duoserver.net Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 13474
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 512
  • QUESTION SECTION:
  • duoserver.net. IN A
  • ANSWER SECTION:
  • duoserver.net. 14385 IN A 149.255.58.17
  • Query time: 68 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Thu Apr 28 10:06:13 UTC 2022
  • MSG SIZE rcvd: 58

DNS Records

  • SOA ns0.thundercloud.uk 149.255.60.1
  • NS ns1.thundercloud.uk 185.53.57.60
  • NS ns0.thundercloud.uk 149.255.60.1
  • MX duoserver.net 149.255.58.17
  • A duoserver.net 149.255.58.17
  • TXT duoserver.net v=spf1 +a +mx +ip4:149.255.58.17 include:spf.mail-gw.thundermail.uk ~all
  • TXT _dmarc.duoserver.net v=DMARC1; p=none; sp=none; rf=afrf; pct=100; ri=86400

Whois Data

  • Domain Name: DUOSERVER.NET
  • Registry Domain ID: 2607304908_DOMAIN_NET-VRSN
  • Registrar URL: http://www.nominalia.com
  • Updated Date: 2022-04-24T07:41:02Z
  • Creation Date: 2021-04-23T23:28:12Z
  • Registry Expiry Date: 2023-04-23T23:28:12Z
  • Registrar: Nominalia Internet S.L.
  • Registrar IANA ID: 76
  • Registrar Abuse Contact Email: abuse@nominalia.com
  • Registrar Abuse Contact Phone: +39.05520021555
  • Name Server: NS0.THUNDERCLOUD.UK
  • Name Server: NS1.THUNDERCLOUD.UK
  • DNSSEC: unsigned
  • Domain Name: DUOSERVER.NET
  • Registry Domain ID: 2607304908_DOMAIN_NET-VRSN
  • Registrar URL: http://www.nominalia.com
  • Updated Date: 2022-02-22T00:00:00Z
  • Creation Date: 2021-04-24T00:00:00Z
  • Registrar Registration Expiration Date: 2022-04-23T00:00:00Z
  • Registrar: NOMINALIA INTERNET S.L.
  • Registrar IANA ID: 76
  • Registrar Abuse Contact Email: abuse@nominalia.com
  • Registrar Abuse Contact Phone: +39.05520021555
  • Reseller:
  • Registry Registrant ID:
  • Registrant Name: REDACTED FOR PRIVACY
  • Registrant Organization: REDACTED FOR PRIVACY
  • Registrant Street: REDACTED FOR PRIVACY
  • Registrant City: REDACTED FOR PRIVACY
  • Registrant State/Province: Lima
  • Registrant Postal Code: REDACTED FOR PRIVACY
  • Registrant Country: PE
  • Registrant Phone: REDACTED.FORPRIVACY
  • Registrant Phone Ext:
  • Registrant Fax: REDACTED.FORPRIVACY
  • Registrant Fax Ext:
  • Registrant Email: https://domaincontact.nominalia.com/contact-domain
  • Registry Admin ID:
  • Admin Name: REDACTED FOR PRIVACY
  • Admin Organization: REDACTED FOR PRIVACY
  • Admin Street: REDACTED FOR PRIVACY
  • Admin City: REDACTED FOR PRIVACY
  • Admin State/Province: REDACTED FOR PRIVACY
  • Admin Postal Code: REDACTED FOR PRIVACY
  • Admin Country: REDACTED FOR PRIVACY
  • Admin Phone: REDACTED.FORPRIVACY
  • Admin Phone Ext:
  • Admin Fax: REDACTED.FORPRIVACY
  • Admin Fax Ext:
  • Admin Email: https://domaincontact.nominalia.com/contact-domain
  • Registry Tech ID:
  • Tech Name: REDACTED FOR PRIVACY
  • Tech Organization: REDACTED FOR PRIVACY
  • Tech Street: REDACTED FOR PRIVACY
  • Tech City: REDACTED FOR PRIVACY
  • Tech State/Province: REDACTED FOR PRIVACY
  • Tech Postal Code: REDACTED FOR PRIVACY
  • Tech Country: REDACTED FOR PRIVACY
  • Tech Phone: REDACTED.FORPRIVACY
  • Tech Phone Ext:
  • Tech Fax: REDACTED.FORPRIVACY
  • Tech Fax Ext:
  • Tech Email: https://domaincontact.nominalia.com/contact-domain
  • Name Server: NS0.THUNDERCLOUD.UK
  • Name Server: NS1.THUNDERCLOUD.UK
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 04:3b:55:84:74:a2:75:bc:df:03:62:b4:15:60:e6:a2:1b:b1
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R3
  • Validity
  • Not Before: Mar 26 01:56:16 2022 GMT
  • Not After : Jun 24 01:56:15 2022 GMT
  • Subject: CN = automation.rs
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • RSA Public-Key: (2048 bit)
  • Modulus:
  • 00:c5:db:18:0a:0a:64:ee:7e:75:b8:3c:2e:18:90:
  • 62:98:74:90:c8:04:7d:f4:5c:ce:0d:ed:e4:52:16:
  • 47:c5:ca:40:10:58:74:57:3f:b7:c1:f4:46:ae:3d:
  • df:2b:d9:c1:0d:1d:80:7d:f2:99:56:84:c3:2b:19:
  • cb:60:67:a6:67:d2:c0:ac:0e:31:6d:6e:46:04:a1:
  • 98:eb:2a:32:42:e9:4a:06:40:89:a3:a7:fe:ca:f1:
  • 99:83:98:1b:8f:ad:a1:60:81:b0:cc:2a:b7:5a:bb:
  • 29:a1:e4:07:67:c1:b3:13:a6:2f:ab:3e:f7:49:d2:
  • a4:90:03:45:55:1c:e8:f3:5e:d3:ff:87:d9:6c:6f:
  • fa:d3:09:cd:70:b3:67:84:a5:4e:da:c7:d1:9c:20:
  • 62:5d:b3:db:bd:88:ae:32:a8:7b:36:93:0f:ea:c0:
  • d6:0f:d5:10:8f:a1:1a:b3:3f:6b:a3:14:2a:d8:d3:
  • e5:cd:3c:69:42:89:b4:e1:a9:61:b5:20:30:de:fd:
  • a3:75:29:2a:50:93:19:17:df:08:9a:8d:05:7b:58:
  • 58:ae:cd:ce:de:d7:4a:f8:22:83:69:a6:b4:55:47:
  • 18:8b:8a:5f:c1:72:75:ac:e8:16:12:02:96:56:d6:
  • cc:16:0b:41:28:22:ee:24:ee:fd:ca:ad:53:d8:92:
  • 80:1f
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • E3:35:FC:73:E8:F1:16:85:FE:30:83:E3:F2:4B:35:E7:B5:47:58:8E
  • X509v3 Authority Key Identifier:
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
  • Authority Information Access:
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:automation.rs, DNS:cpanel.automation.rs, DNS:cpcalendars.automation.rs, DNS:cpcontacts.automation.rs, DNS:mail.automation.rs, DNS:webdisk.automation.rs, DNS:webmail.automation.rs, DNS:www.automation.rs
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
  • 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
  • Timestamp : Mar 26 02:56:16.536 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:52:5D:AF:E5:5B:1B:11:E2:65:52:90:A3:
  • BA:AC:ED:B2:F7:00:2D:FE:2A:06:7D:80:24:53:38:22:
  • FA:9D:74:80:02:21:00:FF:C0:46:93:84:B3:1F:33:57:
  • 71:9C:75:2A:10:6C:8F:D4:3D:9B:47:A8:CD:F4:C3:01:
  • AA:12:3E:EA:95:70:83
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
  • BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
  • Timestamp : Mar 26 02:56:16.574 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C2:79:D4:1E:23:B1:B1:D0:D1:62:47:
  • 19:83:90:D5:D9:E9:A7:B6:59:68:16:C9:17:1E:E2:18:
  • BB:4A:77:6E:38:02:21:00:8D:C4:38:CE:2D:34:25:34:
  • E9:06:C5:22:BE:55:73:E4:3E:4C:C8:42:17:E2:17:50:
  • 8F:55:0C:58:16:D9:05:90
  • Signature Algorithm: sha256WithRSAEncryption
  • 2c:aa:c9:be:62:99:8f:10:1e:00:c1:b1:86:e0:45:b9:28:20:
  • 5c:4e:c4:90:ec:9b:32:02:27:62:ed:f8:f7:fb:91:68:6e:25:
  • bc:57:32:bb:a4:62:fb:3f:ea:1d:89:52:d3:d0:2f:db:7c:6a:
  • fa:10:e5:eb:cc:43:88:f6:41:e0:80:50:8c:06:08:0b:d4:1d:
  • 18:ea:23:d2:6f:92:60:0f:be:7a:59:1e:48:31:21:4a:e5:cf:
  • a6:0f:e5:ce:6c:2e:27:13:dd:40:47:71:de:d0:f6:49:f3:7c:
  • e8:07:5f:9b:fa:2c:0a:be:21:30:82:99:53:db:1e:c4:ee:c1:
  • 12:5c:a1:34:50:15:9e:12:01:01:7f:99:fb:d6:e3:81:fb:cd:
  • d6:fd:a1:c0:88:5d:ca:7e:de:62:20:95:66:8f:a2:99:fd:8d:
  • 56:e7:3a:17:43:05:44:65:23:89:1a:03:9b:ce:af:b4:4e:0a:
  • d1:cd:bb:70:41:94:93:0c:5e:07:ea:c9:5b:5f:5c:93:f6:8e:
  • a1:2a:1b:14:4b:53:11:fa:64:d3:d3:a1:ed:52:b3:70:29:6c:
  • b5:eb:c0:03:16:cd:47:28:92:a1:4c:83:e8:a7:fd:9f:18:74:
  • 8f:29:dc:28:0c:f2:16:a3:3a:96:57:01:e9:a4:0e:ae:96:75:
  • c3:be:85:a8

Sitemap

Technologies

Apache httpd Apache httpd

*** Virustotal ***

*** WayBackMachine ***

Share on: