evil-p.com - robtex.com

evil-p.com

DNSSEC⚠️ Not signed
A13.248.243.5πŸ‡ΊπŸ‡Έ Amazon13.248.240.0/20
PTRa16e665f42988324c.awsglobalaccelerator.com
A76.223.105.230πŸ‡ΊπŸ‡Έ Amazon76.223.96.0/20
NSns23.domaincontrol.com ⭐
A2603:5:2151::cπŸ‡ΊπŸ‡Έ GODADDY-DNS2603:5:2150::/44
PTRns23.domaincontrol.com
A97.74.101.12πŸ‡ΊπŸ‡Έ GODADDY-DNS97.74.100.0/23
PTRns23.domaincontrol.com
NSns24.domaincontrol.com
A2603:5:2251::cπŸ‡ΊπŸ‡Έ GODADDY-DNS2603:5:2250::/44
PTRns24.domaincontrol.com
A173.201.69.12πŸ‡ΊπŸ‡Έ GODADDY-DNS173.201.68.0/23
PTRns24.domaincontrol.com
MXevilp-com01b.mail.protection.outlook.com ⭐
A2a01:111:f403:c91d::bπŸ‡ΊπŸ‡Έ Microsoft2a01:111:f000::/36
PTRmail-mw2pr02cu00603.inbound.protection.outlook.com
A2a01:111:f403:c92c::1πŸ‡ΊπŸ‡Έ Microsoft2a01:111:f000::/36
PTRmail-dm6pr03cu00401.inbound.protection.outlook.com
A2a01:111:f403:f802::3πŸ‡ΊπŸ‡Έ Microsoft2a01:111:f000::/36
PTRmail-sj0pr03cu01403.inbound.protection.outlook.com
A2a01:111:f403:f908::πŸ‡ΊπŸ‡Έ Microsoft2a01:111:f000::/36
PTRmail-bn1pr21cu00100.inbound.protection.outlook.com
A52.101.8.44πŸ‡ΊπŸ‡Έ Microsoft52.96.0.0/12 MICROSOFT
PTRmail-dm5pr04cu00104.inbound.protection.outlook.com
A52.101.10.10πŸ‡ΊπŸ‡Έ Microsoft52.96.0.0/12 MICROSOFT
PTRmail-bn8pr05cu00102.inbound.protection.outlook.com
A52.101.42.14πŸ‡ΊπŸ‡Έ Microsoft52.96.0.0/12 MICROSOFT
PTRmail-mw2pr04cu00106.inbound.protection.outlook.com
A52.101.194.4πŸ‡ΊπŸ‡Έ Microsoft52.96.0.0/12 MICROSOFT
PTRmail-ch4pr04cu00104.inbound.protection.outlook.com
TXTNETORGFT11026212.onmicrosoft.com
TXTv=spf1 include:secureserver.net -all
SOAns23.domaincontrol.comdns@jomax.net 2023-07-25 #74

com

Same first word

Similar names

DNS History

5 records (5 active, 0 former)

NSns23.domaincontrol.comns24.domaincontrol.comMXevilp-com01b.mail.protection.outlook.comA13.248.243.576.223.105.230
●NSns23.domaincontrol.com2026-03-23 β†’ 2026-03-27 Β· 2 obs
● 2026-03-23 13:11:04
● 2026-03-27 05:03:36
●NSns24.domaincontrol.com2026-03-23 β†’ 2026-03-27 Β· 2 obs
● 2026-03-23 13:11:04
● 2026-03-27 05:03:36
●MXevilp-com01b.mail.protection.outlook.com2026-03-23 β†’ 2026-03-27 Β· 2 obs
● 2026-03-23 13:11:04
● 2026-03-27 05:03:36
●A13.248.243.52026-03-23 β†’ 2026-03-27 Β· 2 obs
● 2026-03-23 13:11:04
● 2026-03-27 05:03:36
●A76.223.105.2302026-03-23 β†’ 2026-03-27 Β· 2 obs
● 2026-03-23 13:11:04
● 2026-03-27 05:03:36

πŸ” DNS Trace

πŸ“‹ Delegation Chain

ZoneNameserversGlue
coml.gtld-servers.net, j.gtld-servers.net, h.gtld-servers.net, d.gtld-servers.net...-
evil-p.comns23.domaincontrol.com, ns24.domaincontrol.com4 records

βœ… Authoritative Response

Server:173.201.69.12

NS records: ns23.domaincontrol.com, ns24.domaincontrol.com

πŸ”’ DNSSEC Status

πŸ” Secure (DNSSEC validated)

Chain of trust verified from root to domain

⏱️ Timing

Total: 435ms | Queries: -

πŸ“„ Records

TypeCountSample Data
A213.248.243.5, 76.223.105.230
NS2ns23.domaincontrol.com, ns24.domaincontrol.com
MX1evilp-com01b.mail.protection.outlook.com
TXT2NETORGFT11026212.onmicrosoft.com, v=spf1 include:secureserver.net -all
SOA1ns23.domaincontrol.com dns.jomax.net

πŸ“Œ Glue Records Collected

Total: 4

Out-of-bailiwick: 4 (ns23.domaincontrol.com, ns23.domaincontrol.com, ns24.domaincontrol.com...)

Analysis

IP Addresses

evil-p.com points to two IP numbers: 13.248.243.5 and 76.223.105.230.

Other host names such as intricate.xyz, gcemakina.me, delawarrcellars.com, impactservices.co.in and dribl.co share IPs with evil-p.com.

Name Servers

Two name servers ns23.domaincontrol.com and ns24.domaincontrol.com handle the delegation for evil-p.com.

evil-p.com shares the same name server setup as other domains, for example pote.co.in, scvhba.com, mostmonth.info, e-basket.org and kinsearch.org.

Host names with two IP numbers:

ns23.domaincontrol.com points to 2603:5:2151::c and 97.74.101.12.

ns24.domaincontrol.com points to 2603:5:2251::c and 173.201.69.12.

Mail Servers

The evilp-com01b.mail.protection.outlook.com mail server handles evil-p.com.

evilp-com01b.mail.protection.outlook.com points to eight IP numbers: 2a01:111:f403:c91d::b, 2a01:111:f403:c92c::1, 2a01:111:f403:f802::3, 2a01:111:f403:f908::, 52.101.8.44, 52.101.10.10, 52.101.42.14 and 52.101.194.4.