thebackupguy.net Threat Intelligence and Information

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 22868
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • thebackupguy.net. IN A
  • ANSWER SECTION:
  • thebackupguy.net. 295 IN A 172.67.173.23
  • thebackupguy.net. 295 IN A 104.21.63.234
  • Query time: 8 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Tue Apr 19 02:39:04 UTC 2022
  • MSG SIZE rcvd: 77

DNS Records

  • SOA diana.ns.cloudflare.com 108.162.194.23
  • SOA diana.ns.cloudflare.com 162.159.38.23
  • SOA diana.ns.cloudflare.com 172.64.34.23
  • SOA diana.ns.cloudflare.com 2606:4700:50::a29f:2617
  • SOA diana.ns.cloudflare.com 2803:f800:50::6ca2:c217
  • SOA diana.ns.cloudflare.com 2a06:98c1:50::ac40:2217
  • NS diana.ns.cloudflare.com 108.162.194.23
  • NS diana.ns.cloudflare.com 162.159.38.23
  • NS diana.ns.cloudflare.com 172.64.34.23
  • NS diana.ns.cloudflare.com 2606:4700:50::a29f:2617
  • NS diana.ns.cloudflare.com 2803:f800:50::6ca2:c217
  • NS diana.ns.cloudflare.com 2a06:98c1:50::ac40:2217
  • NS tosana.ns.cloudflare.com 108.162.195.43
  • NS tosana.ns.cloudflare.com 162.159.44.43
  • NS tosana.ns.cloudflare.com 172.64.35.43
  • NS tosana.ns.cloudflare.com 2606:4700:58::a29f:2c2b
  • NS tosana.ns.cloudflare.com 2803:f800:50::6ca2:c32b
  • NS tosana.ns.cloudflare.com 2a06:98c1:50::ac40:232b
  • A thebackupguy.net 104.21.63.234
  • A thebackupguy.net 172.67.173.23
  • AAAA thebackupguy.net 2606:4700:3035::ac43:ad17
  • AAAA thebackupguy.net 2606:4700:3031::6815:3fea

Whois Data

  • Domain Name: THEBACKUPGUY.NET
  • Registry Domain ID: 2682207554_DOMAIN_NET-VRSN
  • Registrar URL: http://www.godaddy.com
  • Updated Date: 2022-03-16T23:19:07Z
  • Creation Date: 2022-03-16T22:40:09Z
  • Registry Expiry Date: 2023-03-16T22:40:09Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: DIANA.NS.CLOUDFLARE.COM
  • Name Server: TOSANA.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: thebackupguy.net
  • Registry Domain ID: 2682207554_DOMAIN_NET-VRSN
  • Registrar URL: https://www.godaddy.com
  • Updated Date: 2022-03-16T17:40:09Z
  • Creation Date: 2022-03-16T17:40:09Z
  • Registrar Registration Expiration Date: 2023-03-16T17:40:09Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 2155 E Warner Rd
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85284
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax: +1.4806242598
  • Registrant Fax Ext:
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Registration Private
  • Tech Organization: Domains By Proxy, LLC
  • Tech Street: DomainsByProxy.com
  • Tech Street: 2155 E Warner Rd
  • Tech City: Tempe
  • Tech State/Province: Arizona
  • Tech Postal Code: 85284
  • Tech Country: US
  • Tech Phone: +1.4806242599
  • Tech Phone Ext:
  • Tech Fax: +1.4806242598
  • Tech Fax Ext:
  • Registry Admin ID: Not Available From Registry
  • Admin Name: Registration Private
  • Admin Organization: Domains By Proxy, LLC
  • Admin Street: DomainsByProxy.com
  • Admin Street: 2155 E Warner Rd
  • Admin City: Tempe
  • Admin State/Province: Arizona
  • Admin Postal Code: 85284
  • Admin Country: US
  • Admin Phone: +1.4806242599
  • Admin Phone Ext:
  • Admin Fax: +1.4806242598
  • Admin Fax Ext:
  • Name Server: DIANA.NS.CLOUDFLARE.COM
  • Name Server: TOSANA.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 07:26:29:d3:15:b7:df:4f:10:ce:f6:2f:10:cc:54:33
  • Signature Algorithm: ecdsa-with-SHA256
  • Issuer: C = US, O = “Cloudflare, Inc.”, CN = Cloudflare Inc ECC CA-3
  • Validity
  • Not Before: Mar 16 00:00:00 2022 GMT
  • Not After : Mar 15 23:59:59 2023 GMT
  • Subject: C = US, ST = California, L = San Francisco, O = “Cloudflare, Inc.”, CN = sni.cloudflaressl.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:c1:3d:6e:79:93:e0:10:0e:60:bb:3b:20:15:1c:
  • 64:97:7f:02:60:13:43:c1:1e:0e:64:00:53:c4:05:
  • a3:b5:fb:45:c4:35:25:cb:a1:59:47:f8:f9:c0:23:
  • c0:ae:b5:ad:a9:ec:37:3a:22:61:a4:b3:95:d8:02:
  • e5:18:45:62:99
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Authority Key Identifier:
  • keyid:A5:CE:37:EA:EB:B0:75:0E:94:67:88:B4:45:FA:D9:24:10:87:96:1F
  • X509v3 Subject Key Identifier:
  • E5:E7:F4:CA:FE:0C:38:B3:75:15:48:FA:4E:69:B4:10:62:30:50:BF
  • X509v3 Subject Alternative Name:
  • DNS:sni.cloudflaressl.com, DNS:*.thebackupguy.net, DNS:thebackupguy.net
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl3.digicert.com/CloudflareIncECCCA-3.crl
  • Full Name:
  • URI:http://crl4.digicert.com/CloudflareIncECCCA-3.crl
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
  • Authority Information Access:
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/CloudflareIncECCCA-3.crt
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
  • 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
  • Timestamp : Mar 16 23:21:18.441 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:49:CE:15:FB:69:13:92:A4:55:E7:59:1A:
  • 3D:9A:45:CC:85:26:25:D0:9B:51:48:E1:66:C0:28:93:
  • 6B:75:34:AD:02:21:00:98:4B:53:22:D1:FC:C1:7C:CC:
  • 2B:74:0E:FE:A6:38:D2:60:90:D2:0A:71:15:19:C5:AB:
  • B5:62:15:E7:B3:00:C2
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
  • B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
  • Timestamp : Mar 16 23:21:18.401 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:4B:44:EB:26:BE:4B:11:B9:DB:07:D0:22:
  • 9A:D9:9C:6F:88:D7:3B:1A:F0:E7:BB:52:D1:74:E7:1B:
  • 75:7A:3D:39:02:21:00:EE:94:1F:33:16:C3:BB:D1:28:
  • B4:DE:01:00:E2:AF:1A:A2:78:5C:2C:2C:CB:1C:B4:64:
  • 95:4A:4B:6E:7B:57:29
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B3:73:77:07:E1:84:50:F8:63:86:D6:05:A9:DC:11:09:
  • 4A:79:2D:B1:67:0C:0B:87:DC:F0:03:0E:79:36:A5:9A
  • Timestamp : Mar 16 23:21:18.431 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:63:D6:02:C0:88:50:0D:CE:D3:C8:C8:6C:
  • 03:3B:6E:E4:F4:D4:B5:70:58:6D:80:07:69:19:46:AB:
  • 45:B1:E4:15:02:20:54:CE:4A:07:34:D3:4D:8F:8E:66:
  • A5:44:E7:E6:02:F0:84:F3:5D:1F:6B:E2:EF:9B:78:FA:
  • 73:C4:BC:12:4C:C9
  • Signature Algorithm: ecdsa-with-SHA256
  • 30:45:02:21:00:a9:77:2a:26:e3:de:7d:8d:ea:b5:76:b1:b1:
  • c0:60:85:67:28:be:68:73:dd:22:7f:f4:db:e1:b6:62:97:bf:
  • 12:02:20:1b:b6:e7:2e:66:21:aa:07:28:fc:1e:82:76:91:e9:
  • a9:15:62:b6:75:3c:95:db:6f:05:5e:9a:c9:73:1b:9d:30

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: