CF1763438333369-tsm20251116095642

IPLIST.NET - phished.io

Search for IP or hostnames:

phished.io checked at 2025-11-18T03:58:53.219Z 1019ms 149/149/149 100% R:12 allDone:true timedOut:false

phished.io

NSdavid.ns.cloudflare.com
A2606:4700:58::adf5:3b98 🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
A2803:f800:50::6ca2:c198 🇨🇷 Cloudflare
PTRdavid.ns.cloudflare.com
A2a06:98c1:50::ac40:2198 🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
A108.162.193.152🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
A172.64.33.152🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
A173.245.59.152🇺🇸 Cloudflare
PTRdavid.ns.cloudflare.com
NSmelissa.ns.cloudflare.com
A2606:4700:50::adf5:3ac7 🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
A2803:f800:50::6ca2:c0c7 🇨🇷 Cloudflare
PTRmelissa.ns.cloudflare.com
A2a06:98c1:50::ac40:20c7 🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
A108.162.192.199🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
A172.64.32.199🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
A173.245.58.199🇺🇸 Cloudflare
PTRmelissa.ns.cloudflare.com
MXphished-io.m-v1.mx.microsoft
A2a01:111:f403:ca04::9 🇮🇪 Microsoft
PTRmail-db7pr03cu00601.inbound.protection.outlook.com
A2a01:111:f403:ca09::5 🇳🇱 Microsoft
PTRmail-am1pr04cu00105.inbound.protection.outlook.com
A2a01:111:f403:ca09::d 🇳🇱 Microsoft
PTRmail-as9pr05cu01305.inbound.protection.outlook.com
A2a01:111:f403:ca09::e 🇳🇱 Microsoft
PTRmail-am7pr05cu00206.inbound.protection.outlook.com
A52.101.68.3🇮🇪 Microsoft
PTRmail-db7pr03cu00403.inbound.protection.outlook.com
A52.101.68.15🇮🇪 Microsoft
PTRmail-db6pr03cu00107.inbound.protection.outlook.com
A52.101.73.2🇳🇱 Microsoft
PTRmail-as9pr07cu00302.inbound.protection.outlook.com
A52.101.73.19🇳🇱 Microsoft
PTRmail-as8pr04cu00803.inbound.protection.outlook.com
A2606:4700::6812:ea2 🇺🇸 Cloudflare
A2606:4700::6812:fa2 🇺🇸 Cloudflare
A104.18.14.162 Cloudflare
A104.18.15.162 Cloudflare

io

NSa0.nic.io
NSa2.nic.io
NSb0.nic.io
NSc0.nic.io

Up

Starts with same word

Starts similarily

AI analysis

The parent of outlook-2024.phished.io, beta-app.phished.io, outlook.phished.io, security.phished.io and enterpriseenrollment.phished.io is phished.io.

phished.io points to four IP numbers: 2606:4700::6812:ea2, 2606:4700::6812:fa2, 104.18.14.162 and 104.18.15.162.

Other host names, for instance www.ashokleyland.com, www.theofficepoint.com, econnect.ashokleyland.com, www.urdushaadi.com and srm.ashokleyland.com share IP numbers with phished.io.

phished.io's delegation is to two name servers david.ns.cloudflare.com and melissa.ns.cloudflare.com.

phished.io shares the same name server configuration as other domains, such as ict-advanced-support.com, theaustraliian.com, drodbox.be, digico.me and bor-jp.com.

phished.io at least partially shares its name servers with other domains, for instance 828win.com, hoga.net, naiasss.com, classicweddinginvitation.com and t3globalprojects.com.

These name servers are commonly used alongside arya.ns.cloudflare.com and tori.ns.cloudflare.com.

Host names with six IP numbers:

david.ns.cloudflare.com points to: 2606:4700:58::adf5:3b98, 2803:f800:50::6ca2:c198, 2a06:98c1:50::ac40:2198, 108.162.193.152, 172.64.33.152 and 173.245.59.152.

melissa.ns.cloudflare.com points to: 2606:4700:50::adf5:3ac7, 2803:f800:50::6ca2:c0c7, 2a06:98c1:50::ac40:20c7, 108.162.192.199, 172.64.32.199 and 173.245.58.199.

phished.io is served by a single mail server, phished-io.m-v1.mx.microsoft.

The host name phished-io.m-v1.mx.microsoft resolves to eight IP numbers: 2a01:111:f403:ca04::9, 2a01:111:f403:ca09::5, 2a01:111:f403:ca09::d, 2a01:111:f403:ca09::e, 52.101.68.3, 52.101.68.15, 52.101.73.2 and 52.101.73.19.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq