forexbank.xyz Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 60356
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • forexbank.xyz. IN A
  • ANSWER SECTION:
  • forexbank.xyz. 3598 IN A 13.248.169.48
  • forexbank.xyz. 3598 IN A 76.223.54.146
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Sun Mar 15 00:14:00 UTC 2026
  • MSG SIZE rcvd: 74

Whois Data

  • Domain Name: FOREXBANK.XYZ
  • Registry Domain ID: D565864332-CNIC
  • Registrar URL: http://www.onamae.com
  • Updated Date: 2025-07-19T16:06:17.0Z
  • Creation Date: 2025-06-28T22:13:05.0Z
  • Registry Expiry Date: 2026-06-28T23:59:59.0Z
  • Registrar: GMO Internet Group, Inc. d/b/a Onamae.com
  • Registrar IANA ID: 49
  • Name Server: NS5.AFTERNIC.COM
  • Name Server: NS6.AFTERNIC.COM
  • Name Server: VERIFICATION-GAKBZZZQMT6GKCPLW4EFPP.NS101.VERIFY.HN
  • DNSSEC: unsigned
  • Registrar Abuse Contact Email: abuse@internet.gmo
  • Registrar Abuse Contact Phone: +81.337709199
  • https://www.centralnicregistry.com/support/information/rdap «<
  • blacklisted. All data is (c) CentralNic Ltd (https://www.centralnicregistry.com)

