192login.net Threat Intelligence and Information
Apr 19, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 9492
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- 192login.net. IN A
- ANSWER SECTION:
- 192login.net. 299 IN A 172.67.173.216
- 192login.net. 299 IN A 104.21.40.11
- Query time: 16 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Tue Apr 19 11:00:15 UTC 2022
- MSG SIZE rcvd: 73
DNS Records
- SOA clark.ns.cloudflare.com 108.162.193.87
- SOA clark.ns.cloudflare.com 172.64.33.87
- SOA clark.ns.cloudflare.com 173.245.59.87
- NS clark.ns.cloudflare.com 173.245.59.87
- NS clark.ns.cloudflare.com 172.64.33.87
- NS clark.ns.cloudflare.com 108.162.193.87
- NS clark.ns.cloudflare.com 2606:4700:58::adf5:3b57
- NS clark.ns.cloudflare.com 2803:f800:50::6ca2:c157
- NS clark.ns.cloudflare.com 2a06:98c1:50::ac40:2157
- NS molly.ns.cloudflare.com 108.162.192.205
- NS molly.ns.cloudflare.com 172.64.32.205
- NS molly.ns.cloudflare.com 173.245.58.205
- NS molly.ns.cloudflare.com 2606:4700:50::adf5:3acd
- NS molly.ns.cloudflare.com 2803:f800:50::6ca2:c0cd
- NS molly.ns.cloudflare.com 2a06:98c1:50::ac40:20cd
- MX mailstore1.secureserver.net 68.178.213.243
- MX mailstore1.secureserver.net 68.178.213.244
- MX mailstore1.secureserver.net 72.167.238.32
- MX smtp.secureserver.net 68.178.213.203
- MX smtp.secureserver.net 68.178.213.37
- MX smtp.secureserver.net 72.167.238.29
- A 192login.net 104.21.40.11
- A 192login.net 172.67.173.216
- AAAA 192login.net 2606:4700:3030::ac43:add8
- AAAA 192login.net 2606:4700:3035::6815:280b
- SRV _autodiscover._tcp.192login.net autodiscover.secureserver.net 216.69.141.24 443 0
Whois Data
- Domain Name: 192LOGIN.NET
- Registry Domain ID: 2619303457_DOMAIN_NET-VRSN
- Registrar URL: http://www.godaddy.com
- Updated Date: 2021-11-04T14:55:31Z
- Creation Date: 2021-06-13T10:40:12Z
- Registry Expiry Date: 2022-06-13T10:40:12Z
- Registrar: GoDaddy.com, LLC
- Registrar IANA ID: 146
- Registrar Abuse Contact Email: abuse@godaddy.com
- Registrar Abuse Contact Phone: 480-624-2505
- Name Server: CLARK.NS.CLOUDFLARE.COM
- Name Server: MOLLY.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- Domain Name: 192login.net
- Registry Domain ID: 2619303457_DOMAIN_NET-VRSN
- Registrar URL: https://www.godaddy.com
- Updated Date: 2021-06-13T05:40:12Z
- Creation Date: 2021-06-13T05:40:12Z
- Registrar Registration Expiration Date: 2022-06-13T05:40:12Z
- Registrar: GoDaddy.com, LLC
- Registrar IANA ID: 146
- Registrar Abuse Contact Email: abuse@godaddy.com
- Registrar Abuse Contact Phone: +1.4806242505
- Registrant Organization:
- Registrant State/Province: BAHRAIN
- Registrant Country: BH
- Name Server: CLARK.NS.CLOUDFLARE.COM
- Name Server: MOLLY.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 04:b6:c2:26:6d:95:26:2f:05:c4:e3:49:8d:f3:c2:5c:b7:4c
- Signature Algorithm: ecdsa-with-SHA384
- Issuer: C = US, O = Let’s Encrypt, CN = E1
- Validity
- Not Before: Mar 2 13:22:53 2022 GMT
- Not After : May 31 13:22:52 2022 GMT
- Subject: CN = *.192login.net
- Subject Public Key Info:
- Public Key Algorithm: id-ecPublicKey
- Public-Key: (256 bit)
- pub:
- 04:ff:ce:e9:89:af:23:49:30:fe:18:b8:ae:0c:98:
- 46:38:3a:64:c5:bf:92:92:42:39:7e:8a:21:17:d1:
- d7:70:2d:31:3a:a1:b0:62:f0:09:22:9d:93:15:c9:
- 38:6c:d9:01:13:94:c2:22:ba:aa:b5:c3:ec:65:95:
- 8b:7a:27:03:d2
- ASN1 OID: prime256v1
- NIST CURVE: P-256
- X509v3 extensions:
- X509v3 Key Usage: critical
- Digital Signature
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Subject Key Identifier:
- CB:1F:23:0A:32:11:0B:F0:95:CD:D0:FC:C6:92:64:54:5E:53:05:22
- X509v3 Authority Key Identifier:
- keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
- Authority Information Access:
- OCSP - URI:http://e1.o.lencr.org
- CA Issuers - URI:http://e1.i.lencr.org/
- X509v3 Subject Alternative Name:
- DNS:*.192login.net, DNS:192login.net
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.1
- Policy: 1.3.6.1.4.1.44947.1.1.1
- CPS: http://cps.letsencrypt.org
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
- 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
- Timestamp : Mar 2 14:22:53.798 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:E3:77:17:6E:EF:94:BE:BD:71:C8:3D:
- FA:2F:8F:E7:9A:E6:81:56:79:A7:B2:20:68:C2:73:7E:
- B3:1B:77:FF:83:02:20:49:2A:B1:43:D2:FB:5B:BE:3B:
- 24:25:B4:C8:3E:1C:4D:16:CB:2C:93:89:9B:12:5B:E6:
- 23:16:5B:21:5D:1D:61
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
- 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
- Timestamp : Mar 2 14:22:53.812 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:76:85:0A:D8:82:2E:92:2E:4A:EB:AB:16:
- 24:E7:5C:30:A8:ED:81:0E:43:57:1B:71:3B:27:1C:C2:
- 30:54:F7:25:02:20:66:46:C3:6B:12:C6:05:35:AD:96:
- EC:C2:1C:F6:02:0C:87:D8:81:A7:50:6C:EE:EB:FC:6A:
- 80:A8:D9:9B:2B:09
- Signature Algorithm: ecdsa-with-SHA384
- 30:64:02:30:5e:7f:86:c7:41:24:8e:a3:79:40:69:07:0e:82:
- f7:63:3e:91:6a:5c:5d:1d:61:ee:31:2d:50:fb:d9:a7:d6:28:
- cb:fc:4f:6d:0f:bb:e0:8b:69:a1:fd:64:a1:ab:87:c4:02:30:
- 33:f9:bb:4b:3a:f2:aa:9b:6f:16:6c:40:ba:ca:2a:9f:dc:09:
- 0d:10:48:6f:f2:5d:a1:d6:cf:3a:53:4c:ca:88:e9:59:31:14:
- 0a:3b:fb:fa:eb:74:3e:e3:35:1e:2c:1b