alibabaholidays.com Threat Intelligence and Information

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 3112
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • alibabaholidays.com. IN A
  • ANSWER SECTION:
  • alibabaholidays.com. 1792 IN A 185.232.14.149
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Thu Nov 06 00:03:10 UTC 2025
  • MSG SIZE rcvd: 64

Whois Data

  • Domain Name: ALIBABAHOLIDAYS.COM
  • Registry Domain ID: 2932548783_DOMAIN_COM-VRSN
  • Registrar URL: http://www.namesrs.com
  • Updated Date: 2024-11-08T15:37:03Z
  • Creation Date: 2024-11-08T15:37:02Z
  • Registry Expiry Date: 2026-11-08T15:37:02Z
  • Registrar: Name SRS AB
  • Registrar IANA ID: 638
  • Registrar Abuse Contact Email: abuse@namesrs.com
  • Registrar Abuse Contact Phone: +46.313011220
  • Name Server: NS1.DNS-PARKING.COM
  • Name Server: NS2.DNS-PARKING.COM
  • DNSSEC: unsigned
  • Domain Name: alibabaholidays.com
  • Registry Domain ID: 2932548783_DOMAIN_COM-VRSN
  • Registrar URL: https://www.namesrs.com
  • Creation Date: 2024-11-08T15:37:02.00Z
  • Registrar Registration Expiration Date: 2026-11-08T15:37:02.00Z
  • Registrar: Name SRS AB
  • Registrar IANA ID: 638
  • Registrar Abuse Contact Email: abuse@namesrs.com
  • Registrar Abuse Contact Phone: +46.313011220
  • Registry Registrant ID: Protected
  • Registrant Name: Protected Protected
  • Registrant Organization: Shield Whois
  • Registrant Street: Radiovägen 2
  • Registrant City: Västra Frölunda
  • Registrant State:
  • Registrant Postal Code: 42147
  • Registrant Country: SE
  • Registrant Phone: +46.104500390
  • Registrant Fax:
  • Registry Admin ID: Protected
  • Admin Name: Protected Protected
  • Admin Organization: Shield Whois
  • Admin Street: Radiovägen 2
  • Admin City: Västra Frölunda
  • Admin Postal Code: 42147
  • Admin Country: SE
  • Admin Phone: +46.104500390
  • Admin Fax:
  • Registry Tech ID: Protected
  • Tech Name: Protected Protected
  • Tech Organization: Shield Whois
  • Tech Street: Radiovägen 2
  • Tech City: Västra Frölunda
  • Tech Postal Code: 42147
  • Tech Country: SE
  • Tech Phone: +46.104500390
  • Tech Fax:
  • Name Server: NS1.DNS-PARKING.COM
  • Name Server: NS2.DNS-PARKING.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 05:b7:f0:b4:96:9c:7e:32:3c:a1:e7:69:dc:73:df:63:82:e1
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R12
  • Validity
  • Not Before: Oct 10 04:55:48 2025 GMT
  • Not After : Jan 8 04:55:47 2026 GMT
  • Subject: CN = alibabaholidays.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (4096 bit)
  • Modulus:
  • 00:f0:06:82:16:8a:e8:5a:30:34:24:ac:1a:aa:1f:
  • c4:63:37:05:a1:3d:4d:0c:da:b8:84:5a:3a:61:4c:
  • 8e:af:cc:b1:12:d2:8c:ce:7d:9c:3e:96:e1:90:38:
  • 56:1b:00:da:a6:9d:d0:76:58:05:c1:90:94:b2:f4:
  • 4a:59:5c:da:a7:77:39:51:13:f1:65:34:6a:95:9a:
  • 0d:93:d8:f0:f5:c0:25:47:39:5f:c2:eb:43:f5:50:
  • c0:61:f4:9e:96:5a:bf:f3:5d:63:f9:31:db:e1:9d:
  • 2b:7f:0d:56:ea:58:5f:41:90:af:e3:96:c9:db:97:
  • 88:7f:ac:42:8d:7f:32:de:37:f4:5a:d3:51:29:e4:
  • 2e:4d:71:98:11:4e:8a:24:04:82:ae:bb:75:55:db:
  • f3:f7:29:73:5d:0f:3c:c2:08:8c:a7:7b:7c:68:64:
  • da:5d:2a:d5:04:78:2d:92:22:89:dc:a2:ec:d1:46:
  • a1:77:a8:7f:47:e6:35:de:02:c6:d8:94:6d:91:a8:
  • f1:cc:2f:72:d3:3a:5a:9d:08:68:1b:74:0d:79:b8:
  • 91:d3:df:88:80:5a:7a:c5:3e:40:4c:7e:0b:42:13:
  • 2a:ef:8e:4a:2c:c5:32:c5:54:fb:64:14:5a:8e:a0:
  • 04:50:90:93:bf:d5:09:20:28:af:c1:4c:b0:9d:fc:
  • d2:e8:f1:75:63:2a:16:8d:96:dd:05:e6:13:fa:a7:
  • 1b:15:b6:e0:60:b7:8a:b4:44:f4:25:b8:30:25:23:
  • 27:46:78:93:d3:d3:f2:7b:87:6b:f4:b3:f4:12:69:
  • 9e:5c:3b:ae:cc:c8:ae:f4:cf:38:6c:70:a4:09:6c:
  • a9:50:54:b8:a0:cd:fe:b8:51:32:dc:7d:83:a8:33:
  • 97:c3:a3:23:21:a4:22:9b:6f:e6:bb:f1:c1:2a:64:
  • 8e:2a:93:e5:0d:f6:7b:e7:7b:2c:f7:bb:ea:1c:9f:
  • df:5d:70:24:df:9c:fc:b2:ad:e5:04:e1:09:b5:90:
  • 2f:81:fe:a3:67:fe:c5:3d:7b:9a:e5:ef:fe:48:3f:
  • bb:32:cf:74:0a:3a:9a:78:ab:c6:9a:30:00:2b:2a:
  • 99:f9:4d:f4:c1:cc:69:2d:9a:7b:c1:b9:4f:5e:2e:
  • fd:cb:04:ab:5a:02:4e:2b:f4:f9:c3:40:44:cd:78:
  • 66:94:17:78:7d:6b:81:0d:32:f1:0d:7d:de:d0:52:
  • 78:8b:f4:7a:5c:b0:77:97:e2:d4:3a:89:47:1b:62:
  • fa:a9:b2:f8:28:21:e5:2e:32:84:85:f1:b1:4a:e9:
  • af:df:04:57:6a:b8:ac:3a:2d:ba:1a:dc:5e:39:b2:
  • e5:a7:ec:9e:1e:1f:85:2a:84:9f:3c:a0:f9:66:85:
  • fb:a2:39
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 9B:DE:0F:7A:90:F3:B0:CF:3F:16:23:8B:C7:43:FE:5B:3E:5E:8C:7B
  • X509v3 Authority Key Identifier:
  • 00:B5:29:F2:2D:8E:6F:31:E8:9B:4C:AD:78:3E:FA:DC:E9:0C:D1:D2
  • Authority Information Access:
  • CA Issuers - URI:http://r12.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:alibabaholidays.com, DNS:www.alibabaholidays.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://r12.c.lencr.org/98.crl
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 64:11:C4:6C:A4:12:EC:A7:89:1C:A2:02:2E:00:BC:AB:
  • 4F:28:07:D4:1E:35:27:AB:EA:FE:D5:03:C9:7D:CD:F0
  • Timestamp : Oct 10 05:54:19.181 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:75:18:46:47:F8:1A:73:5C:CB:B7:2F:91:
  • 38:CE:98:F0:F5:03:10:87:F9:93:D6:45:A2:2D:7E:50:
  • 42:6D:94:3F:02:20:6E:28:D7:CB:B8:08:08:2F:BF:E4:
  • E4:BC:1F:16:9B:55:81:12:87:99:95:8E:BD:76:E7:EA:
  • 88:0A:A7:6B:B4:F5
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 0E:57:94:BC:F3:AE:A9:3E:33:1B:2C:99:07:B3:F7:90:
  • DF:9B:C2:3D:71:32:25:DD:21:A9:25:AC:61:C5:4E:21
  • Timestamp : Oct 10 05:54:19.184 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:01:CD:FD:E1:42:47:32:8F:60:BF:48:82:
  • 12:33:DC:0D:35:34:AD:F3:58:7D:AE:27:E0:43:CA:42:
  • CD:65:71:8B:02:21:00:92:62:D9:85:4E:31:2C:B0:49:
  • 0D:84:F6:79:F0:45:95:CC:D5:95:34:B5:05:AC:A9:3C:
  • 57:D5:0D:92:4D:87:97
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 4b:db:bb:ad:5a:4e:11:24:5e:c6:b8:f0:82:5c:cb:78:75:de:
  • 46:a8:5c:7d:80:03:8e:71:fc:6e:08:bb:90:3c:a6:87:63:ca:
  • c9:ff:d9:79:77:ef:7c:22:92:84:64:71:46:25:a0:b7:df:fe:
  • 3d:27:08:b8:16:12:76:3b:98:da:17:75:79:12:34:87:8b:c3:
  • 0a:82:d0:3d:ac:e8:92:c5:30:85:22:5c:6a:95:56:70:40:c9:
  • f1:9c:02:02:77:05:e7:51:7c:60:8e:32:cf:16:14:ef:db:31:
  • 0f:de:36:6a:3d:df:8e:78:a7:28:07:3d:4a:c7:0c:98:f7:05:
  • 33:58:c6:6a:82:fb:23:1d:fb:ec:94:d4:46:f5:28:9e:00:e0:
  • 86:31:83:78:44:76:f0:b8:21:15:06:f8:ae:1a:ae:e5:0f:59:
  • e5:44:6c:8e:78:04:12:38:ce:f5:8f:d9:21:f0:f5:68:8e:2a:
  • 42:71:d0:24:7a:6f:89:dc:71:60:d3:b7:47:2a:df:0f:11:e5:
  • 07:4f:c4:e8:b0:07:fc:3b:93:28:ed:97:51:8f:60:da:3d:1e:
  • 37:a5:3e:f4:8c:a2:f5:1a:fc:8b:34:8c:ab:20:64:2a:82:50:
  • ab:c7:91:f8:26:e2:cb:f3:59:4d:aa:20:2c:34:dc:ce:83:ae:
  • 6f:b8:e6:7a

*** Virustotal ***

*** WayBackMachine ***

Share on: