🇬🇧 Boxed IT Ltd.
PTRns2.boxed-it.co.uk
A2001:67c:344:1010::c3c8:e055 🇬🇧 Boxed IT Ltd.
PTRwebfrontend-vrrp.bebru1.boxed-it.com
A195.200.224.85🇬🇧 Boxed IT Ltd.
PTRwebfrontend-vrrp.bebru1.boxed-it.com

be

NSa.nsset.be
NSb.nsset.be
NSc.nsset.be
NSd.nsset.be
NSy.nsset.be
NSz.nsset.be

Starts with same word

Starts similarily

AI analysis

rootkit.be points to two IPs: 2001:67c:344:1010::c3c8:e055 and 195.200.224.85.

Other host names including webfrontend.boxed-it.com, observium.be, jetie.be, phyxia.net and dostalgic.com share IP numbers with rootkit.be.

rootkit.be is delegated to three name servers: ns1.boxed-it.com, ns3.boxed-it.eu and ns2.boxed-it.co.uk.

rootkit.be at least partially shares name servers with other domains, including javacraft.org, c.5.0.0.c.7.6.0.1.0.0.2.ip6.arpa, as50156.net, ipkg.be and schauvaerts.be.

Host names with two IP numbers:

ns1.boxed-it.com points to: 2001:67c:344:1010::c3c8:e06e and 195.200.224.110

ns3.boxed-it.eu points to: 2604:a880:400:d0::15:a001 and 192.34.56.77

ns2.boxed-it.co.uk points to: 2001:67c:344:200::c3c8:e10c and 195.200.225.12

rootkit.be is handled by a single mail server, mailscanner1.boxed-it.com.

rootkit.be shares its mail server setup with other domains, including jetie.be, phyxia.net, passwd.be, dostalgic.com and from-hell.be.

rootkit.be shares at least partially some mail servers with other domains, for instance as50156.net, ipkg.be and sid3windr.be.

These mail servers are commonly used alongside mailscanner2.boxed-it.com and mailgateway1.bebru1.boxed-it.com.

mailscanner1.boxed-it.com points to two IPs: 2001:67c:344:1010::c3c8:e05b and 195.200.224.91.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

zKOxmXW CF johedugfp 2025-10-13