paladin316

azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7_2019-08-21_11_50.txt

Aug 21st, 2019
621
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1.  
  2. * MalFamily: ""
  3.  
  4. * MalScore: 10.0
  5.  
  6. * File Name: "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7"
  7. * File Size: 14828544
  8. * File Type: "PE32 executable (GUI) Intel 80386, for MS Windows"
  9. * SHA256: "e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7"
  10. * MD5: "370c1daa82dfdaf456e02336003d0213"
  11. * SHA1: "87de4fef8a1548a4c797ce161d60283e94b43427"
  12. * SHA512: "c058e28355440b793893cc293c8fe331ed702fe361838e00d9da14e87ce35a8e09316c52fcee5371f2444256ec6d52c789674234cedb5d96771dcdc78ca7c44f"
  13. * CRC32: "74CA5D0D"
  14. * SSDEEP: "49152:nKnLBLaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaHaC:n"
  15.  
  16. * Process Execution:
  17. "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe",
  18. "cmd.exe",
  19. "cmd.exe",
  20. "sc.exe",
  21. "sc.exe",
  22. "sc.exe",
  23. "netsh.exe",
  24. "services.exe",
  25. "tannqbto.exe",
  26. "svchost.exe",
  27. "svchost.exe"
  28.  
  29.  
  30. * Executed Commands:
  31. "\"C:\\Windows\\System32\\cmd.exe\" /C mkdir C:\\Windows\\SysWOW64\\tmfvlbvl\\",
  32. "cmd /C mkdir C:\\Windows\\SysWOW64\\tmfvlbvl\\",
  33. "\"C:\\Windows\\System32\\cmd.exe\" /C move /Y \"C:\\Users\\user\\AppData\\Local\\Temp\\tannqbto.exe\" C:\\Windows\\SysWOW64\\tmfvlbvl\\",
  34. "cmd /C move /Y \"C:\\Users\\user\\AppData\\Local\\Temp\\tannqbto.exe\" C:\\Windows\\SysWOW64\\tmfvlbvl\\",
  35. "\"C:\\Windows\\System32\\sc.exe\" create tmfvlbvl binPath= \"C:\\Windows\\SysWOW64\\tmfvlbvl\\tannqbto.exe /d\\\"C:\\Users\\user\\AppData\\Local\\Temp\\azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe\\\"\" type= own start= auto DisplayName= \"wifi support\"",
  36. "sc create tmfvlbvl binPath= \"C:\\Windows\\SysWOW64\\tmfvlbvl\\tannqbto.exe /d\\\"C:\\Users\\user\\AppData\\Local\\Temp\\azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe\\\"\" type= own start= auto DisplayName= \"wifi support\"",
  37. "\"C:\\Windows\\System32\\sc.exe\" description tmfvlbvl \"wifi internet conection\"",
  38. "sc description tmfvlbvl \"wifi internet conection\"",
  39. "\"C:\\Windows\\System32\\sc.exe\" start tmfvlbvl",
  40. "sc start tmfvlbvl",
  41. "\"C:\\Windows\\System32\\netsh.exe\" advfirewall firewall add rule name=\"Host-process for services of Windows\" dir=in action=allow program=\"C:\\Windows\\SysWOW64\\svchost.exe\" enable=yes>nul",
  42. "netsh advfirewall firewall add rule name=\"Host-process for services of Windows\" dir=in action=allow program=\"C:\\Windows\\SysWOW64\\svchost.exe\" enable=yes>nul",
  43. "C:\\Windows\\SysWOW64\\tmfvlbvl\\tannqbto.exe /d\"C:\\Users\\user\\AppData\\Local\\Temp\\azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe\"",
  44. "svchost.exe",
  45. "svchost.exe -a cryptonight-heavy -o stratum+tcp://45.126.183.208:8087 -u w1 -p x --nicehash --safe"
  46.  
  47.  
  48. * Signatures Detected:
  49.  
  50. "Description": "Creates RWX memory",
  51. "Details":
  52.  
  53.  
  54. "Description": "Attempts to connect to a dead IP:Port (87 unique times)",
  55. "Details":
  56.  
  57. "IP": "104.17.76.237:443"
  58.  
  59.  
  60. "IP": "85.25.119.25:419"
  61.  
  62.  
  63. "IP": "64.69.222.10:25"
  64.  
  65.  
  66. "IP": "74.125.195.26:25"
  67.  
  68.  
  69. "IP": "209.85.200.27:25"
  70.  
  71.  
  72. "IP": "212.227.17.5:25"
  73.  
  74.  
  75. "IP": "13.58.8.62:25"
  76.  
  77.  
  78. "IP": "144.76.199.2:419"
  79.  
  80.  
  81. "IP": "104.47.54.36:25"
  82.  
  83.  
  84. "IP": "67.231.149.138:25"
  85.  
  86.  
  87. "IP": "149.202.207.222:25"
  88.  
  89.  
  90. "IP": "188.165.47.122:25"
  91.  
  92.  
  93. "IP": "68.178.213.203:25"
  94.  
  95.  
  96. "IP": "212.227.17.8:25"
  97.  
  98.  
  99. "IP": "104.47.45.33:25"
  100.  
  101.  
  102. "IP": "216.146.43.70:80"
  103.  
  104.  
  105. "IP": "204.135.242.199:25"
  106.  
  107.  
  108. "IP": "80.19.94.201:25"
  109.  
  110.  
  111. "IP": "94.100.180.31:25"
  112.  
  113.  
  114. "IP": "148.163.156.1:25"
  115.  
  116.  
  117. "IP": "94.100.180.90:993"
  118.  
  119.  
  120. "IP": "130.14.29.110:443"
  121.  
  122.  
  123. "IP": "213.209.1.130:25"
  124.  
  125.  
  126. "IP": "168.95.5.217:25"
  127.  
  128.  
  129. "IP": "95.181.178.17:483"
  130.  
  131.  
  132. "IP": "216.40.42.4:25"
  133.  
  134.  
  135. "IP": "212.48.86.75:25"
  136.  
  137.  
  138. "IP": "67.195.228.111:25"
  139.  
  140.  
  141. "IP": "172.217.5.99:443"
  142.  
  143.  
  144. "IP": "148.163.139.169:25"
  145.  
  146.  
  147. "IP": "217.74.65.64:25"
  148.  
  149.  
  150. "IP": "67.195.228.110:25"
  151.  
  152.  
  153. "IP": "79.170.44.53:25"
  154.  
  155.  
  156. "IP": "72.139.122.211:25"
  157.  
  158.  
  159. "IP": "66.6.33.149:443"
  160.  
  161.  
  162. "IP": "219.94.163.64:25"
  163.  
  164.  
  165. "IP": "104.47.59.161:25"
  166.  
  167.  
  168. "IP": "40.112.72.205:80"
  169.  
  170.  
  171. "IP": "209.222.82.141:25"
  172.  
  173.  
  174. "IP": "107.6.152.251:25"
  175.  
  176.  
  177. "IP": "5.255.255.77:443"
  178.  
  179.  
  180. "IP": "148.163.158.5:25"
  181.  
  182.  
  183. "IP": "218.102.23.223:25"
  184.  
  185.  
  186. "IP": "209.17.115.10:25"
  187.  
  188.  
  189. "IP": "203.36.137.234:25"
  190.  
  191.  
  192. "IP": "127.0.0.1:25"
  193.  
  194.  
  195. "IP": "117.53.114.15:25"
  196.  
  197.  
  198. "IP": "203.0.178.173:25"
  199.  
  200.  
  201. "IP": "176.111.49.43:419"
  202.  
  203.  
  204. "IP": "45.126.183.208:8087"
  205.  
  206.  
  207. "IP": "104.31.67.68:443"
  208.  
  209.  
  210. "IP": "77.75.76.42:25"
  211.  
  212.  
  213. "IP": "46.4.52.109:419"
  214.  
  215.  
  216. "IP": "168.95.5.113:25"
  217.  
  218.  
  219. "IP": "148.163.153.35:25"
  220.  
  221.  
  222. "IP": "82.145.60.189:25"
  223.  
  224.  
  225. "IP": "213.180.147.146:25"
  226.  
  227.  
  228. "IP": "216.163.188.32:25"
  229.  
  230.  
  231. "IP": "79.170.44.50:25"
  232.  
  233.  
  234. "IP": "124.43.129.253:25"
  235.  
  236.  
  237. "IP": "82.116.160.138:25"
  238.  
  239.  
  240. "IP": "67.195.204.72:25"
  241.  
  242.  
  243. "IP": "209.85.200.26:25"
  244.  
  245.  
  246. "IP": "204.135.242.198:25"
  247.  
  248.  
  249. "IP": "172.217.0.36:80"
  250.  
  251.  
  252. "IP": "52.73.137.222:25"
  253.  
  254.  
  255. "IP": "203.0.178.132:25"
  256.  
  257.  
  258. "IP": "208.89.132.27:25"
  259.  
  260.  
  261. "IP": "104.17.75.237:443"
  262.  
  263.  
  264. "IP": "104.47.12.33:25"
  265.  
  266.  
  267. "IP": "203.11.105.103:25"
  268.  
  269.  
  270. "IP": "201.218.99.234:25"
  271.  
  272.  
  273. "IP": "208.80.206.17:25"
  274.  
  275.  
  276. "IP": "94.199.58.200:25"
  277.  
  278.  
  279. "IP": "104.47.53.36:25"
  280.  
  281.  
  282. "IP": "104.47.2.33:25"
  283.  
  284.  
  285. "IP": "216.55.149.41:25"
  286.  
  287.  
  288. "IP": "43.231.4.7:443"
  289.  
  290.  
  291. "IP": "23.40.168.171:443"
  292.  
  293.  
  294. "IP": "203.205.219.57:25"
  295.  
  296.  
  297. "IP": "176.56.58.230:25"
  298.  
  299.  
  300. "IP": "82.57.200.133:25"
  301.  
  302.  
  303. "IP": "192.35.35.13:25"
  304.  
  305.  
  306. "IP": "104.47.9.33:25"
  307.  
  308.  
  309. "IP": "64.135.83.10:25"
  310.  
  311.  
  312. "IP": "93.157.3.241:25"
  313.  
  314.  
  315. "IP": "144.76.199.43:419"
  316.  
  317.  
  318.  
  319.  
  320. "Description": "Network anomalies occured during the analysis.",
  321. "Details":
  322.  
  323. "Anomaly": "'45.126.183.208' getaddrinfo with no actual connection to the IP."
  324.  
  325.  
  326.  
  327.  
  328. "Description": "Starts servers listening on 0.0.0.0:5032",
  329. "Details":
  330.  
  331.  
  332. "Description": "Reads data out of its own binary image",
  333. "Details":
  334.  
  335. "self_read": "process: azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe, pid: 2944, offset: 0x00000000, length: 0x00000040"
  336.  
  337.  
  338. "self_read": "process: azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe, pid: 2944, offset: 0x00000000, length: 0x00034e00"
  339.  
  340.  
  341. "self_read": "process: azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe, pid: 2944, offset: 0x000000f0, length: 0x000001c0"
  342.  
  343.  
  344.  
  345.  
  346. "Description": "A process created a hidden window",
  347. "Details":
  348.  
  349. "Process": "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe -> cmd"
  350.  
  351.  
  352. "Process": "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe -> cmd"
  353.  
  354.  
  355. "Process": "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe -> sc"
  356.  
  357.  
  358. "Process": "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe -> sc"
  359.  
