CF1757207160200-tsm20250906182357

WWW.RTSAK.COM - evilweb.net

Search for IP or hostnames:

evilweb.net checked at 2025-09-07T01:06:00.168Z 203ms 143/143/143 100% R:15

evilweb.net

NSbob.ns.cloudflare.com
A2606:4700:58::adf5:3b68 🇺🇸 Cloudflare
PTRbob.ns.cloudflare.com
A2803:f800:50::6ca2:c168 🇨🇷 Cloudflare
PTRbob.ns.cloudflare.com
A2a06:98c1:50::ac40:2168 🇺🇸 Cloudflare
PTRbob.ns.cloudflare.com
A108.162.193.104🇺🇸 Cloudflare
PTRbob.ns.cloudflare.com
A172.64.33.104🇺🇸 Cloudflare
PTRbob.ns.cloudflare.com
A173.245.59.104🇺🇸 Cloudflare
PTRbob.ns.cloudflare.com
NSnola.ns.cloudflare.com
A2606:4700:50::adf5:3ad4 🇺🇸 Cloudflare
PTRnola.ns.cloudflare.com
A2803:f800:50::6ca2:c0d4 🇨🇷 Cloudflare
PTRnola.ns.cloudflare.com
A2a06:98c1:50::ac40:20d4 🇺🇸 Cloudflare
PTRnola.ns.cloudflare.com
A108.162.192.212🇺🇸 Cloudflare
PTRnola.ns.cloudflare.com
A172.64.32.212🇺🇸 Cloudflare
PTRnola.ns.cloudflare.com
A173.245.58.212🇺🇸 Cloudflare
PTRnola.ns.cloudflare.com
MXevilweb-net.mail.protection.outlook.com
A2a01:111:f403:cc31:: 🇦🇺 Microsoft
PTRmail-sy2pr01cu00300.inbound.protection.outlook.com
A2a01:111:f403:cc31::1 🇦🇺 Microsoft
PTRmail-sy8pr01cu00101.inbound.protection.outlook.com
A2a01:111:f403:cc33:: 🇦🇺 Microsoft
PTRmail-meupr01cu00200.inbound.protection.outlook.com
A2a01:111:f403:cc33::1 🇦🇺 Microsoft
PTRmail-meupr01cu00301.inbound.protection.outlook.com
A52.101.149.0🇦🇺 Microsoft
PTRmail-sy2pr01cu00300.inbound.protection.outlook.com
A52.101.149.1🇦🇺 Microsoft
PTRmail-sy8pr01cu00101.inbound.protection.outlook.com
A52.101.151.0🇦🇺 Microsoft
PTRmail-meupr01cu00200.inbound.protection.outlook.com
A52.101.151.5🇦🇺 Microsoft
PTRmail-meupr01cu00305.inbound.protection.outlook.com
A2606:4700:3031::ac43:83e8 🇺🇸 Cloudflare
A2606:4700:3036::6815:c1b 🇺🇸 Cloudflare
A104.21.12.27 Cloudflare
A172.67.131.232🇺🇸 Cloudflare

net

NSa.gtld-servers.net
NSb.gtld-servers.net
NSc.gtld-servers.net
NSd.gtld-servers.net
NSe.gtld-servers.net
NSf.gtld-servers.net
NSg.gtld-servers.net
NSh.gtld-servers.net
NSi.gtld-servers.net
NSj.gtld-servers.net
NSk.gtld-servers.net
NSl.gtld-servers.net
NSm.gtld-servers.net

AI analysis

The DNS record evilweb.net resolves to the following IP addresses: 2606:4700:3031::ac43:83e8, 2606:4700:3036::6815:c1b, 104.21.12.27, and 172.67.131.232.

The IP numbers are shared by evilweb.net with other host names such as seramo.ir, scmswlkj.com, mobileclockin.com, geraldolabs.com, and sanayimutfak.com.tr.

Two name servers, bob.ns.cloudflare.com and nola.ns.cloudflare.com, are delegated to evilweb.net.

The name server setup for evilweb.net is shared with other domains such as hasbeens.se, localmedia.ch, kejelsa.com, englishcore.com.mx, and nuttre.com.mx.

The name servers of evilweb.net are at least partially shared with other domains such as dhmplumbing.com.au, themindanaojournal.com, markspam.com, 101financiallessons.com, and bluelinermarketing.com.

There are two DNS records: bob.ns.cloudflare.com and nola.ns.cloudflare.com. bob.ns.cloudflare.com resolves to 2606:4700:58::adf5:3b68, 2803:f800:50::6ca2:c168, 2a06:98c1:50::ac40:2168, 108.162.193.104, 172.64.33.104, and 173.245.59.104, while nola.ns.cloudflare.com resolves to 2606:4700:50::adf5:3ad4, 2803:f800:50::6ca2:c0d4, 2a06:98c1:50::ac40:20d4, 108.162.192.212, 172.64.32.212, and 173.245.58.212.

The mail server, evilweb-net.mail.protection.outlook.com, manages evilweb.net.

evilweb-net.mail.protection.outlook.com is associated with the following eight IP numbers: 2a01:111:f403:cc31::, 2a01:111:f403:cc31::1, 2a01:111:f403:cc33::, 2a01:111:f403:cc33::1, 52.101.149.0, 52.101.149.1, 52.101.151.0, and 52.101.151.5.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

QSxzYZe CF johedugfp 2025-09-07