CF1757771816724-tsm20250912070358

IPLIST.NET - malware.wtf

Search for IP or hostnames:

malware.wtf checked at 2025-09-13T13:56:56.578Z 1972ms 79/79/79 100% R:8

malware.wtf

NSgeorge.ns.cloudflare.com
A2606:4700:58::adf5:3ba7 🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
A2803:f800:50::6ca2:c1a7 🇨🇷 Cloudflare
PTRgeorge.ns.cloudflare.com
A2a06:98c1:50::ac40:21a7 🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
A108.162.193.167🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
A172.64.33.167🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
A173.245.59.167🇺🇸 Cloudflare
PTRgeorge.ns.cloudflare.com
NSlily.ns.cloudflare.com
A2606:4700:50::adf5:3a82 🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com
A2803:f800:50::6ca2:c082 🇨🇷 Cloudflare
PTRlily.ns.cloudflare.com
A2a06:98c1:50::ac40:2082 🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com
A108.162.192.130🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com
A172.64.32.130🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com
A173.245.58.130🇺🇸 Cloudflare
PTRlily.ns.cloudflare.com

wtf

NSv0n0.nic.wtf
NSv0n1.nic.wtf
NSv0n2.nic.wtf
NSv0n3.nic.wtf
NSv2n0.nic.wtf
NSv2n1.nic.wtf

Starts with same word

Starts similarily

AI analysis

Two name servers, george.ns.cloudflare.com and lily.ns.cloudflare.com, are delegated to malware.wtf.

The name server setup for malware.wtf is shared with several other domains such as hypecase.com, certimail.ca, ruststake.com, pf1.co.il, and caixas.com.

The domain malware.wtf shares name servers, at least partially, with other domains such as rewu.net, leg.co.za, 71387.top, iqnu.com, and skycop.lt.

The name servers ian.ns.cloudflare.com are frequently utilized in conjunction.

george.ns.cloudflare.com and lily.ns.cloudflare.com both point to six IP numbers each: 2606:4700:58::adf5:3ba7, 2803:f800:50::6ca2:c1a7, 2a06:98c1:50::ac40:21a7, 108.162.193.167, 172.64.33.167, 173.245.59.167 for george.ns.cloudflare.com and 2606:4700:50::adf5:3a82, 2803:f800:50::6ca2:c082, 2a06:98c1:50::ac40:2082, 108.162.192.130, 172.64.32.130, 173.245.58.130 for lily.ns.cloudflare.com.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

XZyCwpA CF johedugfp 2025-09-13