CF1757579290132-tsm20250910161120

DNSWHOIS.INFO - evil.badthin.gs

Search for IP or hostnames:

evil.badthin.gs checked at 2025-09-11T08:28:10.117Z 335ms 90/90/90 100% R:14

evil.badthin.gs

MXin1-smtp.messagingengine.com
A103.168.172.216🇺🇸 FASTMAILPTYLTD-AS-AP
PTRphl-mx-01.messagingengine.com
A103.168.172.217🇺🇸 FASTMAILPTYLTD-AS-AP
PTRphl-mx-02.messagingengine.com
A103.168.172.218🇺🇸 FASTMAILPTYLTD-AS-AP
PTRphl-mx-03.messagingengine.com
A103.168.172.219🇺🇸 FASTMAILPTYLTD-AS-AP
PTRphl-mx-04.messagingengine.com
A103.168.172.220🇺🇸 FASTMAILPTYLTD-AS-AP
PTRphl-mx-05.messagingengine.com
A103.168.172.221🇺🇸 FASTMAILPTYLTD-AS-AP
PTRphl-mx-06.messagingengine.com
A103.168.172.222🇺🇸 FASTMAILPTYLTD-AS-AP
PTRphl-mx-07.messagingengine.com
A103.168.172.223🇺🇸 FASTMAILPTYLTD-AS-AP
PTRphl-mx-08.messagingengine.com
MXin2-smtp.messagingengine.com
A202.12.124.216 FASTMAILPTYLTD-AS-AP
PTRstl-mx-01.messagingengine.com
A202.12.124.217 FASTMAILPTYLTD-AS-AP
PTRstl-mx-02.messagingengine.com
A103.168.172.37🇺🇸 FASTMAILPTYLTD-AS-AP
PTRuserweb.fastmail.com
A103.168.172.52🇺🇸 FASTMAILPTYLTD-AS-AP
PTRuserweb.fastmail.com

badthin.gs

MXin1-smtp.messagingengine.com
MXin2-smtp.messagingengine.com
NSns1.messagingengine.com
NSns2.messagingengine.com
A103.168.172.37🇺🇸 FASTMAILPTYLTD-AS-AP
A103.168.172.52🇺🇸 FASTMAILPTYLTD-AS-AP

AI analysis

There are two IP numbers that evil.badthin.gs points to: 103.168.172.37 and 103.168.172.52.

IP numbers are shared between evil.badthin.gs and other host names such as relogged.net, quickbeef.com, 1-ix.com, www.wholistic.com.au, and arznas.es.

The two mail servers, in1-smtp.messagingengine.com and in2-smtp.messagingengine.com, manage evil.badthin.gs.

Just like domains such as s-bock.com, openbydesign.net, invisiblellama.net, skold.me, and varadero.exonetric.net, evil.badthin.gs also shares the same mail server setup.

Some mail servers are at least partially shared between evil.badthin.gs and other domains, such as freshlab.com.

in1-smtp.messagingengine.com points to the following eight IP numbers: 103.168.172.216, 103.168.172.217, 103.168.172.218, 103.168.172.219, 103.168.172.220, 103.168.172.221, 103.168.172.222, and 103.168.172.223. in2-smtp.messagingengine.com points to two IP numbers: 202.12.124.216 and 202.12.124.217.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

zqSnJmR CF johedugfp 2025-09-11