icrosoftonline.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 33023
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • icrosoftonline.com. IN A
  • ANSWER SECTION:
  • icrosoftonline.com. 3596 IN A 104.247.81.99
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Mon Nov 10 00:10:40 UTC 2025
  • MSG SIZE rcvd: 63

Whois Data

  • Domain Name: ICROSOFTONLINE.COM
  • Registry Domain ID: 1758930508_DOMAIN_COM-VRSN
  • Registrar URL: http://www.godaddy.com
  • Updated Date: 2024-11-15T19:53:08Z
  • Creation Date: 2012-11-13T00:59:24Z
  • Registry Expiry Date: 2026-11-13T00:59:24Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: NS1.PARKINGCREW.NET
  • Name Server: NS2.PARKINGCREW.NET
  • DNSSEC: unsigned
  • Domain Name: icrosoftonline.com
  • Registry Domain ID: 1758930508_DOMAIN_COM-VRSN
  • Registrar URL: https://www.godaddy.com
  • Updated Date: 2024-11-15T14:53:07Z
  • Creation Date: 2012-11-12T19:59:24Z
  • Registrar Registration Expiration Date: 2026-11-12T19:59:24Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 100 S. Mill Ave, Suite 1600
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85281
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Registration Private
  • Tech Organization: Domains By Proxy, LLC
  • Tech Street: DomainsByProxy.com
  • Tech Street: 100 S. Mill Ave, Suite 1600
  • Tech City: Tempe
  • Tech State/Province: Arizona
  • Tech Postal Code: 85281
  • Tech Country: US
  • Tech Phone: +1.4806242599
  • Tech Phone Ext:
  • Tech Fax:
  • Tech Fax Ext:
  • Name Server: NS1.PARKINGCREW.NET
  • Name Server: NS2.PARKINGCREW.NET
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 05:23:f3:ae:0b:16:07:2e:0f:02:96:55:2d:a7:c0:07:d5:5b
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R12
  • Validity
  • Not Before: Aug 24 05:10:48 2025 GMT
  • Not After : Nov 22 05:10:47 2025 GMT
  • Subject: CN = icrosoftonline.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (4096 bit)
  • Modulus:
  • 00:c1:a0:a6:b0:f9:10:e8:e9:9b:1c:75:16:ae:59:
  • 44:0d:c9:6a:ed:8b:84:b8:ba:8e:47:ca:fe:f9:3d:
  • b8:24:7b:f7:ab:62:98:a6:e6:d6:6d:1d:f2:eb:1b:
  • 85:03:6c:f3:c2:49:32:73:ae:0f:d9:d4:be:99:60:
  • 45:4f:f0:2a:58:df:55:80:0e:eb:df:b1:63:b9:43:
  • 7a:ba:7f:3e:cc:e7:66:47:2e:e4:91:18:13:a5:6b:
  • 95:12:41:dd:21:62:85:cf:55:84:8e:51:ce:1c:bb:
  • db:23:ee:a0:0f:fe:0a:52:d9:e5:26:5c:3c:72:9e:
  • c2:f1:08:0a:d3:81:c3:65:8b:fa:4d:a6:33:d0:d9:
  • b0:46:a2:a9:7b:ee:87:11:0e:19:fc:b9:f7:20:e8:
  • 0e:ee:6e:0b:46:23:42:12:6b:00:04:76:3f:d5:d5:
  • d0:16:2f:67:be:8c:6d:a2:17:31:95:3a:7c:e9:13:
  • 4c:13:b9:84:09:91:ac:07:21:ea:c9:4a:e2:7b:c8:
  • d4:6c:d7:7d:df:32:af:9e:e2:59:d1:dd:95:ed:c1:
  • 14:de:cf:07:19:fc:79:16:68:01:5f:59:81:7d:bd:
  • d7:36:01:80:bb:19:da:b0:59:c9:a7:cf:ab:e3:52:
  • d4:9b:23:94:ae:1e:43:f4:a9:e9:92:98:22:80:d9:
  • 00:28:66:c7:b7:e0:fb:33:07:9a:b1:5e:20:94:4b:
  • c1:c0:3f:08:dd:b4:c6:2d:a6:5c:6c:d3:18:ef:6a:
  • ce:36:a1:a4:d0:28:c9:a2:30:e4:72:34:28:d4:45:
  • 2c:d6:b7:80:6f:a7:f6:53:ca:90:df:b5:dd:2d:f3:
  • 28:21:63:d3:31:ea:19:08:d3:63:0f:04:81:52:c6:
  • 93:c0:59:9b:c7:b9:73:bd:27:d8:88:33:47:0e:f1:
  • d6:e6:df:5a:f5:76:63:e7:7b:c2:d4:be:03:e3:b4:
  • 67:73:ed:87:a1:48:c7:a5:d4:0e:5a:52:40:b5:32:
  • 2a:9d:a7:e1:2d:ee:82:6f:a2:65:2b:32:6f:8c:f2:
  • c6:4d:cf:3e:a5:a4:af:3f:14:e6:26:92:3a:63:74:
  • 98:79:7a:2f:a2:9e:fc:64:5b:ac:44:71:21:72:5f:
  • 9b:50:a7:a7:f1:23:e6:5c:7b:d7:aa:5e:b9:bd:cc:
  • d7:d5:a9:62:18:8a:26:39:44:58:90:f1:fc:ae:97:
  • 5d:d2:65:c3:14:5f:fb:9d:49:15:9b:20:f7:f9:ba:
  • c1:1a:87:d0:e3:46:a1:e8:ce:87:a8:46:ab:ed:50:
  • bc:a1:d2:83:5a:17:c4:d0:0a:70:e9:62:92:ae:fc:
  • 4d:71:f0:cf:c4:7d:09:e6:a6:44:11:f2:4b:f0:96:
  • 59:80:c7
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 1E:F2:24:CB:1C:4A:3C:83:93:81:62:8C:F9:09:11:9C:84:5D:D5:A6
  • X509v3 Authority Key Identifier:
  • 00:B5:29:F2:2D:8E:6F:31:E8:9B:4C:AD:78:3E:FA:DC:E9:0C:D1:D2
  • Authority Information Access:
  • CA Issuers - URI:http://r12.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:icrosoftonline.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://r12.c.lencr.org/92.crl
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A4:42:C5:06:49:60:61:54:8F:0F:D4:EA:9C:FB:7A:2D:
  • 26:45:4D:87:A9:7F:2F:DF:45:59:F6:27:4F:3A:84:54
  • Timestamp : Aug 24 06:09:18.405 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:1D:7B:29:FA:34:04:33:5C:E6:A4:EF:09:
  • 1B:AA:44:E1:85:84:04:C8:1A:DD:A8:52:40:58:7E:C9:
  • 7F:F1:67:37:02:20:24:C0:98:3E:0E:2F:84:43:28:58:
  • 21:48:C0:3D:28:D9:B7:84:0E:E7:10:AC:75:43:24:F2:
  • BA:E0:2C:B4:C7:FD
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Aug 24 06:09:18.429 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:D4:06:6E:4E:6E:8E:3A:9E:C9:FC:8B:
  • 96:55:71:EE:3E:1F:BE:3A:FC:51:70:FA:53:15:9A:02:
  • DA:93:CD:3F:00:02:21:00:80:20:3B:BB:85:EC:E6:FA:
  • 1D:E2:C6:B2:47:14:46:C5:BC:3F:03:95:12:20:A1:14:
  • 11:3B:46:7F:AF:8E:DC:B6
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 96:7f:f3:ad:c6:2c:f4:30:06:2a:bc:11:01:7d:20:44:48:cb:
  • 33:6a:be:4c:b7:c3:37:db:a1:ff:22:f6:72:37:ab:4b:b2:f7:
  • a1:ad:ce:78:f5:b5:a0:7e:22:83:6b:6c:74:2b:63:b9:2b:37:
  • 8f:3c:e4:94:9e:44:51:ba:fa:35:5e:41:39:d5:be:8d:e1:d8:
  • d8:ca:73:29:fc:23:c4:e5:a9:dc:22:0f:1e:25:07:a0:eb:25:
  • 87:9e:72:c5:db:64:b4:4e:7d:ea:56:95:f8:dd:2e:fc:5d:dc:
  • 23:e1:02:3a:26:50:92:90:02:0f:a6:b9:52:7d:0d:d9:0c:06:
  • e9:61:04:d2:13:17:c4:23:5b:12:ee:6e:78:ad:cb:75:37:ca:
  • 4e:aa:5d:a2:4e:7e:9b:43:a2:7c:b5:89:bb:bd:35:54:16:18:
  • a3:47:67:aa:b1:67:c2:28:50:31:5b:60:a8:9e:6d:81:fa:09:
  • 9c:f2:5f:8e:cc:fa:dc:f4:e5:7e:4f:94:ca:5d:1f:3d:c3:42:
  • b1:1f:b2:63:e4:76:ba:8d:b2:a4:0c:89:f7:aa:41:4d:db:9b:
  • 52:cd:cb:15:51:71:aa:ea:cd:47:01:31:ef:04:af:a0:01:03:
  • 64:29:61:32:fc:9f:d3:39:58:a8:a4:65:6f:31:b9:7d:77:3e:
  • fa:86:21:3b

*** Virustotal ***

*** WayBackMachine ***

Share on: