redsxbox.com Threat Intelligence and Information
Oct 23, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 44680
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- redsxbox.com. IN A
- ANSWER SECTION:
- redsxbox.com. 300 IN A 104.21.96.12
- redsxbox.com. 300 IN A 172.67.171.243
- Query time: 16 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Tue Oct 25 10:42:18 UTC 2022
- MSG SIZE rcvd: 73
DNS Records
- SOA tess.ns.cloudflare.com 108.162.192.227
- SOA tess.ns.cloudflare.com 172.64.32.227
- SOA tess.ns.cloudflare.com 173.245.58.227
- NS tess.ns.cloudflare.com 172.64.32.227
- NS tess.ns.cloudflare.com 108.162.192.227
- NS tess.ns.cloudflare.com 173.245.58.227
- NS tess.ns.cloudflare.com 2606:4700:50::adf5:3ae3
- NS tess.ns.cloudflare.com 2803:f800:50::6ca2:c0e3
- NS tess.ns.cloudflare.com 2a06:98c1:50::ac40:20e3
- NS yichun.ns.cloudflare.com 108.162.193.248
- NS yichun.ns.cloudflare.com 172.64.33.248
- NS yichun.ns.cloudflare.com 173.245.59.248
- NS yichun.ns.cloudflare.com 2606:4700:58::adf5:3bf8
- NS yichun.ns.cloudflare.com 2803:f800:50::6ca2:c1f8
- NS yichun.ns.cloudflare.com 2a06:98c1:50::ac40:21f8
- MX route1.mx.cloudflare.net 162.159.205.11
- MX route1.mx.cloudflare.net 162.159.205.12
- MX route1.mx.cloudflare.net 162.159.205.13
- MX route2.mx.cloudflare.net 162.159.205.17
- MX route2.mx.cloudflare.net 162.159.205.18
- MX route2.mx.cloudflare.net 162.159.205.19
- MX route3.mx.cloudflare.net 162.159.205.23
- MX route3.mx.cloudflare.net 162.159.205.24
- MX route3.mx.cloudflare.net 162.159.205.25
- MX route1.mx.cloudflare.net 2606:4700:f5::b
- MX route1.mx.cloudflare.net 2606:4700:f5::c
- MX route1.mx.cloudflare.net 2606:4700:f5::d
- MX route2.mx.cloudflare.net 2606:4700:f5::e
- MX route2.mx.cloudflare.net 2606:4700:f5::f
- MX route2.mx.cloudflare.net 2606:4700:f5::10
- MX route3.mx.cloudflare.net 2606:4700:f5::11
- MX route3.mx.cloudflare.net 2606:4700:f5::12
- MX route3.mx.cloudflare.net 2606:4700:f5::13
- A redsxbox.com 104.21.96.12
- A redsxbox.com 172.67.171.243
- AAAA redsxbox.com 2606:4700:3031::ac43:abf3
- AAAA redsxbox.com 2606:4700:3035::6815:600c
Whois Data
- Domain Name: REDSXBOX.COM
- Registry Domain ID: 2705643107_DOMAIN_COM-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 2022-08-21T17:29:22Z
- Creation Date: 2022-06-22T02:06:11Z
- Registry Expiry Date: 2023-06-22T02:06:11Z
- Registrar: NameCheap, Inc.
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.6613102107
- Name Server: TESS.NS.CLOUDFLARE.COM
- Name Server: YICHUN.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- Domain name: redsxbox.com
- Registry Domain ID: 2705643107_DOMAIN_COM-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 0001-01-01T00:00:00.00Z
- Creation Date: 2022-06-22T02:06:11.00Z
- Registrar Registration Expiration Date: 2023-06-22T02:06:11.00Z
- Registrar: NAMECHEAP INC
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.9854014545
- Reseller: NAMECHEAP INC
- Registry Registrant ID:
- Registrant Name: Redacted for Privacy
- Registrant Organization: Privacy service provided by Withheld for Privacy ehf
- Registrant Street: Kalkofnsvegur 2
- Registrant City: Reykjavik
- Registrant State/Province: Capital Region
- Registrant Postal Code: 101
- Registrant Country: IS
- Registrant Phone: +354.4212434
- Registrant Phone Ext:
- Registrant Fax:
- Registrant Fax Ext:
- Registrant Email: 086ec63bc2cd4a65b2e8123a996bea5b.protect@withheldforprivacy.com
- Registry Admin ID:
- Admin Name: Redacted for Privacy
- Admin Organization: Privacy service provided by Withheld for Privacy ehf
- Admin Street: Kalkofnsvegur 2
- Admin City: Reykjavik
- Admin State/Province: Capital Region
- Admin Postal Code: 101
- Admin Country: IS
- Admin Phone: +354.4212434
- Admin Phone Ext:
- Admin Fax:
- Admin Fax Ext:
- Admin Email: 086ec63bc2cd4a65b2e8123a996bea5b.protect@withheldforprivacy.com
- Registry Tech ID:
- Tech Name: Redacted for Privacy
- Tech Organization: Privacy service provided by Withheld for Privacy ehf
- Tech Street: Kalkofnsvegur 2
- Tech City: Reykjavik
- Tech State/Province: Capital Region
- Tech Postal Code: 101
- Tech Country: IS
- Tech Phone: +354.4212434
- Tech Phone Ext:
- Tech Fax:
- Tech Fax Ext:
- Tech Email: 086ec63bc2cd4a65b2e8123a996bea5b.protect@withheldforprivacy.com
- Name Server: tess.ns.cloudflare.com
- Name Server: yichun.ns.cloudflare.com
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 03:ba:ab:1b:a5:c5:43:79:89:c2:5d:87:f6:e6:04:33:1d:96
- Signature Algorithm: ecdsa-with-SHA384
- Issuer: C = US, O = Let’s Encrypt, CN = E1
- Validity
- Not Before: Oct 19 16:19:34 2022 GMT
- Not After : Jan 17 16:19:33 2023 GMT
- Subject: CN = *.redsxbox.com
- Subject Public Key Info:
- Public Key Algorithm: id-ecPublicKey
- Public-Key: (256 bit)
- pub:
- 04:d4:41:ea:49:77:f7:17:18:5c:19:26:7a:48:2b:
- 91:20:3f:07:4f:a0:3d:33:b4:7c:69:a8:97:0a:1b:
- 19:72:e7:2a:be:5c:96:dc:58:ac:51:a6:c3:a7:75:
- 73:e6:7b:d3:be:9b:90:8a:f4:17:7e:fd:3e:f1:f6:
- 8f:72:53:e1:45
- ASN1 OID: prime256v1
- NIST CURVE: P-256
- X509v3 extensions:
- X509v3 Key Usage: critical
- Digital Signature
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Subject Key Identifier:
- B0:3A:3E:BE:9D:D1:57:52:C7:FC:B5:96:38:D8:89:96:A0:01:09:25
- X509v3 Authority Key Identifier:
- keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
- Authority Information Access:
- OCSP - URI:http://e1.o.lencr.org
- CA Issuers - URI:http://e1.i.lencr.org/
- X509v3 Subject Alternative Name:
- DNS:*.redsxbox.com, DNS:redsxbox.com
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.1
- Policy: 1.3.6.1.4.1.44947.1.1.1
- CPS: http://cps.letsencrypt.org
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 7A:32:8C:54:D8:B7:2D:B6:20:EA:38:E0:52:1E:E9:84:
- 16:70:32:13:85:4D:3B:D2:2B:C1:3A:57:A3:52:EB:52
- Timestamp : Oct 19 17:19:34.808 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:BE:1F:FE:97:5D:A0:76:60:37:36:00:
- B8:F4:04:E3:D8:4F:19:C6:46:81:3C:FC:88:CA:0E:94:
- 37:D9:2F:B2:73:02:20:74:B1:B6:AD:0A:48:99:F6:D7:
- 70:19:EE:3B:45:01:48:0D:A7:2D:99:3D:FF:DB:6E:D0:
- 71:49:5B:DE:FC:21:91
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : B7:3E:FB:24:DF:9C:4D:BA:75:F2:39:C5:BA:58:F4:6C:
- 5D:FC:42:CF:7A:9F:35:C4:9E:1D:09:81:25:ED:B4:99
- Timestamp : Oct 19 17:19:35.359 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:46:02:21:00:C7:F9:B0:5D:84:04:60:3F:0A:E6:05:
- D7:D5:25:E1:AB:84:A9:03:4D:E7:CE:A4:F1:DF:94:46:
- AC:87:06:84:8E:02:21:00:AA:8A:7D:FF:45:40:11:4D:
- 35:EF:3E:BF:7F:54:31:F6:5B:90:91:89:79:47:00:2C:
- E5:F4:DF:74:73:DB:C5:B1
- Signature Algorithm: ecdsa-with-SHA384
- 30:65:02:31:00:b5:33:1a:e2:aa:5d:28:64:f4:ce:81:66:fc:
- 04:f0:ee:76:34:67:6a:8f:c7:9e:36:55:c3:e6:ad:3f:47:d3:
- 49:fc:2c:9e:3d:4e:5a:da:b1:11:be:26:4c:35:39:6d:6e:02:
- 30:3d:f8:3f:9e:c5:ef:0c:ba:6e:37:4d:78:51:84:2d:78:c2:
- a6:7f:ad:db:0b:16:06:a1:96:f4:e3:e9:37:ea:2c:a1:84:5d:
- fd:29:ee:11:9a:4f:cf:63:6f:fd:06:49:6a