CF1759384521800-tsm20251001211114

IPLIST.NET - takeover.sh

Search for IP or hostnames:

takeover.sh checked at 2025-10-02T05:55:21.786Z 402ms 160/160/160 100% R:10

takeover.sh

MXaspmx1.migadu.com
A2001:41d0:303:e16b:: 🇫🇷 OVH
PTRmx13.migadu.com
A2001:41d0:303:e224:: 🇫🇷 OVH
PTRmx12.migadu.com
A2001:41d0:403:4876:: 🇫🇷 OVH
PTRmx10.migadu.com
A2001:41d0:403:58f0:: 🇫🇷 OVH
PTRmx11.migadu.com
A51.210.222.107🇫🇷 OVH
PTRmx13.migadu.com
A51.210.223.36🇫🇷 OVH
PTRmx12.migadu.com
A57.128.22.240🇫🇷 OVH
PTRmx11.migadu.com
A141.94.97.118🇫🇷 OVH
PTRmx10.migadu.com
MXaspmx2.migadu.com
A2001:41d0:303:e16b:: 🇫🇷 OVH
PTRmx13.migadu.com
A2001:41d0:303:e224:: 🇫🇷 OVH
PTRmx12.migadu.com
A2001:41d0:403:4876:: 🇫🇷 OVH
PTRmx10.migadu.com
A2001:41d0:403:58f0:: 🇫🇷 OVH
PTRmx11.migadu.com
A51.210.222.107🇫🇷 OVH
PTRmx13.migadu.com
A51.210.223.36🇫🇷 OVH
PTRmx12.migadu.com
A57.128.22.240🇫🇷 OVH
PTRmx11.migadu.com
A141.94.97.118🇫🇷 OVH
PTRmx10.migadu.com
NSashley.ns.cloudflare.com
A2606:4700:50::adf5:3a47 🇺🇸 Cloudflare
PTRashley.ns.cloudflare.com
A2803:f800:50::6ca2:c047 🇨🇷 Cloudflare
PTRashley.ns.cloudflare.com
A2a06:98c1:50::ac40:2047 🇺🇸 Cloudflare
PTRashley.ns.cloudflare.com
A108.162.192.71🇺🇸 Cloudflare
PTRashley.ns.cloudflare.com
A172.64.32.71🇺🇸 Cloudflare
PTRashley.ns.cloudflare.com
A173.245.58.71🇺🇸 Cloudflare
PTRashley.ns.cloudflare.com
NStitan.ns.cloudflare.com
A2606:4700:58::a29f:2c5d 🇺🇸 Cloudflare
PTRtitan.ns.cloudflare.com
A2803:f800:50::6ca2:c35d 🇨🇷 Cloudflare
PTRtitan.ns.cloudflare.com
A2a06:98c1:50::ac40:235d 🇺🇸 Cloudflare
PTRtitan.ns.cloudflare.com
A108.162.195.93🇺🇸 Cloudflare
PTRtitan.ns.cloudflare.com
A162.159.44.93 Cloudflare
PTRtitan.ns.cloudflare.com
A172.64.35.93🇺🇸 Cloudflare
PTRtitan.ns.cloudflare.com

sh

NSa0.nic.sh
NSa2.nic.sh
NSb0.nic.sh
NSc0.nic.sh

Starts with same word

Starts similarily

AI analysis

Two name servers ashley.ns.cloudflare.com and titan.ns.cloudflare.com handle the delegation for takeover.sh.

takeover.sh uses the same name server setup as other domains, such as vipmature.net, bftl.org, uhls.org and rcscommunitylibrary.org.

takeover.sh at least partially shares name servers with other domains, for instance eroticbackgrounds.com, sesemn.com, qyjyy.cn, tzsaidi.com and y-driver.com.

These name servers are commonly used with henrik.ns.cloudflare.com and stephane.ns.cloudflare.com.

Six IP addresses per host:

ashley.ns.cloudflare.com points to 2606:4700:50::adf5:3a47, 2803:f800:50::6ca2:c047, 2a06:98c1:50::ac40:2047, 108.162.192.71, 172.64.32.71 and 173.245.58.71; titan.ns.cloudflare.com points to 2606:4700:58::a29f:2c5d, 2803:f800:50::6ca2:c35d, 2a06:98c1:50::ac40:235d, 108.162.195.93, 162.159.44.93 and 172.64.35.93

takeover.sh is handled by two mail servers: aspmx1.migadu.com and aspmx2.migadu.com.

takeover.sh uses the same mail server setup as other domains, for instance rmo.mx, kramersd.com, stakester.com, hilbet.com and conejoguardian.org.

takeover.sh shares some mail servers with other domains, for example korzq.xyz, picsfordesign.com and optimal-works.com.

Host names with eight IP numbers:

The host names aspmx1.migadu.com and aspmx2.migadu.com point to: 2001:41d0:303:e16b::, 2001:41d0:303:e224::, 2001:41d0:403:4876::, 2001:41d0:403:58f0::, 51.210.222.107, 51.210.223.36, 57.128.22.240 and 141.94.97.118.

For each of these eight IP numbers, the host names that point to it are aspmx1.migadu.com and aspmx2.migadu.com.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

PfaijfQ CF johedugfp 2025-10-02