Analysis Results

πŸ“… 2026-06-14 08:13:15 ⏱️ 0 minutes, 45.08 seconds 5 Observables

Results Table

β–Ό Observable Type DNS Lookup IPquery Bad ASN Check IPapi Phishtank Abusix RDAP / Whois Github URLscan Hudson Rock Google DNS (common records) MISP-feedback crt.sh
β€Ί win7dl.org FQDN 107.149.224.130
IP: 107.149.224.130
Score: 0
Geoloc: Hong Kong, Kowloon
Country: Hong Kong
ASN: AS398478 PEG TECH INC
Type: Not anonymous
βœ“ Unlisted
ASN: 398478
Details: ASN 398478 is not listed in bad ASN databases
IP: 107.149.224.130
Location: Hong Kong , Central and Western
Country: Hong Kong
ASN: AS398478 PEG TECH INC
Not Found Abuse contact: abuse@petaexpress.com Source: RDAP
Registrar: NameCheap, Inc.
Abuse contact: abuse@namecheap.com
Emails: abuse@namecheap.com
Creation: 2025-11-27
Expiration: 2026-11-27
Updated: 2025-12-02
Name servers:
dns1.registrar-servers.com
dns2.registrar-servers.com
Not applicable Scan count: 2
Top domains:
  • win7dl.org (2)
Compromised domain details

Total: 6

Total Stealers: 35610237

Users: 6

Total URLs: 3

Client URLs:

Type Data TTL
A 107.149.224.130 1799
MX eforward2.registrar-servers.com 1800
MX eforward3.registrar-servers.com 1800
MX eforward1.registrar-servers.com 1800
MX eforward5.registrar-servers.com 1800
MX eforward4.registrar-servers.com 1800
NS dns2.registrar-servers.com 1800
NS dns1.registrar-servers.com 1800
SOA dns1.registrar-servers.com. hostmaster.registrar-s... 3601
SPF No SPF record found -
Not applicable Not applicable
β€Ί toquesparacelular.org FQDN Not applicable Not applicable No ASN data available Not applicable Not Found Not applicable Source: RDAP
Registrar: NameCheap, Inc.
Abuse contact: abuse@namecheap.com
Emails: abuse@namecheap.com
Creation: 2025-06-16
Expiration: 2026-06-16
Updated: 2026-05-30
Name servers:
dns1.registrar-servers.com
dns2.registrar-servers.com
Not applicable Scan count: 1
Top domains:
  • toquesparacelular.org (1)
Not applicable
Type Data TTL
MX eforward2.registrar-servers.com 1800
MX eforward4.registrar-servers.com 1800
MX eforward1.registrar-servers.com 1800
MX eforward3.registrar-servers.com 1800
MX eforward5.registrar-servers.com 1800
NS dns1.registrar-servers.com 1800
NS dns2.registrar-servers.com 1800
SOA dns1.registrar-servers.com. hostmaster.registrar-s... 3601
SPF No SPF record found -
Not applicable Not applicable
β€Ί rsg6.org FQDN Not applicable Not applicable No ASN data available Not applicable Not Found Not applicable Source: RDAP
Registrar: NameCheap, Inc.
Abuse contact: abuse@namecheap.com
Emails: abuse@namecheap.com
Creation: 2025-09-21
Expiration: 2026-09-21
Updated: 2026-06-13
Name servers:
irena.ns.cloudflare.com
rommy.ns.cloudflare.com
Not applicable Scan count: 0
Not Found
Not applicable No DNS records found Not applicable Not applicable
β€Ί promixdebloat.org FQDN 23.227.38.65
IP: 23.227.38.65
Score: 0
Geoloc: Ottawa (Downtown), Ontario
Country: Canada
ASN: AS13335 Cloudflare, Inc.
Type: Not anonymous
βœ“ Unlisted
ASN: 13335
Details: ASN 13335 is not listed in bad ASN databases
IP: 23.227.38.65
VPN PROXY ABUSER
Location: Ottawa , Ontario
Country: Canada
ASN: AS13335 Cloudflare, Inc.
Not Found Abuse contact: abuse@shopify.com Source: RDAP
Registrar: NameCheap, Inc.
Abuse contact: abuse@namecheap.com
Emails: abuse@namecheap.com
Creation: 2026-04-19
Expiration: 2027-04-19
Updated: 2026-05-07
Name servers:
dns1.registrar-servers.com
dns2.registrar-servers.com
Not applicable Scan count: 0
Not Found
Not applicable
Type Data TTL
A 23.227.38.65 1799
MX eforward4.registrar-servers.com 1800
MX eforward1.registrar-servers.com 1800
MX eforward2.registrar-servers.com 1800
MX eforward5.registrar-servers.com 1800
MX eforward3.registrar-servers.com 1800
NS dns1.registrar-servers.com 1800
NS dns2.registrar-servers.com 1800
SOA dns1.registrar-servers.com. hostmaster.registrar-s... 3601
SPF No SPF record found -
Not applicable Not applicable
β€Ί effectpress.net FQDN Not applicable Not applicable No ASN data available Not applicable Not Found Not applicable Source: RDAP
Registrar: NameCheap, Inc.
Abuse contact: abuse@namecheap.com
Emails: abuse@namecheap.com
Creation: 2024-06-28
Expiration: 2026-06-28
Updated: 2025-11-28
Name servers:
dns1.registrar-servers.com
dns2.registrar-servers.com
Not applicable Scan count: 11
Top domains:
  • spyware.effectpress.net (2)
  • bag.effectpress.net (1)
  • negativen.effectpress.net (1)
  • dankbar.effectpress.net (1)
  • ebooks.effectpress.net (1)
Not applicable
Type Data TTL
MX eforward3.registrar-servers.com 1800
MX eforward1.registrar-servers.com 1800
MX eforward2.registrar-servers.com 1800
MX eforward5.registrar-servers.com 1800
MX eforward4.registrar-servers.com 1800
NS dns1.registrar-servers.com 1800
NS dns2.registrar-servers.com 1800
SOA dns1.registrar-servers.com. hostmaster.registrar-s... 3601
SPF No SPF record found -
Not applicable Not applicable
JSON Viewer Use Ctrl/Cmd+F to search.