CF1762710552672-tsm20251109131225

WWW.RTSAK.COM - phished.be

Search for IP or hostnames:

phished.be checked at 2025-11-09T17:49:12.653Z 169ms 146/146/146 100% R:18 allDone:true timedOut:false

phished.be

NSdavid.ns.cloudflare.com
A2606:4700:58::adf5:3b98 🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
A2803:f800:50::6ca2:c198 🇨🇷 Cloudflare
PTRdavid.ns.cloudflare.com
A2a06:98c1:50::ac40:2198 🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
A108.162.193.152🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
A172.64.33.152🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
A173.245.59.152🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
NSmelissa.ns.cloudflare.com
A2606:4700:50::adf5:3ac7 🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
A2803:f800:50::6ca2:c0c7 🇨🇷 Cloudflare
PTRmelissa.ns.cloudflare.com
A2a06:98c1:50::ac40:20c7 🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
A108.162.192.199🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
A172.64.32.199🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
A173.245.58.199🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
MXphished-be.mail.protection.outlook.com
A2a01:111:f403:ca04::1 🇮🇪 Microsoft
PTRmail-db7pr03cu00401.inbound.protection.outlook.com
A2a01:111:f403:ca04::5 🇮🇪 Microsoft
PTRmail-db3pr0202cu00205.inbound.protection.outlook.com
A2a01:111:f403:ca09::5 🇳🇱 Microsoft
PTRmail-am1pr04cu00105.inbound.protection.outlook.com
A2a01:111:f403:ca09::7 🇳🇱 Microsoft
PTRmail-am9pr04cu00107.inbound.protection.outlook.com
A52.101.68.32🇮🇪 Microsoft
PTRmail-db3pr0202cu00200.inbound.protection.outlook.com
A52.101.68.39🇮🇪 Microsoft
PTRmail-db7pr03cu00607.inbound.protection.outlook.com
A52.101.73.12🇳🇱 Microsoft
PTRmail-am4pr0401cu00104.inbound.protection.outlook.com
A52.101.73.28🇳🇱 Microsoft
PTRmail-am7pr05cu00204.inbound.protection.outlook.com
A2606:4700::6812:48f 🇺🇸 Cloudflare
A2606:4700::6812:58f 🇺🇸 Cloudflare
A104.18.4.143 Cloudflare
A104.18.5.143 Cloudflare

be

NSa.nsset.be
NSb.nsset.be
NSc.nsset.be
NSd.nsset.be
NSy.nsset.be
NSz.nsset.be

Starts with same word

Starts similarily

AI analysis

phished.be resolves to four IPs: 2606:4700::6812:48f, 2606:4700::6812:58f, 104.18.4.143 and 104.18.5.143.

Other host names, for instance www.q8.nl, optica2000.com, nir.theregister.co.uk, www.theregister.co.uk and liveinrange.de share IP numbers with phished.be.

phished.be has two name servers: david.ns.cloudflare.com and melissa.ns.cloudflare.com.

phished.be shares the same name server setup as other domains, for example edmontonbouncycastle.ca, anaskhattar.com, nadellpatisserie.com, maltco.com and federal-internet-services.com.

phished.be shares some name servers with other domains, for example bradley-landscaping.com, umecc.com, nastravelsolutions.com, freeconvert.net and gameex.net.

These name servers are commonly used together with devin.ns.cloudflare.com and arya.ns.cloudflare.com.

Host names with six IP numbers: david.ns.cloudflare.com points to: 2606:4700:58::adf5:3b98, 2803:f800:50::6ca2:c198, 2a06:98c1:50::ac40:2198, 108.162.193.152, 172.64.33.152 and 173.245.59.152; melissa.ns.cloudflare.com points to: 2606:4700:50::adf5:3ac7, 2803:f800:50::6ca2:c0c7, 2a06:98c1:50::ac40:20c7, 108.162.192.199, 172.64.32.199 and 173.245.58.199.

phished.be is handled by a single mail server, phished-be.mail.protection.outlook.com.

Host phished-be.mail.protection.outlook.com points to eight IP numbers: 2a01:111:f403:ca04::1, 2a01:111:f403:ca04::5, 2a01:111:f403:ca09::5, 2a01:111:f403:ca09::7, 52.101.68.32, 52.101.68.39, 52.101.73.12 and 52.101.73.28.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq