CF1760376778436-tsm20251012143351

MXLIST.NET - rootkit.se

Search for IP or hostnames:

rootkit.se checked at 2025-10-13T17:32:58.415Z 600ms 106/106/106 100% R:13

rootkit.se

MXmail.protonmail.ch
A176.119.200.128🇨🇭 Proton AG
PTRmail.protonmail.ch
A185.70.42.128🇨🇭 Proton AG
PTRmail.protonmail.ch
A185.205.70.128🇫🇷 Proton AG
PTRmail.protonmail.ch
MXmailsec.protonmail.ch
A176.119.200.129🇨🇭 Proton AG
PTRmailsec.protonmail.ch
A185.70.42.129🇨🇭 Proton AG
PTRmailsec.protonmail.ch
A185.205.70.129🇫🇷 Proton AG
PTRmailsec.protonmail.ch
NSns1.namesystem.se
A2a02:750:aaaa::1 🇸🇪 Portlane
PTRns1.namesystem.se
A195.238.76.18🇸🇪 Portlane
PTRns1.namesystem.se
NSns2.namesystem.se
A2a02:750:aaaa::2 🇸🇪 Portlane
PTRns2.namesystem.se
A195.238.77.18🇸🇪 Portlane
PTRns2.namesystem.se
NSns3.namesystem.se
A2a02:750:aaaa::3 🇸🇪 Portlane
PTRns3.namesystem.se
A195.20.206.18🇸🇪 Portlane
PTRns3.namesystem.se
A81.170.177.9🇸🇪 Bahnhof
PTRh-81-170-177-9.a216.priv.bahnhof.se

se

NSa.ns.se
NSb.ns.se
NSc.ns.se
NSf.ns.se
NSg.ns.se
NSi.ns.se
NSm.ns.se
NSx.ns.se
NSy.ns.se
NSz.ns.se

Starts with same word

Starts similarily

AI analysis

rootkit.se points to IP number: 81.170.177.9.

Other host names, for instance h-81-170-177-9.a216.priv.bahnhof.se share IP numbers with rootkit.se.

rootkit.se is delegated to three name servers: ns1.namesystem.se, ns2.namesystem.se and ns3.namesystem.se.

rootkit.se at least partially shares name servers with other domains, for instance footballstreet.jp, victortarnstrom.com, skolkollen.se, belid.org and gulakatten.no.

Host ns1.namesystem.se points to 2a02:750:aaaa::1 and 195.238.76.18; Host ns2.namesystem.se points to 2a02:750:aaaa::2 and 195.238.77.18; Host ns3.namesystem.se points to 2a02:750:aaaa::3 and 195.20.206.18.

rootkit.se is handled by two mail servers: mail.protonmail.ch and mailsec.protonmail.ch.

The mail server setup for rootkit.se matches that of other domains, for instance uox.com.br, ststein.de, danmonteiro.com, paxlo.cc and solviaproperties.com.

rootkit.se shares at least partially some mail servers with other domains, including kbarn.net, mailedge.net, rogers.io, auticulture.com and o-ms.com.

these mail servers are commonly used with mailstore1.secureserver.net and smtp.secureserver.net.

Host names with three IP numbers: mail.protonmail.ch points to 176.119.200.128, 185.70.42.128 and 185.205.70.128; mailsec.protonmail.ch points to 176.119.200.129, 185.70.42.129 and 185.205.70.129.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

PELRNOY CF johedugfp 2025-10-13