benifits.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 50667
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • benifits.com. IN A
  • ANSWER SECTION:
  • benifits.com. 3596 IN A 103.224.182.238
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Sun Nov 09 00:08:15 UTC 2025
  • MSG SIZE rcvd: 57

Whois Data

  • Domain Name: BENIFITS.COM
  • Registry Domain ID: 68664972_DOMAIN_COM-VRSN
  • Registrar URL: http://www.uniregistry.com
  • Updated Date: 2025-11-03T19:55:18Z
  • Creation Date: 2001-04-01T13:34:36Z
  • Registry Expiry Date: 2027-04-01T13:34:36Z
  • Registrar: GoDaddy Online Services Cayman Islands Ltd.
  • Registrar IANA ID: 1659
  • Registrar Abuse Contact Email: abuse@uniregistry.com
  • Registrar Abuse Contact Phone: +1 4805058800
  • Name Server: 2156.NS1.ABOVEDOMAINS.COM
  • Name Server: 2156.NS2.ABOVEDOMAINS.COM
  • DNSSEC: unsigned
  • Domain Name: benifits.com
  • Registry Domain ID: 68664972_DOMAIN_COM-VRSN
  • Registrar URL: http://uniregistry.com
  • Updated Date: 2025-11-03T14:17:01Z
  • Creation Date: 2001-04-01T08:34:36Z
  • Registrar Registration Expiration Date: 2027-04-01T08:34:36Z
  • Registrar: GoDaddy Online Services Cayman Islands Ltd.
  • Registrar IANA ID: 1659
  • Registrar Abuse Contact Email: abuse@uniregistry.com
  • Registrar Abuse Contact Phone: +1.4426008800
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 100 S. Mill Ave, Suite 1600
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85281
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Name Server: 2156.NS1.ABOVEDOMAINS.COM
  • Name Server: 2156.NS2.ABOVEDOMAINS.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 06:1b:b9:a5:ba:f1:b7:ef:2f:2c:85:f8:35:9b:af:01:51:7c
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R13
  • Validity
  • Not Before: Nov 3 19:13:03 2025 GMT
  • Not After : Feb 1 19:13:02 2026 GMT
  • Subject: CN = qutvihlwup.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (4096 bit)
  • Modulus:
  • 00:cc:2b:1e:16:1f:6c:0a:5c:63:54:1d:03:4f:b9:
  • 0a:57:d6:b6:04:b6:26:46:ee:34:8d:6c:ce:52:f0:
  • 2c:e9:b2:01:d6:6d:a5:bf:9d:86:3a:52:e4:87:59:
  • af:bb:6f:9b:6c:4d:a9:14:0a:9e:10:25:b5:71:df:
  • db:e7:6c:33:04:44:91:ed:84:fa:e6:19:a2:43:cc:
  • 01:f0:02:08:a8:ef:ef:db:c9:f1:90:e2:11:ba:80:
  • 23:bd:0e:6e:82:4b:8a:1a:85:e3:db:e6:54:4c:09:
  • 76:e8:4a:c6:e9:8d:fd:1d:88:40:e8:1a:15:5a:a5:
  • 37:ae:12:37:08:ca:92:24:3d:0d:71:81:92:79:06:
  • b2:53:39:23:90:39:19:75:89:90:ad:cb:dc:fc:28:
  • 38:61:d1:0d:53:b2:c9:7f:68:77:19:53:b4:ad:65:
  • 5f:cc:65:6e:57:1e:59:54:9c:e8:aa:bf:79:ad:81:
  • e9:aa:67:68:ac:d2:1f:c7:d5:55:4d:e0:2a:29:5b:
  • 99:89:e2:34:70:fb:13:1c:e9:4f:3b:37:c7:50:d4:
  • 39:ed:3b:ac:38:9a:db:af:68:be:85:81:c3:58:b9:
  • c9:eb:01:ac:b9:a4:34:8d:fc:96:1f:ef:e6:91:04:
  • 60:42:f0:df:2a:17:e0:60:d7:87:30:0c:c9:d8:7b:
  • 25:6a:4e:00:4c:56:31:3a:4a:82:f8:86:c1:67:dd:
  • e7:0e:7c:fe:b5:0b:bd:9f:10:8b:59:42:ab:cc:a6:
  • 68:fc:36:a3:05:24:e4:c4:d1:3d:48:f6:95:d8:8a:
  • 66:7c:d6:de:ac:3a:cf:e0:df:d6:ea:dd:93:09:47:
  • 9c:11:5a:4d:16:c9:66:b7:a9:c6:0e:40:10:af:99:
  • 40:3a:fc:71:6c:e2:e2:15:fe:17:85:4d:00:68:94:
  • e9:ca:a8:73:4c:39:aa:95:ee:9f:d3:f1:6a:cf:b7:
  • 18:fe:41:a7:ee:49:c3:96:24:29:db:9b:86:db:30:
  • ee:89:2e:b7:0e:ac:fd:6b:f2:46:bb:27:1a:52:f5:
  • da:2a:93:b9:70:75:e8:5e:c7:2b:9f:9e:42:f2:6f:
  • df:f8:d9:46:c9:81:c8:1b:d7:4d:10:af:4c:f3:6d:
  • e7:8f:8c:6d:9b:fc:1b:f3:5a:3c:46:d2:85:fc:41:
  • 89:81:fc:fe:3f:16:af:e7:b8:7c:cc:a2:02:82:4c:
  • bb:a7:5f:28:08:21:89:30:d4:3a:06:d5:21:9f:7a:
  • 0a:78:01:85:ad:c8:65:d5:ae:9a:d5:11:6c:6c:2d:
  • c7:a4:1f:34:a2:26:82:0e:06:ac:3e:5e:04:52:8e:
  • 4d:e3:c8:25:88:64:a2:68:69:99:e0:e6:be:cc:83:
  • 03:6d:d7
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 99:49:BD:BD:72:0E:E8:B3:3E:D3:43:69:3F:D8:4D:2A:90:64:67:62
  • X509v3 Authority Key Identifier:
  • E7:AB:9F:0F:2C:33:A0:53:D3:5E:4F:78:C8:B2:84:0E:3B:D6:92:33
  • Authority Information Access:
  • CA Issuers - URI:http://r13.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:.1.hansonrooftile.com, DNS:.2faconfirm.com, DNS:.accounts.pandex.io, DNS:.ace.lat, DNS:.ad.hansonrooftile.com, DNS:.api.pandex.io, DNS:.benifits.com, DNS:.blog.hansonrooftile.com, DNS:.bolly-flix.pro, DNS:.cartoons.se, DNS:.comwww.hansonrooftile.com, DNS:.console.pandex.io, DNS:.correo.hansonrooftile.com, DNS:.dctravel.co.uk, DNS:.ddeutschlandcard.de, DNS:.elitebabe.top, DNS:.exam.lat, DNS:.git.vodeotron.com, DNS:.gizmodo.news, DNS:.hansonrooftile.com, DNS:.hoola.live, DNS:.lib.hansonrooftile.com, DNS:.mail.hansonrooftile.com, DNS:.memorial.se, DNS:.moncompte.vodeotron.com, DNS:.pandex.io, DNS:.panel.hansonrooftile.com, DNS:.polymath.se, DNS:.portal.hansonrooftile.com, DNS:.publications.pandex.io, DNS:.quickergpt.com, DNS:.qutvihlwup.com, DNS:.radial.se, DNS:.serviciosdeapoyoparaelcncer663933.icu, DNS:.shop.ddeutschlandcard.de, DNS:.sip.hansonrooftile.com, DNS:.sitemap.pandex.io, DNS:.sitemaps.pandex.io, DNS:.smartsnips.pandex.io, DNS:.store.vodeotron.com, DNS:.subject.se, DNS:.theav197.cc, DNS:.tourguide.se, DNS:.treenity.org, DNS:.tryout.se, DNS:.videocloud.top, DNS:.vietnam.hansonrooftile.com, DNS:.vodeotron.com, DNS:.voronezh.hansonrooftile.com, DNS:.wardrobe.live, DNS:.webdesign.hansonrooftile.com, DNS:.wildcard.pandex.io, DNS:.ww16.hansonrooftile.com, DNS:.ww17.hansonrooftile.com, DNS:.ww25.pandex.io, DNS:.ww35.hansonrooftile.com, DNS:.ww38.bolly-flix.pro, DNS:.ww38.gizmodo.news, DNS:.www.bolly-flix.pro, DNS:.www.pandex.io, DNS:.yaojidh7.cc, DNS:.zeit.ddeutschlandcard.de, DNS:2faconfirm.com, DNS:ace.lat, DNS:benifits.com, DNS:bolly-flix.pro, DNS:cartoons.se, DNS:dctravel.co.uk, DNS:ddeutschlandcard.de, DNS:elitebabe.top, DNS:exam.lat, DNS:gizmodo.news, DNS:hansonrooftile.com, DNS:hoola.live, DNS:memorial.se, DNS:pandex.io, DNS:polymath.se, DNS:quickergpt.com, DNS:qutvihlwup.com, DNS:radial.se, DNS:serviciosdeapoyoparaelcncer663933.icu, DNS:subject.se, DNS:theav197.cc, DNS:tourguide.se, DNS:treenity.org, DNS:tryout.se, DNS:videocloud.top, DNS:vodeotron.com, DNS:wardrobe.live, DNS:yaojidh7.cc
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://r13.c.lencr.org/125.crl
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 49:9C:9B:69:DE:1D:7C:EC:FC:36:DE:CD:87:64:A6:B8:
  • 5B:AF:0A:87:80:19:D1:55:52:FB:E9:EB:29:DD:F8:C3
  • Timestamp : Nov 3 20:11:33.997 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:55:44:3A:16:C3:13:1E:A9:24:95:E7:28:
  • 8D:40:77:7D:D7:8D:63:21:3D:2D:69:84:D5:81:13:2D:
  • 97:46:C3:6C:02:20:1E:BF:B9:39:DB:D2:37:6D:17:CC:
  • FE:D4:4F:CD:2B:62:94:70:14:52:70:49:5B:A0:66:C9:
  • E7:D5:8D:40:86:CC
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 96:97:64:BF:55:58:97:AD:F7:43:87:68:37:08:42:77:
  • E9:F0:3A:D5:F6:A4:F3:36:6E:46:A4:3F:0F:CA:A9:C6
  • Timestamp : Nov 3 20:11:34.080 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:12:45:FA:B6:01:97:75:FD:EA:B7:56:99:
  • C5:57:6B:71:B3:3A:E8:30:FE:40:84:41:9D:66:F3:B5:
  • 71:B0:CC:1A:02:21:00:ED:62:A8:A3:93:57:EE:C4:CD:
  • 6D:65:53:67:68:5C:30:4E:24:67:18:E3:AF:FE:BD:79:
  • F5:05:62:5F:3F:02:77
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 16:4c:58:10:9d:fb:d6:fa:1e:ce:01:ea:f6:1d:6c:90:e4:a8:
  • ed:27:74:32:a0:6e:3f:ff:7c:49:19:0e:3f:44:eb:37:19:31:
  • 93:ae:df:cd:b6:ba:ee:57:93:ff:70:c9:4a:0a:bc:36:dc:ae:
  • 7e:e5:fe:ba:1b:15:ef:48:e0:10:d9:e9:f3:42:a8:d7:31:f0:
  • a7:b7:e1:55:22:3a:2a:57:dc:d6:ff:fb:9b:12:ca:cb:f7:d4:
  • 57:64:3a:37:be:1a:47:35:c3:61:5b:c8:25:fa:93:8c:da:97:
  • cd:f9:6b:05:79:14:55:bf:5f:0e:19:87:1c:2f:20:cf:24:da:
  • d6:57:62:bf:56:d4:f5:f7:52:cd:81:7d:f2:ac:69:48:9e:22:
  • 76:63:68:56:bb:9c:68:e1:30:f5:1f:a0:4f:a3:92:74:15:48:
  • 07:3f:4e:1d:eb:10:8c:7f:de:6d:d5:bd:84:39:a7:81:e9:0f:
  • 92:dd:d8:d5:2e:12:00:c2:52:cc:c3:6e:24:5a:63:a1:b9:68:
  • e2:ca:01:d3:5a:ed:30:3a:82:f4:44:53:53:e7:93:dc:c1:9a:
  • 4f:6b:1c:2c:50:0c:0d:21:13:ab:34:80:05:19:8b:ed:1f:24:
  • 37:30:ec:81:ab:ad:4b:93:05:81:f5:35:28:0e:c6:1a:a9:ee:
  • 44:61:a0:8a

*** Virustotal ***

*** WayBackMachine ***

Share on: