Domain Intelligence

chatg.com

Low-risk posture with minor configuration gaps.

Low Risk NAMECHEAP INC 20.5 years old
no_spf_record no_dmarc_record dnssec_not_validated no_caa_records

Threat Score

18 /100

Low Risk

Domain appears safe

Risk score

18/100

low risk

Server IPs

4

resolved address records

Mail posture

DMARC missing

mail provider not classified

DNS controls

No DNSSEC

CAA missing

Server Infrastructure

Resolved IPs with ASN, country, and provider data

4 servers
IP Address Location ASN / Org Provider Reverse DNS
104.21.37.101 A US
AS13335

CLOUDFLARENET - Cloudflare, Inc., US

Cloudflare Cloudflare No PTR found
172.67.207.19 A US
AS13335

CLOUDFLARENET - Cloudflare, Inc., US

Cloudflare Cloudflare No PTR found
2606:4700:3034::6815:2565 AAAA Unknown Unknown Not classified No PTR found
2606:4700:3033::ac43:cf13 AAAA Unknown Unknown Not classified No PTR found

DNS Records

Address, mail, text, and certificate records from public DNS

12 records
A (2) AAAA (2) MX (3) NS (2) TXT (1) SOA (1) HTTPS (1)
A 2 records
Name Value TTL
chatg.com 104.21.37.101 300s
chatg.com 172.67.207.19 300s
AAAA 2 records
Name Value TTL
chatg.com 2606:4700:3034::6815:2565 300s
chatg.com 2606:4700:3033::ac43:cf13 300s
MX 3 records
Name Value TTL
chatg.com 50 route2.mx.cloudflare.net. 300s
chatg.com 60 route1.mx.cloudflare.net. 300s
chatg.com 81 route3.mx.cloudflare.net. 300s
NS 2 records
Name Value TTL
chatg.com lloyd.ns.cloudflare.com. 86400s
chatg.com michelle.ns.cloudflare.com. 86400s
TXT 1 record
Name Value TTL
chatg.com "google-site-verification=I_QhqDiF80_Lx5F2XryeTYKezY1UIJ679yBbfGEBRY4" 3600s
SOA 1 record
Name Value TTL
chatg.com lloyd.ns.cloudflare.com. dns.cloudflare.com. 2404306005 10000 2400 604800 1800 1800s
HTTPS 1 record
Name Value TTL
chatg.com \# 136 00 01 00 00 01 00 06 02 68 33 02 68 32 00 04 00 08 68 15 25 65 ac 43 cf 13 00 05 00 47 00 45 fe 0d 00 41 d2 00 20 00 20 a2 c0 a0 d5 df 99 e9 a8 c7 ed ee dd 0e 73 c3 cc a1 47 2f 34 b4 cc 44 a1 38 39 6f b3 86 8b ef 04 00 04 00 01 00 01 00 12 63 6c 6f 75 64 66 6c 61 72 65 2d 65 63 68 2e 63 6f 6d 00 00 00 06 00 20 26 06 47 00 30 33 00 00 00 00 00 00 ac 43 cf 13 26 06 47 00 30 34 00 00 00 00 00 00 68 15 25 65 300s

Email & DNS Security

Mail authentication posture and DNS security controls

Mail Provider

Not classified

Authentication

MX Records
Present
SPF Record
Missing
DMARC Policy
Missing

Authentication Flow

flowchart LR
  A["Email\nfrom chatg.com"] --> B["SPF\nMissing"]
  B --> C["DMARC\nMissing"]
  C --> D["Domain can\nbe spoofed"]:::bad
Cloudflare

DNS Security Β· Cloudflare

DNSSEC
Not enabled
CAA Records
Missing

Nameservers

lloyd.ns.cloudflare.commichelle.ns.cloudflare.com

WHOIS & Registrar

Registration details via RDAP

RDAP

Registrar

NAMECHEAP INC

NAMECHEAP INC

Abuse: support@namecheap.com

Registration Dates

Domain age

20.5 years

Created

Nov 30, 2005

Updated

Oct 31, 2025

Expires

Nov 30, 2026

Registrant

Organization Privacy service provided by Withheld for Privacy ehf
Email 901c331a75184eef88c7d493f142c234.protect@withheldforprivacy.com
Phone +354.4212434
Location Reykjavik, Capital Region, IS

Status

client transfer prohibited

Similar Domains

Typosquat and adjacent-domain candidates resolved with public DNS

5 active
resolves

missing last character

104.18.41.60, 172.64.146.196 +2 more

resolves

repeated last character

76.223.54.146, 13.248.169.48

app suffix

app suffix without separator

login suffix

resolves

.net TLD swap

34.117.176.22

resolves

.org TLD swap

176.123.0.55

resolves

.io TLD swap

77.247.179.87

Self-hostable Threat Feeds

Free feed candidates for VPS import β€” no paid DNSBLs queried at runtime

HaGeZi Threat Intelligence Feed

recommended plain domain list

Malware, phishing, scam, and high-confidence threat domains for local DNS filtering.

License
GPL-3.0
Source
https://raw.githubusercontent.com/hagezi/dns-blocklists/main/domains/tif.txt

HaGeZi Newly Registered Domains

optional plain domain list

Freshly observed domains often abused in short-lived campaigns.

License
GPL-3.0
Source
https://raw.githubusercontent.com/hagezi/dns-blocklists/main/domains/nrd.txt

URLhaus hostfile

recommended hosts file

Active malware distribution hosts that can be mirrored into a local resolver or VPS matcher.

License
abuse.ch community API fair use
Source
https://urlhaus.abuse.ch/downloads/hostfile/

URLhaus RPZ

optional DNS RPZ

Response Policy Zone feed for VPS-hosted DNS enforcement.

License
abuse.ch community API fair use
Source
https://urlhaus.abuse.ch/downloads/rpz/

Queried 6/4/2026, 7:31:15 PM Β· 955ms