192login.net Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 9492
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • 192login.net. IN A
  • ANSWER SECTION:
  • 192login.net. 299 IN A 172.67.173.216
  • 192login.net. 299 IN A 104.21.40.11
  • Query time: 16 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Tue Apr 19 11:00:15 UTC 2022
  • MSG SIZE rcvd: 73

DNS Records

  • SOA clark.ns.cloudflare.com 108.162.193.87
  • SOA clark.ns.cloudflare.com 172.64.33.87
  • SOA clark.ns.cloudflare.com 173.245.59.87
  • NS clark.ns.cloudflare.com 173.245.59.87
  • NS clark.ns.cloudflare.com 172.64.33.87
  • NS clark.ns.cloudflare.com 108.162.193.87
  • NS clark.ns.cloudflare.com 2606:4700:58::adf5:3b57
  • NS clark.ns.cloudflare.com 2803:f800:50::6ca2:c157
  • NS clark.ns.cloudflare.com 2a06:98c1:50::ac40:2157
  • NS molly.ns.cloudflare.com 108.162.192.205
  • NS molly.ns.cloudflare.com 172.64.32.205
  • NS molly.ns.cloudflare.com 173.245.58.205
  • NS molly.ns.cloudflare.com 2606:4700:50::adf5:3acd
  • NS molly.ns.cloudflare.com 2803:f800:50::6ca2:c0cd
  • NS molly.ns.cloudflare.com 2a06:98c1:50::ac40:20cd
  • MX mailstore1.secureserver.net 68.178.213.243
  • MX mailstore1.secureserver.net 68.178.213.244
  • MX mailstore1.secureserver.net 72.167.238.32
  • MX smtp.secureserver.net 68.178.213.203
  • MX smtp.secureserver.net 68.178.213.37
  • MX smtp.secureserver.net 72.167.238.29
  • A 192login.net 104.21.40.11
  • A 192login.net 172.67.173.216
  • AAAA 192login.net 2606:4700:3030::ac43:add8
  • AAAA 192login.net 2606:4700:3035::6815:280b
  • SRV _autodiscover._tcp.192login.net autodiscover.secureserver.net 216.69.141.24 443 0

Whois Data

  • Domain Name: 192LOGIN.NET
  • Registry Domain ID: 2619303457_DOMAIN_NET-VRSN
  • Registrar URL: http://www.godaddy.com
  • Updated Date: 2021-11-04T14:55:31Z
  • Creation Date: 2021-06-13T10:40:12Z
  • Registry Expiry Date: 2022-06-13T10:40:12Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: CLARK.NS.CLOUDFLARE.COM
  • Name Server: MOLLY.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: 192login.net
  • Registry Domain ID: 2619303457_DOMAIN_NET-VRSN
  • Registrar URL: https://www.godaddy.com
  • Updated Date: 2021-06-13T05:40:12Z
  • Creation Date: 2021-06-13T05:40:12Z
  • Registrar Registration Expiration Date: 2022-06-13T05:40:12Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Registrant Organization:
  • Registrant State/Province: BAHRAIN
  • Registrant Country: BH
  • Name Server: CLARK.NS.CLOUDFLARE.COM
  • Name Server: MOLLY.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 04:b6:c2:26:6d:95:26:2f:05:c4:e3:49:8d:f3:c2:5c:b7:4c
  • Signature Algorithm: ecdsa-with-SHA384
  • Issuer: C = US, O = Let’s Encrypt, CN = E1
  • Validity
  • Not Before: Mar 2 13:22:53 2022 GMT
  • Not After : May 31 13:22:52 2022 GMT
  • Subject: CN = *.192login.net
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:ff:ce:e9:89:af:23:49:30:fe:18:b8:ae:0c:98:
  • 46:38:3a:64:c5:bf:92:92:42:39:7e:8a:21:17:d1:
  • d7:70:2d:31:3a:a1:b0:62:f0:09:22:9d:93:15:c9:
  • 38:6c:d9:01:13:94:c2:22:ba:aa:b5:c3:ec:65:95:
  • 8b:7a:27:03:d2
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • CB:1F:23:0A:32:11:0B:F0:95:CD:D0:FC:C6:92:64:54:5E:53:05:22
  • X509v3 Authority Key Identifier:
  • keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
  • Authority Information Access:
  • OCSP - URI:http://e1.o.lencr.org
  • CA Issuers - URI:http://e1.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:*.192login.net, DNS:192login.net
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
  • 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
  • Timestamp : Mar 2 14:22:53.798 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:E3:77:17:6E:EF:94:BE:BD:71:C8:3D:
  • FA:2F:8F:E7:9A:E6:81:56:79:A7:B2:20:68:C2:73:7E:
  • B3:1B:77:FF:83:02:20:49:2A:B1:43:D2:FB:5B:BE:3B:
  • 24:25:B4:C8:3E:1C:4D:16:CB:2C:93:89:9B:12:5B:E6:
  • 23:16:5B:21:5D:1D:61
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
  • 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
  • Timestamp : Mar 2 14:22:53.812 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:76:85:0A:D8:82:2E:92:2E:4A:EB:AB:16:
  • 24:E7:5C:30:A8:ED:81:0E:43:57:1B:71:3B:27:1C:C2:
  • 30:54:F7:25:02:20:66:46:C3:6B:12:C6:05:35:AD:96:
  • EC:C2:1C:F6:02:0C:87:D8:81:A7:50:6C:EE:EB:FC:6A:
  • 80:A8:D9:9B:2B:09
  • Signature Algorithm: ecdsa-with-SHA384
  • 30:64:02:30:5e:7f:86:c7:41:24:8e:a3:79:40:69:07:0e:82:
  • f7:63:3e:91:6a:5c:5d:1d:61:ee:31:2d:50:fb:d9:a7:d6:28:
  • cb:fc:4f:6d:0f:bb:e0:8b:69:a1:fd:64:a1:ab:87:c4:02:30:
  • 33:f9:bb:4b:3a:f2:aa:9b:6f:16:6c:40:ba:ca:2a:9f:dc:09:
  • 0d:10:48:6f:f2:5d:a1:d6:cf:3a:53:4c:ca:88:e9:59:31:14:
  • 0a:3b:fb:fa:eb:74:3e:e3:35:1e:2c:1b

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: