banki0wa.us Threat Intelligence and Information
Apr 25, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 44738
- flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- banki0wa.us. IN A
- ANSWER SECTION:
- banki0wa.us. 10799 IN A 40.86.16.207
- Query time: 32 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Fri Apr 29 11:31:26 UTC 2022
- MSG SIZE rcvd: 56
DNS Records
- SOA ns1.gandi.net 173.246.100.2
- NS ns-217-a.gandi.net 173.246.100.218
- NS ns-217-a.gandi.net 2001:4b98:aaaa::da
- NS ns-147-b.gandi.net 213.167.230.148
- NS ns-147-b.gandi.net 2001:4b98:aaab::94
- NS ns-221-c.gandi.net 217.70.187.222
- NS ns-221-c.gandi.net 2604:3400:aaac::de
- MX fb.mail.gandi.net 217.70.178.216
- MX fb.mail.gandi.net 217.70.178.217
- MX fb.mail.gandi.net 217.70.178.215
- MX spool.mail.gandi.net 217.70.178.1
- A banki0wa.us 40.86.16.207
- SRV _imap._tcp.banki0wa.us 104.21.6.242 0 0
- SRV _imap._tcp.banki0wa.us 172.67.135.125 0 0
- SRV _imap._tcp.banki0wa.us 2606:4700:3036::6815:6f2 0 0
- SRV _imap._tcp.banki0wa.us 2606:4700:3037::ac43:877d 0 0
- SRV _pop3._tcp.banki0wa.us 172.67.135.125 0 0
- SRV _pop3._tcp.banki0wa.us 104.21.6.242 0 0
- SRV _pop3._tcp.banki0wa.us 2606:4700:3037::ac43:877d 0 0
- SRV _pop3._tcp.banki0wa.us 2606:4700:3036::6815:6f2 0 0
- SRV _imaps._tcp.banki0wa.us mail.gandi.net 217.70.178.9 993 1
- SRV _submission._tcp.banki0wa.us mail.gandi.net 217.70.178.9 465 1
- SRV _pop3s._tcp.banki0wa.us mail.gandi.net 217.70.178.9 995 1
Whois Data
- Domain Name: banki0wa.us
- Registry Domain ID: DF80D5F7AA7C0418E9B9E159948C51DA9-GDREG
- Updated Date: 2021-10-05T14:46:49Z
- Creation Date: 2021-09-30T14:46:49Z
- Registry Expiry Date: 2022-09-30T14:46:49Z
- Registrar: Gandi SAS
- Registrar IANA ID: 81
- Registrar Abuse Contact Email: abuse@support.gandi.net
- Registrar Abuse Contact Phone: +33.170377661
- Registry Registrant ID: C494CEB008DCB40798E78B40BF4DF429F-GDREG
- Registrant Name: ISSG CLA
- Registrant Organization: CLA
- Registrant Street: 600 Washington
- Registrant Street:
- Registrant Street:
- Registrant City: Minneapolis
- Registrant State/Province: MN
- Registrant Postal Code: 63361
- Registrant Country: US
- Registrant Phone: +1.5414567902
- Registrant Phone Ext:
- Registrant Fax:
- Registrant Fax Ext:
- Registrant Email: 9c58609aa5174d63479ec5e845f201b6-31329210@contact.gandi.net
- Registrant Application Purpose: P1
- Registrant Nexus Category: C11
- Registry Admin ID: C494CEB008DCB40798E78B40BF4DF429F-GDREG
- Admin Name: ISSG CLA
- Admin Organization: CLA
- Admin Street: 600 Washington
- Admin Street:
- Admin Street:
- Admin City: Minneapolis
- Admin State/Province: MN
- Admin Postal Code: 63361
- Admin Country: US
- Admin Phone: +1.5414567902
- Admin Phone Ext:
- Admin Fax:
- Admin Fax Ext:
- Admin Email: 9c58609aa5174d63479ec5e845f201b6-31329210@contact.gandi.net
- Admin Application Purpose: P1
- Admin Nexus Category: C11
- Registry Tech ID: C494CEB008DCB40798E78B40BF4DF429F-GDREG
- Tech Name: ISSG CLA
- Tech Organization: CLA
- Tech Street: 600 Washington
- Tech Street:
- Tech Street:
- Tech City: Minneapolis
- Tech State/Province: MN
- Tech Postal Code: 63361
- Tech Country: US
- Tech Phone: +1.5414567902
- Tech Phone Ext:
- Tech Fax:
- Tech Fax Ext:
- Tech Email: 9c58609aa5174d63479ec5e845f201b6-31329210@contact.gandi.net
- Tech Application Purpose: P1
- Tech Nexus Category: C11
- Name Server: ns-221-c.gandi.net
- Name Server: ns-147-b.gandi.net
- Name Server: ns-217-a.gandi.net
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 04:97:3f:52:ed:77:54:62:4f:4d:e5:3f:cb:ba:7e:15:d7:e1
