paypal-signup.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 29335
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • paypal-signup.com. IN A
  • ANSWER SECTION:
  • paypal-signup.com. 297 IN A 104.21.22.184
  • paypal-signup.com. 297 IN A 172.67.206.156
  • Query time: 8 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Fri Apr 22 20:21:07 UTC 2022
  • MSG SIZE rcvd: 78

DNS Records

  • SOA jack.ns.cloudflare.com 108.162.193.121
  • SOA jack.ns.cloudflare.com 172.64.33.121
  • SOA jack.ns.cloudflare.com 173.245.59.121
  • SOA jack.ns.cloudflare.com 2606:4700:58::adf5:3b79
  • SOA jack.ns.cloudflare.com 2803:f800:50::6ca2:c179
  • SOA jack.ns.cloudflare.com 2a06:98c1:50::ac40:2179
  • NS jack.ns.cloudflare.com 173.245.59.121
  • NS jack.ns.cloudflare.com 108.162.193.121
  • NS jack.ns.cloudflare.com 172.64.33.121
  • NS jack.ns.cloudflare.com 2a06:98c1:50::ac40:2179
  • NS jack.ns.cloudflare.com 2803:f800:50::6ca2:c179
  • NS jack.ns.cloudflare.com 2606:4700:58::adf5:3b79
  • NS lana.ns.cloudflare.com 108.162.192.182
  • NS lana.ns.cloudflare.com 172.64.32.182
  • NS lana.ns.cloudflare.com 173.245.58.182
  • NS lana.ns.cloudflare.com 2606:4700:50::adf5:3ab6
  • NS lana.ns.cloudflare.com 2803:f800:50::6ca2:c0b6
  • NS lana.ns.cloudflare.com 2a06:98c1:50::ac40:20b6
  • A paypal-signup.com 104.21.22.184
  • A paypal-signup.com 172.67.206.156
  • AAAA paypal-signup.com 2606:4700:3037::6815:16b8
  • AAAA paypal-signup.com 2606:4700:3035::ac43:ce9c

Whois Data

  • Domain Name: PAYPAL-SIGNUP.COM
  • Registry Domain ID: 2690602116_DOMAIN_COM-VRSN
  • Registrar URL: http://www.reg.ru
  • Updated Date: 2022-04-20T15:16:09Z
  • Creation Date: 2022-04-20T11:00:05Z
  • Registry Expiry Date: 2023-04-20T11:00:05Z
  • Registrar: REGISTRAR OF DOMAIN NAMES REG.RU LLC
  • Registrar IANA ID: 1606
  • Registrar Abuse Contact Email:
  • Registrar Abuse Contact Phone:
  • Name Server: JACK.NS.CLOUDFLARE.COM
  • Name Server: LANA.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain name: PAYPAL-SIGNUP.COM
  • Registry Domain ID: 2690602116_DOMAIN_COM-VRSN
  • Registrar URL: https://www.reg.com
  • Registrar URL: https://www.reg.ru
  • Updated Date: 2022-04-20T15:16:09Z
  • Creation Date: 2022-04-20T11:00:05Z
  • Registrar Registration Expiration Date: 2023-04-20T11:00:05Z
  • Registrar: Registrar of domain names REG.RU LLC
  • Registrar IANA ID: 1606
  • Registrar Abuse Contact Email: abuse@reg.ru
  • Registrar Abuse Contact Phone: +7.4955801111
  • Registry Registrant ID:
  • Registrant Name: Vaivnov Ivan
  • Registrant Organization: Private Person
  • Registrant Street: centralnaya 1
  • Registrant City: sochi
  • Registrant State/Province: krasnodarskiy kray
  • Registrant Postal Code: 357200
  • Registrant Country: RU
  • Registrant Phone: +7.9235674544
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registrant Email: lorecaltagironehbc69@gmail.com
  • Registry Admin ID:
  • Admin Name: Vaivnov Ivan
  • Admin Organization: Private Person
  • Admin Street: centralnaya 1
  • Admin City: sochi
  • Admin State/Province: krasnodarskiy kray
  • Admin Postal Code: 357200
  • Admin Country: RU
  • Admin Phone: +7.9235674544
  • Admin Phone Ext:
  • Admin Fax: +7.9235674544
  • Admin Fax Ext:
  • Admin Email: lorecaltagironehbc69@gmail.com
  • Registry Tech ID:
  • Tech Name: Vaivnov Ivan
  • Tech Organization: Private Person
  • Tech Street: centralnaya 1
  • Tech City: sochi
  • Tech State/Province: krasnodarskiy kray
  • Tech Postal Code: 357200
  • Tech Country: RU
  • Tech Phone: +7.9235674544
  • Tech Phone Ext:
  • Tech Fax: +7.9235674544
  • Tech Fax Ext:
  • Tech Email: lorecaltagironehbc69@gmail.com
  • Name Server: jack.ns.cloudflare.com
  • Name Server: lana.ns.cloudflare.com
  • DNSSEC: Unsigned
  • blacklisted. All data is (c) Registrar of Domain Names REG.RU LLC (https://www.reg.com)

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 03:3d:16:ab:52:b9:4f:d0:00:8b:9f:1c:b9:4a:da:90:23:43
  • Signature Algorithm: ecdsa-with-SHA384
  • Issuer: C = US, O = Let’s Encrypt, CN = E1
  • Validity
  • Not Before: Apr 20 14:19:04 2022 GMT
  • Not After : Jul 19 14:19:03 2022 GMT
  • Subject: CN = *.paypal-signup.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:15:d2:89:f4:2e:1e:c0:16:f7:38:7a:ce:4e:c3:
  • 46:6a:f1:4d:0d:5d:f4:81:58:75:d3:bf:99:8f:92:
  • 8c:4e:b2:93:83:ab:ae:67:58:5e:92:40:d9:d4:21:
  • 36:30:09:31:12:8d:dc:66:4f:12:57:4e:09:a8:a9:
  • 60:cf:8a:26:73
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • BC:2F:B8:CF:41:6C:39:A2:C5:61:43:05:04:EF:E8:B1:63:DD:E0:8D
  • X509v3 Authority Key Identifier:
  • keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
  • Authority Information Access:
  • OCSP - URI:http://e1.o.lencr.org
  • CA Issuers - URI:http://e1.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:*.paypal-signup.com, DNS:paypal-signup.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
  • EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
  • Timestamp : Apr 20 15:19:04.553 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:6B:06:B6:1A:AC:49:DD:54:C0:EE:31:E6:
  • 4E:3C:34:C8:52:A2:A6:36:3B:84:25:61:92:D0:FF:0B:
  • 37:BA:3D:B9:02:21:00:DE:1B:7D:50:5E:D7:BE:F7:0D:
  • CE:2D:E9:DF:E9:7F:47:47:21:95:42:12:47:F6:B1:94:
  • 30:1F:E5:2D:3D:02:48
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
  • 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
  • Timestamp : Apr 20 15:19:04.577 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:DA:25:29:D6:FF:BB:41:8F:8A:78:12:
  • 81:8C:66:81:56:22:05:29:3F:4D:98:04:00:B4:4D:A7:
  • 9E:41:2D:9B:F9:02:20:3B:F0:40:17:5A:D0:BA:4D:18:
  • EB:1D:4B:A4:CF:10:43:B4:39:FF:54:CC:5D:87:E4:47:
  • F2:4E:6A:88:DC:2E:E2
  • Signature Algorithm: ecdsa-with-SHA384
  • 30:66:02:31:00:eb:bb:50:7e:6a:a2:14:e7:e5:b0:87:87:f7:
  • 90:c7:98:cf:01:88:ad:17:85:c1:e6:ff:c4:ab:67:e6:cd:37:
  • 99:d3:3b:bd:03:45:37:e5:f2:97:2b:e3:1a:c1:31:6f:ea:02:
  • 31:00:86:57:02:c6:6b:57:c1:31:4d:37:9b:4a:6d:a5:42:c7:
  • ec:06:5b:3f:57:db:5e:b2:ae:3c:16:df:b4:f2:26:12:69:79:
  • b9:2c:8b:05:22:6c:50:32:9d:5e:7e:a9:e4:86

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: