CF1757180862483-tsm20250906081701

DNSWHOIS.INFO - evil.cc

Search for IP or hostnames:

evil.cc checked at 2025-09-06T17:47:42.439Z 191ms 146/146/146 100% R:13

evil.cc

NSmoura.ns.cloudflare.com
A2606:4700:58::a29f:2cd9 🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A2803:f800:50::6ca2:c3d9 🇨🇷 Cloudflare
PTRmoura.ns.cloudflare.com
A2a06:98c1:50::ac40:23d9 🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A108.162.195.217🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A162.159.44.217 Cloudflare
PTRmoura.ns.cloudflare.com
A172.64.35.217🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
NSullis.ns.cloudflare.com
A2606:4700:50::a29f:267f 🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A2803:f800:50::6ca2:c27f 🇨🇷 Cloudflare
PTRullis.ns.cloudflare.com
A2a06:98c1:50::ac40:227f 🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A108.162.194.127🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A162.159.38.127 Cloudflare
PTRullis.ns.cloudflare.com
A172.64.34.127🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
MXevil-cc.mail.protection.outlook.com
A2a01:111:f403:c902::16 🇺🇸 Microsoft
PTRmail-byapr04cu00306.inbound.protection.outlook.com
A2a01:111:f403:c936:: 🇺🇸 Microsoft
PTRmail-cy1pr05cu00400.inbound.protection.outlook.com
A2a01:111:f403:f908::1 🇺🇸 Microsoft
PTRmail-bn1pr04cu00101.inbound.protection.outlook.com
A2a01:111:f403:f90d:: 🇺🇸 Microsoft
PTRmail-sn1pr0501cu00200.inbound.protection.outlook.com
A52.101.11.7🇺🇸 Microsoft
PTRmail-sa9pr04cu00107.inbound.protection.outlook.com
A52.101.40.0🇺🇸 Microsoft
PTRmail-cy5pr03cu00300.inbound.protection.outlook.com
A52.101.40.4🇺🇸 Microsoft
PTRmail-cy5pr03cu00204.inbound.protection.outlook.com
A52.101.41.0🇺🇸 Microsoft
PTRmail-byapr05cu00400.inbound.protection.outlook.com
A2606:4700:3032::ac43:d27c 🇺🇸 Cloudflare
A2606:4700:3036::6815:1059 🇺🇸 Cloudflare
A104.21.16.89 Cloudflare
A172.67.210.124🇺🇸 Cloudflare

cc

NSac1.nstld.com
NSac2.nstld.com
NSac3.nstld.com
NSac4.nstld.com

AI analysis

evil.cc is configured to point to the following four IP addresses: 2606:4700:3032::ac43:d27c, 2606:4700:3036::6815:1059, 104.21.16.89, and 172.67.210.124.

IP numbers are shared between evil.cc and other host names, such as 441nn.com, idevi.com, refillvitamin.com, truck-leasing.net, and enacct.org.

Two name servers, moura.ns.cloudflare.com and ullis.ns.cloudflare.com, are assigned the delegation of evil.cc.

Other domains, such as bormay.com, oliviamark.com, poprose.com, zlily.com, and exbass.com, share the same name server setup as evil.cc.

The domain evil.cc shares name servers, at least partially, with other domains such as innthegardens.com, ok-sex.com, kellerford.net, employeegifts.ca, and sharptech.us.

The name servers benedict.ns.cloudflare.com and rajeev.ns.cloudflare.com are frequently utilized in conjunction.

moura.ns.cloudflare.com and ullis.ns.cloudflare.com each point to six IP numbers: 2606:4700:58::a29f:2cd9, 2803:f800:50::6ca2:c3d9, 2a06:98c1:50::ac40:23d9, 108.162.195.217, 162.159.44.217, and 172.64.35.217 for moura.ns.cloudflare.com, and 2606:4700:50::a29f:267f, 2803:f800:50::6ca2:c27f, 2a06:98c1:50::ac40:227f, 108.162.194.127, 162.159.38.127, and 172.64.34.127 for ullis.ns.cloudflare.com.

The mail server, evil-cc.mail.protection.outlook.com, handles evil.cc.

evil-cc.mail.protection.outlook.com is configured to point to eight IP numbers: 2a01:111:f403:c902::16, 2a01:111:f403:c936::, 2a01:111:f403:f908::1, 2a01:111:f403:f90d::, 52.101.11.7, 52.101.40.0, 52.101.40.4, and 52.101.41.0.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

OeisSZM CF johedugfp 2025-09-06