origin-www2-canadaqost-ca.com Threat Intelligence and Information
Jul 24, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 2133
- flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- origin-www2-canadaqost-ca.com. IN A
- ANSWER SECTION:
- origin-www2-canadaqost-ca.com. 3593 IN A 162.213.250.210
- Query time: 120 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Sun Jul 31 05:30:01 UTC 2022
- MSG SIZE rcvd: 74
DNS Records
- SOA ns1.bdm.microsoftonline.com 40.90.4.208
- NS ns1.bdm.microsoftonline.com 40.90.4.208
- NS ns1.bdm.microsoftonline.com 2603:1061::d0
- NS ns2.bdm.microsoftonline.com 64.4.48.208
- NS ns2.bdm.microsoftonline.com 2620:1ec:8ec::d0
- NS ns3.bdm.microsoftonline.com 13.107.24.208
- NS ns3.bdm.microsoftonline.com 2a01:111:4000::d0
- NS ns4.bdm.microsoftonline.com 13.107.160.208
- NS ns4.bdm.microsoftonline.com 2620:1ec:bda::d0
- MX originwww2canadaqostca-com01ei2e.mail.protection.outlook.com 104.47.25.36
- MX originwww2canadaqostca-com01ei2e.mail.protection.outlook.com 104.47.24.36
- A origin-www2-canadaqost-ca.com 162.213.250.210
- SRV _sipfederationtls._tcp.origin-www2-canadaqost-ca.com sipfed.online.lync.com 52.113.66.144 5061 1
- SRV _sipfederationtls._tcp.origin-www2-canadaqost-ca.com sipfed.online.lync.com 2603:1047:0:b::f 5061 1
- SRV _sip._tls.origin-www2-canadaqost-ca.com sipdir.online.lync.com 52.113.66.203 443 1
- SRV _sip._tls.origin-www2-canadaqost-ca.com sipdir.online.lync.com 2603:1047:0:a::f 443 1
- SRV _sip._tls.origin-www2-canadaqost-ca.com sipdir.online.lync.com 2603:1047:0:b::f 443 1
- SRV _sip._tls.origin-www2-canadaqost-ca.com sipdir.online.lync.com 2603:1047:0:2::b 443 1
- SRV _sip._tls.origin-www2-canadaqost-ca.com sipdir.online.lync.com 2603:1047:0:1::b 443 1
- SRV _sip._tls.origin-www2-canadaqost-ca.com sipdir.online.lync.com 2603:1047:0:9::f 443 1
- SRV _sip._tls.origin-www2-canadaqost-ca.com sipdir.online.lync.com 2603:1047:0:8::f 443 1
Whois Data
- Domain Name: ORIGIN-WWW2-CANADAQOST-CA.COM
- Registry Domain ID: 2624235639_DOMAIN_COM-VRSN
- Registrar URL: http://www.wildwestdomains.com
- Updated Date: 2022-07-10T16:09:08Z
- Creation Date: 2021-07-04T11:39:36Z
- Registry Expiry Date: 2023-07-04T11:39:36Z
- Registrar: Wild West Domains, LLC
- Registrar IANA ID: 440
- Registrar Abuse Contact Email: abuse@wildwestdomains.com
- Registrar Abuse Contact Phone: 480-624-2505
- Name Server: NS1.BDM.MICROSOFTONLINE.COM
- Name Server: NS2.BDM.MICROSOFTONLINE.COM
- DNSSEC: unsigned
- Domain Name: origin-www2-canadaqost-ca.com
- Registry Domain ID: 2624235639_DOMAIN_COM-VRSN
- Registrar URL: https://www.wildwestdomains.com
- Updated Date: 2022-07-05T12:22:55Z
- Creation Date: 2021-07-04T06:39:36Z
- Registrar Registration Expiration Date: 2023-07-04T06:39:36Z
- Registrar: Wild West Domains, LLC
- Registrar IANA ID: 440
- Registrar Abuse Contact Email: abuse@wildwestdomains.com
- Registrar Abuse Contact Phone: +1.4806242505
- Reseller: Microsoft 365
- Registry Registrant ID: Not Available From Registry
- Registrant Name: Registration Private
- Registrant Organization: Domains By Proxy, LLC
- Registrant Street: DomainsByProxy.com
- Registrant Street: 2155 E Warner Rd
- Registrant City: Tempe
- Registrant State/Province: Arizona
- Registrant Postal Code: 85284
- Registrant Country: US
- Registrant Phone: +1.4806242599
- Registrant Phone Ext:
- Registrant Fax: +1.4806242598
- Registrant Fax Ext:
- Registry Admin ID: Not Available From Registry
- Admin Name: Registration Private
- Admin Organization: Domains By Proxy, LLC
- Admin Street: DomainsByProxy.com
- Admin Street: 2155 E Warner Rd
- Admin City: Tempe
- Admin State/Province: Arizona
- Admin Postal Code: 85284
- Admin Country: US
- Admin Phone: +1.4806242599
- Admin Phone Ext:
- Admin Fax: +1.4806242598
- Admin Fax Ext:
- Registry Tech ID: Not Available From Registry
- Tech Name: Registration Private
- Tech Organization: Domains By Proxy, LLC
- Tech Street: DomainsByProxy.com
- Tech Street: 2155 E Warner Rd
- Tech City: Tempe
- Tech State/Province: Arizona
- Tech Postal Code: 85284
- Tech Country: US
- Tech Phone: +1.4806242599
- Tech Phone Ext:
- Tech Fax: +1.4806242598
- Tech Fax Ext:
- Name Server: NS1.BDM.MICROSOFTONLINE.COM
- Name Server: NS2.BDM.MICROSOFTONLINE.COM
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 5c:1f:9d:f8:91:da:ed:64:2a:d5:bc:0e:8d:ea:94:03:60:04:76:bc
- Signature Algorithm: sha256WithRSAEncryption
- Issuer: C = US, O = “CloudFlare, Inc.”, OU = CloudFlare Origin SSL Certificate Authority, L = San Francisco, ST = California
- Validity
- Not Before: Mar 17 07:29:00 2022 GMT
- Not After : Mar 13 07:29:00 2037 GMT
- Subject: O = “CloudFlare, Inc.”, OU = CloudFlare Origin CA, CN = CloudFlare Origin Certificate
- Subject Public Key Info:
- Public Key Algorithm: rsaEncryption
- RSA Public-Key: (2048 bit)
- Modulus:
- 00:a5:fc:b1:d7:56:d4:44:f9:ad:7b:76:2d:d1:55:
- d1:e9:92:c1:57:a1:3b:85:a4:b0:98:73:24:d6:c0:
- 57:63:03:6c:09:c2:fc:12:18:ba:6c:a7:4d:92:6d:
- 95:67:4a:50:a5:b6:da:5c:d6:2b:56:da:16:29:0e:
- d3:b1:49:39:1d:a8:88:c9:9e:ed:fa:c1:5b:c6:d0:
- 47:0f:41:7b:de:ec:f2:68:0b:b2:3b:80:76:8e:13:
- 7c:54:50:21:bd:01:f0:4d:e3:ad:67:ed:84:56:9b:
- a0:c0:6e:ba:44:22:85:0c:bb:a5:e1:2d:a4:48:77:
- de:bd:63:04:88:57:c7:10:fc:bc:46:ee:a0:57:24:
- 4e:c4:52:1b:67:72:ba:0b:96:93:73:03:0b:7c:ba:
- b7:19:69:ec:c4:11:19:7c:7a:ff:9e:b1:77:05:11:
- f4:d7:c4:0b:d5:64:7b:e9:bf:08:bb:90:ba:cf:d9:
- 57:fe:98:1e:64:31:2a:f6:48:d9:1e:b1:16:9c:de:
- 13:1e:3d:60:3e:77:af:54:a4:c1:f1:a3:14:ab:50:
- 82:bc:48:15:9e:d2:4c:f5:e5:0b:a3:e2:d3:89:c4:
- ec:d6:00:65:74:39:e8:07:e0:1e:4f:dc:65:c2:4c:
- a6:7f:2f:64:15:d8:7d:a5:9f:37:8d:b3:c5:f1:0b:
- 81:1b
- Exponent: 65537 (0x10001)
- X509v3 extensions:
- X509v3 Key Usage: critical
- Digital Signature, Key Encipherment
- X509v3 Extended Key Usage:
- TLS Web Client Authentication, TLS Web Server Authentication
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Subject Key Identifier:
- F2:4C:E3:92:B0:10:8E:53:54:65:55:F9:A9:F1:A8:92:88:43:F9:CF
- X509v3 Authority Key Identifier:
- keyid:24:E8:53:57:5D:7C:34:40:87:A9:EB:94:DB:BA:E1:16:78:FC:29:A4
- Authority Information Access:
- OCSP - URI:http://ocsp.cloudflare.com/origin_ca
- X509v3 Subject Alternative Name:
- DNS:*.brownsfinances.com, DNS:brownsfinances.com
- X509v3 CRL Distribution Points:
- Full Name:
- URI:http://crl.cloudflare.com/origin_ca.crl
- Signature Algorithm: sha256WithRSAEncryption
- 95:2d:48:b0:b8:4d:55:10:e6:0c:80:47:03:e5:37:38:6e:40:
- dd:19:83:11:b1:2f:f1:c3:f6:ea:e4:ef:79:03:d0:e6:7b:77:
- d8:b3:ca:27:1e:a8:ab:c4:41:0c:f1:bf:d9:04:01:51:ae:55:
- fd:2a:84:14:80:b0:eb:00:aa:6d:82:19:38:45:28:11:29:cd:
- c5:40:8f:7e:c3:73:d4:a6:08:87:d5:15:73:cc:a5:06:70:f8:
- 6e:c6:bf:1c:bd:c3:32:c4:7a:20:66:80:8a:2b:7c:17:db:4c:
- 22:2f:97:a1:21:87:e1:f5:7b:92:c4:8d:28:0d:72:22:ce:87:
- f1:f1:41:3d:3d:e0:1a:4d:ff:12:aa:a8:5b:73:01:10:7b:2c:
- 9d:d4:79:49:66:19:0a:7d:ec:28:96:00:95:97:55:ce:d5:a4:
- 6b:d1:28:1b:1b:b9:03:c3:61:4f:d0:99:c8:1e:69:8e:43:79:
- 61:9a:25:98:cf:b6:0c:f2:ae:36:49:9c:b9:50:b6:1a:68:9f:
- 89:11:2b:5a:14:6e:08:dc:b5:65:07:56:ec:47:1e:53:25:78:
- 8b:70:66:b4:99:65:01:35:0d:15:38:cc:e0:46:81:f7:48:04:
- 25:21:34:53:ae:8f:d5:d5:55:0c:f5:6b:b4:64:e5:c1:15:69:
- 73:cb:c0:86