ref2018-support.com Threat Intelligence and Information
Oct 23, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 30301
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- ref2018-support.com. IN A
- ANSWER SECTION:
- ref2018-support.com. 299 IN A 104.21.30.54
- ref2018-support.com. 299 IN A 172.67.150.155
- Query time: 24 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Tue Oct 25 11:23:59 UTC 2022
- MSG SIZE rcvd: 80
DNS Records
- SOA elle.ns.cloudflare.com 108.162.192.110
- SOA elle.ns.cloudflare.com 172.64.32.110
- SOA elle.ns.cloudflare.com 173.245.58.110
- NS elle.ns.cloudflare.com 173.245.58.110
- NS elle.ns.cloudflare.com 108.162.192.110
- NS elle.ns.cloudflare.com 172.64.32.110
- NS elle.ns.cloudflare.com 2606:4700:50::adf5:3a6e
- NS elle.ns.cloudflare.com 2803:f800:50::6ca2:c06e
- NS elle.ns.cloudflare.com 2a06:98c1:50::ac40:206e
- NS keaton.ns.cloudflare.com 108.162.195.181
- NS keaton.ns.cloudflare.com 162.159.44.181
- NS keaton.ns.cloudflare.com 172.64.35.181
- NS keaton.ns.cloudflare.com 2606:4700:58::a29f:2cb5
- NS keaton.ns.cloudflare.com 2803:f800:50::6ca2:c3b5
- NS keaton.ns.cloudflare.com 2a06:98c1:50::ac40:23b5
- MX mx1.mailsentinel.net 111.90.133.101
- MX mx1.mailsentinel.net 111.90.133.151
- MX mx1.mailsentinel.net 111.90.139.15
- MX mx1.mailsentinel.net 111.90.139.244
- MX mx2.mailsentinel.net 111.90.133.124
- MX mx2.mailsentinel.net 111.90.133.174
- MX mx2.mailsentinel.net 111.90.139.81
- MX mx2.mailsentinel.net 111.90.139.218
- A ref2018-support.com 172.67.150.155
- A ref2018-support.com 104.21.30.54
- AAAA ref2018-support.com 2606:4700:3034::6815:1e36
- AAAA ref2018-support.com 2606:4700:3035::ac43:969b
- SRV _carddavs._tcp.ref2018-support.com turkey.ipchina163.com 111.90.142.170 2080 0
- SRV _caldavs._tcp.ref2018-support.com turkey.ipchina163.com 111.90.142.170 2080 0
- SRV _caldav._tcp.ref2018-support.com turkey.ipchina163.com 111.90.142.170 2079 0
- SRV _carddav._tcp.ref2018-support.com turkey.ipchina163.com 111.90.142.170 2079 0
- SRV _autodiscover._tcp.ref2018-support.com turkey.itwebhost.info no_ip 443 0
Whois Data
- Domain Name: REF2018-SUPPORT.COM
- Registry Domain ID: 2716265106_DOMAIN_COM-VRSN
- Registrar URL: http://https://www.webnic.cc
- Updated Date: 2022-08-06T19:55:39Z
- Creation Date: 2022-08-06T03:27:34Z
- Registry Expiry Date: 2023-08-06T03:27:34Z
- Registrar: Web Commerce Communications Limited dba WebNic.cc
- Registrar IANA ID: 460
- Registrar Abuse Contact Email: compliance_abuse@webnic.cc
- Registrar Abuse Contact Phone: +60.189836788
- Name Server: ELLE.NS.CLOUDFLARE.COM
- Name Server: KEATON.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- Domain Name: REF2018-SUPPORT.COM
- Registry Domain ID: 2716265106_DOMAIN_COM-VRSN
- Registrar URL: http://www.webnic.cc
- Updated Date: 2022-08-06T03:30:16Z
- Creation Date: 2022-08-06T03:27:34Z
- Expiration Date: 2023-08-06T03:27:34Z
- Registrar: WEBCC
- Registrar IANA ID: 460
- Registrar Abuse Contact Email: compliance_abuse@webnic.cc
- Registrar Abuse Contact Phone: +60.389966799
- Registry Registrant ID: Not Available From Registry
- Registrant Name: Dean McCarthy
- Registrant Organization: unknown
- Registrant Street: 20 gurry ave
- Registrant City: Ropes crossing
- Registrant State/Province: New South Wales
- Registrant Postal Code: 2760
- Registrant Country: AU
- Registrant Phone: +61.432888077
- Registrant Phone Ext:
- Registrant Fax: +0.0
- Registrant Fax Ext:
- Registrant Email: Deanlcxarthy@outlook.com
- Registry Admin ID: Not Available From Registry
- Admin Name: Dean McCarthy
- Admin Organization: unknown
- Admin Street: 20 gurry ave
- Admin City: Ropes crossing
- Admin State/Province: New South Wales
- Admin Postal Code: 2760
- Admin Country: AU
- Admin Phone: +61.432888077
- Admin Phone Ext:
- Admin Fax: +0.0
- Admin Fax Ext:
- Admin Email: Deanlcxarthy@outlook.com
- Registry Tech ID: Not Available From Registry
- Tech Name: Dean McCarthy
- Tech Organization: unknown
- Tech Street: 20 gurry ave
- Tech City: Ropes crossing
- Tech State/Province: New South Wales
- Tech Postal Code: 2760
- Tech Country: AU
- Tech Phone: +61.432888077
- Tech Phone Ext:
- Tech Fax: +0.0
- Tech Fax Ext:
- Tech Email: Deanlcxarthy@outlook.com
- Name Server: ELLE.NS.CLOUDFLARE.COM
- Name Server: KEATON.NS.CLOUDFLARE.COM
- DNSSEC: unsigned
- circumstances will you use this Data to:
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 04:fe:b4:ec:4d:f9:b7:05:66:f9:c4:2e:d6:cf:05:2d:74:64
- Signature Algorithm: ecdsa-with-SHA384
- Issuer: C = US, O = Let’s Encrypt, CN = E1
- Validity
- Not Before: Oct 4 18:58:45 2022 GMT
- Not After : Jan 2 18:58:44 2023 GMT
- Subject: CN = *.ref2018-support.com
- Subject Public Key Info:
- Public Key Algorithm: id-ecPublicKey
- Public-Key: (256 bit)
- pub:
- 04:ca:9d:32:4c:30:2b:39:91:3f:a8:8e:aa:15:7e:
- 1a:c5:75:0e:46:aa:b1:b8:7b:16:a0:bc:de:c9:01:
- 84:48:79:be:48:6b:54:85:8d:c8:07:b2:83:63:40:
- 87:ed:d7:9b:ca:8f:5d:96:20:74:23:b4:12:08:7f:
- 1e:6b:6c:5e:d7
- ASN1 OID: prime256v1
- NIST CURVE: P-256
- X509v3 extensions:
- X509v3 Key Usage: critical
- Digital Signature
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Subject Key Identifier:
- DC:B3:86:89:06:E2:15:21:02:6A:EF:B3:63:FA:ED:94:52:51:5E:4B
- X509v3 Authority Key Identifier:
- keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
- Authority Information Access:
- OCSP - URI:http://e1.o.lencr.org
- CA Issuers - URI:http://e1.i.lencr.org/
- X509v3 Subject Alternative Name:
- DNS:*.ref2018-support.com, DNS:ref2018-support.com
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.1
- Policy: 1.3.6.1.4.1.44947.1.1.1
- CPS: http://cps.letsencrypt.org
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : B7:3E:FB:24:DF:9C:4D:BA:75:F2:39:C5:BA:58:F4:6C:
- 5D:FC:42:CF:7A:9F:35:C4:9E:1D:09:81:25:ED:B4:99
- Timestamp : Oct 4 19:58:45.254 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:39:8E:A4:B9:19:F8:0D:6B:BF:EA:35:13:
- 41:3C:24:E5:21:50:43:0F:88:FF:9F:97:7E:52:43:97:
- D1:70:32:B6:02:20:3F:23:78:1C:64:97:15:A7:A6:1E:
- 7D:EE:43:00:3F:AD:1C:96:61:2F:A7:FA:B9:29:93:56:
- 70:01:AA:EB:FA:10
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : AD:F7:BE:FA:7C:FF:10:C8:8B:9D:3D:9C:1E:3E:18:6A:
- B4:67:29:5D:CF:B1:0C:24:CA:85:86:34:EB:DC:82:8A
- Timestamp : Oct 4 19:58:45.288 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:12:DC:9D:F4:78:75:34:9C:20:DF:C2:72:
- 27:7A:4B:93:38:DD:1A:AA:98:87:79:19:EA:83:C7:CC:
- CD:C4:EF:F7:02:21:00:C4:55:6A:BC:A5:6A:D3:3B:67:
- 75:A5:1E:C9:EE:E5:8E:59:F9:4C:E1:B9:3A:2A:F7:71:
- E7:DE:3D:8A:A6:A6:AE
- Signature Algorithm: ecdsa-with-SHA384
- 30:65:02:31:00:df:a4:1e:1d:87:ad:2d:09:08:37:f1:fc:97:
- b7:6a:ac:57:fc:c2:a7:e2:f1:b5:9f:31:af:b4:cd:38:f8:c7:
- 20:9c:79:84:59:a6:af:2e:39:00:25:53:c4:ab:15:d6:8e:02:
- 30:1a:dc:92:08:d8:1b:5e:e9:9a:32:bf:51:18:9a:52:e7:2b:
- a9:68:ae:8e:cf:7e:e2:ea:bf:f4:e9:82:ea:37:0a:77:e1:2d:
- f4:61:61:50:37:27:8f:1c:a9:18:ea:2a:26