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • cf:1c:f9:75:0e:f5:50:7b
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, ST = Arizona, L = Scottsdale, O = “GoDaddy.com, Inc.”, OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2
  • Validity
  • Not Before: Jul 19 20:36:12 2025 GMT
  • Not After : Jul 19 20:36:12 2026 GMT
  • Subject: CN = forexbank.xyz
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (2048 bit)
  • Modulus:
  • 00:d5:ca:f4:17:96:29:48:ea:28:60:2b:68:c2:2e:
  • 37:78:eb:aa:4e:c2:16:b1:12:d6:18:35:ad:1e:ce:
  • 39:4f:05:53:dd:ce:a0:22:5e:17:08:95:80:c3:cd:
  • 83:28:1a:5e:99:28:85:f2:be:34:2e:3e:22:d3:3d:
  • 5b:8c:b8:e9:cc:d3:07:29:57:74:45:6e:bd:d8:99:
  • 67:8b:72:57:6a:ea:2e:7f:d1:04:58:40:e4:63:6c:
  • e2:51:47:9a:97:24:a3:b6:8a:09:40:de:c5:34:bc:
  • b4:cd:f3:e9:92:20:85:16:0c:a6:29:28:a0:3f:db:
  • 8b:14:a2:10:3c:65:2f:23:83:c9:ca:01:e8:f9:e6:
  • 7a:0c:31:66:04:bc:2f:58:5a:a9:13:6b:a6:8a:07:
  • 5a:54:e2:e9:72:99:a7:e5:85:dd:6e:1e:dd:7a:25:
  • 4d:36:38:1a:2e:63:28:bb:16:99:80:17:ba:63:7b:
  • 8b:47:e2:87:62:bd:05:e8:57:0a:b7:93:12:72:bc:
  • 50:63:71:08:34:56:1a:7e:37:be:fb:4f:33:6c:e7:
  • 14:19:ca:72:bf:de:d4:3e:a3:2b:47:a9:35:e4:d5:
  • 40:d5:df:f7:ed:61:c1:38:8b:3c:14:55:62:fe:f8:
  • d6:4f:23:c0:3c:e7:4c:1a:0b:a3:ba:39:41:05:43:
  • 89:bd
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl.godaddy.com/gdig2s1-54979.crl
  • X509v3 Certificate Policies:
  • Policy: 2.16.840.1.114413.1.7.23.1
  • CPS: http://certificates.godaddy.com/repository/
  • Policy: 2.23.140.1.2.1
  • Authority Information Access:
  • OCSP - URI:http://ocsp.godaddy.com/
  • CA Issuers - URI:http://certificates.godaddy.com/repository/gdig2.crt
  • X509v3 Authority Key Identifier:
  • 40:C2:BD:27:8E:CC:34:83:30:A2:33:D7:FB:6C:B3:F0:B4:2C:80:CE
  • X509v3 Subject Alternative Name:
  • DNS:forexbank.xyz
  • X509v3 Subject Key Identifier:
  • 88:27:00:44:52:D7:30:C0:39:C7:2D:B3:2F:4B:FC:DC:94:AD:B3:76
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D7:6D:7D:10:D1:A7:F5:77:C2:C7:E9:5F:D7:00:BF:F9:
  • 82:C9:33:5A:65:E1:D0:B3:01:73:17:C0:C8:C5:69:77
  • Timestamp : Jul 19 20:36:12.966 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:F0:4A:7D:6B:17:2B:4D:54:A4:26:6C:
  • D9:ED:CD:3A:F1:14:0A:F6:3B:97:23:E1:FC:E7:BA:2C:
  • 2D:C7:54:BE:1D:02:21:00:A0:F4:4C:BA:4B:67:7B:AF:
  • FE:40:15:04:53:C5:06:93:35:CB:EB:38:D3:69:A8:37:
  • 71:53:BB:BB:24:E0:D6:70
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : AC:AB:30:70:6C:EB:EC:84:31:F4:13:D2:F4:91:5F:11:
  • 1E:42:24:43:B1:F2:A6:8C:4F:3C:2B:3B:A7:1E:02:C3
  • Timestamp : Jul 19 20:36:13.267 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:85:C4:EE:28:2B:5E:8F:79:D3:EF:1E:
  • 04:8F:9F:CE:CE:C0:B4:B9:CB:F5:60:A6:18:32:2E:92:
  • 57:E0:B0:D7:29:02:21:00:93:07:9D:0C:E9:5B:AC:02:
  • C5:ED:DD:2C:00:D3:D8:4D:A4:87:92:F8:DC:ED:DC:BB:
  • 70:55:3B:DA:C3:27:43:70
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 19:86:D4:C7:28:AA:6F:FE:BA:03:6F:78:2A:4D:01:91:
  • AA:CE:2D:72:31:0F:AE:CE:5D:70:41:2D:25:4C:C7:D4
  • Timestamp : Jul 19 20:36:13.477 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:6C:94:B5:EE:AB:A1:AC:53:7C:60:5D:7C:
  • 93:6A:6C:6B:5A:EF:D2:67:B4:D3:AC:2C:59:78:38:41:
  • 10:20:00:A5:02:20:5C:4E:D7:D9:B9:0B:02:DF:A1:EA:
  • CA:36:B3:25:8C:1D:16:CE:2C:CF:03:87:10:0A:CC:36:
  • F9:24:D2:F2:B5:F2
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 35:ce:10:cc:73:03:10:79:fb:2d:b2:c9:0d:3e:bb:57:9b:8c:
  • 18:8f:29:07:15:c4:d2:85:36:f3:12:8c:6c:df:c7:38:68:fd:
  • 83:4c:3f:04:38:9f:1e:d1:79:68:ef:c8:2a:e0:19:a4:86:9c:
  • df:b1:ec:f3:f6:f5:87:98:08:a6:9c:3a:71:37:6c:b7:b2:71:
  • 5c:eb:09:0f:cc:2e:8d:bc:6a:eb:e8:66:5f:e9:d9:3a:08:e8:
  • 47:23:f8:3f:35:1b:ce:91:46:0e:90:e7:69:b4:8c:01:70:fb:
  • 73:2d:12:c2:37:0e:c2:fd:2f:dd:42:ba:d7:e0:8b:05:15:9d:
  • 23:ff:d9:8f:31:8f:62:c2:dc:95:21:7b:ec:42:27:32:d2:4e:
  • 58:9f:89:6f:36:97:a1:2a:c7:2d:2c:8b:59:f4:2a:e4:02:2b:
  • 99:52:1e:1e:92:a8:97:75:2e:80:7e:f3:52:2e:96:81:b7:56:
  • 6c:78:eb:4a:96:ea:8c:b4:82:26:ec:92:ae:0e:a9:d4:d8:4c:
  • b4:a0:85:6e:d5:8f:72:0b:93:bc:f8:2d:06:ca:0e:42:c2:c8:
  • 65:14:39:04:11:d6:d7:67:12:ed:d2:cb:49:13:75:75:b7:93:
  • 9a:ae:78:33:99:b4:de:47:a8:df:55:44:ce:6f:8b:5f:0a:f4:
  • ae:de:d8:19

*** Virustotal ***

*** WayBackMachine ***

Share on: