buffetalibaba.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 9709
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • buffetalibaba.com. IN A
  • ANSWER SECTION:
  • buffetalibaba.com. 298 IN A 104.21.79.214
  • buffetalibaba.com. 298 IN A 172.67.148.208
  • Query time: 64 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Sun Jul 17 11:36:02 UTC 2022
  • MSG SIZE rcvd: 78

DNS Records

  • SOA josephine.ns.cloudflare.com 108.162.194.64
  • SOA josephine.ns.cloudflare.com 162.159.38.64
  • SOA josephine.ns.cloudflare.com 172.64.34.64
  • NS josephine.ns.cloudflare.com 162.159.38.64
  • NS josephine.ns.cloudflare.com 172.64.34.64
  • NS josephine.ns.cloudflare.com 108.162.194.64
  • NS josephine.ns.cloudflare.com 2606:4700:50::a29f:2640
  • NS josephine.ns.cloudflare.com 2803:f800:50::6ca2:c240
  • NS josephine.ns.cloudflare.com 2a06:98c1:50::ac40:2240
  • NS julian.ns.cloudflare.com 108.162.195.94
  • NS julian.ns.cloudflare.com 162.159.44.94
  • NS julian.ns.cloudflare.com 172.64.35.94
  • NS julian.ns.cloudflare.com 2606:4700:58::a29f:2c5e
  • NS julian.ns.cloudflare.com 2803:f800:50::6ca2:c35e
  • NS julian.ns.cloudflare.com 2a06:98c1:50::ac40:235e
  • A buffetalibaba.com 104.21.79.214
  • A buffetalibaba.com 172.67.148.208
  • AAAA buffetalibaba.com 2606:4700:3035::ac43:94d0
  • AAAA buffetalibaba.com 2606:4700:3033::6815:4fd6

Whois Data

  • Domain Name: BUFFETALIBABA.COM
  • Registry Domain ID: 2705963853_DOMAIN_COM-VRSN
  • Registrar URL: http://gmo.jp
  • Updated Date: 2022-06-23T17:31:16Z
  • Creation Date: 2022-06-23T15:55:03Z
  • Registry Expiry Date: 2023-06-23T15:55:03Z
  • Registrar: GMO Internet, Inc. d/b/a Onamae.com
  • Registrar IANA ID: 49
  • Registrar Abuse Contact Email: abuse@gmo.jp
  • Registrar Abuse Contact Phone: +81.337709199
  • Name Server: JOSEPHINE.NS.CLOUDFLARE.COM
  • Name Server: JULIAN.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: buffetalibaba.com
  • Registry Domain ID: 2705963853_DOMAIN_COM-VRSN
  • Registrar URL: http://www.onamae.com
  • Updated Date: 2022-06-24T02:31:16Z
  • Creation Date: 2022-06-23T15:55:04Z
  • Registrar Registration Expiration Date: 2023-06-23T15:55:03Z
  • Registrar: GMO INTERNET, INC.
  • Registrar IANA ID: 49
  • Registrar Abuse Contact Email: abuse@gmo.jp
  • Registrar Abuse Contact Phone: +81.337709199
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: GMO-Z.com RUNSYSTEM
  • Registrant Organization: GMO-Z.com RUNSYSTEM JSC
  • Registrant Street: No 1, Dao Duy Anh Street
  • Registrant Street: 6F, Ocean Park Bldg
  • Registrant City: Phuong Mai Ward, Dong Da District
  • Registrant State/Province: Hanoi
  • Registrant Postal Code: 100000
  • Registrant Country: VN
  • Registrant Phone: +84.435501630
  • Registrant Phone Ext:
  • Registrant Fax: +84.437725204
  • Registrant Fax Ext:
  • Registrant Email: info@tenten.vn
  • Registry Admin ID: Not Available From Registry
  • Admin Name: GMO-Z.com RUNSYSTEM
  • Admin Organization: GMO-Z.com RUNSYSTEM JSC
  • Admin Street: No 1, Dao Duy Anh Street
  • Admin Street: 6F, Ocean Park Bldg
  • Admin City: Phuong Mai Ward, Dong Da District
  • Admin State/Province: Hanoi
  • Admin Postal Code: 100000
  • Admin Country: VN
  • Admin Phone: +84.435501630
  • Admin Phone Ext:
  • Admin Fax: +84.437725204
  • Admin Fax Ext:
  • Admin Email: info@tenten.vn
  • Registry Tech ID: Not Available From Registry
  • Tech Name: GMO-Z.com RUNSYSTEM
  • Tech Organization: GMO-Z.com RUNSYSTEM JSC
  • Tech Street: No 1, Dao Duy Anh Stree
  • Tech Street: 6F, Ocean Park Bldg
  • Tech City: Phuong Mai Ward, Dong Da District
  • Tech State/Province: Hanoi
  • Tech Postal Code: 100000
  • Tech Country: VN
  • Tech Phone: +84.435501630
  • Tech Phone Ext:
  • Tech Fax: +84.437725204
  • Tech Fax Ext:
  • Tech Email: info@tenten.vn
  • Name Server: josephine.ns.cloudflare.com
  • Name Server: julian.ns.cloudflare.com
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 07:01:5c:4b:d8:55:0d:d5:f7:51:80:cb:33:a1:58:62
  • Signature Algorithm: ecdsa-with-SHA256
  • Issuer: C = US, O = “Cloudflare, Inc.”, CN = Cloudflare Inc ECC CA-3
  • Validity
  • Not Before: Jun 23 00:00:00 2022 GMT
  • Not After : Jun 22 23:59:59 2023 GMT
  • Subject: C = US, ST = California, L = San Francisco, O = “Cloudflare, Inc.”, CN = sni.cloudflaressl.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:21:89:38:2b:33:f1:33:86:9a:0c:d3:72:f8:25:
  • a6:7d:a4:91:51:f8:d1:34:a4:a5:46:d0:b6:d8:58:
  • 39:ff:3d:8e:8e:96:8b:0b:8a:2c:5d:db:21:50:fa:
  • 22:9c:6a:eb:a9:cd:95:d2:d8:7a:98:55:43:3e:ff:
  • cc:a2:11:84:0f
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Authority Key Identifier:
  • keyid:A5:CE:37:EA:EB:B0:75:0E:94:67:88:B4:45:FA:D9:24:10:87:96:1F
  • X509v3 Subject Key Identifier:
  • 21:80:3F:F2:5D:AC:3F:8C:33:2F:13:80:F3:51:AE:1B:8C:43:84:C6
  • X509v3 Subject Alternative Name:
  • DNS:sni.cloudflaressl.com, DNS:*.buffetalibaba.com, DNS:buffetalibaba.com
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl3.digicert.com/CloudflareIncECCCA-3.crl
  • Full Name:
  • URI:http://crl4.digicert.com/CloudflareIncECCCA-3.crl
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
  • Authority Information Access:
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/CloudflareIncECCCA-3.crt
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
  • 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
  • Timestamp : Jun 23 17:34:02.607 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:50:F5:E5:15:8E:F5:85:DA:5A:D5:D3:F4:
  • 8B:8E:FD:7A:36:17:53:8E:12:5C:E9:EB:DB:5A:01:48:
  • E2:06:5E:5F:02:21:00:85:00:BF:0C:20:87:BF:B4:3A:
  • BF:B5:7E:AF:47:55:B9:1C:A8:FE:5D:7C:04:7C:22:E8:
  • 9C:1B:3D:21:64:80:E2
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
  • B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
  • Timestamp : Jun 23 17:34:02.620 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:91:FF:9B:C8:58:CA:F2:BF:33:3D:7A:
  • E3:48:38:CC:5A:CD:E0:8A:4F:8A:79:CA:4C:5F:48:C8:
  • 99:2C:A8:A3:03:02:20:6D:63:B6:B6:1B:CE:05:26:F4:
  • 47:01:3B:E9:D8:72:F1:03:EA:4D:39:55:CF:7A:99:F5:
  • AD:2E:0C:7D:71:76:3B
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B3:73:77:07:E1:84:50:F8:63:86:D6:05:A9:DC:11:09:
  • 4A:79:2D:B1:67:0C:0B:87:DC:F0:03:0E:79:36:A5:9A
  • Timestamp : Jun 23 17:34:02.656 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:C6:A2:CE:87:0E:4B:25:8D:E6:8D:C4:
  • A2:92:C3:1B:FE:FE:AD:41:45:2C:14:FC:C1:5B:D7:9D:
  • 53:07:7D:3C:9C:02:20:5F:2F:5D:9A:33:FD:A3:F3:EC:
  • 3F:08:1C:FE:9F:76:16:36:CA:A1:6E:4E:8B:7C:39:82:
  • E3:F3:31:C2:B4:81:E5
  • Signature Algorithm: ecdsa-with-SHA256
  • 30:44:02:20:59:56:66:c5:fd:27:c0:fb:b6:53:e3:61:5f:4a:
  • 68:19:dc:a5:4c:08:f0:53:f6:94:9d:6b:e6:11:76:3b:ec:3c:
  • 02:20:51:73:6d:d9:be:5e:90:43:c6:7b:15:00:f6:f6:09:60:
  • 55:06:50:68:55:30:46:17:c7:ef:a3:56:72:22:a8:98

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: