powershellsupport.com Threat Intelligence and Information

Host Location

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 11649
  • flags: qr rd ra QUERY: 1, ANSWER: 4, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • powershellsupport.com. IN A
  • ANSWER SECTION:
  • powershellsupport.com. 3590 IN A 185.199.110.153
  • powershellsupport.com. 3590 IN A 185.199.108.153
  • powershellsupport.com. 3590 IN A 185.199.109.153
  • powershellsupport.com. 3590 IN A 185.199.111.153
  • Query time: 88 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Thu Jan 26 00:00:16 UTC 2023
  • MSG SIZE rcvd: 114

DNS Records

Whois Data

  • Domain Name: POWERSHELLSUPPORT.COM
  • Registry Domain ID: 2746952538_DOMAIN_COM-VRSN
  • Registrar URL: http://www.name.com
  • Updated Date: 2022-12-25T12:04:13Z
  • Creation Date: 2022-12-25T11:59:10Z
  • Registry Expiry Date: 2023-12-25T11:59:10Z
  • Registrar: Name.com, Inc.
  • Registrar IANA ID: 625
  • Registrar Abuse Contact Email: abuse@name.com
  • Registrar Abuse Contact Phone: 7202492374
  • Name Server: NS1-02.AZURE-DNS.COM
  • Name Server: NS2-02.AZURE-DNS.NET
  • Name Server: NS3-02.AZURE-DNS.ORG
  • Name Server: NS4-02.AZURE-DNS.INFO
  • DNSSEC: unsigned
  • Domain Name: POWERSHELLSUPPORT.COM
  • Registry Domain ID: 2746952538_DOMAIN_COM-VRSN
  • Registrar URL: http://www.name.com
  • Updated Date: 2022-12-25T12:04:13Z
  • Creation Date: 2022-12-25T11:59:10Z
  • Registrar Registration Expiration Date: 2023-12-25T11:59:10Z
  • Registrar: Name.com, Inc.
  • Registrar IANA ID: 625
  • Reseller:
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Whois Agent
  • Registrant Organization: Domain Protection Services, Inc.
  • Registrant Street: PO Box 1769
  • Registrant City: Denver
  • Registrant State/Province: CO
  • Registrant Postal Code: 80201
  • Registrant Country: US
  • Registrant Phone: +1.7208009072
  • Registrant Fax: +1.7209758725
  • Registry Admin ID: Not Available From Registry
  • Admin Name: Whois Agent
  • Admin Organization: Domain Protection Services, Inc.
  • Admin Street: PO Box 1769
  • Admin City: Denver
  • Admin State/Province: CO
  • Admin Postal Code: 80201
  • Admin Country: US
  • Admin Phone: +1.7208009072
  • Admin Fax: +1.7209758725
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Whois Agent
  • Tech Organization: Domain Protection Services, Inc.
  • Tech Street: PO Box 1769
  • Tech City: Denver
  • Tech State/Province: CO
  • Tech Postal Code: 80201
  • Tech Country: US
  • Tech Phone: +1.7208009072
  • Tech Fax: +1.7209758725
  • Name Server: ns1-02.azure-dns.com
  • Name Server: ns2-02.azure-dns.net
  • Name Server: ns3-02.azure-dns.org
  • Name Server: ns4-02.azure-dns.info
  • DNSSEC: unSigned
  • Registrar Abuse Contact Email: abuse@name.com
  • Registrar Abuse Contact Phone: +1.7203101849

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 04:66:9e:0c:f3:62:2e:05:92:de:dd:79:c6:4f:ad:c1:91:b5
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R3
  • Validity
  • Not Before: Dec 30 22:07:24 2022 GMT
  • Not After : Mar 30 22:07:23 2023 GMT
  • Subject: CN = powershellsupport.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (2048 bit)
  • Modulus:
  • 00:ab:c7:1b:0c:ed:c6:01:f8:ea:a9:b3:cf:08:17:
  • 4f:a2:cb:7c:34:c4:66:12:e6:ef:f3:98:17:79:c9:
  • 65:ee:66:4c:1f:9a:92:7d:33:ee:07:fa:2e:15:62:
  • f7:b4:f3:1f:d5:4f:2e:b1:67:a8:49:42:bf:e3:cc:
  • 9a:b7:30:46:c2:68:f5:28:a9:64:69:6f:4c:4b:64:
  • 24:c9:dc:ed:46:9f:a4:1f:c2:ef:6f:36:d0:bc:69:
  • 27:b8:e2:d6:18:70:40:2c:b4:f5:ee:8f:f7:0d:8c:
  • 6e:03:92:e7:5d:d6:3e:bc:bb:c9:5b:28:10:a0:5a:
  • f6:37:f5:e1:9e:15:23:72:6e:8e:69:01:09:a4:8c:
  • a4:c9:d7:db:05:01:90:48:4b:90:20:8c:38:7a:0a:
  • 60:74:79:18:26:30:8e:60:0b:17:b9:24:a0:80:df:
  • 3f:14:00:d3:09:e7:34:47:35:63:7c:54:d2:a0:9d:
  • e1:57:d1:cb:13:d3:3c:30:24:97:8e:ea:34:00:9f:
  • cc:6c:0c:6a:f7:54:bc:5e:60:dc:46:31:c2:09:de:
  • d9:c3:e3:63:1e:8f:1c:c5:90:90:e8:da:86:be:7d:
  • f1:c3:1f:1a:86:69:9b:0b:e0:b2:0c:47:08:c8:92:
  • 59:2b:66:2f:fa:a1:38:a1:2f:10:65:f6:97:fd:16:
  • 87:33
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 63:4E:15:85:56:5A:A4:94:02:C2:16:42:A4:A5:97:9A:38:02:57:97
  • X509v3 Authority Key Identifier:
  • 14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
  • Authority Information Access:
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:powershellsupport.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : AD:F7:BE:FA:7C:FF:10:C8:8B:9D:3D:9C:1E:3E:18:6A:
  • B4:67:29:5D:CF:B1:0C:24:CA:85:86:34:EB:DC:82:8A
  • Timestamp : Dec 30 23:07:24.784 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:68:CD:71:76:CB:4D:B6:03:08:9C:01:64:
  • E7:20:F7:03:9F:00:B4:B3:E4:E3:85:E8:C1:3B:69:B0:
  • E9:57:3B:56:02:21:00:F6:AB:8D:9A:27:53:41:C3:39:
  • 7A:F9:B1:5D:D4:23:B6:52:87:33:0B:02:34:40:56:32:
  • CF:DB:13:B0:30:96:A9
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 7A:32:8C:54:D8:B7:2D:B6:20:EA:38:E0:52:1E:E9:84:
  • 16:70:32:13:85:4D:3B:D2:2B:C1:3A:57:A3:52:EB:52
  • Timestamp : Dec 30 23:07:25.263 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:04:44:B8:E5:A3:CB:D1:AE:72:C9:4D:6E:
  • 20:18:CB:57:C8:AB:F0:22:12:73:05:13:F5:38:02:79:
  • 7D:35:B8:01:02:20:6F:38:73:82:18:75:0F:44:AF:47:
  • 15:73:8A:15:9B:B4:33:42:FE:22:36:6D:67:ED:F7:D4:
  • F5:D2:28:2E:46:C0
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 52:39:f5:42:53:f1:46:d5:28:2d:29:9b:0e:90:fd:15:a1:8b:
  • 91:3e:47:c4:b0:a7:50:ca:12:73:e6:4f:c3:b1:66:11:cb:0b:
  • 79:a3:88:a0:97:75:d4:b4:33:62:c2:ee:50:54:1d:3d:22:82:
  • b4:f3:b1:e7:1d:59:73:34:e6:c3:f8:20:3d:54:4a:bd:21:c4:
  • 9a:24:da:cf:3f:5c:41:d4:68:6f:bf:e8:b8:40:24:b3:71:63:
  • 72:95:0d:ca:67:71:2d:5f:b6:e8:b3:e7:fb:1f:d9:27:73:89:
  • 48:ef:cf:ab:0e:ce:96:a8:18:f1:36:1c:b3:f0:0c:3f:01:25:
  • 0a:7e:45:a9:41:df:a3:e1:f0:ce:d6:93:27:a2:e3:56:06:9f:
  • 4b:d9:a6:00:18:cc:65:f5:a4:63:88:a8:c0:5b:ef:e9:26:06:
  • 4f:d0:8d:3b:02:b7:5a:4b:53:75:56:ec:fe:52:76:14:bf:e4:
  • 30:b4:f0:d9:ea:09:d5:33:e3:d6:52:b7:eb:0d:5b:e9:bb:82:
  • f9:37:d8:15:90:57:6b:34:e0:81:f2:92:15:6b:1d:70:c0:10:
  • c4:18:7a:ae:e2:0a:40:00:05:e6:70:13:a1:6f:8f:c0:2f:ef:
  • a8:66:29:4f:32:b4:06:7d:5b:e0:bc:77:b8:b7:33:f4:54:af:
  • b2:0e:a5:ee

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: