evilcode.com - robtex.com

evilcode.com

DNSSEC⚠️ Not signed
NStodd.ns.cloudflare.com
A2606:4700:58::adf5:3b92🇺🇸 Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtodd.ns.cloudflare.com
A2803:f800:50::6ca2:c192🇨🇷 Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRtodd.ns.cloudflare.com
A2a06:98c1:50::ac40:2192🇺🇸 Cloudflare2a06:98c1:50::/45
PTRtodd.ns.cloudflare.com
A108.162.193.146🇺🇸 Cloudflare108.162.193.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtodd.ns.cloudflare.com
A172.64.33.146🇺🇸 Cloudflare172.64.33.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtodd.ns.cloudflare.com
A173.245.59.146🇺🇸 Cloudflare173.245.59.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRtodd.ns.cloudflare.com
NSyolanda.ns.cloudflare.com
A2606:4700:50::adf5:3af1🇺🇸 Cloudflare2606:4700:50::/44 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRyolanda.ns.cloudflare.com
A2803:f800:50::6ca2:c0f1🇨🇷 Cloudflare2803:f800:50::/45 LACNIC generated route6 for CloudFlare Latin America S.R.L
PTRyolanda.ns.cloudflare.com
A2a06:98c1:50::ac40:20f1🇺🇸 Cloudflare2a06:98c1:50::/45
PTRyolanda.ns.cloudflare.com
A108.162.192.241🇺🇸 Cloudflare108.162.192.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRyolanda.ns.cloudflare.com
A172.64.32.241🇺🇸 Cloudflare172.64.32.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRyolanda.ns.cloudflare.com
A173.245.58.241🇺🇸 Cloudflare173.245.58.0/24 , Inc. 101 Townsend Street, San Francisco, California 94107, US
PTRyolanda.ns.cloudflare.com
MXaspmx.l.google.com
A2607:f8b0:4004:c17::1a🇺🇸 Google2607:f8b0:4004::/48
PTRbl-in-f26.1e100.net
A142.251.167.27🇺🇸 Google142.251.167.0/24
PTRww-in-f27.1e100.net
MXalt1.aspmx.l.google.com(5)
A2800:3f0:4003:c0f::1b🇨🇱 Google2800:3f0:4003::/48
A108.177.123.27🇺🇸 Google108.177.123.0/24
PTRlcscld-in-f27.1e100.net
MXalt2.aspmx.l.google.com(5)
A2a00:1450:400b:c02::1b🇮🇪 Google2a00:1450:400b::/48
PTRdj-in-f27.1e100.net
A172.253.116.26🇺🇸 Google172.253.116.0/24
PTRdj-in-f26.1e100.net
MXalt3.aspmx.l.google.com(10)
A2a00:1450:4009:c0f::1b🇬🇧 Google2a00:1450:4009::/48
PTRyulhrs-in-f27.1e100.net
A192.178.223.26🇺🇸 Google192.178.223.0/24
PTRyulhrs-in-f26.1e100.net
MXalt4.aspmx.l.google.com(10)
A2a00:1450:400c:c23::1a🇧🇪 Google2a00:1450:400c::/48
PTRyubrupd-in-f26.1e100.net
A172.253.157.27🇺🇸 Google172.253.0.0/16
PTRyubrupd-in-f27.1e100.net
TXTv=spf1 include:_spf.google.com ~all
SOAtodd.ns.cloudflare.comdns@cloudflare.com serial=2408150450

com

Same first word

Similar names

DNS History

17 records (7 active, 10 former)

200920112013201520172019202120232025NStodd.ns.cloudflare.comyolanda.ns.cloudflare.comns-cloud-d1.googledomains.comns-cloud-d2.googledomains.comns-cloud-d3.googledomains.comns-cloud-d4.googledomains.comns1.domainmonger.comns2.domainmonger.comMXalt1.aspmx.l.google.comalt2.aspmx.l.google.comalt3.aspmx.l.google.comalt4.aspmx.l.google.comaspmx.l.google.comaspmx2.googlemail.comaspmx3.googlemail.comaspmx4.googlemail.comaspmx5.googlemail.com
NSns-cloud-d1.googledomains.com2015-08-22 → 2017-09-01 · 5 obs
○ 2008-12-11 11:27:04
● 2015-08-22 00:24:40
● 2017-09-01 20:17:34
○ 2026-03-02 08:13:18
○ 2026-07-05 07:29:54
NSns-cloud-d2.googledomains.com2015-08-22 → 2017-09-01 · 5 obs
○ 2008-12-11 11:27:04
● 2015-08-22 00:24:40
● 2017-09-01 20:17:34
○ 2026-03-02 08:13:18
○ 2026-07-05 07:29:54
NSns-cloud-d3.googledomains.com2015-08-22 → 2017-09-01 · 5 obs
○ 2008-12-11 11:27:04
● 2015-08-22 00:24:40
● 2017-09-01 20:17:34
○ 2026-03-02 08:13:18
○ 2026-07-05 07:29:54
NSns-cloud-d4.googledomains.com2015-08-22 → 2017-09-01 · 5 obs
○ 2008-12-11 11:27:04
● 2015-08-22 00:24:40
● 2017-09-01 20:17:34
○ 2026-03-02 08:13:18
○ 2026-07-05 07:29:54
NSns1.domainmonger.com2008-12-11 → 2008-12-11 · 3 obs
● 2008-12-11 11:27:04
○ 2015-08-22 00:24:40
○ 2026-07-05 07:29:54
NSns2.domainmonger.com2008-12-11 → 2008-12-11 · 3 obs
● 2008-12-11 11:27:04
○ 2015-08-22 00:24:40
○ 2026-07-05 07:29:54
NStodd.ns.cloudflare.com2026-03-02 → 2026-07-05 · 3 obs
○ 2017-09-01 20:17:34
● 2026-03-02 08:13:18
● 2026-07-05 07:29:54
NSyolanda.ns.cloudflare.com2026-03-02 → 2026-07-05 · 3 obs
○ 2017-09-01 20:17:34
● 2026-03-02 08:13:18
● 2026-07-05 07:29:54
MXalt1.aspmx.l.google.com2008-12-11 → 2026-07-05 · 2 obs
● 2008-12-11 11:27:04
● 2026-07-05 07:29:54
MXalt2.aspmx.l.google.com2008-12-11 → 2026-07-05 · 2 obs
● 2008-12-11 11:27:04
● 2026-07-05 07:29:54
MXalt3.aspmx.l.google.com2015-08-22 → 2026-07-05 · 3 obs
○ 2008-12-11 11:27:04
● 2015-08-22 00:24:40
● 2026-07-05 07:29:54
MXalt4.aspmx.l.google.com2015-08-22 → 2026-07-05 · 3 obs
○ 2008-12-11 11:27:04
● 2015-08-22 00:24:40
● 2026-07-05 07:29:54
MXaspmx.l.google.com2008-12-11 → 2026-07-05 · 2 obs
● 2008-12-11 11:27:04
● 2026-07-05 07:29:54
MXaspmx2.googlemail.com2008-12-11 → 2008-12-11 · 3 obs
● 2008-12-11 11:27:04
○ 2015-08-22 00:24:40
○ 2026-07-05 07:29:54
MXaspmx3.googlemail.com2008-12-11 → 2008-12-11 · 3 obs
● 2008-12-11 11:27:04
○ 2015-08-22 00:24:40
○ 2026-07-05 07:29:54
MXaspmx4.googlemail.com2008-12-11 → 2008-12-11 · 3 obs
● 2008-12-11 11:27:04
○ 2015-08-22 00:24:40
○ 2026-07-05 07:29:54
MXaspmx5.googlemail.com2008-12-11 → 2008-12-11 · 3 obs
● 2008-12-11 11:27:04
○ 2015-08-22 00:24:40
○ 2026-07-05 07:29:54

🔍 DNS Trace

📋 Delegation Chain

ZoneNameserversGlue
comj.gtld-servers.net, e.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net...-
evilcode.comtodd.ns.cloudflare.com, yolanda.ns.cloudflare.com12 records

✅ Authoritative Response

Server:108.162.193.146

NS records: todd.ns.cloudflare.com, yolanda.ns.cloudflare.com

🔒 DNSSEC Status

🔐 Secure (DNSSEC validated)

Chain of trust verified from root to domain

⏱️ Timing

Total: 128ms | Queries: -

📄 Records

TypeCountSample Data
NS2todd.ns.cloudflare.com, yolanda.ns.cloudflare.com
MX5aspmx.l.google.com (pri: 1), alt3.aspmx.l.google.com (pri: 10)...
TXT1v=spf1 include:_spf.google.com ~all
SOA1todd.ns.cloudflare.com dns.cloudflare.co

📌 Glue Records Collected

Total: 12

Out-of-bailiwick: 12 (todd.ns.cloudflare.com, todd.ns.cloudflare.com, todd.ns.cloudflare.com...)

Analysis

Name Servers

evilcode.com has two authoritative name servers — todd.ns.cloudflare.com and yolanda.ns.cloudflare.com.

The name server configuration of evilcode.com is shared with other domains, for instance safetyculture.com.au, johnson-moore.com, hanime.(0x787878) and two others.

evilcode.com partially shares its NS delegation with several other domains, including bthcc.org, ziheinfo.com, tvvttfe.info and two others.

These name servers often co-occur with the name servers kim.ns.cloudflare.com.

Hosts with 6 IP addresses each:

todd.ns.cloudflare.com points to 108.162.193.146, 172.64.33.146, 173.245.59.146 and 3 other IP addresses.

yolanda.ns.cloudflare.com points to 108.162.192.241, 172.64.32.241, 173.245.58.241 and 3 other IP addresses.

Mail Servers

Mail for evilcode.com is handled by five mail servers, namely aspmx.l.google.com, alt1.aspmx.l.google.com, alt2.aspmx.l.google.com and two others.

At least some of the mail servers used by evilcode.com are shared with other domains: ns500671.ns500731.ns500731.ns500754.ns500704.ns500671.ns500704.ns500688.ns500705.ns500671.ns500678.ns500649.tenderladiesbz.com, ns500698.ns500698.ns500759.ns500698.ns500698.ns500736.ns500698.ns500698.ns500736.ns500708.ns500576.ns500698.ns500698.ns500576.ns500576.ns500619.ns500619.trackreceptor.com, ns500724.ns500599.ns500737.ns500737.ns500737.ns500737.ns500599.ns500737.ns500697.ns500697.ns500682.ns500669.www.yummyflingsfinder.com and two others among them.

These mail servers are often deployed together with alt3.aspmx.l.google.com, alt4.aspmx.l.google.com, aspmx2.googlemail.com and 3 other mail servers.

Host names pointing to two IP addresses:

aspmx.l.google.com resolves to 142.251.167.27 and 2607:f8b0:4004:c17::1a.

alt1.aspmx.l.google.com resolves to 108.177.123.27 and 2800:3f0:4003:c0f::1b.

alt2.aspmx.l.google.com resolves to 172.253.116.26 and 2a00:1450:400b:c02::1b.

alt3.aspmx.l.google.com resolves to 192.178.223.26 and 2a00:1450:4009:c0f::1b.

alt4.aspmx.l.google.com resolves to 172.253.157.27 and 2a00:1450:400c:c23::1a.