CF1757744979185-tsm20250912070358

IPLIST.NET - evil.cc

Search for IP or hostnames:

evil.cc checked at 2025-09-13T06:29:39.101Z 913ms 146/146/146 100% R:13

evil.cc

NSmoura.ns.cloudflare.com
A2606:4700:58::a29f:2cd9 🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A2803:f800:50::6ca2:c3d9 🇨🇷 Cloudflare
PTRmoura.ns.cloudflare.com
A2a06:98c1:50::ac40:23d9 🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A108.162.195.217🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
A162.159.44.217 Cloudflare
PTRmoura.ns.cloudflare.com
A172.64.35.217🇺🇸 Cloudflare
PTRmoura.ns.cloudflare.com
NSullis.ns.cloudflare.com
A2606:4700:50::a29f:267f 🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A2803:f800:50::6ca2:c27f 🇨🇷 Cloudflare
PTRullis.ns.cloudflare.com
A2a06:98c1:50::ac40:227f 🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A108.162.194.127🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
A162.159.38.127 Cloudflare
PTRullis.ns.cloudflare.com
A172.64.34.127🇺🇸 Cloudflare
PTRullis.ns.cloudflare.com
MXevil-cc.mail.protection.outlook.com
A2a01:111:f403:c902:: 🇺🇸 Microsoft
PTRmail-sj2pr05cu00300.inbound.protection.outlook.com
A2a01:111:f403:c946:: 🇺🇸 Microsoft
PTRmail-ch5pr02cu00200.inbound.protection.outlook.com
A2a01:111:f403:f902::2 🇺🇸 Microsoft
PTRmail-mn2pr02cu00202.inbound.protection.outlook.com
A2a01:111:f403:f907:: 🇺🇸 Microsoft
A52.101.40.24🇺🇸 Microsoft
PTRmail-cy5pr05cu00100.inbound.protection.outlook.com
A52.101.42.6🇺🇸 Microsoft
PTRmail-mw2pr02cu00306.inbound.protection.outlook.com
A52.101.194.3🇺🇸 Microsoft
PTRmail-ch1pr04cu00103.inbound.protection.outlook.com
A52.101.194.4🇺🇸 Microsoft
PTRmail-ch4pr04cu00104.inbound.protection.outlook.com
A2606:4700:3032::ac43:d27c 🇺🇸 Cloudflare
A2606:4700:3036::6815:1059 🇺🇸 Cloudflare
A104.21.16.89 Cloudflare
A172.67.210.124🇺🇸 Cloudflare

cc

NSac1.nstld.com
NSac2.nstld.com
NSac3.nstld.com
NSac4.nstld.com

Starts with same word

Starts similarily

AI analysis

evil.cc is associated with the following four IP addresses: 2606:4700:3032::ac43:d27c, 2606:4700:3036::6815:1059, 104.21.16.89, and 172.67.210.124.

The IP numbers for evil.cc are also shared by other host names such as 441nn.com, idevi.com, refillvitamin.com, truck-leasing.net, and enacct.org.

Two name servers, moura.ns.cloudflare.com and ullis.ns.cloudflare.com, are delegated for evil.cc.

The name server setup of evil.cc is identical to that of several other domains, such as bormay.com, oliviamark.com, poprose.com, zlily.com, and exbass.com.

The domain evil.cc shares name servers, at least in part, with other domains such as innthegardens.com, kellerford.net, employeegifts.ca, sharptech.us, and endocrine-abstracts.org.

Name servers benedict.ns.cloudflare.com and rajeev.ns.cloudflare.com are commonly utilized in conjunction with these name servers.

moura.ns.cloudflare.com and ullis.ns.cloudflare.com both point to six IP numbers each: 2606:4700:58::a29f:2cd9, 2803:f800:50::6ca2:c3d9, 2a06:98c1:50::ac40:23d9, 108.162.195.217, 162.159.44.217, and 172.64.35.217 for moura.ns.cloudflare.com, and 2606:4700:50::a29f:267f, 2803:f800:50::6ca2:c27f, 2a06:98c1:50::ac40:227f, 108.162.194.127, 162.159.38.127, and 172.64.34.127 for ullis.ns.cloudflare.com.

The mail server, evil-cc.mail.protection.outlook.com, manages evil.cc.

The DNS record evil-cc.mail.protection.outlook.com resolves to the following IP addresses: 2a01:111:f403:c902::, 2a01:111:f403:c946::, 2a01:111:f403:f902::2, 2a01:111:f403:f907::, 52.101.40.24, 52.101.42.6, 52.101.194.3, and 52.101.194.4.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

Wnehifc CF johedugfp 2025-09-13