  360.  
  361. "Process": "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe -> sc"
  362.  
  363.  
  364. "Process": "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe -> netsh"
  365.  
  366.  
  367. "Process": "svchost.exe -> svchost.exe -a cryptonight-heavy -o stratum+tcp://45.126.183.208:8087 -u w1 -p x --nicehash --safe"
  368.  
  369.  
  370.  
  371.  
  372. "Description": "Performs some HTTP requests",
  373. "Details":
  374.  
  375. "url": "http://www.google.com/"
  376.  
  377.  
  378. "url": "http://checkip.dyndns.org/"
  379.  
  380.  
  381.  
  382.  
  383. "Description": "Enumerates services, possibly for anti-virtualization",
  384. "Details":
  385.  
  386.  
  387. "Description": "Executed a process and injected code into it, probably while unpacking",
  388. "Details":
  389.  
  390. "Injection": "tannqbto.exe(1688) -> svchost.exe(1672)"
  391.  
  392.  
  393.  
  394.  
  395. "Description": "Deletes its original binary from disk",
  396. "Details":
  397.  
  398.  
  399. "Description": "A process attempted to delay the analysis task by a long amount of time.",
  400. "Details":
  401.  
  402. "Process": "svchost.exe tried to sleep 3369 seconds, actually delayed analysis time by 0 seconds"
  403.  
  404.  
  405.  
  406.  
  407. "Description": "Attempts to repeatedly call a single API many times in order to delay analysis time",
  408. "Details":
  409.  
  410. "Spam": "azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe (2944) called API NtQueryFullAttributesFile 16838 times"
  411.  
  412.  
  413. "Spam": "tannqbto.exe (1688) called API NtQueryFullAttributesFile 16838 times"
  414.  
  415.  
  416. "Spam": "tannqbto.exe (1688) called API GetSystemTimeAsFileTime 416518 times"
  417.  
  418.  
  419. "Spam": "services.exe (500) called API GetSystemTimeAsFileTime 5651112 times"
  420.  
  421.  
  422.  
  423.  
  424. "Description": "Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config",
  425. "Details":
  426.  
  427. "regkeyval": "HKEY_USERS\\.DEFAULT\\Control Panel\\Buses\\Config2"
  428.  
  429.  
  430. "regkeyval": "HKEY_USERS\\.DEFAULT\\Control Panel\\Buses\\Config1"
  431.  
  432.  
  433. "regkeyval": "HKEY_USERS\\.DEFAULT\\Control Panel\\Buses\\Config0"
  434.  
  435.  
  436.  
  437.  
  438. "Description": "Installs itself for autorun at Windows startup",
  439. "Details":
  440.  
  441. "service name": "tmfvlbvl"
  442.  
  443.  
  444. "service path": "C:\\Windows\\SysWOW64\\tmfvlbvl\\tannqbto.exe /d\"C:\\Users\\user\\AppData\\Local\\Temp\\azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe\""
  445.  
  446.  
  447. "key": "HKEY_LOCAL_MACHINE\\SYSTEM\\ControlSet001\\services\\tmfvlbvl\\ImagePath"
  448.  
  449.  
  450. "data": "C:\\Windows\\SysWOW64\\tmfvlbvl\\tannqbto.exe"
  451.  
  452.  
  453.  
  454.  
  455. "Description": "Clamav Hits in Target/Dropped/SuriExtracted",
  456. "Details":
  457.  
  458. "target": "clamav:Win.Packed.Atraps-7117949-0, sha256:e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7, type:PE32 executable (GUI) Intel 80386, for MS Windows"
  459.  
  460.  
  461.  
  462.  
  463. "Description": "Attempts to interact with an Alternate Data Stream (ADS)",
  464. "Details":
  465.  
  466. "file": "C:\\Windows\\System32\\config\\systemprofile:.repos"
  467.  
  468.  
  469. "file": "C:\\Windows\\System32\\config\\systemprofile\\Local Settings:.repos"
  470.  
  471.  
  472.  
  473.  
  474. "Description": "Anomalous binary characteristics",
  475. "Details":
  476.  
  477. "anomaly": "Actual checksum does not match that reported in PE header"
  478.  
  479.  
  480.  
  481.  
  482.  
  483. * Started Service:
  484. "tmfvlbvl"
  485.  
  486.  
  487. * Mutexes:
  488. "Local\\ZoneAttributeCacheCounterMutex",
  489. "Local\\ZonesCacheCounterMutex",
  490. "Local\\ZonesLockedCacheCounterMutex"
  491.  
  492.  
  493. * Modified Files:
  494. "\\??\\pipe\\ngzpfvpf",
  495. "C:\\Users\\user\\AppData\\Local\\Temp\\tannqbto.exe",
  496. "C:\\Windows\\SysWOW64\\tmfvlbvl\\tannqbto.exe",
  497. "C:\\Windows\\sysnative\\LogFiles\\Scm\\10be63e4-ff83-44ba-9640-8e3bf88a1a78",
  498. "\\Device\\Http\\Communication",
  499. "C:\\Windows\\System32\\config\\systemprofile:.repos",
  500. "\\Device\\RasAcd"
  501.  
  502.  
  503. * Deleted Files:
  504. "C:\\Users\\user\\AppData\\Local\\Temp\\tannqbto.exe",
  505. "C:\\Users\\user\\AppData\\Local\\Temp\\azorult_e6dc144593078bfed8b7583a18b1de5124e3cd2da03d16c8976e80c42eff5bd7.exe",
  506. "C:\\log_plg_proxy.txt",
  507. "C:\\Windows\\Temp\\log_plg_proxy.txt",
  508. "C:\\log_plg_text.txt",
  509. "C:\\Windows\\Temp\\log_plg_text.txt",
  510. "C:\\log_plg_smtp.txt",
  511. "C:\\Windows\\Temp\\log_plg_smtp.txt",
  512. "C:\\log_plg_blist.txt",
  513. "C:\\Windows\\Temp\\log_plg_blist.txt",
  514. "C:\\log_plg_miner.txt",
  515. "C:\\Windows\\Temp\\log_plg_miner.txt",
  516. "C:\\log_plg_sys.txt",
  517. "C:\\Windows\\Temp\\log_plg_sys.txt"
  518.  
  519.  
  520. * Modified Registry Keys:
  521. "HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings\\ZoneMap\\UNCAsIntranet",
  522. "HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings\\ZoneMap\\AutoDetect",
  523. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\LanguageList",
  524. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\dhcpqec.dll,-100",
  525. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\dhcpqec.dll,-101",
  526. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\dhcpqec.dll,-103",
  527. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\dhcpqec.dll,-102",
  528. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\napipsec.dll,-1",
  529. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\napipsec.dll,-2",
  530. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\napipsec.dll,-4",
  531. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\napipsec.dll,-3",
  532. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\tsgqec.dll,-100",
  533. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\tsgqec.dll,-101",
  534. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\tsgqec.dll,-102",
  535. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\tsgqec.dll,-103",
  536. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\eapqec.dll,-100",
  537. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\eapqec.dll,-101",
  538. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\eapqec.dll,-102",
  539. "HKEY_CURRENT_USER\\Software\\Classes\\Local Settings\\MuiCache\\2F\\52C64B7E\\@%SystemRoot%\\system32\\eapqec.dll,-103",
  540. "HKEY_LOCAL_MACHINE\\SYSTEM\\ControlSet001\\services\\tmfvlbvl\\ImagePath",
  541. "HKEY_CURRENT_USER\\Control Panel\\Buses",
  542. "HKEY_USERS\\.DEFAULT\\Control Panel\\Buses\\Config0",
  543. "HKEY_USERS\\.DEFAULT\\Control Panel\\Buses\\Config1",
  544. "HKEY_USERS\\.DEFAULT\\Control Panel\\Buses\\Config2",
  545. "HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows Defender\\Exclusions\\Paths\\C:\\Windows\\SysWOW64\\tmfvlbvl"
  546.  
  547.  
  548. * Deleted Registry Keys:
  549. "HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings\\ZoneMap\\ProxyBypass",
  550. "HKEY_LOCAL_MACHINE\\SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Internet Settings\\ZoneMap\\ProxyBypass",
  551. "HKEY_CURRENT_USER\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings\\ZoneMap\\IntranetName",
  552. "HKEY_LOCAL_MACHINE\\SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Internet Settings\\ZoneMap\\IntranetName",
  553. "HKEY_USERS\\.DEFAULT\\Control Panel\\Buses\\Config1",
  554. "HKEY_USERS\\.DEFAULT\\Control Panel\\Buses\\Config3"
  555.  
  556.  
  557. * DNS Communications:
  558.  
  559. "type": "A",
  560. "request": "microsoft.com",
  561. "answers":
  562.  
  563. "data": "104.215.148.63",
  564. "type": "A"
  565.  
  566.  
  567. "data": "40.113.200.201",
  568. "type": "A"
  569.  
  570.  
  571. "data": "13.77.161.179",
  572. "type": "A"
  573.  
  574.  
  575. "data": "40.112.72.205",
  576. "type": "A"
  577.  
  578.  
  579. "data": "40.76.4.15",
  580. "type": "A"
  581.  
  582.  
  583.  
  584.  
  585. "type": "MX",
  586. "request": "microsoft.com",
  587. "answers":
  588.  
  589. "data": "microsoft-com.mail.protection.outlook.com",
  590. "type": "MX"
  591.  
  592.  
  593.  
  594.  
  595. "type": "A",
  596. "request": "microsoft-com.mail.protection.outlook.com",
  597. "answers":
  598.  
  599. "data": "104.47.53.36",
  600. "type": "A"
  601.  
  602.  
  603. "data": "104.47.54.36",
  604. "type": "A"
  605.  
  606.  
  607.  
  608.  
  609. "type": "MX",
  610. "request": "yahoo.com",
  611. "answers":
  612.  
  613. "data": "mta5.am0.yahoodns.net",
  614. "type": "MX"
  615.  
  616.  
  617. "data": "mta7.am0.yahoodns.net",
  618. "type": "MX"
  619.  
  620.  
  621. "data": "mta6.am0.yahoodns.net",
  622. "type": "MX"
  623.  
  624.  
  625.  
  626.  
  627. "type": "A",
  628. "request": "mta5.am0.yahoodns.net",
  629. "answers":
  630.  
  631. "data": "67.195.228.94",
  632. "type": "A"
  633.  
  634.  
  635. "data": "67.195.204.77",
  636. "type": "A"
  637.  
  638.  
  639. "data": "74.6.137.65",
  640. "type": "A"
  641.  
  642.  
  643. "data": "98.136.96.77",
  644. "type": "A"
  645.  
  646.  
  647. "data": "67.195.228.110",
  648. "type": "A"
  649.  
  650.  
  651. "data": "67.195.228.106",
  652. "type": "A"
  653.  
  654.  
  655. "data": "67.195.204.79",
  656. "type": "A"
  657.  
  658.  
  659. "data": "98.136.96.75",
  660. "type": "A"
  661.  
  662.  
  663. "data": "98.136.96.91",
  664. "type": "A"
  665.  
  666.  
  667. "data": "98.136.96.74",
  668. "type": "A"
  669.  
  670.  
  671. "data": "67.195.228.109",
  672. "type": "A"
  673.  
  674.  
  675. "data": "67.195.204.72",
  676. "type": "A"
  677.  
  678.  
  679. "data": "67.195.228.111",
  680. "type": "A"
  681.  
  682.  
  683. "data": "66.218.85.52",
  684. "type": "A"
  685.  
  686.  
  687. "data": "98.136.96.76",
  688. "type": "A"
  689.  
  690.  
  691.  
  692.  
  693. "type": "A",
  694. "request": "238.175.207.91.dnsbl.sorbs.net",
  695. "answers":
  696.  
  697. "data": "",
  698. "type": "NXDOMAIN"
  699.  
  700.  
  701.  
  702.  
  703. "type": "MX",
  704. "request": "marketingresults.net",
  705. "answers":
  706.  
  707. "data": "cloud4.spamtitan.com",
  708. "type": "MX"
  709.  
  710.  
  711. "data": "cloud3.spamtitan.com",
  712. "type": "MX"
  713.  
  714.  
  715.  
  716.  
  717. "type": "A",
  718. "request": "cloud3.spamtitan.com",
  719. "answers":
  720.  
  721. "data": "107.6.152.251",
  722. "type": "A"
  723.  
  724.  
  725. "data": "108.178.61.211",
  726. "type": "A"
  727.  
  728.  
  729.  
  730.  
  731. "type": "MX",
  732. "request": "dsaofnwi.org",
  733. "answers":
  734.  
  735. "data": "alt1.aspmx.l.google.com",
  736. "type": "MX"
  737.  
  738.  
  739. "data": "aspmx2.googlemail.com",
  740. "type": "MX"
  741.  
  742.  
  743. "data": "alt2.aspmx.l.google.com",
  744. "type": "MX"
  745.  
  746.  
  747. "data": "aspmx3.googlemail.com",
  748. "type": "MX"
  749.  
  750.  
  751. "data": "aspmx.l.google.com",
  752. "type": "MX"
  753.  
  754.  
  755.  
  756.  
  757. "type": "MX",
  758. "request": "chsd117.org",
  759. "answers":
  760.  
  761. "data": "aspmx2.googlemail.com",
  762. "type": "MX"
  763.  
  764.  
  765. "data": "alt2.aspmx.l.google.com",
  766. "type": "MX"
  767.  
  768.  
  769. "data": "alt1.aspmx.l.google.com",
  770. "type": "MX"
  771.  
  772.  
  773. "data": "aspmx3.googlemail.com",
  774. "type": "MX"
  775.  
  776.  
  777. "data": "aspmx.l.google.com",
  778. "type": "MX"
  779.  
  780.  
  781.  
  782.  
  783. "type": "A",
  784. "request": "238.175.207.91.bl.spamcop.net",
  785. "answers":
  786.  
  787. "data": "",
  788. "type": "NXDOMAIN"
  789.  
  790.  
  791.  
  792.  
  793. "type": "MX",
  794. "request": "alice.it",
  795. "answers":
  796.  
  797. "data": "smtp.aliceposta.it",
  798. "type": "MX"
  799.  
  800.  
  801.  
  802.  
  803. "type": "A",
  804. "request": "smtp.aliceposta.it",
  805. "answers":
  806.  
  807. "data": "82.57.200.133",
  808. "type": "A"
  809.  
  810.  
  811.  
  812.  
  813. "type": "MX",
  814. "request": "hotmaii.fr",
  815. "answers":
  816.  
  817. "data": "mail2.mail-vert.fr",
  818. "type": "MX"
  819.  
  820.  
  821.  
  822.  
  823. "type": "A",
  824. "request": "238.175.207.91.zen.spamhaus.org",
  825. "answers":
  826.  
  827. "data": "",
  828. "type": "NXDOMAIN"
  829.  
  830.  
  831.  
  832.  
  833. "type": "A",
  834. "request": "238.175.207.91.sbl-xbl.spamhaus.org",
  835. "answers":
  836.  
  837. "data": "",
  838. "type": "NXDOMAIN"
  839.  
  840.  
  841.  
  842.  
  843. "type": "A",
  844. "request": "mail2.mail-vert.fr",
  845. "answers":
  846.  
  847. "data": "149.202.207.222",
  848. "type": "A"
  849.  
  850.  
  851.  
  852.  
  853. "type": "MX",
  854. "request": "live.co.uk",
  855. "answers":
  856.  
  857. "data": "eur.olc.protection.outlook.com",
  858. "type": "MX"
  859.  
  860.  
  861.  
  862.  
  863. "type": "A",
  864. "request": "eur.olc.protection.outlook.com",
  865. "answers":
  866.  
  867. "data": "104.47.12.33",
  868. "type": "A"
  869.  
  870.  
  871. "data": "104.47.13.33",
  872. "type": "A"
  873.  
  874.  
  875. "data": "104.47.14.33",
  876. "type": "A"
  877.  
  878.  
  879. "data": "104.47.8.33",
  880. "type": "A"
  881.  
  882.  
  883. "data": "104.47.9.33",
  884. "type": "A"
  885.  
  886.  
  887.  
  888.  
  889. "type": "MX",
  890. "request": "pzlmielec.com.pl",
  891. "answers":
  892.  
  893. "data": "mailfe02.lmco.com",
  894. "type": "MX"
  895.  
  896.  
  897. "data": "mailfe01.lmco.com",
  898. "type": "MX"
  899.  
  900.  
  901.  
  902.  
  903. "type": "A",
  904. "request": "238.175.207.91.cbl.abuseat.org",
  905. "answers":
  906.  
  907. "data": "127.0.0.2",
  908. "type": "A"
  909.  
  910.  
  911.  
  912.  
  913. "type": "A",
  914. "request": "mailfe02.lmco.com",
  915. "answers":
  916.  
  917. "data": "192.35.35.13",
  918. "type": "A"
  919.  
  920.  
  921.  
  922.  
  923. "type": "MX",
  924. "request": "us.ibm.com",
  925. "answers":
  926.  
  927. "data": "mx0b-001b2d01.pphosted.com",
  928. "type": "MX"
  929.  
  930.  
  931. "data": "mx0a-001b2d01.pphosted.com",
  932. "type": "MX"
  933.  
  934.  
  935.  
  936.  
  937. "type": "A",
  938. "request": "mx0b-001b2d01.pphosted.com",
  939. "answers":
  940.  
  941. "data": "148.163.158.5",
  942. "type": "A"
  943.  
  944.  
  945.  
  946.  
  947. "type": "MX",
  948. "request": "ms4.hinet.net",
  949. "answers":
  950.  
  951. "data": "msx-smtp-mx2.hinet.net",
  952. "type": "MX"
  953.  
  954.  
  955. "data": "msx-smtp-mx1.hinet.net",
  956. "type": "MX"
  957.  
  958.  
  959.  
  960.  
  961. "type": "A",
  962. "request": "msx-smtp-mx2.hinet.net",
  963. "answers":
  964.  
  965. "data": "168.95.5.212",
  966. "type": "A"
  967.  
  968.  
  969. "data": "168.95.5.220",
  970. "type": "A"
  971.  
  972.  
  973. "data": "168.95.5.213",
  974. "type": "A"
  975.  
  976.  
  977. "data": "168.95.5.211",
  978. "type": "A"
  979.  
  980.  
  981. "data": "168.95.5.216",
  982. "type": "A"
  983.  
  984.  
  985. "data": "168.95.5.218",
  986. "type": "A"
  987.  
  988.  
  989. "data": "168.95.5.217",
  990. "type": "A"
  991.  
  992.  
  993. "data": "168.95.5.219",
  994. "type": "A"
  995.  
  996.  
  997. "data": "168.95.5.214",
  998. "type": "A"
  999.  
  1000.  
  1001. "data": "168.95.5.215",
  1002. "type": "A"
  1003.  
  1004.  
  1005.  
  1006.  
  1007. "type": "MX",
  1008. "request": "ectodermaldysplasia.org",
  1009. "answers":
  1010.  
  1011. "data": "ectodermaldysplasia.org",
  1012. "type": "MX"
  1013.  
  1014.  
  1015.  
  1016.  
  1017. "type": "A",
  1018. "request": "ectodermaldysplasia.org",
  1019. "answers":
  1020.  
  1021. "data": "82.145.60.189",
  1022. "type": "A"
  1023.  
  1024.  
  1025.  
  1026.  
  1027. "type": "MX",
  1028. "request": "vicsurf.com",
  1029. "answers":
  1030.  
  1031. "data": "localhost",
  1032. "type": "MX"
  1033.  
  1034.  
  1035.  
  1036.  
  1037. "type": "MX",
  1038. "request": "kp.org",
  1039. "answers":
  1040.  
  1041. "data": "mxb-00000703.gslb.pphosted.com",
  1042. "type": "MX"
  1043.  
  1044.  
  1045. "data": "mxa-00000703.gslb.pphosted.com",
  1046. "type": "MX"
  1047.  
  1048.  
  1049.  
  1050.  
  1051. "type": "A",
  1052. "request": "mxb-00000703.gslb.pphosted.com",
  1053. "answers":
  1054.  
  1055. "data": "148.163.139.169",
  1056. "type": "A"
  1057.  
  1058.  
  1059.  
  1060.  
  1061. "type": "MX",
  1062. "request": "vmeprocess.com",
  1063. "answers":
  1064.  
  1065. "data": "d175732a.ess.barracudanetworks.com",
  1066. "type": "MX"
  1067.  
  1068.  
  1069. "data": "d175732b.ess.barracudanetworks.com",
  1070. "type": "MX"
  1071.  
  1072.  
  1073.  
  1074.  
  1075. "type": "A",
  1076. "request": "d175732b.ess.barracudanetworks.com",
  1077. "answers":
  1078.  
  1079. "data": "209.222.82.126",
  1080. "type": "A"
  1081.  
  1082.  
  1083. "data": "209.222.82.138",
  1084. "type": "A"
  1085.  
  1086.  
  1087. "data": "209.222.82.156",
  1088. "type": "A"
  1089.  
  1090.  
  1091. "data": "209.222.82.135",
  1092. "type": "A"
  1093.  
  1094.  
  1095. "data": "209.222.82.141",
  1096. "type": "A"
  1097.  
  1098.  
  1099. "data": "209.222.82.150",
  1100. "type": "A"
  1101.  
  1102.  
  1103. "data": "209.222.82.153",
  1104. "type": "A"
  1105.  
  1106.  
  1107. "data": "209.222.82.147",
  1108. "type": "A"
  1109.  
  1110.  
  1111. "data": "209.222.82.162",
  1112. "type": "A"
  1113.  
  1114.  
  1115. "data": "209.222.82.165",
  1116. "type": "A"
  1117.  
  1118.  
  1119. "data": "209.222.82.132",
  1120. "type": "A"
  1121.  
  1122.  
  1123. "data": "209.222.82.144",
  1124. "type": "A"
  1125.  
  1126.  
  1127. "data": "209.222.82.159",
  1128. "type": "A"
  1129.  
  1130.  
  1131. "data": "209.222.82.129",
  1132. "type": "A"
  1133.  
  1134.  
  1135.  
  1136.  
  1137. "type": "A",
  1138. "request": "native.np.ac.playstation.net",
  1139. "answers":
  1140.  
  1141. "data": "23.40.168.171",
  1142. "type": "A"
  1143.  
  1144.  
  1145. "data": "wildcard.np.ac.playstation.net.edgekey.net",
  1146. "type": "CNAME"
  1147.  
  1148.  
  1149. "data": "e6364.b.akamaiedge.net",
  1150. "type": "CNAME"
  1151.  
  1152.  
  1153.  
  1154.  
  1155. "type": "MX",
  1156. "request": "hotmail.es",
  1157. "answers":
  1158.  
