office365banquyen.com Threat Intelligence and Information
Share on:
Jul 23, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 36049
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- office365banquyen.com. IN A
- ANSWER SECTION:
- office365banquyen.com. 294 IN A 104.21.76.220
- office365banquyen.com. 294 IN A 172.67.201.121
- Query time: 16 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Fri Jul 29 11:00:53 UTC 2022
- MSG SIZE rcvd: 82
DNS Records
- SOA kim.ns.cloudflare.com 108.162.192.126
- SOA kim.ns.cloudflare.com 172.64.32.126
- SOA kim.ns.cloudflare.com 173.245.58.126
- NS kim.ns.cloudflare.com 173.245.58.126
- NS kim.ns.cloudflare.com 172.64.32.126
- NS kim.ns.cloudflare.com 108.162.192.126
- NS kim.ns.cloudflare.com 2606:4700:50::adf5:3a7e
- NS kim.ns.cloudflare.com 2803:f800:50::6ca2:c07e
- NS kim.ns.cloudflare.com 2a06:98c1:50::ac40:207e
- NS pete.ns.cloudflare.com 108.162.193.136
- NS pete.ns.cloudflare.com 172.64.33.136
- NS pete.ns.cloudflare.com 173.245.59.136
- NS pete.ns.cloudflare.com 2606:4700:58::adf5:3b88
- NS pete.ns.cloudflare.com 2803:f800:50::6ca2:c188
- NS pete.ns.cloudflare.com 2a06:98c1:50::ac40:2188
- MX office365banquyen-com.mail.protection.outlook.com 104.47.26.74
- MX office365banquyen-com.mail.protection.outlook.com 104.47.26.10
- A office365banquyen.com 172.67.201.121
- A office365banquyen.com 104.21.76.220
- AAAA office365banquyen.com 2606:4700:3031::6815:4cdc
- AAAA office365banquyen.com 2606:4700:3032::ac43:c979
- SRV _sip._tls.office365banquyen.com sipdir.online.lync.com 52.113.66.144 443 1
- SRV _sip._tls.office365banquyen.com sipdir.online.lync.com 2603:1047:0:a::f 443 1
- SRV _sipfederationtls._tcp.office365banquyen.com sipfed.online.lync.com 52.113.66.144 5061 1
- SRV _sipfederationtls._tcp.office365banquyen.com sipfed.online.lync.com 2603:1047:0:a::f 5061 1
Whois Data
- Domain Name: OFFICE365BANQUYEN.COM
- Registry Domain ID: 2610072916_DOMAIN_COM-VRSN
- Registrar URL: http://www.wildwestdomains.com
- Updated Date: 2022-05-07T14:24:33Z
- Creation Date: 2021-05-06T07:58:41Z
- Registry Expiry Date: 2023-05-06T07:58:41Z
- Registrar: Wild West Domains, LLC
- Registrar IANA ID: 440
- Registrar Abuse Contact Email: [email protected]
- Registrar Abuse Contact Phone: 480-624-2505
- Name Server: KIM.NS.CLOUDFLARE.COM
- Name Server: PETE.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- Domain Name: office365banquyen.com
- Registry Domain ID: 2610072916_DOMAIN_COM-VRSN
- Registrar URL: https://www.wildwestdomains.com
- Updated Date: 2022-05-07T09:24:30Z
- Creation Date: 2021-05-06T02:58:41Z
- Registrar Registration Expiration Date: 2023-05-06T02:58:41Z
- Registrar: Wild West Domains, LLC
- Registrar IANA ID: 440
- Registrar Abuse Contact Email: [email protected]
- Registrar Abuse Contact Phone: +1.4806242505
- Reseller: Azure
- Registry Registrant ID: Not Available From Registry
- Registrant Name: Registration Private
- Registrant Organization: Domains By Proxy, LLC
- Registrant Street: DomainsByProxy.com
- Registrant Street: 2155 E Warner Rd
- Registrant City: Tempe
- Registrant State/Province: Arizona
- Registrant Postal Code: 85284
- Registrant Country: US
- Registrant Phone: +1.4806242599
- Registrant Phone Ext:
- Registrant Fax: +1.4806242598
- Registrant Fax Ext:
- Registry Admin ID: Not Available From Registry
- Admin Name: Registration Private
- Admin Organization: Domains By Proxy, LLC
- Admin Street: DomainsByProxy.com
- Admin Street: 2155 E Warner Rd
- Admin City: Tempe
- Admin State/Province: Arizona
- Admin Postal Code: 85284
- Admin Country: US
- Admin Phone: +1.4806242599
- Admin Phone Ext:
- Admin Fax: +1.4806242598
- Admin Fax Ext:
- Registry Tech ID: Not Available From Registry
- Tech Name: Registration Private
- Tech Organization: Domains By Proxy, LLC
- Tech Street: DomainsByProxy.com
- Tech Street: 2155 E Warner Rd
- Tech City: Tempe
- Tech State/Province: Arizona
- Tech Postal Code: 85284
- Tech Country: US
- Tech Phone: +1.4806242599
- Tech Phone Ext:
- Tech Fax: +1.4806242598
- Tech Fax Ext:
- Name Server: KIM.NS.CLOUDFLARE.COM
- Name Server: PETE.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 0d:1a:c9:a1:b5:b6:3c:bd:6e:80:c6:15:b0:46:7a:8a
- Signature Algorithm: ecdsa-with-SHA256
- Issuer: C = US, O = “Cloudflare, Inc.”, CN = Cloudflare Inc ECC CA-3
- Validity
- Not Before: Apr 5 00:00:00 2022 GMT
- Not After : Apr 5 23:59:59 2023 GMT
- Subject: C = US, ST = California, L = San Francisco, O = “Cloudflare, Inc.”, CN = sni.cloudflaressl.com
- Subject Public Key Info:
- Public Key Algorithm: id-ecPublicKey
- Public-Key: (256 bit)
- pub:
- 04:7b:a0:4c:24:a9:22:45:a4:99:7c:56:e5:70:43:
- 44:29:e0:40:8f:01:54:71:40:81:ac:5d:b4:88:fb:
- db:a4:ff:d6:b9:23:2f:85:98:5d:a7:f8:97:42:65:
- 12:0b:4d:03:8f:d8:dc:e4:fd:28:98:b6:df:d5:42:
- 3f:1b:f0:99:c2
- ASN1 OID: prime256v1
- NIST CURVE: P-256
- X509v3 extensions:
- X509v3 Authority Key Identifier:
- keyid:A5:CE:37:EA:EB:B0:75:0E:94:67:88:B4:45:FA:D9:24:10:87:96:1F
- X509v3 Subject Key Identifier:
- FB:00:7A:A2:C3:AF:62:9A:A3:65:D9:DE:A5:47:80:BB:EB:2C:54:01
- X509v3 Subject Alternative Name:
- DNS:office365banquyen.com, DNS:*.office365banquyen.com, DNS:sni.cloudflaressl.com
- X509v3 Key Usage: critical
- Digital Signature
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 CRL Distribution Points:
- Full Name:
- URI:http://crl3.digicert.com/CloudflareIncECCCA-3.crl
- Full Name:
- URI:http://crl4.digicert.com/CloudflareIncECCCA-3.crl
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.2
- CPS: http://www.digicert.com/CPS
- Authority Information Access:
- OCSP - URI:http://ocsp.digicert.com
- CA Issuers - URI:http://cacerts.digicert.com/CloudflareIncECCCA-3.crt
- X509v3 Basic Constraints: critical
- CA:FALSE
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : AD:F7:BE:FA:7C:FF:10:C8:8B:9D:3D:9C:1E:3E:18:6A:
- B4:67:29:5D:CF:B1:0C:24:CA:85:86:34:EB:DC:82:8A
- Timestamp : Apr 5 00:43:58.664 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:27:77:88:8A:2E:19:99:C5:94:BD:35:67:
- 55:53:6D:9B:C9:48:BE:C5:96:27:5E:CB:DA:76:D2:A1:
- 6C:B4:33:19:02:21:00:EA:EB:26:10:58:81:C8:49:94:
- E3:91:82:77:43:7C:5C:68:E3:2E:D3:72:2C:4F:46:D3:
- 63:5A:35:59:81:D8:12
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
- B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
- Timestamp : Apr 5 00:43:58.621 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:46:02:21:00:F8:E2:EF:DE:BC:8D:27:C0:30:ED:E2:
- 60:CD:AA:3F:11:00:0E:69:39:F2:A4:3D:4C:11:56:4B:
- 13:35:6F:12:61:02:21:00:F3:3F:50:BA:37:93:C4:85:
- 44:66:59:99:3E:FC:72:6E:19:8C:1A:36:E4:8F:C7:87:
- 87:A2:47:0B:C5:3E:1B:B6
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : B3:73:77:07:E1:84:50:F8:63:86:D6:05:A9:DC:11:09:
- 4A:79:2D:B1:67:0C:0B:87:DC:F0:03:0E:79:36:A5:9A
- Timestamp : Apr 5 00:43:58.648 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:34:18:80:30:5C:43:6C:D5:84:29:C2:6E:
- C5:8D:73:54:D9:8B:84:FC:54:85:CC:9F:BA:45:58:31:
- 66:CD:02:B4:02:21:00:DD:71:64:ED:F2:75:D0:CE:AA:
- E9:C7:70:2F:BD:FB:4A:8D:33:97:58:5F:0B:B3:05:01:
- 6C:19:0A:71:09:46:D3
- Signature Algorithm: ecdsa-with-SHA256
- 30:44:02:20:7c:76:ff:bf:16:1b:ba:43:a3:18:99:c5:fd:f4:
- 36:88:51:78:39:0e:e9:50:a6:10:17:cd:11:06:33:e1:31:14:
- 02:20:1c:25:04:fc:05:f4:8f:1a:a5:29:4c:2b:52:b5:8a:59:
- d7:a1:27:d0:ed:17:21:d1:21:13:78:e7:f7:6f:f4:ca