bitcoin-scams.net Threat Intelligence and Information
Apr 25, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 60635
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- bitcoin-scams.net. IN A
- ANSWER SECTION:
- bitcoin-scams.net. 299 IN A 172.67.167.188
- bitcoin-scams.net. 299 IN A 104.21.12.218
- Query time: 8 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Thu May 05 00:49:34 UTC 2022
- MSG SIZE rcvd: 78
DNS Records
- SOA malavika.ns.cloudflare.com 108.162.194.165
- SOA malavika.ns.cloudflare.com 162.159.38.165
- SOA malavika.ns.cloudflare.com 172.64.34.165
- NS malavika.ns.cloudflare.com 162.159.38.165
- NS malavika.ns.cloudflare.com 108.162.194.165
- NS malavika.ns.cloudflare.com 172.64.34.165
- NS malavika.ns.cloudflare.com 2a06:98c1:50::ac40:22a5
- NS malavika.ns.cloudflare.com 2606:4700:50::a29f:26a5
- NS malavika.ns.cloudflare.com 2803:f800:50::6ca2:c2a5
- NS peter.ns.cloudflare.com 108.162.195.3
- NS peter.ns.cloudflare.com 162.159.44.3
- NS peter.ns.cloudflare.com 172.64.35.3
- NS peter.ns.cloudflare.com 2606:4700:58::a29f:2c03
- NS peter.ns.cloudflare.com 2803:f800:50::6ca2:c303
- NS peter.ns.cloudflare.com 2a06:98c1:50::ac40:2303
- MX amir.mx.cloudflare.net 162.159.205.11
- MX amir.mx.cloudflare.net 162.159.205.13
- MX amir.mx.cloudflare.net 162.159.205.12
- MX linda.mx.cloudflare.net 162.159.205.24
- MX linda.mx.cloudflare.net 162.159.205.23
- MX linda.mx.cloudflare.net 162.159.205.25
- MX isaac.mx.cloudflare.net 162.159.205.17
- MX isaac.mx.cloudflare.net 162.159.205.18
- MX isaac.mx.cloudflare.net 162.159.205.19
- MX amir.mx.cloudflare.net 2606:4700:f5::12
- MX amir.mx.cloudflare.net 2606:4700:f5::11
- MX amir.mx.cloudflare.net 2606:4700:f5::13
- MX linda.mx.cloudflare.net 2606:4700:f5::b
- MX linda.mx.cloudflare.net 2606:4700:f5::c
- MX linda.mx.cloudflare.net 2606:4700:f5::d
- MX isaac.mx.cloudflare.net 2606:4700:f5::e
- MX isaac.mx.cloudflare.net 2606:4700:f5::10
- MX isaac.mx.cloudflare.net 2606:4700:f5::f
- A bitcoin-scams.net 104.21.12.218
- A bitcoin-scams.net 172.67.167.188
- AAAA bitcoin-scams.net 2606:4700:3035::6815:cda
- AAAA bitcoin-scams.net 2606:4700:3031::ac43:a7bc
Whois Data
- Domain Name: BITCOIN-SCAMS.NET
- Registry Domain ID: 2645217813_DOMAIN_NET-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 2021-10-05T17:39:04Z
- Creation Date: 2021-10-03T09:16:53Z
- Registry Expiry Date: 2022-10-03T09:16:53Z
- Registrar: NameCheap, Inc.
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.6613102107
- Name Server: MALAVIKA.NS.CLOUDFLARE.COM
- Name Server: PETER.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- Domain name: bitcoin-scams.net
- Registry Domain ID: 2645217813_DOMAIN_NET-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 0001-01-01T00:00:00.00Z
- Creation Date: 2021-10-03T09:16:53.00Z
- Registrar Registration Expiration Date: 2022-10-03T09:16:53.00Z
- Registrar: NAMECHEAP INC
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.9854014545
- Reseller: NAMECHEAP INC
- Registry Registrant ID:
- Registrant Name: Redacted for Privacy
- Registrant Organization: Privacy service provided by Withheld for Privacy ehf
- Registrant Street: Kalkofnsvegur 2
- Registrant City: Reykjavik
- Registrant State/Province: Capital Region
- Registrant Postal Code: 101
- Registrant Country: IS
- Registrant Phone: +354.4212434
- Registrant Phone Ext:
- Registrant Fax:
- Registrant Fax Ext:
- Registrant Email: a44ade6b617d464e9502185609a0bad0.protect@withheldforprivacy.com
- Registry Admin ID:
- Admin Name: Redacted for Privacy
- Admin Organization: Privacy service provided by Withheld for Privacy ehf
- Admin Street: Kalkofnsvegur 2
- Admin City: Reykjavik
- Admin State/Province: Capital Region
- Admin Postal Code: 101
- Admin Country: IS
- Admin Phone: +354.4212434
- Admin Phone Ext:
- Admin Fax:
- Admin Fax Ext:
- Admin Email: a44ade6b617d464e9502185609a0bad0.protect@withheldforprivacy.com
- Registry Tech ID:
- Tech Name: Redacted for Privacy
- Tech Organization: Privacy service provided by Withheld for Privacy ehf
- Tech Street: Kalkofnsvegur 2
- Tech City: Reykjavik
- Tech State/Province: Capital Region
- Tech Postal Code: 101
- Tech Country: IS
- Tech Phone: +354.4212434
- Tech Phone Ext:
- Tech Fax:
- Tech Fax Ext:
- Tech Email: a44ade6b617d464e9502185609a0bad0.protect@withheldforprivacy.com
- Name Server: malavika.ns.cloudflare.com
- Name Server: peter.ns.cloudflare.com
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 04:bc:24:39:cd:ba:1f:9d:bb:17:d8:91:5f:78:e3:3a:70:c4
- Signature Algorithm: ecdsa-with-SHA384
- Issuer: C = US, O = Let’s Encrypt, CN = E1
- Validity
- Not Before: Apr 1 11:52:26 2022 GMT
- Not After : Jun 30 11:52:25 2022 GMT
- Subject: CN = *.bitcoin-scams.net
- Subject Public Key Info:
- Public Key Algorithm: id-ecPublicKey
- Public-Key: (256 bit)
- pub:
- 04:ea:35:57:7e:0d:37:1b:39:f6:ef:83:39:ad:b5:
- cd:c0:1a:97:23:75:a6:1b:d7:f8:d5:d9:1c:f1:c0:
- c5:2b:f1:e0:09:8d:f9:00:8c:0b:e8:4c:4e:82:6e:
- 1f:b6:c8:8e:a7:2a:2a:4f:85:fc:6c:ab:72:9e:b7:
- 84:79:29:42:36
- ASN1 OID: prime256v1
- NIST CURVE: P-256
- X509v3 extensions:
- X509v3 Key Usage: critical
- Digital Signature
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Subject Key Identifier:
- 75:B4:41:D3:81:BA:DC:FF:C2:D4:83:1C:DA:30:7A:C5:2A:C6:72:7E
- X509v3 Authority Key Identifier:
- keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
- Authority Information Access:
- OCSP - URI:http://e1.o.lencr.org
- CA Issuers - URI:http://e1.i.lencr.org/
- X509v3 Subject Alternative Name:
- DNS:*.bitcoin-scams.net, DNS:bitcoin-scams.net
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.1
- Policy: 1.3.6.1.4.1.44947.1.1.1
- CPS: http://cps.letsencrypt.org
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
- BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
- Timestamp : Apr 1 12:52:26.267 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:32:0B:02:64:8C:58:97:AD:1E:3D:0B:2B:
- 1E:7A:DF:AA:C2:91:32:67:D4:F7:06:34:D4:3A:10:E5:
- 8F:FD:E6:0C:02:20:0E:50:6D:2C:10:82:FA:81:3C:7D:
- D5:5D:19:AC:C4:9F:B6:6E:C8:6D:22:03:12:50:01:AA:
- CF:9C:69:DB:A3:31
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 6F:53:76:AC:31:F0:31:19:D8:99:00:A4:51:15:FF:77:
- 15:1C:11:D9:02:C1:00:29:06:8D:B2:08:9A:37:D9:13
- Timestamp : Apr 1 12:52:25.894 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:0E:7C:67:D5:8F:CA:D7:DC:CD:F6:46:60:
- B0:7E:13:69:3B:41:10:29:A6:4C:01:3D:BD:39:9E:91:
- 10:7D:8E:5F:02:20:59:7C:68:B1:F9:77:A7:6B:35:01:
- C5:61:FE:57:51:FA:CE:DB:72:E3:1D:15:CC:22:C9:A9:
- 59:47:88:EE:8E:00
- Signature Algorithm: ecdsa-with-SHA384
- 30:64:02:30:49:da:dd:ff:12:73:b5:9f:89:d0:c7:8f:5d:f5:
- f6:9d:79:6c:ec:7a:aa:13:3c:9a:e7:91:64:20:56:25:79:12:
- 78:bc:f5:40:45:29:88:09:0a:b8:e4:0d:45:5e:f2:b9:02:30:
- 02:af:07:dc:7c:ce:fb:f0:a4:aa:6d:35:bb:b6:17:df:51:b2:
- d5:23:40:50:79:b9:05:ff:11:46:d4:06:28:38:25:dd:75:23:
- 79:29:4c:f6:6c:7f:fa:eb:09:e5:03:37