CF1757536716722-tsm20250910161120

WWW.RTSAK.COM - evil.cc

Search for IP or hostnames:

evil.cc checked at 2025-09-10T20:38:36.694Z 293ms 146/146/146 100% R:15

evil.cc

NSmoura.ns.cloudflare.com
A2606:4700:58::a29f:2cd9 🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A2803:f800:50::6ca2:c3d9 🇨🇷 Cloudflare
PTRmoura.ns.cloudflare.com
A2a06:98c1:50::ac40:23d9 🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A108.162.195.217🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A162.159.44.217 Cloudflare
PTRmoura.ns.cloudflare.com
A172.64.35.217🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
NSullis.ns.cloudflare.com
A2606:4700:50::a29f:267f 🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A2803:f800:50::6ca2:c27f 🇨🇷 Cloudflare
PTRullis.ns.cloudflare.com
A2a06:98c1:50::ac40:227f 🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A108.162.194.127🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A162.159.38.127 Cloudflare
PTRullis.ns.cloudflare.com
A172.64.34.127🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
MXevil-cc.mail.protection.outlook.com
A2a01:111:f403:c902::2 🇺🇸 Microsoft
PTRmail-sj0pr03cu01602.inbound.protection.outlook.com
A2a01:111:f403:c902::6 🇺🇸 Microsoft
PTRmail-sj0pr21cu00106.inbound.protection.outlook.com
A2a01:111:f403:c927::1 🇺🇸 Microsoft
PTRmail-bn8pr05cu00301.inbound.protection.outlook.com
A2a01:111:f403:f901:: 🇺🇸 Microsoft
PTRmail-mn2pr04cu00200.inbound.protection.outlook.com
A52.101.10.16🇺🇸 Microsoft
PTRmail-bn6pr21cu00500.inbound.protection.outlook.com
A52.101.40.4🇺🇸 Microsoft
PTRmail-cy5pr03cu00204.inbound.protection.outlook.com
A52.101.42.14🇺🇸 Microsoft
PTRmail-mw2pr04cu00106.inbound.protection.outlook.com
A52.101.194.4🇺🇸 Microsoft
PTRmail-ch4pr04cu00104.inbound.protection.outlook.com
A2606:4700:3032::ac43:d27c 🇺🇸 Cloudflare
A2606:4700:3036::6815:1059 🇺🇸 Cloudflare
A104.21.16.89 Cloudflare
A172.67.210.124🇺🇸 Cloudflare

cc

NSac1.nstld.com
NSac2.nstld.com
NSac3.nstld.com
NSac4.nstld.com

AI analysis

The DNS record evil.cc resolves to the following IP addresses: 2606:4700:3032::ac43:d27c, 2606:4700:3036::6815:1059, 104.21.16.89, and 172.67.210.124.

The IP numbers are shared by evil.cc with other host names such as 441nn.com, idevi.com, refillvitamin.com, truck-leasing.net, and enacct.org.

Two name servers, moura.ns.cloudflare.com and ullis.ns.cloudflare.com, are delegated to evil.cc.

The name server setup for evil.cc is shared with other domains such as bormay.com, oliviamark.com, poprose.com, zlily.com, and exbass.com.

The name servers of evil.cc are at least partially shared with other domains such as innthegardens.com, kellerford.net, employeegifts.ca, sharptech.us, and endocrine-abstracts.org.

The name servers benedict.ns.cloudflare.com and rajeev.ns.cloudflare.com are frequently utilized in conjunction with these name servers.

There are two DNS records: moura.ns.cloudflare.com and ullis.ns.cloudflare.com. moura.ns.cloudflare.com resolves to 2606:4700:58::a29f:2cd9, 2803:f800:50::6ca2:c3d9, 2a06:98c1:50::ac40:23d9, 108.162.195.217, 162.159.44.217, and 172.64.35.217, while ullis.ns.cloudflare.com resolves to 2606:4700:50::a29f:267f, 2803:f800:50::6ca2:c27f, 2a06:98c1:50::ac40:227f, 108.162.194.127, 162.159.38.127, and 172.64.34.127.

The mail server, evil-cc.mail.protection.outlook.com, manages evil.cc.

evil-cc.mail.protection.outlook.com is associated with the following eight IP numbers: 2a01:111:f403:c902::2, 2a01:111:f403:c902::6, 2a01:111:f403:c927::1, 2a01:111:f403:f901::, 52.101.10.16, 52.101.40.4, 52.101.42.14, and 52.101.194.4.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

OQupANP CF johedugfp 2025-09-10