antivirus-prot.com Threat Intelligence and Information
Apr 23, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 32843
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- antivirus-prot.com. IN A
- ANSWER SECTION:
- antivirus-prot.com. 295 IN A 172.67.215.36
- antivirus-prot.com. 295 IN A 104.21.61.210
- Query time: 8 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Sat Apr 23 20:43:53 UTC 2022
- MSG SIZE rcvd: 79
DNS Records
- SOA angelina.ns.cloudflare.com 108.162.194.232
- SOA angelina.ns.cloudflare.com 162.159.38.232
- SOA angelina.ns.cloudflare.com 172.64.34.232
- NS angelina.ns.cloudflare.com 108.162.194.232
- NS angelina.ns.cloudflare.com 172.64.34.232
- NS angelina.ns.cloudflare.com 162.159.38.232
- NS angelina.ns.cloudflare.com 2606:4700:50::a29f:26e8
- NS angelina.ns.cloudflare.com 2803:f800:50::6ca2:c2e8
- NS angelina.ns.cloudflare.com 2a06:98c1:50::ac40:22e8
- NS merlin.ns.cloudflare.com 108.162.193.205
- NS merlin.ns.cloudflare.com 172.64.33.205
- NS merlin.ns.cloudflare.com 173.245.59.205
- NS merlin.ns.cloudflare.com 2606:4700:58::adf5:3bcd
- NS merlin.ns.cloudflare.com 2803:f800:50::6ca2:c1cd
- NS merlin.ns.cloudflare.com 2a06:98c1:50::ac40:21cd
- MX eforward3.registrar-servers.com 162.255.118.51
- MX eforward2.registrar-servers.com 162.255.118.52
- MX eforward1.registrar-servers.com 162.255.118.51
- MX eforward4.registrar-servers.com 162.255.118.52
- MX eforward5.registrar-servers.com 162.255.118.51
- A antivirus-prot.com 172.67.215.36
- A antivirus-prot.com 104.21.61.210
- AAAA antivirus-prot.com 2606:4700:3030::ac43:d724
- AAAA antivirus-prot.com 2606:4700:3036::6815:3dd2
Whois Data
- Domain Name: ANTIVIRUS-PROT.COM
- Registry Domain ID: 2647216423_DOMAIN_COM-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 2021-10-12T11:59:20Z
- Creation Date: 2021-10-12T09:22:12Z
- Registry Expiry Date: 2022-10-12T09:22:12Z
- Registrar: NameCheap, Inc.
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.6613102107
- Name Server: ANGELINA.NS.CLOUDFLARE.COM
- Name Server: MERLIN.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- Domain name: antivirus-prot.com
- Registry Domain ID: 2647216423_DOMAIN_COM-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 0001-01-01T00:00:00.00Z
- Creation Date: 2021-10-12T09:22:12.00Z
- Registrar Registration Expiration Date: 2022-10-12T09:22:12.00Z
- Registrar: NAMECHEAP INC
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.9854014545
- Reseller: NAMECHEAP INC
- Registry Registrant ID:
- Registrant Name: Redacted for Privacy
- Registrant Organization: Privacy service provided by Withheld for Privacy ehf
- Registrant Street: Kalkofnsvegur 2
- Registrant City: Reykjavik
- Registrant State/Province: Capital Region
- Registrant Postal Code: 101
- Registrant Country: IS
- Registrant Phone: +354.4212434
- Registrant Phone Ext:
- Registrant Fax:
- Registrant Fax Ext:
- Registrant Email: 5437bd95afa54f44a89c745bccab6117.protect@withheldforprivacy.com
- Registry Admin ID:
- Admin Name: Redacted for Privacy
- Admin Organization: Privacy service provided by Withheld for Privacy ehf
- Admin Street: Kalkofnsvegur 2
- Admin City: Reykjavik
- Admin State/Province: Capital Region
- Admin Postal Code: 101
- Admin Country: IS
- Admin Phone: +354.4212434
- Admin Phone Ext:
- Admin Fax:
- Admin Fax Ext:
- Admin Email: 5437bd95afa54f44a89c745bccab6117.protect@withheldforprivacy.com
- Registry Tech ID:
- Tech Name: Redacted for Privacy
- Tech Organization: Privacy service provided by Withheld for Privacy ehf
- Tech Street: Kalkofnsvegur 2
- Tech City: Reykjavik
- Tech State/Province: Capital Region
- Tech Postal Code: 101
- Tech Country: IS
- Tech Phone: +354.4212434
- Tech Phone Ext:
- Tech Fax:
- Tech Fax Ext:
- Tech Email: 5437bd95afa54f44a89c745bccab6117.protect@withheldforprivacy.com
- Name Server: angelina.ns.cloudflare.com
- Name Server: merlin.ns.cloudflare.com
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 02:4c:5f:38:ad:b0:ff:75:0c:b5:46:99:aa:66:3e:7b
- Signature Algorithm: ecdsa-with-SHA256
- Issuer: C = US, O = “Cloudflare, Inc.”, CN = Cloudflare Inc ECC CA-3
- Validity
- Not Before: Oct 12 00:00:00 2021 GMT
- Not After : Oct 11 23:59:59 2022 GMT
- Subject: C = US, ST = California, L = San Francisco, O = “Cloudflare, Inc.”, CN = sni.cloudflaressl.com
- Subject Public Key Info:
- Public Key Algorithm: id-ecPublicKey
- Public-Key: (256 bit)
- pub:
- 04:80:a2:25:e1:2e:a6:13:47:05:e5:4d:ec:c7:5b:
- 44:79:40:c4:2b:0b:9f:a4:37:8a:f8:e6:f2:d3:54:
- 1a:90:f8:e1:92:f5:63:e9:6a:62:1f:80:36:00:54:
- a9:61:25:5a:22:93:33:21:0b:60:ce:08:48:1f:d7:
- 31:74:5c:35:56
- ASN1 OID: prime256v1
- NIST CURVE: P-256
- X509v3 extensions:
- X509v3 Authority Key Identifier:
- keyid:A5:CE:37:EA:EB:B0:75:0E:94:67:88:B4:45:FA:D9:24:10:87:96:1F
- X509v3 Subject Key Identifier:
- D2:5B:AF:96:6B:BF:D1:FD:76:56:81:C4:4F:FB:47:58:D6:9C:58:A1
- X509v3 Subject Alternative Name:
- DNS:antivirus-prot.com, DNS:sni.cloudflaressl.com, DNS:*.antivirus-prot.com
- X509v3 Key Usage: critical
- Digital Signature
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 CRL Distribution Points:
- Full Name:
- URI:http://crl3.digicert.com/CloudflareIncECCCA-3.crl
- Full Name:
- URI:http://crl4.digicert.com/CloudflareIncECCCA-3.crl
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.2
- CPS: http://www.digicert.com/CPS
- Authority Information Access:
- OCSP - URI:http://ocsp.digicert.com
- CA Issuers - URI:http://cacerts.digicert.com/CloudflareIncECCCA-3.crt
- X509v3 Basic Constraints: critical
- CA:FALSE
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
- BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
- Timestamp : Oct 12 12:04:01.175 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:43:02:20:24:14:F2:7A:1E:71:09:62:EB:B8:A4:9B:
- F7:1A:0C:AA:21:8E:85:B4:E4:74:22:56:A1:03:CF:66:
- 39:D7:20:C1:02:1F:1C:6D:DC:6A:18:6E:C4:8A:E7:1D:
- 5E:F8:F3:5F:DB:B7:26:5D:B9:D9:9E:F9:AA:AE:D4:D1:
- 20:A0:97:2B:F9
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 51:A3:B0:F5:FD:01:79:9C:56:6D:B8:37:78:8F:0C:A4:
- 7A:CC:1B:27:CB:F7:9E:88:42:9A:0D:FE:D4:8B:05:E5
- Timestamp : Oct 12 12:04:01.242 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:56:07:15:32:DF:5F:79:70:7B:20:6F:1F:
- 83:B8:53:A3:E3:91:AB:6A:EB:9E:B2:5B:07:BA:A7:92:
- DC:35:9E:6E:02:20:60:FF:1F:BA:2D:DF:35:15:AF:53:
- AE:E4:30:14:EA:63:76:1F:AD:90:1C:A7:12:20:8A:FC:
- 1B:01:CC:83:5B:69
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
- 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
- Timestamp : Oct 12 12:04:01.136 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:37:07:3D:D3:FA:CF:CE:6F:C1:F8:08:2F:
- 90:AE:04:68:E8:81:1D:44:D4:A4:F0:57:69:1A:E2:20:
- 4D:5E:D6:A0:02:20:35:ED:AD:CE:1C:A9:A1:47:96:DF:
- 09:DE:30:3B:A0:A4:46:89:38:A9:0F:84:39:51:EE:25:
- 83:D5:F4:A0:AF:BE
- Signature Algorithm: ecdsa-with-SHA256
- 30:45:02:21:00:e6:59:b7:9c:21:44:2b:f8:36:b8:38:69:39:
- 35:c0:42:fa:a3:19:5c:b1:57:c2:52:1d:9b:e6:63:bd:77:c6:
- f2:02:20:17:a5:a3:a3:f9:ff:c2:de:41:79:33:7b:fc:20:b0:
- b0:c6:ec:b8:ae:02:b7:9f:10:3f:11:9d:df:9c:8f:a3:c7