Domain Intelligence

chatgpt.net

Low-risk posture with minor configuration gaps.

Low Risk GoDaddy.com, LLC 3.5 years old
no_dmarc_record dnssec_not_validated no_caa_records

Threat Score

13 /100

Low Risk

Domain appears safe

Risk score

13/100

low risk

Server IPs

2

resolved address records

Mail posture

DMARC missing

mail provider not classified

DNS controls

No DNSSEC

CAA missing

Server Infrastructure

Resolved IPs with ASN, country, and provider data

2 servers
IP Address Location ASN / Org Provider Reverse DNS
76.223.54.146 A US
AS16509

AMAZON-02 - Amazon.com, Inc., US

AWS AWS a904c694c05102f30.awsglobalaccelerator.com
13.248.169.48 A US
AS16509

AMAZON-02 - Amazon.com, Inc., US

AWS AWS a904c694c05102f30.awsglobalaccelerator.com

DNS Records

Address, mail, text, and certificate records from public DNS

8 records
A (2) MX (1) NS (2) TXT (2) SOA (1)
A 2 records
Name Value TTL
chatgpt.net 76.223.54.146 3600s
chatgpt.net 13.248.169.48 3600s
MX 1 record
Name Value TTL
chatgpt.net 0 . 3600s
NS 2 records
Name Value TTL
chatgpt.net ns1.afternic.com. 86400s
chatgpt.net ns2.afternic.com. 86400s
TXT 2 records
Name Value TTL
_dmarc.chatgpt.net "v=spf1 -all" 3600s
chatgpt.net "v=spf1 -all" 3600s
SOA 1 record
Name Value TTL
chatgpt.net ns2.afternic.com. dns.jomax.net. 1 28800 7200 604800 86400 3600s

Email & DNS Security

Mail authentication posture and DNS security controls

Mail Provider

Not classified

Authentication

MX Records
Present
SPF Record
Strict
DMARC Policy
Missing

Authentication Flow

flowchart LR
  A["Email\nfrom chatgpt.net"] --> B["SPF\nStrict -all"]
  B --> C["DMARC\nMissing"]
  C --> D["Domain can\nbe spoofed"]:::bad

DNS Security

DNSSEC
Not enabled
CAA Records
Missing

Nameservers

ns1.afternic.comns2.afternic.com

WHOIS & Registrar

Registration details via RDAP

RDAP

Registrar

GoDaddy.com, LLC

GoDaddy.com, LLC

Abuse: abuse@godaddy.com

Registration Dates

Domain age

3.5 years

Created

Dec 1, 2022

Updated

Jun 4, 2026

Expires

Dec 1, 2027

Status

client delete prohibited client renew prohibited client transfer prohibited client update prohibited

Similar Domains

Typosquat and adjacent-domain candidates resolved with public DNS

6 active
resolves

missing last character

76.223.54.146, 13.248.169.48

repeated last character

app suffix

216.150.1.1

app suffix without separator

52.40.42.113, 44.232.173.249

login suffix

resolves

.com TLD swap

172.64.155.209, 104.18.32.47 +2 more

resolves

.org TLD swap

176.125.242.237

resolves

.io TLD swap

104.21.39.244, 172.67.172.43 +2 more

Self-hostable Threat Feeds

Free feed candidates for VPS import β€” no paid DNSBLs queried at runtime

HaGeZi Threat Intelligence Feed

recommended plain domain list

Malware, phishing, scam, and high-confidence threat domains for local DNS filtering.

License
GPL-3.0
Source
https://raw.githubusercontent.com/hagezi/dns-blocklists/main/domains/tif.txt

HaGeZi Newly Registered Domains

optional plain domain list

Freshly observed domains often abused in short-lived campaigns.

License
GPL-3.0
Source
https://raw.githubusercontent.com/hagezi/dns-blocklists/main/domains/nrd.txt

URLhaus hostfile

recommended hosts file

Active malware distribution hosts that can be mirrored into a local resolver or VPS matcher.

License
abuse.ch community API fair use
Source
https://urlhaus.abuse.ch/downloads/hostfile/

URLhaus RPZ

optional DNS RPZ

Response Policy Zone feed for VPS-hosted DNS enforcement.

License
abuse.ch community API fair use
Source
https://urlhaus.abuse.ch/downloads/rpz/

Queried 6/4/2026, 6:27:32 PM Β· 865ms