amazon-billing-us.net Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 14025
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • amazon-billing-us.net. IN A
  • ANSWER SECTION:
  • amazon-billing-us.net. 300 IN A 172.67.199.104
  • amazon-billing-us.net. 300 IN A 104.21.84.242
  • Query time: 16 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Fri Apr 22 06:10:15 UTC 2022
  • MSG SIZE rcvd: 82

DNS Records

  • SOA hal.ns.cloudflare.com 108.162.193.174
  • SOA hal.ns.cloudflare.com 172.64.33.174
  • SOA hal.ns.cloudflare.com 173.245.59.174
  • NS hal.ns.cloudflare.com 108.162.193.174
  • NS hal.ns.cloudflare.com 172.64.33.174
  • NS hal.ns.cloudflare.com 173.245.59.174
  • NS hal.ns.cloudflare.com 2606:4700:58::adf5:3bae
  • NS hal.ns.cloudflare.com 2803:f800:50::6ca2:c1ae
  • NS hal.ns.cloudflare.com 2a06:98c1:50::ac40:21ae
  • NS sofia.ns.cloudflare.com 108.162.192.223
  • NS sofia.ns.cloudflare.com 172.64.32.223
  • NS sofia.ns.cloudflare.com 173.245.58.223
  • NS sofia.ns.cloudflare.com 2606:4700:50::adf5:3adf
  • NS sofia.ns.cloudflare.com 2803:f800:50::6ca2:c0df
  • NS sofia.ns.cloudflare.com 2a06:98c1:50::ac40:20df
  • A amazon-billing-us.net 104.21.84.242
  • A amazon-billing-us.net 172.67.199.104
  • AAAA amazon-billing-us.net 2606:4700:3033::ac43:c768
  • AAAA amazon-billing-us.net 2606:4700:3035::6815:54f2

Whois Data

  • Domain Name: AMAZON-BILLING-US.NET
  • Registry Domain ID: 2633578698_DOMAIN_NET-VRSN
  • Registrar URL: http://www.wildwestdomains.com
  • Updated Date: 2021-08-13T14:02:09Z
  • Creation Date: 2021-08-13T13:42:37Z
  • Registry Expiry Date: 2022-08-13T13:42:37Z
  • Registrar: Wild West Domains, LLC
  • Registrar IANA ID: 440
  • Registrar Abuse Contact Email: abuse@wildwestdomains.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: HAL.NS.CLOUDFLARE.COM
  • Name Server: SOFIA.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: amazon-billing-us.net
  • Registry Domain ID: 2633578698_DOMAIN_NET-VRSN
  • Registrar URL: https://www.wildwestdomains.com
  • Updated Date: 2021-08-13T08:42:38Z
  • Creation Date: 2021-08-13T08:42:37Z
  • Registrar Registration Expiration Date: 2022-08-13T08:42:37Z
  • Registrar: Wild West Domains, LLC
  • Registrar IANA ID: 440
  • Registrar Abuse Contact Email: abuse@wildwestdomains.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Reseller: Azure
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 2155 E Warner Rd
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85284
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax: +1.4806242598
  • Registrant Fax Ext:
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Registration Private
  • Tech Organization: Domains By Proxy, LLC
  • Tech Street: DomainsByProxy.com
  • Tech Street: 2155 E Warner Rd
  • Tech City: Tempe
  • Tech State/Province: Arizona
  • Tech Postal Code: 85284
  • Tech Country: US
  • Tech Phone: +1.4806242599
  • Tech Phone Ext:
  • Tech Fax: +1.4806242598
  • Tech Fax Ext:
  • Registry Admin ID: Not Available From Registry
  • Admin Name: Registration Private
  • Admin Organization: Domains By Proxy, LLC
  • Admin Street: DomainsByProxy.com
  • Admin Street: 2155 E Warner Rd
  • Admin City: Tempe
  • Admin State/Province: Arizona
  • Admin Postal Code: 85284
  • Admin Country: US
  • Admin Phone: +1.4806242599
  • Admin Phone Ext:
  • Admin Fax: +1.4806242598
  • Admin Fax Ext:
  • Name Server: HAL.NS.CLOUDFLARE.COM
  • Name Server: SOFIA.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 03:ec:eb:7a:e5:90:6b:0a:e4:51:dc:d7:e3:03:2a:a5:57:21
  • Signature Algorithm: ecdsa-with-SHA384
  • Issuer: C = US, O = Let’s Encrypt, CN = E1
  • Validity
  • Not Before: Apr 8 09:22:34 2022 GMT
  • Not After : Jul 7 09:22:33 2022 GMT
  • Subject: CN = *.amazon-billing-us.net
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:47:34:d6:79:d2:8e:b6:da:28:01:66:1f:3e:f3:
  • a1:71:f0:92:f4:a7:f5:26:10:72:79:29:aa:87:19:
  • d0:d3:56:ac:37:92:fa:61:e2:24:ee:e2:76:13:78:
  • 3f:16:05:a5:a6:4c:34:9e:92:54:45:d1:8d:29:8f:
  • ae:10:a9:fd:1e
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • A2:5C:17:A6:A3:86:6E:AC:25:8A:6E:E6:C7:62:4A:B3:8C:9E:04:F8
  • X509v3 Authority Key Identifier:
  • keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
  • Authority Information Access:
  • OCSP - URI:http://e1.o.lencr.org
  • CA Issuers - URI:http://e1.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:*.amazon-billing-us.net, DNS:amazon-billing-us.net
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
  • EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
  • Timestamp : Apr 8 10:22:34.311 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:01:B5:F6:CF:B3:6F:A1:8C:8C:55:2A:99:
  • 0D:C7:A8:73:63:C8:8E:9D:57:3F:4C:53:3F:2F:CF:A8:
  • 1A:AE:9A:6D:02:20:1E:B4:E7:0E:33:19:1E:75:43:25:
  • 50:71:BC:26:AD:D0:94:0B:75:48:7C:F9:43:0F:7B:6D:
  • C5:8D:2D:5C:90:62
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
  • BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
  • Timestamp : Apr 8 10:22:34.316 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:9F:25:F4:50:A0:52:EA:49:A4:14:56:
  • 04:63:7B:15:69:36:33:2E:FD:1D:D5:9F:F7:8E:BD:3F:
  • 66:A6:CB:46:B1:02:21:00:FE:48:0E:65:65:10:5F:09:
  • 36:0A:D2:D4:8C:15:52:5D:A2:22:0A:FB:AB:DB:98:05:
  • C3:A9:D5:4A:24:4A:F8:FA
  • Signature Algorithm: ecdsa-with-SHA384
  • 30:66:02:31:00:a4:1b:28:1d:d5:20:d0:14:fe:f0:c0:27:ca:
  • 78:7d:d9:90:92:9c:e7:27:1f:ad:cf:b5:5f:31:8c:35:28:70:
  • a5:e2:b6:11:5c:bb:0d:82:da:a1:63:b3:f0:71:33:83:da:02:
  • 31:00:b4:85:dc:dd:40:61:c8:73:a5:d3:62:6a:0b:19:30:99:
  • 8b:39:52:c9:ce:2a:38:61:71:87:2e:4c:60:c7:df:31:a3:00:
  • d6:5f:6a:a8:36:ea:b1:fe:fc:40:39:df:67:6f

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: