evil.com - robtex.com
evil.com
| DNSSEC | β οΈ Not signed | ||||||
| A | 66.96.146.129πΊπΈ EIG-2987366.96.128.0/18 Endurance International Group, Inc | ||||||
| PTR | 129.146.96.66.static.eigbox.net | ||||||
| NS | ns1.verio.com β | ||||||
| A | 66.96.142.149πΊπΈ EIG-2987366.96.128.0/18 Endurance International Group, Inc | ||||||
| PTR | 149.142.96.66.static.eigbox.net | ||||||
| NS | ns2.verio.com | ||||||
| A | 65.254.254.161πΊπΈ EIG-2987365.254.224.0/19 TML Customer | ||||||
| PTR | 65-254-254-161.yourhostingaccount.com | ||||||
| MX | mx.evil.com β | ||||||
| A | 66.96.140.158πΊπΈ EIG-2987366.96.128.0/18 Endurance International Group, Inc | ||||||
| PTR | 158.140.96.66.static.eigbox.net | ||||||
| A | 66.96.140.159πΊπΈ EIG-2987366.96.128.0/18 Endurance International Group, Inc | ||||||
| PTR | 159.140.96.66.static.eigbox.net | ||||||
| TXT | v=spf1 ip4:66.96.128.0/18 include:websitewelcome.com ?all | ||||||
| SOA | ns1.verio.comdnsadmin@verio.com 2016-11-17 #29 | ||||||
com
| DNSSEC | π Signed (DS record present) | ||||||
| NS | a.gtld-servers.net β | ||||||
| NS | b.gtld-servers.net | ||||||
| NS | c.gtld-servers.net | ||||||
| NS | d.gtld-servers.net | ||||||
| NS | e.gtld-servers.net | ||||||
| NS | f.gtld-servers.net | ||||||
| NS | g.gtld-servers.net | ||||||
| NS | h.gtld-servers.net | ||||||
| NS | i.gtld-servers.net | ||||||
| NS | j.gtld-servers.net | ||||||
| NS | k.gtld-servers.net | ||||||
| NS | l.gtld-servers.net | ||||||
| NS | m.gtld-servers.net | ||||||
| SOA | a.gtld-servers.netnstld@verisign-grs.com serial=1776985156 | ||||||
rank #93852 in the tld
β οΈ On DNS blocklist: pro.plus, tif, ultimate
WOT: SAFE (67/100)
π Tranco rank: #498,714
Previously MX for
Subdomains
www.evil.com |
mx.evil.com |
relay.evil.com |
c2-server.evil.com |
Same first word
Similar names
DNS History
11 records (4 active, 7 former)
βNSns1.best.com2008-08-18 β 2008-08-18 Β· 3 obs
β 2015-08-01 13:48:38
β 2026-04-23 23:25:58
βNSns1.secure.net2015-08-01 β 2016-10-11 Β· 5 obs
β 2015-08-01 13:48:38
β 2016-10-11 08:04:52
β 2017-01-04 01:54:12
β 2026-04-23 23:25:58
βNSns1.verio.com2017-01-04 β 2026-04-23 Β· 3 obs
β 2017-01-04 01:54:12
β 2026-04-23 23:25:58
βNSns2.best.com2008-08-18 β 2008-08-18 Β· 3 obs
β 2015-08-01 13:48:38
β 2026-04-23 23:25:58
βNSns2.secure.net2015-08-01 β 2016-10-11 Β· 5 obs
β 2015-08-01 13:48:38
β 2016-10-11 08:04:52
β 2017-01-04 01:54:12
β 2026-04-23 23:25:58
βNSns2.verio.com2017-01-04 β 2026-04-23 Β· 3 obs
β 2017-01-04 01:54:12
β 2026-04-23 23:25:58
βNSns3.best.com2008-08-18 β 2008-08-18 Β· 3 obs
β 2015-08-01 13:48:38
β 2026-04-23 23:25:58
βMXevil.com2008-08-18 β 2016-10-11 Β· 4 obs
β 2016-10-11 08:04:52
β 2017-01-04 01:54:12
β 2026-04-23 23:25:58
βMXmx.evil.com2017-01-04 β 2026-04-23 Β· 3 obs
β 2017-01-04 01:54:12
β 2026-04-23 23:25:58
βA192.220.74.1792008-08-18 β 2016-10-11 Β· 4 obs
β 2016-10-11 08:04:52
β 2017-01-04 01:54:12
β 2026-04-23 23:25:58
βA66.96.146.1292017-01-04 β 2026-04-23 Β· 3 obs
β 2017-01-04 01:54:12
β 2026-04-23 23:25:58
π DNS Trace
π Delegation Chain
| Zone | Nameservers | Glue |
|---|---|---|
| com | i.gtld-servers.net, h.gtld-servers.net, m.gtld-servers.net, f.gtld-servers.net... | - |
| evil.com | ns1.verio.com, ns2.verio.com | 2 records |
β Authoritative Response
Server:65.254.254.161
NS records: ns1.verio.com, ns2.verio.com
π DNSSEC Status
β οΈ Insecure (no DNSSEC)
No DS record for evil.com (unsigned zone)
β±οΈ Timing
Total: 208ms | Queries: -
π Records
| Type | Count | Sample Data |
|---|---|---|
| A | 1 | 66.96.146.129 |
| NS | 2 | ns1.verio.com, ns2.verio.com |
| MX | 1 | mx.evil.com (pri: 30) |
| TXT | 1 | v=spf1 ip4:66.96.128.0/18 include:websit |
| SOA | 1 | ns1.verio.com dnsadmin.verio.com |
π Glue Records Collected
Total: 2
Out-of-bailiwick: 2 (ns1.verio.com, ns2.verio.com)
Analysis
Hierarchy
evil.com is a parent of www.evil.com, mx.evil.com, relay.evil.com and c2-server.evil.com.
IP Addresses
evil.com points to an IP address: 66.96.146.129.
other host names include whippleware.com, worlddystoniacongress.org, mail.recordboard.com, mail.mail.golfun.net and trantor.com; they share IP numbers with evil.com.
Name Servers
Two name servers ns1.verio.com and ns2.verio.com handle the delegation for evil.com.
evil.com shares the same name server setup as other domains, for instance zumak.net, silentrazor.com, theciderroom.com, wilsonmanagement.com and brianlamprell.com.
evil.com at least partially shares name servers with other domains, for instance africaneastern.com, bassettassoc.com, online-work-order-software.com, interviewvillage.net and binaryprairie.org.
These name servers are commonly used with the following: ns1.yourhostingaccount.com, ns2.yourhostingaccount.com, ns100.apollohosting.com and ns101.apollohosting.com.
Host names with one IP:
ns1.verio.com points to: 66.96.142.149
ns2.verio.com points to: 65.254.254.161
Mail Servers
evil.com is handled by a single mail server, mx.evil.com.
evil.com shares the same mail server setup as other domains such as relay.evil.com, c2-server.evil.com and www.evil.com.
mx.evil.com resolves to two IPs: 66.96.140.158 and 66.96.140.159.