CF1757530446386-tsm20250910161120

NSLIST.NET - evil.ovh

Search for IP or hostnames:

evil.ovh checked at 2025-09-10T18:54:06.375Z 276ms 172/172/172 100% R:13

evil.ovh

NSfay.ns.cloudflare.com
A2606:4700:50::adf5:3a73 🇺🇸 Cloudflare
PTRfay.ns.cloudflare.com
A2803:f800:50::6ca2:c073 🇨🇷 Cloudflare
PTRfay.ns.cloudflare.com
A2a06:98c1:50::ac40:2073 🇺🇸 Cloudflare
PTRfay.ns.cloudflare.com
A108.162.192.115🇺🇸 Cloudflare
PTRfay.ns.cloudflare.com
A172.64.32.115🇺🇸 Cloudflare
PTRfay.ns.cloudflare.com
A173.245.58.115🇺🇸 Cloudflare
PTRfay.ns.cloudflare.com
NSrob.ns.cloudflare.com
A2606:4700:58::adf5:3b8c 🇺🇸 Cloudflare
PTRrob.ns.cloudflare.com
A2803:f800:50::6ca2:c18c 🇨🇷 Cloudflare
PTRrob.ns.cloudflare.com
A2a06:98c1:50::ac40:218c 🇺🇸 Cloudflare
PTRrob.ns.cloudflare.com
A108.162.193.140🇺🇸 Cloudflare
PTRrob.ns.cloudflare.com
A172.64.33.140🇺🇸 Cloudflare
PTRrob.ns.cloudflare.com
A173.245.59.140🇺🇸 Cloudflare
PTRrob.ns.cloudflare.com
MXroute1.mx.cloudflare.net
A2606:4700:f5::b 🇺🇸 Cloudflare
A2606:4700:f5::c 🇺🇸 Cloudflare
A2606:4700:f5::d 🇺🇸 Cloudflare
A162.159.205.11 Cloudflare
A162.159.205.12 Cloudflare
A162.159.205.13 Cloudflare
MXroute2.mx.cloudflare.net
A2606:4700:f5::e 🇺🇸 Cloudflare
A2606:4700:f5::f 🇺🇸 Cloudflare
A2606:4700:f5::10 🇺🇸 Cloudflare
A162.159.205.17 Cloudflare
A162.159.205.18 Cloudflare
A162.159.205.19 Cloudflare
MXroute3.mx.cloudflare.net
A2606:4700:f5::11 🇺🇸 Cloudflare
A2606:4700:f5::12 🇺🇸 Cloudflare
A2606:4700:f5::13 🇺🇸 Cloudflare
A162.159.205.23 Cloudflare
A162.159.205.24 Cloudflare
A162.159.205.25 Cloudflare
A2001:470:fe75::1 🇺🇸 Hurricane Electric
PTRevil.ovh

ovh

NSd.nic.fr
NSf.ext.nic.fr
NSg.ext.nic.fr

AI analysis

evil.ovh is associated with a single IP address: 2001:470:fe75::1.

Two name servers, fay.ns.cloudflare.com and rob.ns.cloudflare.com, are delegated to evil.ovh.

The name server setup for evil.ovh is shared with several other domains such as statefansnation.com, taska-c-horizons.com, anggun-d.com, malwr.org, and bitengine.net.

The domain evil.ovh shares name servers, at least partially, with other domains such as newlookforyou.ru, lc889.com, yakarouler.net, aquaintegral.cl, and filiumsalud.com.ar.

fay.ns.cloudflare.com and rob.ns.cloudflare.com both point to six IP numbers each: 2606:4700:50::adf5:3a73, 2803:f800:50::6ca2:c073, 2a06:98c1:50::ac40:2073, 108.162.192.115, 172.64.32.115, 173.245.58.115 for fay.ns.cloudflare.com and 2606:4700:58::adf5:3b8c, 2803:f800:50::6ca2:c18c, 2a06:98c1:50::ac40:218c, 108.162.193.140, 172.64.33.140, 173.245.59.140 for rob.ns.cloudflare.com.

Three mail servers, route1.mx.cloudflare.net, route2.mx.cloudflare.net, and route3.mx.cloudflare.net, manage evil.ovh.

Some mail servers are at least partially shared between evil.ovh and other domains, such as petreck.com, andersenvan.com, dianapalace.ru, northernforum.net, and mt2lord.com.

route1.mx.cloudflare.net, route2.mx.cloudflare.net, and route3.mx.cloudflare.net each point to six IP numbers respectively: 2606:4700:f5::b, 2606:4700:f5::c, 2606:4700:f5::d, 162.159.205.11, 162.159.205.12, 162.159.205.13; 2606:4700:f5::e, 2606:4700:f5::f, 2606:4700:f5::10, 162.159.205.17, 162.159.205.18, 162.159.205.19; 2606:4700:f5::11, 2606:4700:f5::12, 2606:4700:f5::13, 162.159.205.23, 162.159.205.24, 162.159.205.25.

Perform reverse DNS lookup as well as normal forward DNS. Check Autonomous System Numbers (ASNs) and BGP connections between Internet Service Providers.
dbq

IWPfccP CF johedugfp 2025-09-10