CF1758082378820-tsm20250915222102

IPLIST.NET - malicious.codes

Search for IP or hostnames:

malicious.codes checked at 2025-09-17T04:12:58.777Z 202ms 101/101/101 100% R:11

malicious.codes

NSdns1.registrar-servers.com
A2610:a1:1024::200 🇺🇸 Neustar
PTRdns1.namecheaphosting.com
PTRdns1.registrar-servers.com
A156.154.132.200🇺🇸 Neustar
PTRdns1.namecheaphosting.com
PTRdns1.registrar-servers.com
NSdns2.registrar-servers.com
A2610:a1:1025::200 🇺🇸 Neustar
PTRdns2.namecheaphosting.com
PTRdns2.registrar-servers.com
A156.154.133.200🇺🇸 Neustar
PTRdns2.namecheaphosting.com
PTRdns2.registrar-servers.com
MXeforward1.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
MXeforward2.registrar-servers.com
A162.255.118.52🇺🇸 Namecheap
PTReforward2.registrar-servers.com
MXeforward3.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
MXeforward4.registrar-servers.com
A162.255.118.52🇺🇸 Namecheap
PTReforward2.registrar-servers.com
MXeforward5.registrar-servers.com
A162.255.118.51🇺🇸 Namecheap
PTReforward1.registrar-servers.com
PTReforward3.registrar-servers.com
A162.255.119.242🇺🇸 Namecheap

codes

NSv0n0.nic.codes
NSv0n1.nic.codes
NSv0n2.nic.codes
NSv0n3.nic.codes
NSv2n0.nic.codes
NSv2n1.nic.codes

Starts with same word

Starts similarily

AI analysis

malicious.codes resolves to one IP number: 162.255.119.242.

other host names including howtocureasthma.com, fortlauderdalecarwrap.com, eansiklopedi.com, eudoxus.net and alarmdatabase.com share IP numbers with malicious.codes.

malicious.codes is delegated to two name servers dns1.registrar-servers.com and dns2.registrar-servers.com.

malicious.codes shares the same name server setup as other domains, for instance aclimatedexec.com, gazdasag.info, cocowyo.com, s3clab.com and tomsigler.com.

malicious.codes shares at least some name servers with other domains, for example dy-a-flex.net, omsglobal.net and jetpowered.com.

These name servers are commonly used with dns3.registrar-servers.com, dns4.registrar-servers.com and dns5.registrar-servers.com.

Host names with two IP numbers:

The host name dns1.registrar-servers.com points to 2610:a1:1024::200 and 156.154.132.200; the host name dns2.registrar-servers.com points to 2610:a1:1025::200 and 156.154.133.200.

malicious.codes is handled by five mail servers: eforward1.registrar-servers.com, eforward2.registrar-servers.com, eforward3.registrar-servers.com, eforward4.registrar-servers.com and eforward5.registrar-servers.com.

malicious.codes shares some mail servers with other domains, at least partially, for instance dcg.me, kingstonsportscars.co.uk, ekgmon.com, slammies.com and turack.farm.

These mail servers are commonly used alongside eforward6.registrar-servers.com and eforward7.registrar-servers.com.

Host names with a single IP

eforward1.registrar-servers.com points to: 162.255.118.51

eforward2.registrar-servers.com points to: 162.255.118.52

eforward3.registrar-servers.com points to: 162.255.118.51

eforward4.registrar-servers.com points to: 162.255.118.52

eforward5.registrar-servers.com points to: 162.255.118.51

Host names that point to 162.255.118.51: eforward1.registrar-servers.com, eforward3.registrar-servers.com and eforward5.registrar-servers.com

Host names that point to 162.255.118.52: eforward2.registrar-servers.com and eforward4.registrar-servers.com

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

FENDbEt CF johedugfp 2025-09-17