help-sec.com Threat Intelligence and Information
Apr 25, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 64669
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- help-sec.com. IN A
- ANSWER SECTION:
- help-sec.com. 298 IN A 104.21.14.231
- help-sec.com. 298 IN A 172.67.160.191
- Query time: 12 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Tue May 10 08:43:37 UTC 2022
- MSG SIZE rcvd: 73
DNS Records
- SOA kia.ns.cloudflare.com 108.162.192.179
- SOA kia.ns.cloudflare.com 172.64.32.179
- SOA kia.ns.cloudflare.com 173.245.58.179
- NS kia.ns.cloudflare.com 172.64.32.179
- NS kia.ns.cloudflare.com 108.162.192.179
- NS kia.ns.cloudflare.com 173.245.58.179
- NS kia.ns.cloudflare.com 2606:4700:50::adf5:3ab3
- NS kia.ns.cloudflare.com 2803:f800:50::6ca2:c0b3
- NS kia.ns.cloudflare.com 2a06:98c1:50::ac40:20b3
- NS santino.ns.cloudflare.com 108.162.195.1
- NS santino.ns.cloudflare.com 162.159.44.1
- NS santino.ns.cloudflare.com 172.64.35.1
- NS santino.ns.cloudflare.com 2606:4700:58::a29f:2c01
- NS santino.ns.cloudflare.com 2803:f800:50::6ca2:c301
- NS santino.ns.cloudflare.com 2a06:98c1:50::ac40:2301
- MX _dc-mx.5b8ea9fea534.help-sec.com 162.0.235.10
- A help-sec.com 172.67.160.191
- A help-sec.com 104.21.14.231
- AAAA help-sec.com 2606:4700:3031::ac43:a0bf
- AAAA help-sec.com 2606:4700:3030::6815:ee7
- SRV _autodiscover._tcp.help-sec.com cpanelemaildiscovery.cpanel.net 184.94.204.7 443 0
- SRV _autodiscover._tcp.help-sec.com cpanelemaildiscovery.cpanel.net 208.74.121.152 443 0
- SRV _carddav._tcp.help-sec.com server293.web-hosting.com 162.0.235.9 2079 0
- SRV _carddavs._tcp.help-sec.com server293.web-hosting.com 162.0.235.9 2080 0
- SRV _caldavs._tcp.help-sec.com server293.web-hosting.com 162.0.235.9 2080 0
- SRV _caldav._tcp.help-sec.com server293.web-hosting.com 162.0.235.9 2079 0
Whois Data
- Domain Name: HELP-SEC.COM
- Registry Domain ID: 2634563980_DOMAIN_COM-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 2021-08-17T21:28:39Z
- Creation Date: 2021-08-17T19:50:06Z
- Registry Expiry Date: 2022-08-17T19:50:06Z
- Registrar: NameCheap, Inc.
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.6613102107
- Name Server: KIA.NS.CLOUDFLARE.COM
- Name Server: SANTINO.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- Domain name: help-sec.com
- Registry Domain ID: 2634563980_DOMAIN_COM-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 0001-01-01T00:00:00.00Z
- Creation Date: 2021-08-17T19:50:06.00Z
- Registrar Registration Expiration Date: 2022-08-17T19:50:06.00Z
- Registrar: NAMECHEAP INC
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.9854014545
- Reseller: NAMECHEAP INC
- Registry Registrant ID:
- Registrant Name: Redacted for Privacy
- Registrant Organization: Privacy service provided by Withheld for Privacy ehf
- Registrant Street: Kalkofnsvegur 2
- Registrant City: Reykjavik
- Registrant State/Province: Capital Region
- Registrant Postal Code: 101
- Registrant Country: IS
- Registrant Phone: +354.4212434
- Registrant Phone Ext:
- Registrant Fax:
- Registrant Fax Ext:
- Registrant Email: 7b9e37545f98425cab923c6649f92630.protect@withheldforprivacy.com
- Registry Admin ID:
- Admin Name: Redacted for Privacy
- Admin Organization: Privacy service provided by Withheld for Privacy ehf
- Admin Street: Kalkofnsvegur 2
- Admin City: Reykjavik
- Admin State/Province: Capital Region
- Admin Postal Code: 101
- Admin Country: IS
- Admin Phone: +354.4212434
- Admin Phone Ext:
- Admin Fax:
- Admin Fax Ext:
- Admin Email: 7b9e37545f98425cab923c6649f92630.protect@withheldforprivacy.com
- Registry Tech ID:
- Tech Name: Redacted for Privacy
- Tech Organization: Privacy service provided by Withheld for Privacy ehf
- Tech Street: Kalkofnsvegur 2
- Tech City: Reykjavik
- Tech State/Province: Capital Region
- Tech Postal Code: 101
- Tech Country: IS
- Tech Phone: +354.4212434
- Tech Phone Ext:
- Tech Fax:
- Tech Fax Ext:
- Tech Email: 7b9e37545f98425cab923c6649f92630.protect@withheldforprivacy.com
- Name Server: kia.ns.cloudflare.com
- Name Server: santino.ns.cloudflare.com
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 02:a4:42:69:54:25:21:d1:fb:b4:95:20:5c:dc:99:bc
- Signature Algorithm: ecdsa-with-SHA256
- Issuer: C = US, O = “Cloudflare, Inc.”, CN = Cloudflare Inc ECC CA-3
- Validity
- Not Before: Aug 17 00:00:00 2021 GMT
- Not After : Aug 16 23:59:59 2022 GMT
- Subject: C = US, ST = California, L = San Francisco, O = “Cloudflare, Inc.”, CN = sni.cloudflaressl.com
- Subject Public Key Info:
- Public Key Algorithm: id-ecPublicKey
- Public-Key: (256 bit)
- pub:
- 04:e2:0e:fa:51:3d:42:02:ab:b8:84:9e:12:8f:67:
- e3:80:93:df:68:3c:74:fd:06:c6:46:e5:ad:8d:ed:
- db:dc:ed:89:88:99:53:a3:e6:a5:4e:07:f9:93:8f:
- 80:cd:95:76:31:34:68:46:df:af:dc:d8:1e:46:31:
- ba:60:af:8e:ca
- ASN1 OID: prime256v1
- NIST CURVE: P-256
- X509v3 extensions:
- X509v3 Authority Key Identifier:
- keyid:A5:CE:37:EA:EB:B0:75:0E:94:67:88:B4:45:FA:D9:24:10:87:96:1F
- X509v3 Subject Key Identifier:
- 6C:B8:E8:31:38:A4:49:30:B8:24:CE:76:1B:64:D4:A6:9C:15:63:DA
- X509v3 Subject Alternative Name:
- DNS:help-sec.com, DNS:sni.cloudflaressl.com, DNS:*.help-sec.com
- X509v3 Key Usage: critical
- Digital Signature
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 CRL Distribution Points:
- Full Name:
- URI:http://crl3.digicert.com/CloudflareIncECCCA-3.crl
- Full Name:
- URI:http://crl4.digicert.com/CloudflareIncECCCA-3.crl
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.2
- CPS: http://www.digicert.com/CPS
- Authority Information Access:
- OCSP - URI:http://ocsp.digicert.com
- CA Issuers - URI:http://cacerts.digicert.com/CloudflareIncECCCA-3.crt
- X509v3 Basic Constraints: critical
- CA:FALSE
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
- BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
- Timestamp : Aug 17 21:31:16.153 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:36:19:59:E2:8E:A4:43:AF:5F:AA:1F:B2:
- A3:D9:1F:71:2D:FA:CE:0C:51:36:B6:2D:73:DC:40:41:
- 30:9A:F3:DF:02:21:00:D5:9E:B8:93:16:A3:F6:75:83:
- AD:1D:A2:DD:6E:06:1F:91:EA:62:C1:B5:F4:BC:BA:8F:
- 1E:B9:3E:CE:86:D6:4D
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 51:A3:B0:F5:FD:01:79:9C:56:6D:B8:37:78:8F:0C:A4:
- 7A:CC:1B:27:CB:F7:9E:88:42:9A:0D:FE:D4:8B:05:E5
- Timestamp : Aug 17 21:31:16.225 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:39:81:DF:96:C0:17:15:E1:94:38:4C:FF:
- 6F:E4:93:E5:AC:06:C0:CB:F5:FF:26:DA:2B:19:27:44:
- 41:BA:DB:B9:02:21:00:9D:79:87:91:19:0E:AC:FB:D6:
- F4:4B:C8:7B:20:AE:36:1E:13:02:7D:4E:92:8F:63:78:
- 0C:84:51:BA:EB:81:38
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
- EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
- Timestamp : Aug 17 21:31:16.176 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:46:02:21:00:DE:84:4E:BC:8E:9F:F4:58:B0:16:E6:
- 3E:A4:BA:5D:2C:73:C3:E6:72:49:C1:B3:D4:27:EB:08:
- 88:9F:A1:3F:58:02:21:00:9B:A0:58:61:6E:DA:2B:F2:
- CD:2B:1A:E1:90:86:36:D7:7D:48:B3:C3:90:42:AA:BE:
- 6C:05:13:D3:48:68:7F:20
- Signature Algorithm: ecdsa-with-SHA256
- 30:46:02:21:00:c9:a5:de:44:d4:d9:b7:3c:74:61:bc:b5:47:
- e9:10:48:e5:de:e4:b4:df:65:a2:cb:18:b2:36:3a:3b:51:57:
- b1:02:21:00:fc:5d:79:e4:24:d7:b6:72:9e:c0:e1:de:80:63:
- 44:64:25:9e:89:5b:aa:77:ee:7d:85:08:80:ed:54:33:6e:c6