ransomwarehelpdesk.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 8921
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • ransomwarehelpdesk.com. IN A
  • ANSWER SECTION:
  • ransomwarehelpdesk.com. 3598 IN A 78.46.11.110
  • Query time: 20 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Mon Oct 24 15:40:08 UTC 2022
  • MSG SIZE rcvd: 67

DNS Records

  • SOA dns1.ict.support 78.46.11.125
  • NS dns1.ict.support 78.46.11.125
  • NS dns1.ict.support 2a01:4f8:c0:2e84::125
  • NS dns2.ict.support 78.46.11.126
  • NS dns2.ict.support 2a01:4f8:c0:2e84::126
  • MX mail.ransomwarehelpdesk.com 78.46.11.110
  • MX mail.ransomwarehelpdesk.com 2a01:4f8:c0:2e84::110
  • A ransomwarehelpdesk.com 78.46.11.110
  • AAAA ransomwarehelpdesk.com 2a01:4f8:c0:2e84::110

Whois Data

  • Domain Name: RANSOMWAREHELPDESK.COM
  • Registry Domain ID: 2637708820_DOMAIN_COM-VRSN
  • Registrar URL: http://www.realtimeregister.com
  • Updated Date: 2022-09-01T07:07:48Z
  • Creation Date: 2021-08-31T07:50:22Z
  • Registry Expiry Date: 2023-08-31T07:50:22Z
  • Registrar: Realtime Register B.V.
  • Registrar IANA ID: 839
  • Registrar Abuse Contact Email: rtr-security-threats@realtimeregister.com
  • Registrar Abuse Contact Phone: +31.384530759
  • Name Server: DNS1.ICT.SUPPORT
  • Name Server: DNS2.ICT.SUPPORT
  • DNSSEC: unsigned
  • Domain Name: ransomwarehelpdesk.com
  • Registry Domain ID: 2637708820_DOMAIN_COM-VRSN
  • Registrar URL: http://www.realtimeregister.com
  • Updated Date: 2022-09-02T00:45:19Z
  • Creation Date: 2021-08-31T07:50:22Z
  • Registrar Registration Expiration Date: 2023-08-31T07:50:22Z
  • Registrar: REALTIME REGISTER B.V.
  • Registrar IANA ID: 839
  • Reseller: NVB Technology - ICT Diensten
  • Registry Registrant ID: REDACTED FOR PRIVACY
  • Registrant Name: REDACTED FOR PRIVACY
  • Registrant Organization: REDACTED FOR PRIVACY
  • Registrant Street: REDACTED FOR PRIVACY
  • Registrant City: REDACTED FOR PRIVACY
  • Registrant State/Province:
  • Registrant Postal Code: REDACTED FOR PRIVACY
  • Registrant Country: NL
  • Registrant Phone: REDACTED FOR PRIVACY
  • Registrant Phone Ext: REDACTED FOR PRIVACY
  • Registrant Fax: REDACTED FOR PRIVACY
  • Registrant Fax Ext: REDACTED FOR PRIVACY
  • Registrant Email: https://mydomainprovider.com/contact_domain/
  • Registry Admin ID: REDACTED FOR PRIVACY
  • Admin Name: REDACTED FOR PRIVACY
  • Admin Organization: REDACTED FOR PRIVACY
  • Admin Street: REDACTED FOR PRIVACY
  • Admin City: REDACTED FOR PRIVACY
  • Admin State/Province: REDACTED FOR PRIVACY
  • Admin Postal Code: REDACTED FOR PRIVACY
  • Admin Country: REDACTED FOR PRIVACY
  • Admin Phone: REDACTED FOR PRIVACY
  • Admin Phone Ext: REDACTED FOR PRIVACY
  • Admin Fax: REDACTED FOR PRIVACY
  • Admin Fax Ext: REDACTED FOR PRIVACY
  • Admin Email: https://mydomainprovider.com/contact_domain/
  • Registry Tech ID: REDACTED FOR PRIVACY
  • Tech Name: REDACTED FOR PRIVACY
  • Tech Organization: REDACTED FOR PRIVACY
  • Tech Street: REDACTED FOR PRIVACY
  • Tech City: REDACTED FOR PRIVACY
  • Tech State/Province: REDACTED FOR PRIVACY
  • Tech Postal Code: REDACTED FOR PRIVACY
  • Tech Country: REDACTED FOR PRIVACY
  • Tech Phone: REDACTED FOR PRIVACY
  • Tech Phone Ext: REDACTED FOR PRIVACY
  • Tech Fax: REDACTED FOR PRIVACY
  • Tech Fax Ext: REDACTED FOR PRIVACY
  • Tech Email: https://mydomainprovider.com/contact_domain/
  • Name Server: dns2.ict.support
  • Name Server: dns1.ict.support
  • DNSSEC: not signed
  • Registrar Abuse Contact Email: abuse[at]realtimeregister.com
  • Registrar Abuse Contact Phone: +31.384530759
  • http://wdprs.internic.net/

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 03:7a:ed:d2:4a:74:aa:dc:2f:05:cb:7b:06:a1:08:19:fa:5e
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R3
  • Validity
  • Not Before: Oct 4 21:13:03 2022 GMT
  • Not After : Jan 2 21:13:02 2023 GMT
  • Subject: CN = y.ict.support
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (384 bit)
  • pub:
  • 04:34:92:80:27:7f:61:18:ac:61:aa:9c:a5:46:bf:
  • 3d:8e:1e:84:07:b5:97:26:08:f8:3d:d0:d0:98:ed:
  • 02:08:bc:99:61:c1:56:ae:8d:a0:d6:87:89:d9:16:
  • cb:42:09:2e:24:0e:2f:85:db:fa:d5:ac:76:9f:24:
  • 4f:0d:57:de:8c:c3:11:3f:d6:c2:d5:a1:2e:d2:20:
  • 8b:5c:d9:62:4c:e3:46:6a:bf:79:02:66:7a:d2:13:
  • 00:4f:f6:b3:4d:a7:eb
  • ASN1 OID: secp384r1
  • NIST CURVE: P-384
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 74:45:AE:EF:0A:22:73:40:70:24:84:0F:9C:2B:07:03:A3:0F:B1:EE
  • X509v3 Authority Key Identifier:
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
  • Authority Information Access:
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:y.ict.support
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 7A:32:8C:54:D8:B7:2D:B6:20:EA:38:E0:52:1E:E9:84:
  • 16:70:32:13:85:4D:3B:D2:2B:C1:3A:57:A3:52:EB:52
  • Timestamp : Oct 4 22:13:03.576 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:67:18:59:19:D9:38:20:67:7A:1D:E5:AC:
  • 55:15:61:48:C0:55:94:78:91:F6:A4:17:3F:EA:DF:D2:
  • 37:82:02:1F:02:21:00:A6:12:E9:94:FC:D0:51:06:6D:
  • 97:83:21:60:1A:0D:4A:5E:BA:D5:88:73:F4:10:64:D7:
  • B1:7C:79:1D:54:BB:05
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
  • EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
  • Timestamp : Oct 4 22:13:04.051 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:B7:7E:58:08:D2:FD:E8:C3:6D:1B:82:
  • 1B:BC:26:22:ED:C6:19:35:10:F5:99:10:74:5E:97:AE:
  • 77:6C:A2:FD:D5:02:20:21:DA:2B:30:34:D4:30:14:A8:
  • 4D:72:63:32:13:58:56:3F:EE:04:24:D9:E6:5C:6F:27:
  • 82:5A:8F:63:38:B1:F7
  • Signature Algorithm: sha256WithRSAEncryption
  • 5d:5d:37:57:67:01:77:3e:71:ad:7a:ec:be:15:fd:25:2c:e4:
  • 64:37:d0:81:6f:87:5a:0c:c9:88:63:d2:52:a7:a4:ab:cd:a7:
  • de:7d:c5:4b:63:fa:76:99:a4:c0:cd:e8:d4:68:f0:f4:06:93:
  • 81:43:71:d1:84:86:70:12:93:e6:76:4a:11:e5:a1:5e:7b:f4:
  • 3c:93:c8:bb:dd:95:96:37:96:46:39:fc:a1:d2:18:63:20:56:
  • 32:b7:8e:6f:91:f4:d9:94:28:a0:17:cf:de:3a:e6:36:3a:f8:
  • a8:96:20:11:52:06:d2:57:a6:f3:06:38:bb:f8:05:9d:39:a7:
  • 46:2e:57:05:43:21:1a:a3:64:f8:ce:d1:db:51:04:74:a4:04:
  • 74:6d:a4:4b:ac:47:e9:b8:03:8f:7c:d2:d0:44:e2:6b:40:6c:
  • c7:59:ff:42:dd:04:38:45:49:b2:61:7a:62:d7:9a:39:61:3d:
  • dd:03:85:3c:da:3d:6c:29:dc:ab:2d:61:00:ad:ef:b5:d1:3c:
  • 9f:7c:f4:c0:ae:58:67:f6:fd:ab:cb:87:00:47:0a:99:17:c4:
  • 1b:4b:e8:f4:fc:cf:73:bb:23:fd:82:5e:fd:85:31:07:5b:26:
  • fa:0d:59:89:f3:a1:5a:f7:d7:62:53:53:5f:df:28:40:5b:f8:
  • 83:5a:0c:12

Sitemap

Technologies

Apache httpd Apache httpd

*** Virustotal ***

*** WayBackMachine ***

Share on: