paypaint.com Threat Intelligence and Information

Host Location

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 55303
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • paypaint.com. IN A
  • ANSWER SECTION:
  • paypaint.com. 3588 IN A 185.53.177.53
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Thu Oct 23 00:11:29 UTC 2025
  • MSG SIZE rcvd: 57

Whois Data

  • Domain Name: PAYPAINT.COM
  • Registry Domain ID: 2974159036_DOMAIN_COM-VRSN
  • Registrar URL: http://www.globaldomaingroup.com
  • Updated Date: 2025-09-01T16:20:23Z
  • Creation Date: 2025-04-10T18:46:12Z
  • Registry Expiry Date: 2026-04-10T18:46:12Z
  • Registrar: Global Domain Group LLC
  • Registrar IANA ID: 3956
  • Registrar Abuse Contact Email: abuse@globaldomaingroup.com
  • Registrar Abuse Contact Phone: +1 (805) 394-3992
  • Name Server: NS1.PARKINGCREW.NET
  • Name Server: NS2.PARKINGCREW.NET
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 05:63:cf:5f:ad:e7:2a:bb:41:28:a7:49:95:0c:27:7f:6f:e8
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R13
  • Validity
  • Not Before: Sep 1 16:10:56 2025 GMT
  • Not After : Nov 30 16:10:55 2025 GMT
  • Subject: CN = paypaint.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (4096 bit)
  • Modulus:
  • 00:c7:9f:28:0c:7e:69:76:bc:20:60:7b:a3:0a:78:
  • a4:2a:80:e1:84:bd:6d:a0:fc:90:8b:55:9e:9f:d7:
  • 20:29:06:49:ad:e7:6a:00:c6:01:4c:c5:1d:c7:f1:
  • 52:bf:62:57:51:94:d5:f0:fa:3c:e9:e9:43:bb:23:
  • 14:ca:39:67:b5:c3:c5:53:a3:e6:f8:4d:db:02:a0:
  • ed:e3:6d:9c:68:16:f3:08:f0:89:79:35:6e:e2:5c:
  • 86:2a:50:12:c7:da:49:d2:a1:eb:a0:6e:db:42:de:
  • 58:35:3a:2c:a4:b3:9e:96:58:88:fc:a1:23:1b:9c:
  • 6e:39:83:52:ff:17:5e:d2:85:c7:e7:5c:53:19:c1:
  • 3e:89:48:4d:34:2b:e3:b2:13:f8:da:54:f3:d1:31:
  • 34:a8:32:c8:09:13:3d:50:19:75:07:3f:6e:9f:a0:
  • c5:7c:95:c7:65:99:d9:20:db:f0:bd:fc:ed:31:66:
  • 64:9c:5b:04:8d:2f:02:41:8f:9c:d1:aa:b7:97:37:
  • 40:7d:d7:48:bb:1d:d0:83:73:ed:2b:56:22:45:d4:
  • 65:78:b3:47:dc:53:69:38:18:98:db:d1:82:30:de:
  • b8:36:a3:84:1b:0c:4d:9a:b7:0d:d7:da:17:46:76:
  • c3:02:d0:9a:42:5d:2b:f8:40:9a:2b:fa:8f:88:5d:
  • 18:46:e9:48:94:3e:db:15:32:53:64:d5:98:64:af:
  • f8:96:4a:d0:aa:e8:f9:11:7c:fc:52:b5:92:11:45:
  • 1e:5c:ea:98:b1:95:8d:9b:8a:16:0a:e3:c7:27:54:
  • 9c:ab:7a:8b:ff:9a:20:b8:92:a4:a7:7d:25:27:04:
  • f1:7c:7f:70:30:22:97:d0:9f:e6:49:22:6f:0e:69:
  • 5d:9f:a5:b5:fb:32:53:67:c2:a7:ee:c0:49:14:f9:
  • 38:64:c8:77:0c:29:80:db:f2:24:7c:86:00:8e:6c:
  • 55:e8:0b:e4:ee:94:3c:5b:d9:c0:71:25:6c:38:0e:
  • fa:33:09:7a:e2:b5:09:5f:ca:07:20:69:09:13:60:
  • aa:ea:f7:72:ae:9a:3f:f9:f4:f9:38:16:28:b7:f3:
  • 13:8a:7b:31:9d:53:ed:3f:92:14:9a:52:02:9e:a4:
  • 41:46:0f:f6:8e:fa:98:e0:0b:d9:14:fa:da:72:f4:
  • e2:95:8a:26:c0:9d:96:02:11:63:36:f6:81:9e:69:
  • 78:ba:05:db:9b:51:2b:94:68:5d:b5:20:61:3e:f2:
  • 2a:b4:17:01:93:f7:37:84:67:33:b7:de:26:08:b1:
  • d9:07:43:cf:e5:b0:73:73:20:4f:5c:cb:a0:20:de:
  • b0:de:20:85:5f:0c:fe:4b:d4:27:b2:2f:9a:7c:0c:
  • e1:e6:f3
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • F3:B0:D8:D3:D5:A6:9D:31:CA:89:E8:F8:E3:C9:C0:18:35:C5:CE:53
  • X509v3 Authority Key Identifier:
  • E7:AB:9F:0F:2C:33:A0:53:D3:5E:4F:78:C8:B2:84:0E:3B:D6:92:33
  • Authority Information Access:
  • CA Issuers - URI:http://r13.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:paypaint.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://r13.c.lencr.org/105.crl
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : ED:3C:4B:D6:E8:06:C2:A4:A2:00:57:DB:CB:24:E2:38:
  • 01:DF:51:2F:ED:C4:86:C5:70:0F:20:DD:B7:3E:3F:E0
  • Timestamp : Sep 1 17:09:26.278 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:DD:5C:A6:A2:26:F5:03:EC:E4:CF:EE:
  • 15:A5:93:7F:FE:90:D9:57:71:C5:CD:8B:95:43:20:71:
  • 5D:C6:01:60:33:02:20:4A:92:AB:45:6D:67:D7:8C:8A:
  • 12:9B:C9:C9:44:68:15:4D:05:D5:B3:66:5A:7F:61:C6:
  • F1:BA:B0:54:01:20:8F
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8:
  • 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A
  • Timestamp : Sep 1 17:09:26.351 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:43:36:F6:3F:25:81:27:A2:F0:34:DA:29:
  • 80:93:C1:C1:19:2B:D5:04:67:5E:2F:FB:A8:C9:3B:38:
  • E9:8B:CC:4D:02:20:5D:BD:82:D2:93:65:CF:10:72:85:
  • 00:38:52:DB:5C:C9:AA:AC:3F:A1:16:3F:BA:DB:23:59:
  • A6:A8:90:41:56:40
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 89:5a:19:06:04:dd:fa:dd:be:1c:ec:21:a7:a6:c7:4c:da:d5:
  • 92:3c:3e:5a:f2:f4:76:d2:b6:3e:9e:70:26:c4:c1:1f:16:8f:
  • 9e:ff:b4:4e:05:8d:74:8c:42:c7:62:53:e5:da:9d:cb:34:71:
  • 0e:7f:6f:16:f2:62:a2:31:c8:37:76:6b:6e:53:ec:45:2a:fb:
  • de:d3:44:fe:6a:7d:72:c2:d8:ac:90:54:7d:13:ef:96:35:97:
  • 7a:93:9b:15:ce:e9:92:5b:1d:e5:3e:87:69:64:90:81:0b:82:
  • b7:de:01:59:18:43:f1:8d:87:d0:64:8d:e2:5a:3e:6b:31:9f:
  • 20:b6:c4:39:3b:bd:5a:ed:49:d6:4f:ef:3d:b7:1c:9d:65:ca:
  • 3e:99:31:eb:f1:20:84:14:83:c1:86:0a:f7:23:36:be:59:5f:
  • 07:f9:de:c4:fb:48:48:30:fc:97:42:4f:8d:44:c3:91:00:8e:
  • b1:dd:00:4c:23:17:a3:28:df:1c:e6:70:9a:a9:92:6b:f4:fd:
  • 59:18:a4:57:e2:b6:40:ce:0b:9c:47:39:97:3a:76:dc:fd:16:
  • f6:df:a7:86:3e:e4:d6:ee:d7:e3:49:1c:88:31:58:b6:b8:8d:
  • 11:13:b4:ce:df:54:a5:5f:c8:ec:21:da:f5:a8:d0:a9:bc:21:
  • f2:7e:e6:de

