2mbackup.com Threat Intelligence and Information
Apr 19, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 45775
- flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- 2mbackup.com. IN A
- ANSWER SECTION:
- 2mbackup.com. 3599 IN A 103.224.212.220
- Query time: 8 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Wed Apr 20 02:15:39 UTC 2022
- MSG SIZE rcvd: 57
DNS Records
- SOA ns1.above.com 103.224.212.5
- SOA ns1.above.com 103.224.182.5
- NS ns2.above.com 103.224.182.6
- NS ns2.above.com 103.224.212.6
- NS ns1.above.com 103.224.182.5
- NS ns1.above.com 103.224.212.5
- MX park-mx.above.com 103.224.212.34
- A 2mbackup.com 103.224.212.220
Whois Data
- Domain Name: 2MBACKUP.COM
- Registry Domain ID: 2608894698_DOMAIN_COM-VRSN
- Registrar URL: http://www.networksolutions.com
- Updated Date: 2022-04-05T13:53:22Z
- Creation Date: 2021-04-30T18:25:11Z
- Registry Expiry Date: 2023-04-30T18:25:11Z
- Registrar: SNAPNAMES 79, LLC
- Registrar IANA ID: 656
- Registrar Abuse Contact Email: abuse@web.com
- Registrar Abuse Contact Phone: +1.8003337680
- Name Server: NS15.ABOVE.COM
- Name Server: NS16.ABOVE.COM
- DNSSEC: unsigned
- Domain Name: 2mbackup.com
- Registry Domain ID: 2608894698_DOMAIN_COM-VRSN
- Registrar URL: http://www.networksolutions.com
- Updated Date: 2022-04-05T13:53:22Z
- Creation Date: 2021-04-30T18:25:11Z
- Registrar Registration Expiration Date: 2023-04-30T18:25:11Z
- Registrar: SNAPNAMES 79, LLC
- Registrar IANA ID: 656
- Reseller:
- Registry Registrant ID:
- Registrant Name: PERFECT PRIVACY, LLC
- Registrant Organization:
- Registrant Street: 5335 Gate Parkway
- Registrant City: Jacksonville
- Registrant State/Province: FL
- Registrant Postal Code: 32256
- Registrant Country: US
- Registrant Phone: +1.9027492701
- Registrant Phone Ext:
- Registrant Fax:
- Registrant Fax Ext:
- Registrant Email: ejs91lp16shab9l0upq9ahm0k3@domaindiscreet.com
- Registry Admin ID:
- Admin Name: PERFECT PRIVACY, LLC
- Admin Organization:
- Admin Street: 5335 Gate Parkway
- Admin City: Jacksonville
- Admin State/Province: FL
- Admin Postal Code: 32256
- Admin Country: US
- Admin Phone: +1.9027492701
- Admin Phone Ext:
- Admin Fax:
- Admin Fax Ext:
- Admin Email: ejs91lp16shab9l0upq9ahm0k3@domaindiscreet.com
- Registry Tech ID:
- Tech Name: PERFECT PRIVACY, LLC
- Tech Organization:
- Tech Street: 5335 Gate Parkway
- Tech City: Jacksonville
- Tech State/Province: FL
- Tech Postal Code: 32256
- Tech Country: US
- Tech Phone: +1.9027492701
- Tech Phone Ext:
- Tech Fax:
- Tech Fax Ext:
- Tech Email: ejs91lp16shab9l0upq9ahm0k3@domaindiscreet.com
- Name Server: ns15.above.com
- Name Server: ns16.above.com
- DNSSEC: Unsigned
- Registrar Abuse Contact Email: domain.operations@web.com
- Registrar Abuse Contact Phone: +1.8773812449
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 04:e5:29:d3:06:ec:c9:08:6e:88:54:cd:be:b2:c8:08:cf:9b
- Signature Algorithm: sha256WithRSAEncryption
- Issuer: C = US, O = Let’s Encrypt, CN = R3
- Validity
- Not Before: Mar 1 08:53:26 2022 GMT
- Not After : May 30 08:53:25 2022 GMT
- Subject: CN = 2wenhua.com
- Subject Public Key Info:
- Public Key Algorithm: rsaEncryption
- RSA Public-Key: (4096 bit)
- Modulus:
- 00:df:14:a8:01:7b:96:d3:8e:de:ea:39:dd:68:30:
- b1:24:7c:f9:c5:82:d4:b3:4c:98:86:69:05:f7:2f:
- ee:4f:a2:61:95:1d:b0:b2:ed:1a:cc:7d:78:b3:74:
- 06:1e:d8:7d:c2:04:2b:f7:c8:16:59:2c:48:30:70:
- a9:6a:c9:a5:e9:2f:12:4b:74:9a:4e:90:1e:d1:75:
- 99:64:80:e2:95:77:78:ad:66:8a:22:92:e3:7b:db:
- de:9b:11:5e:c8:b9:cd:24:84:8d:9f:fb:27:cc:e3:
- f4:9e:ac:9c:04:3f:e9:93:10:e4:15:43:41:fa:a3:
- 43:f6:eb:32:d7:04:b6:05:9d:8e:b5:44:22:8e:d5:
- 3b:72:e4:a7:0c:cd:94:3c:ee:b3:c4:93:5e:e5:58:
- 81:c6:8d:4a:5a:04:0e:b9:ec:62:8c:7f:1d:fb:84:
- 94:e1:51:d4:0a:a2:1e:cb:2d:35:92:cf:71:f2:34:
- 6b:d7:9b:71:58:0d:6a:c5:ca:03:a1:5f:50:af:1c:
- 3a:5f:06:67:fc:b0:bd:27:5f:46:f0:4b:d5:9f:6a:
- 55:cd:15:6d:1d:6a:07:6c:3c:e5:78:cf:8b:af:a5:
- 34:53:41:00:b9:53:a8:01:bf:f4:a8:60:b0:f4:04:
- 83:70:17:a5:21:fe:df:9e:31:7a:f7:b0:5c:77:f1:
- f2:8f:8b:f8:0e:fe:d8:f4:a0:54:e8:35:05:7e:9b:
- 29:59:1c:a1:9b:d6:d8:0b:f9:60:9b:cc:f4:b7:d7:
- c3:37:b9:3b:a0:b5:00:d2:70:4a:45:68:10:96:55:
- 66:6b:b2:fd:78:94:03:fa:49:6a:43:8c:82:35:b7:
- 9d:28:48:45:74:7c:33:50:eb:db:47:f6:f7:65:64:
- db:28:34:68:40:ba:72:e4:f2:88:96:88:9b:70:d6:
- 8e:1a:2b:5a:73:da:c0:c0:49:5a:50:37:97:53:78:
- 9e:59:98:3b:1a:12:01:34:bd:ed:35:6f:23:df:36:
- 6a:a0:e6:2c:f9:d8:50:8e:6f:07:60:41:3e:2a:8c:
- ad:ab:7b:fb:6a:93:3a:f4:72:25:47:a7:83:6f:a2:
- b4:b0:fc:53:c4:a5:0b:44:fd:44:aa:ac:c2:9a:f6:
- 1b:37:1f:5b:05:5c:70:91:d8:98:dc:93:34:a3:e8:
- 52:ba:0b:39:e8:77:3c:91:6f:09:a6:4b:3a:da:08:
- 4e:56:29:0e:41:c0:4f:15:00:0b:ff:1d:76:38:1b:
- 33:9a:54:99:77:56:a6:73:b4:01:6b:b3:38:23:66:
- 62:e1:da:9b:b7:96:1e:83:85:32:72:e7:36:d8:f9:
- 79:2e:4e:f1:e8:ff:0d:fb:fb:e0:91:18:94:75:57:
- 80:88:07
- Exponent: 65537 (0x10001)
- X509v3 extensions:
- X509v3 Key Usage: critical
- Digital Signature, Key Encipherment
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Subject Key Identifier:
- DF:BA:C4:B5:7B:FB:32:4B:4B:46:32:A0:E9:1D:EE:6B:C3:15:36:66
- X509v3 Authority Key Identifier:
- keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
- Authority Information Access:
- OCSP - URI:http://r3.o.lencr.org
- CA Issuers - URI:http://r3.i.lencr.org/
- X509v3 Subject Alternative Name:
- DNS:.2mbackup.com, DNS:.2wenhua.com, DNS:.98thstreetautoservice.com, DNS:.allegrabrigata.info, DNS:.allsexinfo.com, DNS:.autofeucet.org, DNS:.balkan-pharma.com, DNS:.best-prizes-house.life, DNS:.bet9aa.com, DNS:.clicktocall.com.au, DNS:.danajoyas.com, DNS:.dartvidyacoffee.com, DNS:.drvalleystream.com, DNS:.dshodoughnuts.com, DNS:.dumpytreefrogsadorablepeople.com, DNS:.duocedo.com, DNS:.e4akorea.com, DNS:.easygongboo.com, DNS:.electriccityskin.com, DNS:.fcsoablues.net, DNS:.freehivehoney.com, DNS:.ggmgasolineras.com, DNS:.hdxwallpaperz.com, DNS:.iptvtechno.com, DNS:.jorankins.com, DNS:.leekway.com, DNS:.lixies.com, DNS:.mascamarenaluxuryhomes.com, DNS:.merrycotton.com, DNS:.motherroaddiner.com, DNS:.mtsubwaycard.com, DNS:.niwasalandscaping.com, DNS:.opstanak.net, DNS:.ousefacetrust.com, DNS:.outdoorseatibfbriercreek.com, DNS:.outertierodendfora2003cadillacdevillerockauto.com, DNS:.paycheck-plus.com, DNS:.pozzibiscottidautore.com, DNS:.privenot.com, DNS:.purijagannadhtouringtalkies.com, DNS:.smileisbac.com, DNS:.sport-usa.com, DNS:.spotbc.com, DNS:.thefinchfarm.info, DNS:.vgmunka.com, DNS:.wahfreshmart.com, DNS:.worldodwarcraft.com, DNS:.wwwcrossdresser.com, DNS:.wwwtelemundochicago.com, DNS:.xxxboss.net, DNS:2mbackup.com, DNS:2wenhua.com, DNS:98thstreetautoservice.com, DNS:allegrabrigata.info, DNS:allsexinfo.com, DNS:autofeucet.org, DNS:balkan-pharma.com, DNS:best-prizes-house.life, DNS:bet9aa.com, DNS:clicktocall.com.au, DNS:danajoyas.com, DNS:dartvidyacoffee.com, DNS:drvalleystream.com, DNS:dshodoughnuts.com, DNS:dumpytreefrogsadorablepeople.com, DNS:duocedo.com, DNS:e4akorea.com, DNS:easygongboo.com, DNS:electriccityskin.com, DNS:fcsoablues.net, DNS:freehivehoney.com, DNS:ggmgasolineras.com, DNS:hdxwallpaperz.com, DNS:iptvtechno.com, DNS:jorankins.com, DNS:leekway.com, DNS:lixies.com, DNS:mascamarenaluxuryhomes.com, DNS:merrycotton.com, DNS:motherroaddiner.com, DNS:mtsubwaycard.com, DNS:niwasalandscaping.com, DNS:opstanak.net, DNS:ousefacetrust.com, DNS:outdoorseatibfbriercreek.com, DNS:outertierodendfora2003cadillacdevillerockauto.com, DNS:paycheck-plus.com, DNS:pozzibiscottidautore.com, DNS:privenot.com, DNS:purijagannadhtouringtalkies.com, DNS:smileisbac.com, DNS:sport-usa.com, DNS:spotbc.com, DNS:thefinchfarm.info, DNS:vgmunka.com, DNS:wahfreshmart.com, DNS:worldodwarcraft.com, DNS:wwwcrossdresser.com, DNS:wwwtelemundochicago.com, DNS:xxxboss.net
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.1
- Policy: 1.3.6.1.4.1.44947.1.1.1
- CPS: http://cps.letsencrypt.org
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 6F:53:76:AC:31:F0:31:19:D8:99:00:A4:51:15:FF:77:
- 15:1C:11:D9:02:C1:00:29:06:8D:B2:08:9A:37:D9:13
- Timestamp : Mar 1 09:53:27.002 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:76:86:25:F1:A1:30:89:95:B1:9C:68:77:
- C5:C5:06:D1:B1:D4:EB:53:E4:FB:BF:41:87:5F:AD:99:
- 20:B6:B4:63:02:20:69:1B:4D:7A:1A:34:E1:D5:23:1F:
- A0:A1:94:38:2F:05:18:A6:8D:38:72:B4:9F:D0:04:43:
- E7:10:43:CB:1E:A9
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
- 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
- Timestamp : Mar 1 09:53:27.007 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:B0:EB:B5:7F:51:66:64:80:AE:39:C9:
- 1A:24:F8:EF:8B:6C:DA:4D:F5:18:07:44:4F:D3:B3:50:
- 68:6A:7B:8D:26:02:20:16:D9:71:00:FE:8E:63:27:0C:
- 09:A0:65:D9:50:FC:A6:98:F2:94:72:C9:39:B2:A8:79:
- 7F:01:94:FD:9E:FA:9F
- Signature Algorithm: sha256WithRSAEncryption
- 02:4e:9c:64:50:59:7f:a4:29:6a:de:63:88:51:1e:30:ae:38:
- 7d:0c:52:1e:88:82:d6:07:2e:b0:86:a2:8d:0c:33:45:fe:7a:
- 1c:69:62:1b:fa:41:52:f8:38:f8:40:91:a6:12:0f:de:24:d3:
- 1a:14:80:60:50:a9:fa:55:a2:44:23:47:14:fe:dc:d6:b0:f7:
- 7e:8b:de:0b:01:fc:f0:20:c6:1e:3e:2e:2a:7d:d3:66:e9:2e:
- 2a:d8:5d:14:81:d1:ae:b5:4a:c4:4d:5f:eb:19:2d:09:a3:07:
- 58:6e:d0:fd:4f:a8:18:96:2e:ef:f9:45:88:fa:eb:7d:23:26:
- 9e:29:f1:92:16:62:ce:62:fb:22:26:44:e6:d0:36:8b:9e:7a:
- 76:2e:82:2c:33:40:7a:88:a2:3e:70:aa:ae:db:72:8c:96:c8:
- 04:9c:06:99:8a:5c:1a:e9:03:e8:29:6f:1b:e6:8e:33:a8:c0:
- f1:64:9b:ef:b1:fc:d1:1b:c4:d8:1a:64:43:5d:d5:a9:50:ce:
- 8d:f4:c6:e5:65:09:4e:49:b3:da:54:91:36:cd:12:9b:ff:6d:
- e6:f2:d2:bd:a3:ca:c5:87:5a:5a:ea:98:f4:a3:14:cb:d0:8f:
- b3:01:e3:04:02:84:1c:fd:78:b9:a4:7f:95:2c:b4:fa:bb:26:
- 7e:0d:0a:b1