CF1757254891783-tsm20250907140122

DNSWHOIS.INFO - evil.to

Search for IP or hostnames:

evil.to checked at 2025-09-07T14:21:31.765Z 258ms 83/83/83 100% R:18

evil.to

NSdns01.manitu.net
A2a00:1828:1000:1148::2 🇩🇪 manitu
PTRdns01.manitu.net
A217.11.48.200🇩🇪 manitu
PTRdns01.manitu.net
NSdns02.manitu.net
A2a00:1828:1000:1149::2 🇩🇪 manitu
PTRdns02.manitu.net
A217.11.49.200🇩🇪 manitu
PTRdns02.manitu.net
MXngcobalt449.manitu.net
A2a00:1828:1000:2549::2 🇩🇪 manitu
PTRngcobalt449.manitu.net
A89.238.73.149🇩🇪 manitu
PTRngcobalt449.manitu.net
A2a00:1828:1000:2549::2 🇩🇪 manitu
PTRngcobalt449.manitu.net
A89.238.73.149🇩🇪 manitu
PTRngcobalt449.manitu.net

to

NSns01.trs-dns.com
NSns10.trs-dns.info
NSns01.trs-dns.net
NSns10.trs-dns.org

AI analysis

The parent of www.evil.to and mx0.evil.to is evil.to.

evil.to points to two IP numbers: 2a00:1828:1000:2549::2 and 89.238.73.149.

IP numbers are shared between evil.to and other host names, such as nexidus.com, labanda.de, spettel.de, heidisql.de, and www.evil.to.

Two name servers, dns01.manitu.net and dns02.manitu.net, are assigned the delegation of evil.to.

Other domains, such as goldrush-game.de, borishennig.de, la-cuba.de, groben.net, and mikroskopwartung.de, share the same name server setup as evil.to.

The domain evil.to shares at least some of its name servers with other domains, such as annaberg6.de.

dns01.manitu.net and dns02.manitu.net both point to two IP numbers each; 2a00:1828:1000:1148::2, 217.11.48.200 for dns01.manitu.net and 2a00:1828:1000:1149::2, 217.11.49.200 for dns02.manitu.net.

The mail server, ngcobalt449.manitu.net, handles evil.to.

The mail server setup of evil.to matches with other domains such as spettel.de, heidisql.de, henno.de, 9ao.de, and nexidus.at.

ngcobalt449.manitu.net points to two IP numbers: 2a00:1828:1000:2549::2 and 89.238.73.149.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

dVMOWVv CF johedugfp 2025-09-07