office365banquyen.com Threat Intelligence and Information

Share on:

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 36049
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • office365banquyen.com. IN A
  • ANSWER SECTION:
  • office365banquyen.com. 294 IN A 104.21.76.220
  • office365banquyen.com. 294 IN A 172.67.201.121
  • Query time: 16 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Fri Jul 29 11:00:53 UTC 2022
  • MSG SIZE rcvd: 82

DNS Records

  • SOA kim.ns.cloudflare.com 108.162.192.126
  • SOA kim.ns.cloudflare.com 172.64.32.126
  • SOA kim.ns.cloudflare.com 173.245.58.126
  • NS kim.ns.cloudflare.com 173.245.58.126
  • NS kim.ns.cloudflare.com 172.64.32.126
  • NS kim.ns.cloudflare.com 108.162.192.126
  • NS kim.ns.cloudflare.com 2606:4700:50::adf5:3a7e
  • NS kim.ns.cloudflare.com 2803:f800:50::6ca2:c07e
  • NS kim.ns.cloudflare.com 2a06:98c1:50::ac40:207e
  • NS pete.ns.cloudflare.com 108.162.193.136
  • NS pete.ns.cloudflare.com 172.64.33.136
  • NS pete.ns.cloudflare.com 173.245.59.136
  • NS pete.ns.cloudflare.com 2606:4700:58::adf5:3b88
  • NS pete.ns.cloudflare.com 2803:f800:50::6ca2:c188
  • NS pete.ns.cloudflare.com 2a06:98c1:50::ac40:2188
  • MX office365banquyen-com.mail.protection.outlook.com 104.47.26.74
  • MX office365banquyen-com.mail.protection.outlook.com 104.47.26.10
  • A office365banquyen.com 172.67.201.121
  • A office365banquyen.com 104.21.76.220
  • AAAA office365banquyen.com 2606:4700:3031::6815:4cdc
  • AAAA office365banquyen.com 2606:4700:3032::ac43:c979
  • SRV _sip._tls.office365banquyen.com sipdir.online.lync.com 52.113.66.144 443 1
  • SRV _sip._tls.office365banquyen.com sipdir.online.lync.com 2603:1047:0:a::f 443 1
  • SRV _sipfederationtls._tcp.office365banquyen.com sipfed.online.lync.com 52.113.66.144 5061 1
  • SRV _sipfederationtls._tcp.office365banquyen.com sipfed.online.lync.com 2603:1047:0:a::f 5061 1