  1159. "data": "eur.olc.protection.outlook.com",
  1160. "type": "MX"
  1161.  
  1162.  
  1163.  
  1164.  
  1165. "type": "MX",
  1166. "request": "ms21.hinet.net",
  1167. "answers":
  1168.  
  1169. "data": "msx-smtp-mx2.hinet.net",
  1170. "type": "MX"
  1171.  
  1172.  
  1173. "data": "msx-smtp-mx1.hinet.net",
  1174. "type": "MX"
  1175.  
  1176.  
  1177.  
  1178.  
  1179. "type": "MX",
  1180. "request": "ectools.fi",
  1181. "answers":
  1182.  
  1183. "data": "mail6.neutech.fi",
  1184. "type": "MX"
  1185.  
  1186.  
  1187.  
  1188.  
  1189. "type": "A",
  1190. "request": "mail6.neutech.fi",
  1191. "answers":
  1192.  
  1193. "data": "94.199.58.200",
  1194. "type": "A"
  1195.  
  1196.  
  1197.  
  1198.  
  1199. "type": "MX",
  1200. "request": "ajurycaba.com.br",
  1201. "answers":
  1202.  
  1203. "data": "alt1.aspmx.l.google.com",
  1204. "type": "MX"
  1205.  
  1206.  
  1207. "data": "alt2.aspmx.l.google.com",
  1208. "type": "MX"
  1209.  
  1210.  
  1211. "data": "aspmx2.googlemail.com",
  1212. "type": "MX"
  1213.  
  1214.  
  1215. "data": "aspmx3.googlemail.com",
  1216. "type": "MX"
  1217.  
  1218.  
  1219. "data": "aspmx.l.google.com",
  1220. "type": "MX"
  1221.  
  1222.  
  1223.  
  1224.  
  1225. "type": "MX",
  1226. "request": "westank1.com",
  1227. "answers":
  1228.  
  1229. "data": "",
  1230. "type": "NXDOMAIN"
  1231.  
  1232.  
  1233.  
  1234.  
  1235. "type": "MX",
  1236. "request": "gmail.com",
  1237. "answers":
  1238.  
  1239. "data": "alt3.gmail-smtp-in.l.google.com",
  1240. "type": "MX"
  1241.  
  1242.  
  1243. "data": "alt2.gmail-smtp-in.l.google.com",
  1244. "type": "MX"
  1245.  
  1246.  
  1247. "data": "alt1.gmail-smtp-in.l.google.com",
  1248. "type": "MX"
  1249.  
  1250.  
  1251. "data": "alt4.gmail-smtp-in.l.google.com",
  1252. "type": "MX"
  1253.  
  1254.  
  1255. "data": "gmail-smtp-in.l.google.com",
  1256. "type": "MX"
  1257.  
  1258.  
  1259.  
  1260.  
  1261. "type": "MX",
  1262. "request": "ms19.hinet.net",
  1263. "answers":
  1264.  
  1265. "data": "msx-smtp-mx2.hinet.net",
  1266. "type": "MX"
  1267.  
  1268.  
  1269. "data": "msx-smtp-mx1.hinet.net",
  1270. "type": "MX"
  1271.  
  1272.  
  1273.  
  1274.  
  1275. "type": "MX",
  1276. "request": "ajvanrooij.com",
  1277. "answers":
  1278.  
  1279. "data": "ALT4.ASPMX.L.GOOGLE.com",
  1280. "type": "MX"
  1281.  
  1282.  
  1283. "data": "ALT3.ASPMX.L.GOOGLE.com",
  1284. "type": "MX"
  1285.  
  1286.  
  1287. "data": "ALT2.ASPMX.L.GOOGLE.com",
  1288. "type": "MX"
  1289.  
  1290.  
  1291. "data": "ALT1.ASPMX.L.GOOGLE.com",
  1292. "type": "MX"
  1293.  
  1294.  
  1295. "data": "ASPMX.L.GOOGLE.com",
  1296. "type": "MX"
  1297.  
  1298.  
  1299.  
  1300.  
  1301. "type": "MX",
  1302. "request": "email.cz",
  1303. "answers":
  1304.  
  1305. "data": "mx1.seznam.cz",
  1306. "type": "MX"
  1307.  
  1308.  
  1309. "data": "mx2.seznam.cz",
  1310. "type": "MX"
  1311.  
  1312.  
  1313.  
  1314.  
  1315. "type": "A",
  1316. "request": "mx1.seznam.cz",
  1317. "answers":
  1318.  
  1319. "data": "77.75.78.42",
  1320. "type": "A"
  1321.  
  1322.  
  1323. "data": "77.75.76.42",
  1324. "type": "A"
  1325.  
  1326.  
  1327.  
  1328.  
  1329. "type": "MX",
  1330. "request": "fedex.com",
  1331. "answers":
  1332.  
  1333. "data": "mapper.gslb.fedex.com",
  1334. "type": "MX"
  1335.  
  1336.  
  1337. "data": "smtp.dmz.fedex.com",
  1338. "type": "MX"
  1339.  
  1340.  
  1341.  
  1342.  
  1343. "type": "A",
  1344. "request": "mapper.gslb.fedex.com",
  1345. "answers":
  1346.  
  1347. "data": "204.135.242.199",
  1348. "type": "A"
  1349.  
  1350.  
  1351. "data": "204.135.242.198",
  1352. "type": "A"
  1353.  
  1354.  
  1355.  
  1356.  
  1357. "type": "MX",
  1358. "request": "interia.pl",
  1359. "answers":
  1360.  
  1361. "data": "mx.interia.pl",
  1362. "type": "MX"
  1363.  
  1364.  
  1365.  
  1366.  
  1367. "type": "A",
  1368. "request": "mx.interia.pl",
  1369. "answers":
  1370.  
  1371. "data": "217.74.65.64",
  1372. "type": "A"
  1373.  
  1374.  
  1375.  
  1376.  
  1377. "type": "MX",
  1378. "request": "mail.ru",
  1379. "answers":
  1380.  
  1381. "data": "mxs.mail.ru",
  1382. "type": "MX"
  1383.  
  1384.  
  1385.  
  1386.  
  1387. "type": "A",
  1388. "request": "mxs.mail.ru",
  1389. "answers":
  1390.  
  1391. "data": "94.100.180.31",
  1392. "type": "A"
  1393.  
  1394.  
  1395. "data": "94.100.180.104",
  1396. "type": "A"
  1397.  
  1398.  
  1399.  
  1400.  
  1401. "type": "MX",
  1402. "request": "ms23.hinet.net",
  1403. "answers":
  1404.  
  1405. "data": "msx-smtp-mx2.hinet.net",
  1406. "type": "MX"
  1407.  
  1408.  
  1409. "data": "msx-smtp-mx1.hinet.net",
  1410. "type": "MX"
  1411.  
  1412.  
  1413.  
  1414.  
  1415. "type": "MX",
  1416. "request": "ajvazi.com",
  1417. "answers":
  1418.  
  1419. "data": "aspmx2.googlemail.com",
  1420. "type": "MX"
  1421.  
  1422.  
  1423. "data": "alt2.aspmx.l.google.com",
  1424. "type": "MX"
  1425.  
  1426.  
  1427. "data": "alt1.aspmx.l.google.com",
  1428. "type": "MX"
  1429.  
  1430.  
  1431. "data": "aspmx3.googlemail.com",
  1432. "type": "MX"
  1433.  
  1434.  
  1435. "data": "aspmx.l.google.com",
  1436. "type": "MX"
  1437.  
  1438.  
  1439.  
  1440.  
  1441. "type": "MX",
  1442. "request": "ms25.hinet.net",
  1443. "answers":
  1444.  
  1445. "data": "msx-smtp-mx2.hinet.net",
  1446. "type": "MX"
  1447.  
  1448.  
  1449. "data": "msx-smtp-mx1.hinet.net",
  1450. "type": "MX"
  1451.  
  1452.  
  1453.  
  1454.  
  1455. "type": "A",
  1456. "request": "msx-smtp-mx1.hinet.net",
  1457. "answers":
  1458.  
  1459. "data": "168.95.5.118",
  1460. "type": "A"
  1461.  
  1462.  
  1463. "data": "168.95.5.115",
  1464. "type": "A"
  1465.  
  1466.  
  1467. "data": "168.95.5.114",
  1468. "type": "A"
  1469.  
  1470.  
  1471. "data": "168.95.5.117",
  1472. "type": "A"
  1473.  
  1474.  
  1475. "data": "168.95.5.116",
  1476. "type": "A"
  1477.  
  1478.  
  1479. "data": "168.95.5.111",
  1480. "type": "A"
  1481.  
  1482.  
  1483. "data": "168.95.5.120",
  1484. "type": "A"
  1485.  
  1486.  
  1487. "data": "168.95.5.113",
  1488. "type": "A"
  1489.  
  1490.  
  1491. "data": "168.95.5.119",
  1492. "type": "A"
  1493.  
  1494.  
  1495. "data": "168.95.5.112",
  1496. "type": "A"
  1497.  
  1498.  
  1499.  
  1500.  
  1501. "type": "MX",
  1502. "request": "briarcottage.com",
  1503. "answers":
  1504.  
  1505. "data": "mail.briarcottage.com",
  1506. "type": "MX"
  1507.  
  1508.  
  1509.  
  1510.  
  1511. "type": "A",
  1512. "request": "mail.briarcottage.com",
  1513. "answers":
  1514.  
  1515. "data": "176.56.58.230",
  1516. "type": "A"
  1517.  
  1518.  
  1519.  
  1520.  
  1521. "type": "MX",
  1522. "request": "ldsces.org",
  1523. "answers":
  1524.  
  1525. "data": "mxa-00038001.gslb.pphosted.com",
  1526. "type": "MX"
  1527.  
  1528.  
  1529. "data": "mxb-00038001.gslb.pphosted.com",
  1530. "type": "MX"
  1531.  
  1532.  
  1533.  
  1534.  
  1535. "type": "A",
  1536. "request": "mxb-00038001.gslb.pphosted.com",
  1537. "answers":
  1538.  
  1539. "data": "67.231.149.138",
  1540. "type": "A"
  1541.  
  1542.  
  1543.  
  1544.  
  1545. "type": "PTR",
  1546. "request": "238.175.207.91.in-addr.arpa",
  1547. "answers":
  1548.  
  1549. "data": "",
  1550. "type": "NXDOMAIN"
  1551.  
  1552.  
  1553.  
  1554.  
  1555. "type": "MX",
  1556. "request": "live.com",
  1557. "answers":
  1558.  
  1559. "data": "live-com.olc.protection.outlook.com",
  1560. "type": "MX"
  1561.  
  1562.  
  1563.  
  1564.  
  1565. "type": "A",
  1566. "request": "live-com.olc.protection.outlook.com",
  1567. "answers":
  1568.  
  1569. "data": "104.47.2.33",
  1570. "type": "A"
  1571.  
  1572.  
  1573. "data": "104.47.1.33",
  1574. "type": "A"
  1575.  
  1576.  
  1577.  
  1578.  
  1579. "type": "MX",
  1580. "request": "excite.com",
  1581. "answers":
  1582.  
  1583. "data": "mail-in-excite.roc2.bluetie.com",
  1584. "type": "MX"
  1585.  
  1586.  
  1587.  
  1588.  
  1589. "type": "A",
  1590. "request": "mail-in-excite.roc2.bluetie.com",
  1591. "answers":
  1592.  
  1593. "data": "208.89.132.27",
  1594. "type": "A"
  1595.  
  1596.  
  1597.  
  1598.  
  1599. "type": "MX",
  1600. "request": "octa4.net.au",
  1601. "answers":
  1602.  
  1603. "data": "asav.octa4.net.au",
  1604. "type": "MX"
  1605.  
  1606.  
  1607.  
  1608.  
  1609. "type": "A",
  1610. "request": "asav.octa4.net.au",
  1611. "answers":
  1612.  
  1613. "data": "203.0.178.132",
  1614. "type": "A"
  1615.  
  1616.  
  1617.  
  1618.  
  1619. "type": "MX",
  1620. "request": "armor.net",
  1621. "answers":
  1622.  
  1623.  
  1624. "type": "MX",
  1625. "request": "bigpond.com.au",
  1626. "answers":
  1627.  
  1628. "data": "extmail.bigpond.com",
  1629. "type": "MX"
  1630.  
  1631.  
  1632.  
  1633.  
  1634. "type": "A",
  1635. "request": "extmail.bigpond.com",
  1636. "answers":
  1637.  
  1638. "data": "203.36.172.106",
  1639. "type": "A"
  1640.  
  1641.  
  1642. "data": "203.36.137.234",
  1643. "type": "A"
  1644.  
  1645.  
  1646.  
  1647.  
  1648. "type": "MX",
  1649. "request": "grandcommunity.net",
  1650. "answers":
  1651.  
  1652. "data": "",
  1653. "type": "NXDOMAIN"
  1654.  
  1655.  
  1656.  
  1657.  
  1658. "type": "MX",
  1659. "request": "empal.com",
  1660. "answers":
  1661.  
  1662. "data": "mx1.empal.com",
  1663. "type": "MX"
  1664.  
  1665.  
  1666.  
  1667.  
  1668. "type": "A",
  1669. "request": "mx1.empal.com",
  1670. "answers":
  1671.  
  1672. "data": "117.53.114.15",
  1673. "type": "A"
  1674.  
  1675.  
  1676.  
  1677.  
  1678. "type": "MX",
  1679. "request": "gmx.net",
  1680. "answers":
  1681.  
  1682. "data": "mx01.emig.gmx.net",
  1683. "type": "MX"
  1684.  
  1685.  
  1686. "data": "mx00.emig.gmx.net",
  1687. "type": "MX"
  1688.  
  1689.  
  1690.  
  1691.  
  1692. "type": "A",
  1693. "request": "mx01.emig.gmx.net",
  1694. "answers":
  1695.  
  1696. "data": "212.227.17.5",
  1697. "type": "A"
  1698.  
  1699.  
  1700.  
  1701.  
  1702. "type": "MX",
  1703. "request": "platypus.net.au",
  1704. "answers":
  1705.  
  1706. "data": "ms14105701.msv1.invalid",
  1707. "type": "MX"
  1708.  
  1709.  
  1710. "data": "mail-commerce.ecn.net.au",
  1711. "type": "MX"
  1712.  
  1713.  
  1714. "data": "triffid.platypus.net.au",
  1715. "type": "MX"
  1716.  
  1717.  
  1718.  
  1719.  
  1720. "type": "A",
  1721. "request": "triffid.platypus.net.au",
  1722. "answers":
  1723.  
  1724. "data": "203.11.105.103",
  1725. "type": "A"
  1726.  
  1727.  
  1728.  
  1729.  
  1730. "type": "MX",
  1731. "request": "sltnet.lk",
  1732. "answers":
  1733.  
  1734. "data": "mailin-07.gw.sltidc.lk",
  1735. "type": "MX"
  1736.  
  1737.  
  1738. "data": "mailin-05.gw.sltidc.lk",
  1739. "type": "MX"
  1740.  
  1741.  
  1742. "data": "mailin-03.gw.sltidc.lk",
  1743. "type": "MX"
  1744.  
  1745.  
  1746. "data": "mailin-06.gw.sltidc.lk",
  1747. "type": "MX"
  1748.  
  1749.  
  1750. "data": "mailin-04.gw.sltidc.lk",
  1751. "type": "MX"
  1752.  
  1753.  
  1754.  
  1755.  
  1756. "type": "A",
  1757. "request": "mailin-07.gw.sltidc.lk",
  1758. "answers":
  1759.  
  1760. "data": "124.43.129.253",
  1761. "type": "A"
  1762.  
  1763.  
  1764.  
  1765.  
  1766. "type": "MX",
  1767. "request": "prestigemotor.com.au",
  1768. "answers":
  1769.  
  1770. "data": "smtp.secureserver.net",
  1771. "type": "MX"
  1772.  
  1773.  
  1774. "data": "mailstore1.secureserver.net",
  1775. "type": "MX"
  1776.  
  1777.  
  1778.  
  1779.  
  1780. "type": "A",
  1781. "request": "smtp.secureserver.net",
  1782. "answers":
  1783.  
  1784. "data": "68.178.213.203",
  1785. "type": "A"
  1786.  
  1787.  
  1788. "data": "68.178.213.37",
  1789. "type": "A"
  1790.  
  1791.  
  1792. "data": "72.167.238.29",
  1793. "type": "A"
  1794.  
  1795.  
  1796.  
  1797.  
  1798. "type": "A",
  1799. "request": "www.ncbi.nlm.nih.gov",
  1800. "answers":
  1801.  
  1802. "data": "130.14.29.110",
  1803. "type": "A"
  1804.  
  1805.  
  1806. "data": "www.wip.ncbi.nlm.nih.gov",
  1807. "type": "CNAME"
  1808.  
  1809.  
  1810.  
  1811.  
  1812. "type": "MX",
  1813. "request": "web.de",
  1814. "answers":
  1815.  
  1816. "data": "mx-ha03.web.de",
  1817. "type": "MX"
  1818.  
  1819.  
  1820. "data": "mx-ha02.web.de",
  1821. "type": "MX"
  1822.  
  1823.  
  1824.  
  1825.  
  1826. "type": "A",
  1827. "request": "mx-ha02.web.de",
  1828. "answers":
  1829.  
  1830. "data": "212.227.17.8",
  1831. "type": "A"
  1832.  
  1833.  
  1834.  
  1835.  
  1836. "type": "MX",
  1837. "request": "proactivepsych.com.au",
  1838. "answers":
  1839.  
  1840. "data": "mx.proactivepsych.com.au.cust.a.hostedemail.com",
  1841. "type": "MX"
  1842.  
  1843.  
  1844.  
  1845.  
  1846. "type": "A",
  1847. "request": "mx.proactivepsych.com.au.cust.a.hostedemail.com",
  1848. "answers":
  1849.  
  1850. "data": "216.40.42.4",
  1851. "type": "A"
  1852.  
  1853.  
  1854.  
  1855.  
  1856. "type": "MX",
  1857. "request": "a130.aone.net.au",
  1858. "answers":
  1859.  
  1860. "data": "mx1.mel.aone.net.au",
  1861. "type": "MX"
  1862.  
  1863.  
  1864. "data": "mx2.syd.aone.net.au",
  1865. "type": "MX"
  1866.  
  1867.  
  1868. "data": "cusdomain.ozemail.com.au",
  1869. "type": "MX"
  1870.  
  1871.  
  1872.  
  1873.  
  1874. "type": "A",
  1875. "request": "cusdomain.ozemail.com.au",
  1876. "answers":
  1877.  
  1878. "data": "203.0.178.173",
  1879. "type": "A"
  1880.  
  1881.  
  1882.  
  1883.  
  1884. "type": "MX",
  1885. "request": "cox.net",
  1886. "answers":
  1887.  
  1888. "data": "cxr.mx.a.cloudfilter.net",
  1889. "type": "MX"
  1890.  
  1891.  
  1892.  
  1893.  
  1894. "type": "A",
  1895. "request": "cxr.mx.a.cloudfilter.net",
  1896. "answers":
  1897.  
  1898. "data": "52.73.137.222",
  1899. "type": "A"
  1900.  
  1901.  
  1902. "data": "35.162.106.154",
  1903. "type": "A"
  1904.  
  1905.  
  1906. "data": "18.209.118.139",
  1907. "type": "A"
  1908.  
  1909.  
  1910. "data": "34.212.80.54",
  1911. "type": "A"
  1912.  
  1913.  
  1914.  
  1915.  
  1916. "type": "MX",
  1917. "request": "nutrimetics.com.au",
  1918. "answers":
  1919.  
  1920. "data": "cloud7.spamtitan.com",
  1921. "type": "MX"
  1922.  
  1923.  
  1924. "data": "cloud8.spamtitan.com",
  1925. "type": "MX"
  1926.  
  1927.  
  1928.  
  1929.  
  1930. "type": "A",
  1931. "request": "cloud7.spamtitan.com",
  1932. "answers":
  1933.  
  1934. "data": "13.58.8.62",
  1935. "type": "A"
  1936.  
  1937.  
  1938. "data": "52.15.128.102",
  1939. "type": "A"
  1940.  
  1941.  
  1942. "data": "13.58.65.21",
  1943. "type": "A"
  1944.  
  1945.  
  1946.  
  1947.  
  1948. "type": "MX",
  1949. "request": "hotmail.com",
  1950. "answers":
  1951.  
  1952. "data": "hotmail-com.olc.protection.outlook.com",
  1953. "type": "MX"
  1954.  
  1955.  
  1956.  
  1957.  
  1958. "type": "A",
  1959. "request": "hotmail-com.olc.protection.outlook.com",
  1960. "answers":
  1961.  
  1962. "data": "104.47.45.33",
  1963. "type": "A"
  1964.  
  1965.  
  1966. "data": "104.47.44.33",
  1967. "type": "A"
  1968.  
  1969.  
  1970. "data": "104.47.55.161",
  1971. "type": "A"
  1972.  
  1973.  
  1974. "data": "104.47.59.161",
  1975. "type": "A"
  1976.  
  1977.  
  1978.  
  1979.  
  1980. "type": "MX",
  1981. "request": "selec.net",
  1982. "answers":
  1983.  
  1984. "data": "localhost",
  1985. "type": "MX"
  1986.  
  1987.  
  1988.  
  1989.  
  1990. "type": "MX",
  1991. "request": "cableonda.net",
  1992. "answers":
  1993.  
  1994. "data": "mx1.cableonda.net",
  1995. "type": "MX"
  1996.  
  1997.  
  1998.  
  1999.  
  2000. "type": "A",
  2001. "request": "mx1.cableonda.net",
  2002. "answers":
  2003.  
  2004. "data": "201.218.99.234",
  2005. "type": "A"
  2006.  
  2007.  
  2008.  
  2009.  
  2010. "type": "A",
  2011. "request": "www.google.ca",
  2012. "answers":
  2013.  
  2014. "data": "172.217.5.99",
  2015. "type": "A"
  2016.  
  2017.  
  2018.  
  2019.  
  2020. "type": "MX",
  2021. "request": "vsc-servicos.com.br",
  2022. "answers":
  2023.  
  2024. "data": "aspmx2.googlemail.com",
  2025. "type": "MX"
  2026.  
  2027.  
  2028. "data": "alt2.aspmx.l.google.com",
  2029. "type": "MX"
  2030.  
  2031.  
  2032. "data": "alt1.aspmx.l.google.com",
  2033. "type": "MX"
  2034.  
  2035.  
  2036. "data": "aspmx3.googlemail.com",
  2037. "type": "MX"
  2038.  
  2039.  
  2040. "data": "aspmx.l.google.com",
  2041. "type": "MX"
  2042.  
  2043.  
  2044.  
  2045.  
  2046. "type": "MX",
  2047. "request": "ntin.net",
  2048. "answers":
  2049.  
  2050. "data": "ntin.net.mx2.greymail.rcimx.net",
  2051. "type": "MX"
  2052.  
  2053.  
  2054. "data": "ntin.net.mx4.greymail.rcimx.net",
  2055. "type": "MX"
  2056.  
  2057.  
  2058. "data": "ntin.net.mx1.greymail.rcimx.net",
  2059. "type": "MX"
  2060.  
  2061.  
  2062. "data": "ntin.net.mx3.greymail.rcimx.net",
  2063. "type": "MX"
  2064.  
  2065.  
  2066.  
  2067.  
  2068. "type": "A",
  2069. "request": "ntin.net.mx1.greymail.rcimx.net",
  2070. "answers":
  2071.  
  2072. "data": "208.80.206.17",
  2073. "type": "A"
  2074.  
  2075.  
  2076. "data": "208.80.204.79",
  2077. "type": "A"
  2078.  
  2079.  
  2080. "data": "208.80.204.80",
  2081. "type": "A"
  2082.  
  2083.  
  2084. "data": "208.80.206.16",
  2085. "type": "A"
  2086.  
  2087.  
  2088.  
  2089.  
  2090. "type": "MX",
  2091. "request": "virgilio.it",
  2092. "answers":
  2093.  
  2094. "data": "smtp-in.virgilio.it",
  2095. "type": "MX"
  2096.  
  2097.  
  2098.  
  2099.  
  2100. "type": "A",
  2101. "request": "smtp-in.virgilio.it",
  2102. "answers":
  2103.  
  2104. "data": "213.209.1.130",
  2105. "type": "A"
  2106.  
  2107.  
  2108.  
  2109.  
  2110. "type": "MX",
  2111. "request": "hernani.net",
  2112. "answers":
  2113.  
  2114. "data": "barracuda-ls.gipuzkoa.net",
  2115. "type": "MX"
  2116.  
  2117.  
  2118.  
  2119.  
  2120. "type": "A",
  2121. "request": "barracuda-ls.gipuzkoa.net",
  2122. "answers":
  2123.  
  2124. "data": "82.116.160.138",
  2125. "type": "A"
  2126.  
  2127.  
  2128.  
  2129.  
  2130. "type": "MX",
  2131. "request": "k2nesoft.com",
  2132. "answers":
  2133.  
  2134.  
  2135. "type": "MX",
  2136. "request": "giuliano.it",
  2137. "answers":
  2138.  
  2139. "data": "mail3.giuliano.it",
  2140. "type": "MX"
  2141.  
  2142.  
  2143. "data": "mail.giuliano.it",
  2144. "type": "MX"
  2145.  
  2146.  
  2147. "data": "mail2.giuliano.it",
  2148. "type": "MX"
  2149.  
  2150.  
  2151. "data": "mail.register.it",
  2152. "type": "MX"
  2153.  
  2154.  
  2155.  
  2156.  
  2157. "type": "A",
  2158. "request": "mail2.giuliano.it",
  2159. "answers":
  2160.  
  2161. "data": "80.19.94.201",
  2162. "type": "A"
  2163.  
  2164.  
  2165.  
  2166.  
  2167. "type": "MX",
  2168. "request": "fr.ibm.com",
  2169. "answers":
  2170.  
  2171. "data": "mx0b-001b2d01.pphosted.com",
  2172. "type": "MX"
  2173.  
  2174.  
  2175. "data": "mx0a-001b2d01.pphosted.com",
  2176. "type": "MX"
  2177.  
  2178.  
  2179.  
  2180.  
  2181. "type": "A",
  2182. "request": "mx0a-001b2d01.pphosted.com",
  2183. "answers":
  2184.  
  2185. "data": "148.163.156.1",
  2186. "type": "A"
  2187.  
  2188.  
  2189.  
  2190.  
  2191. "type": "MX",
  2192. "request": "hotmail.de",
  2193. "answers":
  2194.  
  2195. "data": "eur.olc.protection.outlook.com",
  2196. "type": "MX"
  2197.  
  2198.  
  2199.  
  2200.  
  2201. "type": "MX",
  2202. "request": "inbox.com",
  2203. "answers":
  2204.  
  2205. "data": "my.inbox.com",
  2206. "type": "MX"
  2207.  
  2208.  
  2209. "data": "inc.inbox.com",
  2210. "type": "MX"
  2211.  
  2212.  
  2213.  
  2214.  
  2215. "type": "A",
  2216. "request": "my.inbox.com",
  2217. "answers":
  2218.  
  2219. "data": "64.135.83.10",
  2220. "type": "A"
  2221.  
  2222.  
  2223.  
  2224.  
  2225. "type": "MX",
  2226. "request": "humanelement.com",
  2227. "answers":
  2228.  
  2229. "data": "p.webcom.ctmail.com",
  2230. "type": "MX"
  2231.  
  2232.  
  2233.  
  2234.  
  2235. "type": "A",
  2236. "request": "p.webcom.ctmail.com",
  2237. "answers":
  2238.  
  2239. "data": "216.163.188.32",
  2240. "type": "A"
  2241.  
  2242.  
  2243. "data": "216.163.176.32",
  2244. "type": "A"
  2245.  
  2246.  
  2247.  
  2248.  
  2249. "type": "MX",
  2250. "request": "attglobal.net",
  2251. "answers":
  2252.  
  2253. "data": "mx4c45.carrierzone.com",
  2254. "type": "MX"
  2255.  
  2256.  
  2257. "data": "mx1c45.carrierzone.com",
  2258. "type": "MX"
  2259.  
  2260.  
  2261. "data": "mx2c45.carrierzone.com",
  2262. "type": "MX"
  2263.  
  2264.  
  2265. "data": "mx3c45.carrierzone.com",
  2266. "type": "MX"
  2267.  
  2268.  
  2269.  
  2270.  
  2271. "type": "A",
  2272. "request": "mx1c45.carrierzone.com",
  2273. "answers":
  2274.  
  2275. "data": "216.55.149.41",
  2276. "type": "A"
  2277.  
  2278.  
  2279.  
  2280.  
  2281. "type": "MX",
  2282. "request": "hzodiaco.com",
  2283. "answers":
  2284.  
  2285. "data": "mail.hzodiaco.com",
  2286. "type": "MX"
  2287.  
  2288.  
  2289.  
  2290.  
  2291. "type": "A",
  2292. "request": "mail.hzodiaco.com",
  2293. "answers":
  2294.  
  2295. "data": "212.48.86.75",
  2296. "type": "A"
  2297.  
  2298.  
  2299.  
  2300.  
  2301. "type": "MX",
  2302. "request": "staffordstars.com",
  2303. "answers":
  2304.  
  2305. "data": "HDRedirect-LB5-1afb6e2973825a56.elb.us-east-1.amazonaws.com",
  2306. "type": "CNAME"
  2307.  
  2308.  
  2309.  
  2310.  
  2311. "type": "MX",
  2312. "request": "hatredfun.com",
  2313. "answers":
  2314.  
  2315. "data": "mail53.extendcp.co.uk",
  2316. "type": "MX"
  2317.  
  2318.  
  2319.  
  2320.  
  2321. "type": "A",
  2322. "request": "mail53.extendcp.co.uk",
  2323. "answers":
  2324.  
  2325. "data": "79.170.44.53",
  2326. "type": "A"
  2327.  
  2328.  
  2329.  
  2330.  
  2331. "type": "MX",
  2332. "request": "hkstar.com",
  2333. "answers":
  2334.  
  2335. "data": "imsmx1.netvigator.com",
  2336. "type": "MX"
  2337.  
  2338.  
  2339. "data": "imsmx2.netvigator.com",
  2340. "type": "MX"
  2341.  
  2342.  
  2343.  
  2344.  
  2345. "type": "A",
  2346. "request": "imsmx1.netvigator.com",
  2347. "answers":
  2348.  
  2349. "data": "219.76.94.47",
  2350. "type": "A"
  2351.  
  2352.  
  2353. "data": "218.102.23.222",
  2354. "type": "A"
  2355.  
  2356.  
  2357. "data": "218.102.23.223",
  2358. "type": "A"
  2359.  
  2360.  
  2361. "data": "219.76.94.45",
  2362. "type": "A"
  2363.  
  2364.  
  2365. "data": "218.102.23.219",
  2366. "type": "A"
  2367.  
  2368.  
  2369. "data": "218.102.23.218",
  2370. "type": "A"
  2371.  
  2372.  
  2373.  
  2374.  
  2375. "type": "A",
  2376. "request": "www.tandfonline.com",
  2377. "answers":
  2378.  
  2379. "data": "104.17.76.237",
  2380. "type": "A"
  2381.  
  2382.  
  2383. "data": "www.tandfonline.com.cdn.cloudflare.net",
  2384. "type": "CNAME"
  2385.  
  2386.  
  2387. "data": "104.17.75.237",
  2388. "type": "A"
  2389.  
  2390.  
  2391.  
  2392.  
  2393. "type": "MX",
  2394. "request": "stao.org",
  2395. "answers":
  2396.  
  2397. "data": "mail.palantir.ca",
  2398. "type": "MX"
  2399.  
  2400.  
  2401. "data": "mail.stao.org",
  2402. "type": "MX"
  2403.  
  2404.  
  2405.  
  2406.  
  2407. "type": "A",
  2408. "request": "mail.stao.org",
  2409. "answers":
  2410.  
  2411. "data": "72.139.122.211",
  2412. "type": "A"
  2413.  
  2414.  
  2415.  
  2416.  
  2417. "type": "MX",
  2418. "request": "hattenhauer.net",
  2419. "answers":
  2420.  
  2421. "data": "mx1.netsolmail.net",
  2422. "type": "MX"
  2423.  
  2424.  
  2425.  
  2426.  
  2427. "type": "A",
  2428. "request": "mx1.netsolmail.net",
  2429. "answers":
  2430.  
  2431. "data": "209.17.115.10",
  2432. "type": "A"
  2433.  
  2434.  
  2435.  
  2436.  
  2437. "type": "MX",
  2438. "request": "101pipe.com",
  2439. "answers":
  2440.  
  2441. "data": "mx.myregisteredsite.com",
  2442. "type": "MX"
  2443.  
  2444.  
  2445.  
  2446.  
  2447. "type": "A",
  2448. "request": "mx.myregisteredsite.com",
  2449. "answers":
  2450.  
  2451. "data": "64.69.222.10",
  2452. "type": "A"
  2453.  
  2454.  
  2455.  
  2456.  
  2457. "type": "MX",
  2458. "request": "hustle.jp",
  2459. "answers":
  2460.  
  2461. "data": "hustle.jp",
  2462. "type": "MX"
  2463.  
  2464.  
  2465.  
  2466.  
  2467. "type": "A",
  2468. "request": "hustle.jp",
  2469. "answers":
  2470.  
  2471. "data": "219.94.163.64",
  2472. "type": "A"
  2473.  
  2474.  
  2475.  
  2476.  
  2477. "type": "MX",
  2478. "request": "op.pl",
  2479. "answers":
  2480.  
  2481. "data": "mx.poczta.onet.pl",
  2482. "type": "MX"
  2483.  
  2484.  
  2485.  
  2486.  
  2487. "type": "A",
  2488. "request": "mx.poczta.onet.pl",
  2489. "answers":
  2490.  