- Signature Algorithm: sha256WithRSAEncryption
- Issuer: C = US, O = Let’s Encrypt, CN = R3
- Validity
- Not Before: Apr 6 20:49:32 2022 GMT
- Not After : Jul 5 20:49:31 2022 GMT
- Subject: CN = files.jacks0npark.com
- Subject Public Key Info:
- Public Key Algorithm: rsaEncryption
- RSA Public-Key: (2048 bit)
- Modulus:
- 00:9d:44:2d:0b:f0:d9:64:dd:42:24:67:b4:9e:0e:
- 51:d8:ea:2e:41:85:26:1e:d5:1e:6d:46:92:8f:ad:
- 6c:1d:8a:03:ad:f2:d0:67:db:89:d9:4c:68:07:5b:
- da:b9:38:bd:81:ec:f8:5f:ec:c1:d5:d9:84:1e:9a:
- 89:6b:e9:9e:20:d7:be:4c:be:3e:76:3c:e9:9b:e5:
- 08:d3:49:01:2c:f0:ef:e4:45:44:b7:0e:3c:f9:db:
- ed:f2:c7:d5:7e:07:cb:5a:97:ed:f1:01:1a:ff:45:
- 98:b9:ca:96:f6:45:14:3e:4b:e4:45:86:f2:ee:73:
- 94:b0:4d:58:5e:53:35:0b:9c:fb:9f:39:ad:53:52:
- 84:44:fb:40:50:19:72:df:bd:2c:34:f7:c1:c7:c8:
- cb:95:44:40:da:3a:87:68:cd:44:2b:98:9e:b3:b2:
- ef:9b:91:8f:43:5b:cc:3e:d5:2a:2a:7b:15:cd:95:
- a2:8a:61:20:34:29:3f:59:66:d1:27:a7:86:bd:d2:
- e8:a8:e6:91:ea:a2:6c:f4:a6:f3:fe:19:fe:95:3c:
- 6c:4b:89:41:e7:5f:1a:04:41:2c:71:4e:d3:62:f5:
- 1e:84:40:c0:9a:ae:50:71:3e:1c:c6:da:6c:69:b0:
- 94:37:04:95:a7:b6:62:25:de:c9:88:09:2a:e6:07:
- d5:19
- Exponent: 65537 (0x10001)
- X509v3 extensions:
- X509v3 Key Usage: critical
- Digital Signature, Key Encipherment
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Subject Key Identifier:
- 98:20:85:78:88:66:7A:CF:EB:6C:8C:09:1C:AC:22:62:C7:BF:17:34
- X509v3 Authority Key Identifier:
- keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
- Authority Information Access:
- OCSP - URI:http://r3.o.lencr.org
- CA Issuers - URI:http://r3.i.lencr.org/
- X509v3 Subject Alternative Name:
- DNS:citrix.banki0wa.us, DNS:files.banki0wa.us, DNS:files.jacks0npark.com
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.1
- Policy: 1.3.6.1.4.1.44947.1.1.1
- CPS: http://cps.letsencrypt.org
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
- 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
- Timestamp : Apr 6 21:49:33.213 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:CE:87:3C:99:09:31:67:C7:A3:B8:8E:
- 71:6C:1E:A2:11:FF:31:1F:A4:AB:4A:52:9A:AE:BB:FB:
- 77:79:BE:B7:25:02:20:10:75:6A:5B:35:98:33:BB:EC:
- 6E:02:8E:CB:5B:6C:7A:EA:EC:1D:AA:AC:F9:BD:57:A3:
- C3:48:38:39:A6:C6:BB
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
- 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
- Timestamp : Apr 6 21:49:33.240 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:70:72:28:F0:4E:F7:C0:76:7D:4B:18:80:
- 8B:37:83:42:09:F7:14:86:BA:FD:E4:BD:4A:37:AE:F2:
- BC:8E:29:DF:02:21:00:84:9F:F4:66:57:85:54:9E:A5:
- A2:2E:EE:39:22:E1:8B:DC:00:56:97:9D:1A:5A:6F:14:
- 52:21:FA:80:3E:93:20
- Signature Algorithm: sha256WithRSAEncryption
- 73:a4:6d:aa:3f:fe:c3:c2:e2:b8:f1:3e:a7:c5:83:b5:62:cb:
- ac:f6:16:0d:0f:88:10:3a:2b:c9:ed:1a:9c:e7:23:a0:8a:12:
- 34:f7:8d:05:ab:21:9e:24:60:3a:8c:a1:89:4a:94:b4:01:c0:
- db:43:71:c0:3f:63:05:a3:30:07:37:5a:0c:c9:52:e2:c9:17:
- 5c:f3:f6:c5:67:8f:a5:cb:20:c9:17:77:55:44:de:19:c6:c9:
- 44:76:87:ba:83:3b:d7:55:7a:f8:33:a9:ce:c5:34:62:29:a8:
- 81:a6:b4:a9:1f:35:dc:c7:4f:11:d5:cc:82:b0:7a:40:c3:a0:
- 24:d0:49:64:5a:05:86:f5:86:f2:5c:8f:d1:30:c7:f8:63:68:
- f2:d1:59:97:c5:06:8e:00:db:e3:93:f5:02:d1:f2:85:97:a3:
- df:45:1a:80:b6:1c:04:df:b7:01:8c:8b:4b:0c:ae:94:d9:5e:
- 0f:9d:ce:cc:4c:4e:2c:bd:8a:14:6f:9f:0e:70:a5:08:3d:a5:
- ad:3d:4a:3f:9a:dd:d5:5b:f5:a8:e7:22:b3:73:de:d2:7e:08:
- 0c:93:c0:5d:10:50:50:e2:84:71:4d:a3:54:b5:5c:21:89:40:
- ed:c2:67:90:ce:c8:3c:b2:65:5b:29:35:1f:65:ec:d9:ba:05:
- ef:4b:b9:83