buffetalibaba.com Threat Intelligence and Information
Jul 17, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 9709
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- buffetalibaba.com. IN A
- ANSWER SECTION:
- buffetalibaba.com. 298 IN A 104.21.79.214
- buffetalibaba.com. 298 IN A 172.67.148.208
- Query time: 64 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Sun Jul 17 11:36:02 UTC 2022
- MSG SIZE rcvd: 78
DNS Records
- SOA josephine.ns.cloudflare.com 108.162.194.64
- SOA josephine.ns.cloudflare.com 162.159.38.64
- SOA josephine.ns.cloudflare.com 172.64.34.64
- NS josephine.ns.cloudflare.com 162.159.38.64
- NS josephine.ns.cloudflare.com 172.64.34.64
- NS josephine.ns.cloudflare.com 108.162.194.64
- NS josephine.ns.cloudflare.com 2606:4700:50::a29f:2640
- NS josephine.ns.cloudflare.com 2803:f800:50::6ca2:c240
- NS josephine.ns.cloudflare.com 2a06:98c1:50::ac40:2240
- NS julian.ns.cloudflare.com 108.162.195.94
- NS julian.ns.cloudflare.com 162.159.44.94
- NS julian.ns.cloudflare.com 172.64.35.94
- NS julian.ns.cloudflare.com 2606:4700:58::a29f:2c5e
- NS julian.ns.cloudflare.com 2803:f800:50::6ca2:c35e
- NS julian.ns.cloudflare.com 2a06:98c1:50::ac40:235e
- A buffetalibaba.com 104.21.79.214
- A buffetalibaba.com 172.67.148.208
- AAAA buffetalibaba.com 2606:4700:3035::ac43:94d0
- AAAA buffetalibaba.com 2606:4700:3033::6815:4fd6
Whois Data
- Domain Name: BUFFETALIBABA.COM
- Registry Domain ID: 2705963853_DOMAIN_COM-VRSN
- Registrar URL: http://gmo.jp
- Updated Date: 2022-06-23T17:31:16Z
- Creation Date: 2022-06-23T15:55:03Z
- Registry Expiry Date: 2023-06-23T15:55:03Z
- Registrar: GMO Internet, Inc. d/b/a Onamae.com
- Registrar IANA ID: 49
- Registrar Abuse Contact Email: abuse@gmo.jp
- Registrar Abuse Contact Phone: +81.337709199
- Name Server: JOSEPHINE.NS.CLOUDFLARE.COM
- Name Server: JULIAN.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- Domain Name: buffetalibaba.com
- Registry Domain ID: 2705963853_DOMAIN_COM-VRSN
- Registrar URL: http://www.onamae.com
- Updated Date: 2022-06-24T02:31:16Z
- Creation Date: 2022-06-23T15:55:04Z
- Registrar Registration Expiration Date: 2023-06-23T15:55:03Z
- Registrar: GMO INTERNET, INC.
- Registrar IANA ID: 49
- Registrar Abuse Contact Email: abuse@gmo.jp
- Registrar Abuse Contact Phone: +81.337709199
- Registry Registrant ID: Not Available From Registry
- Registrant Name: GMO-Z.com RUNSYSTEM
- Registrant Organization: GMO-Z.com RUNSYSTEM JSC
- Registrant Street: No 1, Dao Duy Anh Street
- Registrant Street: 6F, Ocean Park Bldg
- Registrant City: Phuong Mai Ward, Dong Da District
- Registrant State/Province: Hanoi
- Registrant Postal Code: 100000
- Registrant Country: VN
- Registrant Phone: +84.435501630
- Registrant Phone Ext:
- Registrant Fax: +84.437725204
- Registrant Fax Ext:
- Registrant Email: info@tenten.vn
- Registry Admin ID: Not Available From Registry
- Admin Name: GMO-Z.com RUNSYSTEM
- Admin Organization: GMO-Z.com RUNSYSTEM JSC
- Admin Street: No 1, Dao Duy Anh Street
- Admin Street: 6F, Ocean Park Bldg
- Admin City: Phuong Mai Ward, Dong Da District
- Admin State/Province: Hanoi
- Admin Postal Code: 100000
- Admin Country: VN
- Admin Phone: +84.435501630
- Admin Phone Ext:
- Admin Fax: +84.437725204
- Admin Fax Ext:
- Admin Email: info@tenten.vn
- Registry Tech ID: Not Available From Registry
- Tech Name: GMO-Z.com RUNSYSTEM
- Tech Organization: GMO-Z.com RUNSYSTEM JSC
- Tech Street: No 1, Dao Duy Anh Stree
- Tech Street: 6F, Ocean Park Bldg
- Tech City: Phuong Mai Ward, Dong Da District
- Tech State/Province: Hanoi
- Tech Postal Code: 100000
- Tech Country: VN
- Tech Phone: +84.435501630
- Tech Phone Ext:
- Tech Fax: +84.437725204
- Tech Fax Ext:
- Tech Email: info@tenten.vn
- Name Server: josephine.ns.cloudflare.com
- Name Server: julian.ns.cloudflare.com
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 07:01:5c:4b:d8:55:0d:d5:f7:51:80:cb:33:a1:58:62
- Signature Algorithm: ecdsa-with-SHA256
- Issuer: C = US, O = “Cloudflare, Inc.”, CN = Cloudflare Inc ECC CA-3
- Validity
- Not Before: Jun 23 00:00:00 2022 GMT
- Not After : Jun 22 23:59:59 2023 GMT
- Subject: C = US, ST = California, L = San Francisco, O = “Cloudflare, Inc.”, CN = sni.cloudflaressl.com
- Subject Public Key Info:
- Public Key Algorithm: id-ecPublicKey
- Public-Key: (256 bit)
- pub:
- 04:21:89:38:2b:33:f1:33:86:9a:0c:d3:72:f8:25:
- a6:7d:a4:91:51:f8:d1:34:a4:a5:46:d0:b6:d8:58:
- 39:ff:3d:8e:8e:96:8b:0b:8a:2c:5d:db:21:50:fa:
- 22:9c:6a:eb:a9:cd:95:d2:d8:7a:98:55:43:3e:ff:
- cc:a2:11:84:0f
- ASN1 OID: prime256v1
- NIST CURVE: P-256
- X509v3 extensions:
- X509v3 Authority Key Identifier:
- keyid:A5:CE:37:EA:EB:B0:75:0E:94:67:88:B4:45:FA:D9:24:10:87:96:1F
- X509v3 Subject Key Identifier:
- 21:80:3F:F2:5D:AC:3F:8C:33:2F:13:80:F3:51:AE:1B:8C:43:84:C6
- X509v3 Subject Alternative Name:
- DNS:sni.cloudflaressl.com, DNS:*.buffetalibaba.com, DNS:buffetalibaba.com
- X509v3 Key Usage: critical
- Digital Signature
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 CRL Distribution Points:
- Full Name:
- URI:http://crl3.digicert.com/CloudflareIncECCCA-3.crl
- Full Name:
- URI:http://crl4.digicert.com/CloudflareIncECCCA-3.crl
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.2
- CPS: http://www.digicert.com/CPS
- Authority Information Access:
- OCSP - URI:http://ocsp.digicert.com
- CA Issuers - URI:http://cacerts.digicert.com/CloudflareIncECCCA-3.crt
- X509v3 Basic Constraints: critical
- CA:FALSE
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
- 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
- Timestamp : Jun 23 17:34:02.607 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:50:F5:E5:15:8E:F5:85:DA:5A:D5:D3:F4:
- 8B:8E:FD:7A:36:17:53:8E:12:5C:E9:EB:DB:5A:01:48:
- E2:06:5E:5F:02:21:00:85:00:BF:0C:20:87:BF:B4:3A:
- BF:B5:7E:AF:47:55:B9:1C:A8:FE:5D:7C:04:7C:22:E8:
- 9C:1B:3D:21:64:80:E2
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
- B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
- Timestamp : Jun 23 17:34:02.620 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:91:FF:9B:C8:58:CA:F2:BF:33:3D:7A:
- E3:48:38:CC:5A:CD:E0:8A:4F:8A:79:CA:4C:5F:48:C8:
- 99:2C:A8:A3:03:02:20:6D:63:B6:B6:1B:CE:05:26:F4:
- 47:01:3B:E9:D8:72:F1:03:EA:4D:39:55:CF:7A:99:F5:
- AD:2E:0C:7D:71:76:3B
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : B3:73:77:07:E1:84:50:F8:63:86:D6:05:A9:DC:11:09:
- 4A:79:2D:B1:67:0C:0B:87:DC:F0:03:0E:79:36:A5:9A
- Timestamp : Jun 23 17:34:02.656 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:C6:A2:CE:87:0E:4B:25:8D:E6:8D:C4:
- A2:92:C3:1B:FE:FE:AD:41:45:2C:14:FC:C1:5B:D7:9D:
- 53:07:7D:3C:9C:02:20:5F:2F:5D:9A:33:FD:A3:F3:EC:
- 3F:08:1C:FE:9F:76:16:36:CA:A1:6E:4E:8B:7C:39:82:
- E3:F3:31:C2:B4:81:E5
- Signature Algorithm: ecdsa-with-SHA256
- 30:44:02:20:59:56:66:c5:fd:27:c0:fb:b6:53:e3:61:5f:4a:
- 68:19:dc:a5:4c:08:f0:53:f6:94:9d:6b:e6:11:76:3b:ec:3c:
- 02:20:51:73:6d:d9:be:5e:90:43:c6:7b:15:00:f6:f6:09:60:
- 55:06:50:68:55:30:46:17:c7:ef:a3:56:72:22:a8:98