    Whois Data

  • Domain Name: OFFICE365BANQUYEN.COM
  • Registry Domain ID: 2610072916_DOMAIN_COM-VRSN
  • Registrar URL: http://www.wildwestdomains.com
  • Updated Date: 2022-05-07T14:24:33Z
  • Creation Date: 2021-05-06T07:58:41Z
  • Registry Expiry Date: 2023-05-06T07:58:41Z
  • Registrar: Wild West Domains, LLC
  • Registrar IANA ID: 440
  • Registrar Abuse Contact Email: [email protected]
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: KIM.NS.CLOUDFLARE.COM
  • Name Server: PETE.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: office365banquyen.com
  • Registry Domain ID: 2610072916_DOMAIN_COM-VRSN
  • Registrar URL: https://www.wildwestdomains.com
  • Updated Date: 2022-05-07T09:24:30Z
  • Creation Date: 2021-05-06T02:58:41Z
  • Registrar Registration Expiration Date: 2023-05-06T02:58:41Z
  • Registrar: Wild West Domains, LLC
  • Registrar IANA ID: 440
  • Registrar Abuse Contact Email: [email protected]
  • Registrar Abuse Contact Phone: +1.4806242505
  • Reseller: Azure
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 2155 E Warner Rd
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85284
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax: +1.4806242598
  • Registrant Fax Ext:
  • Registry Admin ID: Not Available From Registry
  • Admin Name: Registration Private
  • Admin Organization: Domains By Proxy, LLC
  • Admin Street: DomainsByProxy.com
  • Admin Street: 2155 E Warner Rd
  • Admin City: Tempe
  • Admin State/Province: Arizona
  • Admin Postal Code: 85284
  • Admin Country: US
  • Admin Phone: +1.4806242599
  • Admin Phone Ext:
  • Admin Fax: +1.4806242598
  • Admin Fax Ext:
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Registration Private
  • Tech Organization: Domains By Proxy, LLC
  • Tech Street: DomainsByProxy.com
  • Tech Street: 2155 E Warner Rd
  • Tech City: Tempe
  • Tech State/Province: Arizona
  • Tech Postal Code: 85284
  • Tech Country: US
  • Tech Phone: +1.4806242599
  • Tech Phone Ext:
  • Tech Fax: +1.4806242598
  • Tech Fax Ext:
  • Name Server: KIM.NS.CLOUDFLARE.COM
  • Name Server: PETE.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 0d:1a:c9:a1:b5:b6:3c:bd:6e:80:c6:15:b0:46:7a:8a
  • Signature Algorithm: ecdsa-with-SHA256
  • Issuer: C = US, O = “Cloudflare, Inc.”, CN = Cloudflare Inc ECC CA-3
  • Validity
  • Not Before: Apr 5 00:00:00 2022 GMT
  • Not After : Apr 5 23:59:59 2023 GMT
  • Subject: C = US, ST = California, L = San Francisco, O = “Cloudflare, Inc.”, CN = sni.cloudflaressl.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:7b:a0:4c:24:a9:22:45:a4:99:7c:56:e5:70:43:
  • 44:29:e0:40:8f:01:54:71:40:81:ac:5d:b4:88:fb:
  • db:a4:ff:d6:b9:23:2f:85:98:5d:a7:f8:97:42:65:
  • 12:0b:4d:03:8f:d8:dc:e4:fd:28:98:b6:df:d5:42:
  • 3f:1b:f0:99:c2
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Authority Key Identifier:
  • keyid:A5:CE:37:EA:EB:B0:75:0E:94:67:88:B4:45:FA:D9:24:10:87:96:1F
  • X509v3 Subject Key Identifier:
  • FB:00:7A:A2:C3:AF:62:9A:A3:65:D9:DE:A5:47:80:BB:EB:2C:54:01
  • X509v3 Subject Alternative Name:
  • DNS:office365banquyen.com, DNS:*.office365banquyen.com, DNS:sni.cloudflaressl.com
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl3.digicert.com/CloudflareIncECCCA-3.crl
  • Full Name:
  • URI:http://crl4.digicert.com/CloudflareIncECCCA-3.crl
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
  • Authority Information Access:
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/CloudflareIncECCCA-3.crt
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : AD:F7:BE:FA:7C:FF:10:C8:8B:9D:3D:9C:1E:3E:18:6A:
  • B4:67:29:5D:CF:B1:0C:24:CA:85:86:34:EB:DC:82:8A
  • Timestamp : Apr 5 00:43:58.664 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:27:77:88:8A:2E:19:99:C5:94:BD:35:67:
  • 55:53:6D:9B:C9:48:BE:C5:96:27:5E:CB:DA:76:D2:A1:
  • 6C:B4:33:19:02:21:00:EA:EB:26:10:58:81:C8:49:94:
  • E3:91:82:77:43:7C:5C:68:E3:2E:D3:72:2C:4F:46:D3:
  • 63:5A:35:59:81:D8:12
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
  • B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
  • Timestamp : Apr 5 00:43:58.621 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:F8:E2:EF:DE:BC:8D:27:C0:30:ED:E2:
  • 60:CD:AA:3F:11:00:0E:69:39:F2:A4:3D:4C:11:56:4B:
  • 13:35:6F:12:61:02:21:00:F3:3F:50:BA:37:93:C4:85:
  • 44:66:59:99:3E:FC:72:6E:19:8C:1A:36:E4:8F:C7:87:
  • 87:A2:47:0B:C5:3E:1B:B6
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B3:73:77:07:E1:84:50:F8:63:86:D6:05:A9:DC:11:09:
  • 4A:79:2D:B1:67:0C:0B:87:DC:F0:03:0E:79:36:A5:9A
  • Timestamp : Apr 5 00:43:58.648 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:34:18:80:30:5C:43:6C:D5:84:29:C2:6E:
  • C5:8D:73:54:D9:8B:84:FC:54:85:CC:9F:BA:45:58:31:
  • 66:CD:02:B4:02:21:00:DD:71:64:ED:F2:75:D0:CE:AA:
  • E9:C7:70:2F:BD:FB:4A:8D:33:97:58:5F:0B:B3:05:01:
  • 6C:19:0A:71:09:46:D3
  • Signature Algorithm: ecdsa-with-SHA256
  • 30:44:02:20:7c:76:ff:bf:16:1b:ba:43:a3:18:99:c5:fd:f4:
  • 36:88:51:78:39:0e:e9:50:a6:10:17:cd:11:06:33:e1:31:14:
  • 02:20:1c:25:04:fc:05:f4:8f:1a:a5:29:4c:2b:52:b5:8a:59:
  • d7:a1:27:d0:ed:17:21:d1:21:13:78:e7:f7:6f:f4:ca

Sitemap

Technologies

** Virustotal **

** WayBackMachine **