cra-login.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 10048
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • cra-login.com. IN A
  • ANSWER SECTION:
  • cra-login.com. 298 IN A 104.21.54.219
  • cra-login.com. 298 IN A 172.67.142.219
  • Query time: 176 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Sun Oct 02 08:20:04 UTC 2022
  • MSG SIZE rcvd: 74

DNS Records

  • SOA bart.ns.cloudflare.com 108.162.193.71
  • SOA bart.ns.cloudflare.com 172.64.33.71
  • SOA bart.ns.cloudflare.com 173.245.59.71
  • NS bart.ns.cloudflare.com 173.245.59.71
  • NS bart.ns.cloudflare.com 108.162.193.71
  • NS bart.ns.cloudflare.com 172.64.33.71
  • NS bart.ns.cloudflare.com 2606:4700:58::adf5:3b47
  • NS bart.ns.cloudflare.com 2803:f800:50::6ca2:c147
  • NS bart.ns.cloudflare.com 2a06:98c1:50::ac40:2147
  • NS pam.ns.cloudflare.com 108.162.192.138
  • NS pam.ns.cloudflare.com 172.64.32.138
  • NS pam.ns.cloudflare.com 173.245.58.138
  • NS pam.ns.cloudflare.com 2606:4700:50::adf5:3a8a
  • NS pam.ns.cloudflare.com 2803:f800:50::6ca2:c08a
  • NS pam.ns.cloudflare.com 2a06:98c1:50::ac40:208a
  • A cra-login.com 172.67.142.219
  • A cra-login.com 104.21.54.219
  • AAAA cra-login.com 2606:4700:3035::6815:36db
  • AAAA cra-login.com 2606:4700:3036::ac43:8edb

Whois Data

  • Domain Name: CRA-LOGIN.COM
  • Registry Domain ID: 2715900448_DOMAIN_COM-VRSN
  • Registrar URL: http://www.cosmotown.com
  • Updated Date: 2022-08-04T18:02:40Z
  • Creation Date: 2022-08-04T17:58:29Z
  • Registry Expiry Date: 2023-08-04T17:58:29Z
  • Registrar: Cosmotown, Inc.
  • Registrar IANA ID: 1509
  • Registrar Abuse Contact Email:
  • Registrar Abuse Contact Phone:
  • Name Server: BART.NS.CLOUDFLARE.COM
  • Name Server: PAM.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: cra-login.com
  • Registry Domain ID: 2715900448_DOMAIN_COM-VRSN
  • Registrar URL: http://www.cosmotown.com
  • Updated Date: 2022-08-04T18:02:39Z
  • Creation Date: 2022-08-04T17:58:29Z
  • Registrar Registration Expiration Date: 2023-08-04T17:58:29Z
  • Registrar: COSMOTOWN, INC.
  • Registrar IANA ID: 1509
  • Registrar Abuse Contact Email: abuse@cosmotown.com
  • Registrar Abuse Contact Phone: +1.6504739500
  • Registrant Organization:
  • Registrant State/Province: ca
  • Registrant Country: US
  • Registrant Email: privacy@cosmotown.com
  • Admin Email: privacy@cosmotown.com
  • Tech Email: privacy@cosmotown.com
  • Name Server: bart.ns.cloudflare.com
  • Name Server: pam.ns.cloudflare.com
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 03:51:4a:bd:07:cd:4b:98:10:b4:1f:b9:66:44:43:ae:a3:b8
  • Signature Algorithm: ecdsa-with-SHA384
  • Issuer: C = US, O = Let’s Encrypt, CN = E1
  • Validity
  • Not Before: Aug 4 17:06:35 2022 GMT
  • Not After : Nov 2 17:06:34 2022 GMT
  • Subject: CN = *.cra-login.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:55:11:eb:2a:ee:f4:bd:0d:6d:40:22:8d:2b:a2:
  • 27:39:a2:2e:13:8b:28:96:13:8a:f0:a7:4b:ac:74:
  • 98:9d:a9:a5:41:3a:ad:33:5c:c5:51:a0:4c:25:11:
  • c7:ac:c9:6c:13:46:fb:bb:53:c7:a9:0d:8c:f2:de:
  • cd:7b:62:a2:70
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 07:62:AB:95:E8:BC:70:D0:88:7E:AF:A0:D6:9A:36:DF:C9:84:21:8D
  • X509v3 Authority Key Identifier:
  • keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
  • Authority Information Access:
  • OCSP - URI:http://e1.o.lencr.org
  • CA Issuers - URI:http://e1.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:*.cra-login.com, DNS:cra-login.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
  • EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
  • Timestamp : Aug 4 18:06:35.300 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:42:B7:3B:08:61:02:10:5F:16:F1:77:70:
  • 8B:E4:8F:8E:72:5D:65:D4:F6:C5:AD:60:99:52:FE:F4:
  • 64:F3:4A:32:02:20:1C:EE:25:2F:39:DA:3C:30:4F:AD:
  • 3D:95:33:03:84:32:FC:F6:1C:60:A5:95:0D:91:72:02:
  • D3:AC:06:C0:E1:B7
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
  • BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
  • Timestamp : Aug 4 18:06:35.273 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:04:2A:4F:22:A2:90:7A:61:E0:D5:65:4A:
  • 5D:4C:28:BF:8F:BA:81:9B:04:2C:3E:BF:9A:81:DB:20:
  • 41:74:24:7D:02:21:00:BC:97:B9:5B:1E:3E:71:1B:56:
  • 77:3E:98:BC:5A:91:EE:FE:87:EC:CB:D7:94:2E:74:F4:
  • EB:77:CC:84:CB:11:72
  • Signature Algorithm: ecdsa-with-SHA384
  • 30:64:02:30:22:d3:f0:e3:2e:0a:b2:a3:c1:82:b8:50:2a:72:
  • a6:67:6c:0d:24:3a:fb:07:af:8b:29:c6:1f:88:ec:bc:6c:a5:
  • b2:b7:e1:1e:ce:03:43:00:ee:5e:24:a6:b9:6b:f2:91:02:30:
  • 4e:46:ab:6b:cf:d8:af:9b:9a:06:c9:78:14:ff:cb:d2:c5:e2:
  • d4:4a:f5:b7:96:70:5b:4a:5a:3b:12:2a:c5:c8:b1:a6:be:ae:
  • 0d:ed:db:16:c1:1a:3e:9d:b2:e0:91:52

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: