subdomain hijacking
1. whois
ceapred.org.np. 43200 IN NS ns2.babal.host. ceapred.org.np. 43200 IN NS ns3.babal.host. ceapred.org.np. 43200 IN NS ns4.babal.host. ceapred.org.np. 43200 IN NS ns1.babal.host.
$ dig -t ns ceapred.org.np @ns1.babal.host. ceapred.org.np. 86400 IN NS ns1.babal.host. ceapred.org.np. 86400 IN NS ns2.babal.host. ceapred.org.np. 86400 IN NS ns4.babal.host. ceapred.org.np. 86400 IN NS ns3.babal.host.
2. history
wo.ceapred.org.np. 43200 IN NS ns2.mysecurecloudhost.com. wo.ceapred.org.np. 43200 IN NS ns1.mysecurecloudhost.com. wo.ceapred.org.np. 43200 IN NS ns4.mysecurecloudhost.com. wo.ceapred.org.np. 43200 IN NS ns3.mysecurecloudhost.com. 207.180.210.226 Contabo GmbH 2023-09-04 (10 days) 2023-09-13 (today) 9 days 23.106.66.242 Leaseweb Asia Pacific pte. ltd. 2023-08-25 (20 days) 2023-09-04 (10 days) 10 days