  2491. "data": "213.180.147.146",
  2492. "type": "A"
  2493.  
  2494.  
  2495.  
  2496.  
  2497. "type": "MX",
  2498. "request": "e-kolay.net",
  2499. "answers":
  2500.  
  2501.  
  2502. "type": "MX",
  2503. "request": "hustlerpoolclub.co.uk",
  2504. "answers":
  2505.  
  2506. "data": "mail.hustlerpoolclub.co.uk",
  2507. "type": "MX"
  2508.  
  2509.  
  2510.  
  2511.  
  2512. "type": "A",
  2513. "request": "mail.hustlerpoolclub.co.uk",
  2514. "answers":
  2515.  
  2516. "data": "79.170.44.50",
  2517. "type": "A"
  2518.  
  2519.  
  2520.  
  2521.  
  2522. "type": "MX",
  2523. "request": "elonex.fr",
  2524. "answers":
  2525.  
  2526. "data": "mx1.ovh.net",
  2527. "type": "MX"
  2528.  
  2529.  
  2530. "data": "mx2.ovh.net",
  2531. "type": "MX"
  2532.  
  2533.  
  2534. "data": "mxb.ovh.net",
  2535. "type": "MX"
  2536.  
  2537.  
  2538.  
  2539.  
  2540. "type": "A",
  2541. "request": "mx1.ovh.net",
  2542. "answers":
  2543.  
  2544. "data": "188.165.47.122",
  2545. "type": "A"
  2546.  
  2547.  
  2548.  
  2549.  
  2550. "type": "MX",
  2551. "request": "hattonrealestate.co.uk",
  2552. "answers":
  2553.  
  2554. "data": "mx0a-0025eb03.pphosted.com",
  2555. "type": "MX"
  2556.  
  2557.  
  2558. "data": "mx0b-0025eb03.pphosted.com",
  2559. "type": "MX"
  2560.  
  2561.  
  2562.  
  2563.  
  2564. "type": "A",
  2565. "request": "mx0b-0025eb03.pphosted.com",
  2566. "answers":
  2567.  
  2568. "data": "148.163.153.35",
  2569. "type": "A"
  2570.  
  2571.  
  2572.  
  2573.  
  2574. "type": "MX",
  2575. "request": "hestia.nl",
  2576. "answers":
  2577.  
  2578. "data": "mx01.hestia.nl",
  2579. "type": "MX"
  2580.  
  2581.  
  2582. "data": "mx02.hestia.nl",
  2583. "type": "MX"
  2584.  
  2585.  
  2586.  
  2587.  
  2588. "type": "A",
  2589. "request": "mx02.hestia.nl",
  2590. "answers":
  2591.  
  2592. "data": "93.157.3.241",
  2593. "type": "A"
  2594.  
  2595.  
  2596.  
  2597.  
  2598. "type": "MX",
  2599. "request": "qq.com",
  2600. "answers":
  2601.  
  2602. "data": "mx2.qq.com",
  2603. "type": "MX"
  2604.  
  2605.  
  2606. "data": "mx3.qq.com",
  2607. "type": "MX"
  2608.  
  2609.  
  2610. "data": "mx1.qq.com",
  2611. "type": "MX"
  2612.  
  2613.  
  2614.  
  2615.  
  2616. "type": "A",
  2617. "request": "mx3.qq.com",
  2618. "answers":
  2619.  
  2620. "data": "203.205.219.57",
  2621. "type": "A"
  2622.  
  2623.  
  2624.  
  2625.  
  2626.  
  2627. * Domains:
  2628.  
  2629. "ip": "192.35.35.13",
  2630. "domain": "mailfe02.lmco.com"
  2631.  
  2632.  
  2633. "ip": "168.95.5.113",
  2634. "domain": "msx-smtp-mx1.hinet.net"
  2635.  
  2636.  
  2637. "ip": "212.227.17.8",
  2638. "domain": "mx-ha02.web.de"
  2639.  
  2640.  
  2641. "ip": "64.135.83.10",
  2642. "domain": "my.inbox.com"
  2643.  
  2644.  
  2645. "ip": "149.202.207.222",
  2646. "domain": "mail2.mail-vert.fr"
  2647.  
  2648.  
  2649. "ip": "23.20.239.12",
  2650. "domain": "staffordstars.com"
  2651.  
  2652.  
  2653. "ip": "34.95.75.127",
  2654. "domain": "excite.com"
  2655.  
  2656.  
  2657. "ip": "69.27.107.137",
  2658. "domain": "stao.org"
  2659.  
  2660.  
  2661. "ip": "124.43.129.253",
  2662. "domain": "mailin-07.gw.sltidc.lk"
  2663.  
  2664.  
  2665. "ip": "82.116.160.130",
  2666. "domain": "hernani.net"
  2667.  
  2668.  
  2669. "ip": "204.135.242.196",
  2670. "domain": "mapper.gslb.fedex.com"
  2671.  
  2672.  
  2673. "ip": "212.48.86.75",
  2674. "domain": "hzodiaco.com"
  2675.  
  2676.  
  2677. "ip": "162.144.60.91",
  2678. "domain": "vsc-servicos.com.br"
  2679.  
  2680.  
  2681. "ip": "104.47.2.33",
  2682. "domain": "hotmail-com.olc.protection.outlook.com"
  2683.  
  2684.  
  2685. "ip": "219.94.163.64",
  2686. "domain": "hustle.jp"
  2687.  
  2688.  
  2689. "ip": "127.0.0.4",
  2690. "domain": "238.175.207.91.zen.spamhaus.org"
  2691.  
  2692.  
  2693. "ip": "40.76.4.15",
  2694. "domain": "microsoft.com"
  2695.  
  2696.  
  2697. "ip": "213.209.17.209",
  2698. "domain": "virgilio.it"
  2699.  
  2700.  
  2701. "ip": "208.91.197.27",
  2702. "domain": "humanelement.com"
  2703.  
  2704.  
  2705. "ip": "204.79.197.212",
  2706. "domain": "hotmail.com"
  2707.  
  2708.  
  2709. "ip": "100.24.208.97",
  2710. "domain": "proactivepsych.com.au"
  2711.  
  2712.  
  2713. "ip": "203.36.137.234",
  2714. "domain": "extmail.bigpond.com"
  2715.  
  2716.  
  2717. "ip": "94.100.180.31",
  2718. "domain": "mxs.mail.ru"
  2719.  
  2720.  
  2721. "ip": "212.68.24.42",
  2722. "domain": "ectools.fi"
  2723.  
  2724.  
  2725. "ip": "77.75.76.120",
  2726. "domain": "email.cz"
  2727.  
  2728.  
  2729. "ip": "",
  2730. "domain": "fr.ibm.com"
  2731.  
  2732.  
  2733. "ip": "104.47.54.36",
  2734. "domain": "microsoft-com.mail.protection.outlook.com"
  2735.  
  2736.  
  2737. "ip": "172.217.5.99",
  2738. "domain": "www.google.ca"
  2739.  
  2740.  
  2741. "ip": "168.95.4.21",
  2742. "domain": "ms21.hinet.net"
  2743.  
  2744.  
  2745. "ip": "67.231.149.138",
  2746. "domain": "mxb-00038001.gslb.pphosted.com"
  2747.  
  2748.  
  2749. "ip": "82.116.160.138",
  2750. "domain": "barracuda-ls.gipuzkoa.net"
  2751.  
  2752.  
  2753. "ip": "168.95.4.40",
  2754. "domain": "ms4.hinet.net"
  2755.  
  2756.  
  2757. "ip": "124.47.190.134",
  2758. "domain": "nutrimetics.com.au"
  2759.  
  2760.  
  2761. "ip": "213.180.147.146",
  2762. "domain": "mx.poczta.onet.pl"
  2763.  
  2764.  
  2765. "ip": "108.178.61.211",
  2766. "domain": "cloud3.spamtitan.com"
  2767.  
  2768.  
  2769. "ip": "63.160.156.25",
  2770. "domain": "ntin.net"
  2771.  
  2772.  
  2773. "ip": "79.170.44.53",
  2774. "domain": "mail53.extendcp.co.uk"
  2775.  
  2776.  
  2777. "ip": "46.37.191.43",
  2778. "domain": "hustlerpoolclub.co.uk"
  2779.  
  2780.  
  2781. "ip": "12.154.55.204",
  2782. "domain": "attglobal.net"
  2783.  
  2784.  
  2785. "ip": "104.47.9.33",
  2786. "domain": "eur.olc.protection.outlook.com"
  2787.  
  2788.  
  2789. "ip": "209.17.115.10",
  2790. "domain": "mx1.netsolmail.net"
  2791.  
  2792.  
  2793. "ip": "213.209.1.130",
  2794. "domain": "smtp-in.virgilio.it"
  2795.  
  2796.  
  2797. "ip": "34.236.29.105",
  2798. "domain": "chsd117.org"
  2799.  
  2800.  
  2801. "ip": "217.74.65.23",
  2802. "domain": "interia.pl"
  2803.  
  2804.  
  2805. "ip": "203.0.178.173",
  2806. "domain": "cusdomain.ozemail.com.au"
  2807.  
  2808.  
  2809. "ip": "79.170.44.50",
  2810. "domain": "mail.hustlerpoolclub.co.uk"
  2811.  
  2812.  
  2813. "ip": "204.135.8.155",
  2814. "domain": "fedex.com"
  2815.  
  2816.  
  2817. "ip": "117.53.114.15",
  2818. "domain": "mx1.empal.com"
  2819.  
  2820.  
  2821. "ip": "168.95.5.217",
  2822. "domain": "msx-smtp-mx2.hinet.net"
  2823.  
  2824.  
  2825. "ip": "82.145.60.189",
  2826. "domain": "ectodermaldysplasia.org"
  2827.  
  2828.  
  2829. "ip": "",
  2830. "domain": "westank1.com"
  2831.  
  2832.  
  2833. "ip": "",
  2834. "domain": "hotmaii.fr"
  2835.  
  2836.  
  2837. "ip": "188.165.47.122",
  2838. "domain": "mx1.ovh.net"
  2839.  
  2840.  
  2841. "ip": "218.102.22.68",
  2842. "domain": "hkstar.com"
  2843.  
  2844.  
  2845. "ip": "194.109.157.64",
  2846. "domain": "hestia.nl"
  2847.  
  2848.  
  2849. "ip": "23.40.168.171",
  2850. "domain": "native.np.ac.playstation.net"
  2851.  
  2852.  
  2853. "ip": "148.163.153.35",
  2854. "domain": "mx0b-0025eb03.pphosted.com"
  2855.  
  2856.  
  2857. "ip": "104.17.76.237",
  2858. "domain": "www.tandfonline.com"
  2859.  
  2860.  
  2861. "ip": "168.95.4.25",
  2862. "domain": "ms25.hinet.net"
  2863.  
  2864.  
  2865. "ip": "195.8.106.162",
  2866. "domain": "pzlmielec.com.pl"
  2867.  
  2868.  
  2869. "ip": "209.237.150.20",
  2870. "domain": "101pipe.com"
  2871.  
  2872.  
  2873. "ip": "216.40.42.4",
  2874. "domain": "mx.proactivepsych.com.au.cust.a.hostedemail.com"
  2875.  
  2876.  
  2877. "ip": "212.227.17.5",
  2878. "domain": "mx01.emig.gmx.net"
  2879.  
  2880.  
  2881. "ip": "185.2.4.21",
  2882. "domain": "giuliano.it"
  2883.  
  2884.  
  2885. "ip": "111.161.64.48",
  2886. "domain": "qq.com"
  2887.  
  2888.  
  2889. "ip": "213.180.141.188",
  2890. "domain": "op.pl"
  2891.  
  2892.  
  2893. "ip": "148.72.85.49",
  2894. "domain": "k2nesoft.com"
  2895.  
  2896.  
  2897. "ip": "67.195.204.72",
  2898. "domain": "mta5.am0.yahoodns.net"
  2899.  
  2900.  
  2901. "ip": "",
  2902. "domain": "e-kolay.net"
  2903.  
  2904.  
  2905. "ip": "",
  2906. "domain": "triffid.platypus.net.au"
  2907.  
  2908.  
  2909. "ip": "61.9.172.37",
  2910. "domain": "bigpond.com.au"
  2911.  
  2912.  
  2913. "ip": "218.102.23.223",
  2914. "domain": "imsmx1.netvigator.com"
  2915.  
  2916.  
  2917. "ip": "104.47.56.161",
  2918. "domain": "live-com.olc.protection.outlook.com"
  2919.  
  2920.  
  2921. "ip": "162.213.250.68",
  2922. "domain": "ajvazi.com"
  2923.  
  2924.  
  2925. "ip": "216.55.149.41",
  2926. "domain": "mx1c45.carrierzone.com"
  2927.  
  2928.  
  2929. "ip": "72.30.35.9",
  2930. "domain": "yahoo.com"
  2931.  
  2932.  
  2933. "ip": "212.48.86.75",
  2934. "domain": "mail.hzodiaco.com"
  2935.  
  2936.  
  2937. "ip": "64.135.77.83",
  2938. "domain": "inbox.com"
  2939.  
  2940.  
  2941. "ip": "64.69.222.10",
  2942. "domain": "mx.myregisteredsite.com"
  2943.  
  2944.  
  2945. "ip": "",
  2946. "domain": "grandcommunity.net"
  2947.  
  2948.  
  2949. "ip": "208.80.204.79",
  2950. "domain": "ntin.net.mx1.greymail.rcimx.net"
  2951.  
  2952.  
  2953. "ip": "72.167.238.29",
  2954. "domain": "smtp.secureserver.net"
  2955.  
  2956.  
  2957. "ip": "79.170.40.172",
  2958. "domain": "hatredfun.com"
  2959.  
  2960.  
  2961. "ip": "82.165.229.87",
  2962. "domain": "gmx.net"
  2963.  
  2964.  
  2965. "ip": "",
  2966. "domain": "armor.net"
  2967.  
  2968.  
  2969. "ip": "80.19.94.201",
  2970. "domain": "mail2.giuliano.it"
  2971.  
  2972.  
  2973. "ip": "91.195.240.126",
  2974. "domain": "selec.net"
  2975.  
  2976.  
  2977. "ip": "148.163.135.169",
  2978. "domain": "mxb-00000703.gslb.pphosted.com"
  2979.  
  2980.  
  2981. "ip": "204.79.197.209",
  2982. "domain": "hotmail.es"
  2983.  
  2984.  
  2985. "ip": "80.92.65.144",
  2986. "domain": "hattonrealestate.co.uk"
  2987.  
  2988.  
  2989. "ip": "216.115.71.83",
  2990. "domain": "marketingresults.net"
  2991.  
  2992.  
  2993. "ip": "130.14.29.110",
  2994. "domain": "www.ncbi.nlm.nih.gov"
  2995.  
  2996.  
  2997. "ip": "98.124.199.28",
  2998. "domain": "ajvanrooij.com"
  2999.  
  3000.  
  3001. "ip": "217.169.121.227",
  3002. "domain": "alice.it"
  3003.  
  3004.  
  3005. "ip": "168.95.4.23",
  3006. "domain": "ms23.hinet.net"
  3007.  
  3008.  
  3009. "ip": "148.163.158.5",
  3010. "domain": "mx0b-001b2d01.pphosted.com"
  3011.  
  3012.  
  3013. "ip": "162.119.200.164",
  3014. "domain": "kp.org"
  3015.  
  3016.  
  3017. "ip": "13.58.8.62",
  3018. "domain": "cloud7.spamtitan.com"
  3019.  
  3020.  
  3021. "ip": "209.222.82.141",
  3022. "domain": "d175732b.ess.barracudanetworks.com"
  3023.  
  3024.  
  3025. "ip": "45.60.45.167",
  3026. "domain": "cox.net"
  3027.  
  3028.  
  3029. "ip": "35.172.41.98",
  3030. "domain": "ajurycaba.com.br"
  3031.  
  3032.  
  3033. "ip": "201.218.99.234",
  3034. "domain": "mx1.cableonda.net"
  3035.  
  3036.  
  3037. "ip": "72.139.122.211",
  3038. "domain": "mail.stao.org"
  3039.  
  3040.  
  3041. "ip": "217.69.139.200",
  3042. "domain": "mail.ru"
  3043.  
  3044.  
  3045. "ip": "104.31.95.28",
  3046. "domain": "vmeprocess.com"
  3047.  
  3048.  
  3049. "ip": "203.0.178.132",
  3050. "domain": "asav.octa4.net.au"
  3051.  
  3052.  
  3053. "ip": "203.205.219.57",
  3054. "domain": "mx3.qq.com"
  3055.  
  3056.  
  3057. "ip": "",
  3058. "domain": "platypus.net.au"
  3059.  
  3060.  
  3061. "ip": "93.157.3.241",
  3062. "domain": "mx02.hestia.nl"
  3063.  
  3064.  
  3065. "ip": "127.0.0.2",
  3066. "domain": "238.175.207.91.cbl.abuseat.org"
  3067.  
  3068.  
  3069. "ip": "82.57.200.133",
  3070. "domain": "smtp.aliceposta.it"
  3071.  
  3072.  
  3073. "ip": "208.89.132.27",
  3074. "domain": "mail-in-excite.roc2.bluetie.com"
  3075.  
  3076.  
  3077. "ip": "",
  3078. "domain": "us.ibm.com"
  3079.  
  3080.  
  3081. "ip": "",
  3082. "domain": "238.175.207.91.dnsbl.sorbs.net"
  3083.  
  3084.  
  3085. "ip": "148.163.156.1",
  3086. "domain": "mx0a-001b2d01.pphosted.com"
  3087.  
  3088.  
  3089. "ip": "34.212.80.54",
  3090. "domain": "cxr.mx.a.cloudfilter.net"
  3091.  
  3092.  
  3093. "ip": "216.58.194.165",
  3094. "domain": "gmail.com"
  3095.  
  3096.  
  3097. "ip": "204.79.197.209",
  3098. "domain": "hotmail.de"
  3099.  
  3100.  
  3101. "ip": "",
  3102. "domain": "sltnet.lk"
  3103.  
  3104.  
  3105. "ip": "91.195.240.126",
  3106. "domain": "vicsurf.com"
  3107.  
  3108.  
  3109. "ip": "94.199.58.200",
  3110. "domain": "mail6.neutech.fi"
  3111.  
  3112.  
  3113. "ip": "127.0.0.4",
  3114. "domain": "238.175.207.91.sbl-xbl.spamhaus.org"
  3115.  
  3116.  
  3117. "ip": "77.75.76.42",
  3118. "domain": "mx1.seznam.cz"
  3119.  
  3120.  
  3121. "ip": "204.79.197.212",
  3122. "domain": "live.co.uk"
  3123.  
  3124.  
  3125. "ip": "203.59.1.19",
  3126. "domain": "octa4.net.au"
  3127.  
  3128.  
  3129. "ip": "213.186.33.50",
  3130. "domain": "elonex.fr"
  3131.  
  3132.  
  3133. "ip": "82.165.230.17",
  3134. "domain": "web.de"
  3135.  
  3136.  
  3137. "ip": "",
  3138. "domain": "238.175.207.91.bl.spamcop.net"
  3139.  
  3140.  
  3141. "ip": "176.56.58.230",
  3142. "domain": "briarcottage.com"
  3143.  
  3144.  
  3145. "ip": "216.163.188.32",
  3146. "domain": "p.webcom.ctmail.com"
  3147.  
  3148.  
  3149. "ip": "204.79.197.212",
  3150. "domain": "live.com"
  3151.  
  3152.  
  3153. "ip": "216.49.176.20",
  3154. "domain": "ldsces.org"
  3155.  
  3156.  
  3157. "ip": "217.74.65.64",
  3158. "domain": "mx.interia.pl"
  3159.  
  3160.  
  3161. "ip": "168.95.4.19",
  3162. "domain": "ms19.hinet.net"
  3163.  
  3164.  
  3165. "ip": "176.56.58.230",
  3166. "domain": "mail.briarcottage.com"
  3167.  
  3168.  
  3169. "ip": "203.0.178.175",
  3170. "domain": "a130.aone.net.au"
  3171.  
  3172.  
  3173. "ip": "200.90.128.117",
  3174. "domain": "cableonda.net"
  3175.  
  3176.  
  3177. "ip": "50.63.202.61",
  3178. "domain": "prestigemotor.com.au"
  3179.  
  3180.  
  3181. "ip": "117.53.101.8",
  3182. "domain": "empal.com"
  3183.  
  3184.  
  3185. "ip": "206.188.192.138",
  3186. "domain": "hattenhauer.net"
  3187.  
  3188.  
  3189. "ip": "52.5.5.85",
  3190. "domain": "dsaofnwi.org"
  3191.  
  3192.  
  3193.  
  3194. * Network Communication - ICMP:
  3195.  
  3196. * Network Communication - HTTP:
  3197.  
  3198. "count": 5,
  3199. "body": "",
  3200. "uri": "http://www.google.com/",
  3201. "user-agent": "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; EmbeddedWB 14,52 from: http://www.bsalsa.com/ EmbeddedWB 14,52; .NET CLR 2.0.50727)",
  3202. "method": "GET",
  3203. "host": "www.google.com",
  3204. "version": "1.1",
  3205. "path": "/",
  3206. "data": "GET / HTTP/1.1\r\nAccept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg, application/x-shockwave-flash, */*\r\nAccept-Language: en\r\nAccept-Encoding: gzip, deflate\r\nUser-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; EmbeddedWB 14,52 from: http://www.bsalsa.com/ EmbeddedWB 14,52; .NET CLR 2.0.50727)\r\nHost: www.google.com\r\nConnection: Keep-Alive\r\n\r\n",
  3207. "port": 80
  3208.  
  3209.  
  3210. "count": 1,
  3211. "body": "",
  3212. "uri": "http://checkip.dyndns.org/",
  3213. "user-agent": "Opera/9.80 (Windows NT 6.1; Edition Yx) Presto/2.12 Version/12.14",
  3214. "method": "GET",
  3215. "host": "checkip.dyndns.org",
  3216. "version": "1.1",
  3217. "path": "/",
  3218. "data": "GET / HTTP/1.1\r\nHost: checkip.dyndns.org\r\nUser-Agent: Opera/9.80 (Windows NT 6.1; Edition Yx) Presto/2.12 Version/12.14\r\nAccept: */*\r\nAccept-Encoding: gzip\r\n\r\n",
  3219. "port": 80
  3220.  
  3221.  
  3222.  
  3223. * Network Communication - SMTP:
  3224.  
  3225. * Network Communication - Hosts:
  3226.  
  3227. * Network Communication - IRC:
RAW Paste Data