Robots

“User-agent: Googlebot\nDisallow: /?\nDisallow: /munin\n\nUser-agent: Baiduspider\nDisallow: /?\nDisallow: /munin\n\nUser-agent: YandexBot\nDisallow: /?\nDisallow: /munin\n\nUser-agent: ichiro\nDisallow: /?\nDisallow: /munin\n\nUser-agent: sogou spider\nDisallow: /?\nDisallow: /munin\n\nUser-agent: Sosospider\nDisallow: /?\nDisallow: /munin\n\nUser-agent: YoudaoBot\nDisallow: /?\nDisallow: /munin\n\nUser-agent: YetiBot\nDisallow: /?\nDisallow: /munin\n\nUser-agent: bingbot\nCrawl-delay: 2\nDisallow: /?\nDisallow: /munin\n\nUser-Agent: Yahoo! Slurp \nCrawl-delay: 2\nDisallow: /?\nDisallow: /munin\n\nUser-agent: rdfbot\nDisallow: /?\nDisallow: /munin\n\nUser-agent: Seznambot \nRequest-rate: 1/2s\nDisallow: /?\nDisallow: /munin\n\nUser-agent: ia_archiver\nDisallow: /munin*\n\nUser-agent: Mediapartners-Google\nDisallow: /munin*

Technologies

nginx

*** Virustotal ***

*** WayBackMachine ***

Share on: