romancebank.com Threat Intelligence and Information
Oct 23, 2022
domainpage
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 49900
- flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- romancebank.com. IN A
- ANSWER SECTION:
- romancebank.com. 14396 IN A 66.29.146.33
- Query time: 12 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Wed Oct 26 18:16:15 UTC 2022
- MSG SIZE rcvd: 60
DNS Records
- SOA dns1.namecheaphosting.com 156.154.132.200
- NS dns1.namecheaphosting.com 156.154.132.200
- NS dns1.namecheaphosting.com 2610:a1:1024::200
- NS dns2.namecheaphosting.com 156.154.133.200
- NS dns2.namecheaphosting.com 2610:a1:1025::200
- MX mx3-hosting.jellyfish.systems 162.255.118.13
- MX mx2-hosting.jellyfish.systems 63.250.43.74
- MX mx1-hosting.jellyfish.systems 198.54.127.242
- A romancebank.com 66.29.146.33
- SRV _autodiscover._tcp.romancebank.com cpanelemaildiscovery.cpanel.net 208.74.121.152 443 0
- SRV _autodiscover._tcp.romancebank.com cpanelemaildiscovery.cpanel.net 184.94.204.7 443 0
- SRV _carddavs._tcp.romancebank.com premium226.web-hosting.com 66.29.146.30 2080 0
- SRV _caldav._tcp.romancebank.com premium226.web-hosting.com 66.29.146.30 2079 0
- SRV _caldavs._tcp.romancebank.com premium226.web-hosting.com 66.29.146.30 2080 0
- SRV _carddav._tcp.romancebank.com premium226.web-hosting.com 66.29.146.30 2079 0
Whois Data
- Domain Name: ROMANCEBANK.COM
- Registry Domain ID: 2598282545_DOMAIN_COM-VRSN
- Registrar URL: http://www.godaddy.com
- Updated Date: 2022-10-26T14:46:57Z
- Creation Date: 2021-03-16T11:17:28Z
- Registry Expiry Date: 2023-03-16T11:17:28Z
- Registrar: GoDaddy.com, LLC
- Registrar IANA ID: 146
- Registrar Abuse Contact Email: abuse@godaddy.com
- Registrar Abuse Contact Phone: 480-624-2505
- Name Server: DNS1.NAMECHEAPHOSTING.COM
- Name Server: DNS2.NAMECHEAPHOSTING.COM
- DNSSEC: unsigned
- Domain Name: romancebank.com
- Registry Domain ID: 2598282545_DOMAIN_COM-VRSN
- Registrar URL: https://www.godaddy.com
- Updated Date: 2022-03-22T02:37:32Z
- Creation Date: 2021-03-16T06:17:28Z
- Registrar Registration Expiration Date: 2023-03-16T06:17:28Z
- Registrar: GoDaddy.com, LLC
- Registrar IANA ID: 146
- Registrar Abuse Contact Email: abuse@godaddy.com
- Registrar Abuse Contact Phone: +1.4806242505
- Registry Registrant ID: Not Available From Registry
- Registrant Name: Registration Private
- Registrant Organization: Domains By Proxy, LLC
- Registrant Street: DomainsByProxy.com
- Registrant Street: 2155 E Warner Rd
- Registrant City: Tempe
- Registrant State/Province: Arizona
- Registrant Postal Code: 85284
- Registrant Country: US
- Registrant Phone: +1.4806242599
- Registrant Phone Ext:
- Registrant Fax: +1.4806242598
- Registrant Fax Ext:
- Registry Admin ID: Not Available From Registry
- Admin Name: Registration Private
- Admin Organization: Domains By Proxy, LLC
- Admin Street: DomainsByProxy.com
- Admin Street: 2155 E Warner Rd
- Admin City: Tempe
- Admin State/Province: Arizona
- Admin Postal Code: 85284
- Admin Country: US
- Admin Phone: +1.4806242599
- Admin Phone Ext:
- Admin Fax: +1.4806242598
- Admin Fax Ext:
- Registry Tech ID: Not Available From Registry
- Tech Name: Registration Private
- Tech Organization: Domains By Proxy, LLC
- Tech Street: DomainsByProxy.com
- Tech Street: 2155 E Warner Rd
- Tech City: Tempe
- Tech State/Province: Arizona
- Tech Postal Code: 85284
- Tech Country: US
- Tech Phone: +1.4806242599
- Tech Phone Ext:
- Tech Fax: +1.4806242598
- Tech Fax Ext:
- Name Server: DNS1.NAMECHEAPHOSTING.COM
- Name Server: DNS2.NAMECHEAPHOSTING.COM
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 07:42:4e:83:c1:a2:4e:54:3a:7c:42:39:76:0a:fa:8d
- Signature Algorithm: sha256WithRSAEncryption
- Issuer: C = GB, ST = Greater Manchester, L = Salford, O = Sectigo Limited, CN = Sectigo RSA Domain Validation Secure Server CA
- Validity
- Not Before: Apr 7 00:00:00 2022 GMT
- Not After : Apr 7 23:59:59 2023 GMT
- Subject: CN = romancebank.com
- Subject Public Key Info:
- Public Key Algorithm: rsaEncryption
- RSA Public-Key: (2048 bit)
- Modulus:
- 00:e3:50:37:d0:38:3d:b5:b9:e7:1a:d6:ff:6f:32:
- 60:ec:28:54:7f:e2:9e:f8:81:e7:ce:2d:34:e3:21:
- cb:08:0e:6c:f4:36:14:15:fb:09:57:90:31:b1:ad:
- 7e:b6:1b:f7:67:8c:c8:97:8f:5c:30:74:83:f0:99:
- ee:41:a5:5f:74:2e:bb:16:57:ce:ad:36:bb:ec:51:
- 69:a3:d0:29:2d:05:c0:b1:1c:05:6a:4a:48:4a:fd:
- 9a:0c:79:ab:70:0d:41:ed:87:7a:3e:91:f2:c3:85:
- 42:26:9e:c2:9d:53:f8:20:ba:90:02:88:38:ce:52:
- cd:0c:27:79:19:ae:bf:20:84:7c:81:c9:5e:f9:83:
- 0c:ba:15:52:75:2c:fb:68:80:e6:2a:78:73:16:bf:
- 8a:b1:9c:bf:0e:3f:17:8d:65:f7:15:e2:f1:24:e2:
- 3e:c1:2d:e5:f0:01:5c:a0:b6:11:2b:98:ec:b5:a1:
- 47:8b:c9:a4:ec:7c:93:f1:e8:19:60:0d:d1:24:25:
- 9f:3e:16:61:ba:01:eb:88:7f:01:05:d0:be:b4:2d:
- c6:4d:a0:6b:6e:1b:58:5f:f2:06:40:5f:2f:63:91:
- 4d:01:0c:ef:19:00:78:24:86:e1:96:54:79:d2:08:
- 7d:cb:fe:e4:df:12:f1:ea:1c:d5:9f:34:10:f9:62:
- 6e:a5
- Exponent: 65537 (0x10001)
- X509v3 extensions:
- X509v3 Authority Key Identifier:
- keyid:8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1
- X509v3 Subject Key Identifier:
- 10:20:8C:BC:37:52:24:C3:DE:21:0B:D7:8E:98:F4:99:1D:3E:12:11
- X509v3 Key Usage: critical
- Digital Signature, Key Encipherment
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Certificate Policies:
- Policy: 1.3.6.1.4.1.6449.1.2.2.7
- CPS: https://sectigo.com/CPS
- Policy: 2.23.140.1.2.1
- Authority Information Access:
- CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt
- OCSP - URI:http://ocsp.sectigo.com
- X509v3 Subject Alternative Name:
- DNS:romancebank.com, DNS:www.romancebank.com
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : AD:F7:BE:FA:7C:FF:10:C8:8B:9D:3D:9C:1E:3E:18:6A:
- B4:67:29:5D:CF:B1:0C:24:CA:85:86:34:EB:DC:82:8A
- Timestamp : Apr 7 21:10:39.490 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:56:FD:31:21:03:EA:93:14:0A:01:17:5D:
- 73:1B:E5:E0:32:E5:F7:76:08:4B:80:B0:00:C3:84:F6:
- E8:0B:B1:03:02:21:00:D8:4E:3D:9E:D9:92:BA:F0:7F:
- 5D:BC:1E:ED:5C:68:67:47:BB:0C:77:AD:53:A2:94:89:
- 5E:3D:77:2F:77:CF:4F
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 7A:32:8C:54:D8:B7:2D:B6:20:EA:38:E0:52:1E:E9:84:
- 16:70:32:13:85:4D:3B:D2:2B:C1:3A:57:A3:52:EB:52
- Timestamp : Apr 7 21:10:39.432 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:A7:A9:37:3D:9B:55:E2:14:F9:B2:E1:
- EC:42:48:52:60:3C:D1:49:40:83:4C:A2:6B:61:12:CB:
- 05:BA:17:48:95:02:20:15:0A:AB:FC:50:07:F8:44:76:
- 59:3A:E6:C7:F1:9D:4F:F0:0A:99:11:F1:02:C8:44:E8:
- B5:FF:42:F4:89:CD:82
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
- 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
- Timestamp : Apr 7 21:10:39.423 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:0B:E1:A1:ED:C1:B6:55:71:5E:87:33:8E:
- 7E:B1:8F:D6:56:AE:BA:76:79:E0:34:E2:FF:39:F4:5A:
- D2:54:02:B5:02:20:57:AE:A7:09:04:72:42:A4:AE:0E:
- B9:D4:1E:4F:42:3F:7B:7E:C2:DC:19:91:EC:32:54:43:
- ED:CF:A6:11:0B:45
- Signature Algorithm: sha256WithRSAEncryption
- 6b:66:7a:a2:cd:90:0b:d3:d1:9f:bb:00:91:eb:8d:44:27:46:
- 48:8f:75:c5:ec:7a:1e:ef:5c:02:98:71:1a:0f:9a:a0:bd:3c:
- a4:ff:14:7f:6f:65:4e:9f:12:b7:19:f4:eb:6f:3b:ad:95:81:
- 8c:b8:f6:a3:fd:96:16:b6:a3:e9:70:37:a9:01:9a:e7:64:fd:
- 63:d7:ee:c0:22:0b:2f:13:83:98:54:20:9e:b7:52:b4:12:6a:
- 79:92:d2:cb:9e:c6:06:fa:e2:f7:1d:5b:89:de:61:ee:e1:ce:
- ae:cc:06:c2:9b:ce:bf:f8:9f:40:d3:9a:1f:fa:2f:ca:d7:e3:
- 29:e4:9f:0a:84:7d:57:02:ad:2e:b2:11:77:e4:a6:ef:28:38:
- d7:8d:1e:a2:61:9a:6b:cf:08:2e:f0:81:b8:eb:41:33:5b:aa:
- d6:d4:ae:d8:8d:ad:28:47:52:f2:6e:b4:d6:ef:37:e4:ef:d1:
- 9c:9d:96:0c:a0:05:c1:9a:31:17:48:bc:f9:84:54:52:4f:14:
- 7c:58:83:5d:3d:e9:9c:62:bf:f5:4d:4a:f0:6d:de:d3:b5:ce:
- 40:4e:d7:b3:53:d1:22:3a:61:65:40:33:95:4a:e2:e3:0d:2c:
- 50:cd:a3:d3:a2:1f:4c:61:c3:26:a3:86:6a:80:ab:55:e7:c8:
- 57:7d:aa:fd