updatemlcrosoft.com Threat Intelligence and Information

Host Location

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 45921
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • updatemlcrosoft.com. IN A
  • ANSWER SECTION:
  • updatemlcrosoft.com. 297 IN A 104.21.28.31
  • updatemlcrosoft.com. 297 IN A 172.67.170.56
  • Query time: 36 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Tue Apr 19 10:54:01 UTC 2022
  • MSG SIZE rcvd: 80

DNS Records

  • SOA riya.ns.cloudflare.com 108.162.194.155
  • SOA riya.ns.cloudflare.com 162.159.38.155
  • SOA riya.ns.cloudflare.com 172.64.34.155
  • SOA riya.ns.cloudflare.com 2606:4700:50::a29f:269b
  • SOA riya.ns.cloudflare.com 2803:f800:50::6ca2:c29b
  • SOA riya.ns.cloudflare.com 2a06:98c1:50::ac40:229b
  • NS riya.ns.cloudflare.com 172.64.34.155
  • NS riya.ns.cloudflare.com 108.162.194.155
  • NS riya.ns.cloudflare.com 162.159.38.155
  • NS riya.ns.cloudflare.com 2a06:98c1:50::ac40:229b
  • NS riya.ns.cloudflare.com 2803:f800:50::6ca2:c29b
  • NS riya.ns.cloudflare.com 2606:4700:50::a29f:269b
  • NS vicky.ns.cloudflare.com 108.162.195.69
  • NS vicky.ns.cloudflare.com 162.159.44.69
  • NS vicky.ns.cloudflare.com 172.64.35.69
  • NS vicky.ns.cloudflare.com 2606:4700:58::a29f:2c45
  • NS vicky.ns.cloudflare.com 2803:f800:50::6ca2:c345
  • NS vicky.ns.cloudflare.com 2a06:98c1:50::ac40:2345
  • A updatemlcrosoft.com 104.21.28.31
  • A updatemlcrosoft.com 172.67.170.56
  • AAAA updatemlcrosoft.com 2606:4700:3030::6815:1c1f
  • AAAA updatemlcrosoft.com 2606:4700:3035::ac43:aa38
  • TXT updatemlcrosoft.com v=spf1 -all
  • TXT _dmarc.updatemlcrosoft.com v=DMARC1; p=reject; sp=reject; adkim=s; aspf=s;
  • TXT _dmarc._domainkey.updatemlcrosoft.com v=DKIM1; p=

Whois Data

  • Domain Name: UPDATEMLCROSOFT.COM
  • Registry Domain ID: 2677364930_DOMAIN_COM-VRSN
  • Registrar URL: http://www.godaddy.com
  • Updated Date: 2022-02-26T07:21:12Z
  • Creation Date: 2022-02-24T13:19:10Z
  • Registry Expiry Date: 2023-02-24T13:19:10Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: RIYA.NS.CLOUDFLARE.COM
  • Name Server: VICKY.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: updatemlcrosoft.com
  • Registry Domain ID: 2677364930_DOMAIN_COM-VRSN
  • Registrar URL: https://www.godaddy.com
  • Updated Date: 2022-02-24T08:23:52Z
  • Creation Date: 2022-02-24T08:19:10Z
  • Registrar Registration Expiration Date: 2023-02-24T08:19:10Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 2155 E Warner Rd
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85284
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax: +1.4806242598
  • Registrant Fax Ext:
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Registration Private
  • Tech Organization: Domains By Proxy, LLC
  • Tech Street: DomainsByProxy.com
  • Tech Street: 2155 E Warner Rd
  • Tech City: Tempe
  • Tech State/Province: Arizona
  • Tech Postal Code: 85284
  • Tech Country: US
  • Tech Phone: +1.4806242599
  • Tech Phone Ext:
  • Tech Fax: +1.4806242598
  • Tech Fax Ext:
  • Registry Admin ID: Not Available From Registry
  • Admin Name: Registration Private
  • Admin Organization: Domains By Proxy, LLC
  • Admin Street: DomainsByProxy.com
  • Admin Street: 2155 E Warner Rd
  • Admin City: Tempe
  • Admin State/Province: Arizona
  • Admin Postal Code: 85284
  • Admin Country: US
  • Admin Phone: +1.4806242599
  • Admin Phone Ext:
  • Admin Fax: +1.4806242598
  • Admin Fax Ext:
  • Name Server: RIYA.NS.CLOUDFLARE.COM
  • Name Server: VICKY.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 03:72:db:21:4b:ab:f3:27:23:0b:8f:71:c1:4e:78:9d:8e:6e
  • Signature Algorithm: ecdsa-with-SHA384
  • Issuer: C = US, O = Let’s Encrypt, CN = E1
  • Validity
  • Not Before: Feb 26 06:24:15 2022 GMT
  • Not After : May 27 06:24:14 2022 GMT
  • Subject: CN = *.updatemlcrosoft.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:00:fd:77:b5:b5:18:9a:d4:2b:2e:b5:a5:02:8c:
  • df:eb:5e:1e:7d:cd:05:30:64:ad:22:43:f4:14:a2:
  • d5:0d:6b:65:21:1d:ed:b1:f5:d7:eb:bd:88:11:0b:
  • 4a:d3:1e:a1:6e:82:7d:f5:c5:42:d8:e7:75:b7:04:
  • b9:82:37:2d:43
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • C8:BC:4C:3D:EC:17:49:7F:19:E4:7C:A5:22:4A:A3:BA:19:C5:02:8D
  • X509v3 Authority Key Identifier:
  • keyid:5A:F3:ED:2B:FC:36:C2:37:79:B9:52:30:EA:54:6F:CF:55:CB:2E:AC
  • Authority Information Access:
  • OCSP - URI:http://e1.o.lencr.org
  • CA Issuers - URI:http://e1.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:*.updatemlcrosoft.com, DNS:updatemlcrosoft.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
  • 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
  • Timestamp : Feb 26 07:24:15.748 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:B1:E2:56:68:3A:AA:34:65:9E:85:30:
  • 3B:39:4D:B3:1C:C7:47:09:6B:E2:B8:9D:E3:94:EA:8A:
  • AD:1C:AB:16:9E:02:21:00:EE:4C:BB:2A:51:85:F3:C3:
  • 14:A5:71:8A:BA:59:A8:FA:B6:6F:6B:9A:BB:86:FF:BD:
  • 34:E3:63:81:87:64:A4:58
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
  • 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
  • Timestamp : Feb 26 07:24:15.911 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:79:1A:1C:3C:53:B5:B4:05:F3:B0:A8:13:
  • 55:B1:91:B3:8B:2B:B3:75:12:E8:AF:9D:52:F4:61:D9:
  • 5C:5B:40:BB:02:21:00:CD:C6:F0:53:FD:94:D0:1C:B5:
  • BB:CA:39:3D:04:33:E2:15:F0:FD:58:68:1C:BA:07:F4:
  • BB:BB:6E:2D:5E:FB:FE
  • Signature Algorithm: ecdsa-with-SHA384
  • 30:65:02:30:1c:e4:6e:ac:df:fa:cd:7d:04:5a:38:7c:6b:46:
  • a8:85:e7:a1:ed:c7:59:10:50:2f:6a:23:d1:f9:e3:a9:b2:bb:
  • 62:aa:be:93:08:2f:92:fd:06:85:8b:41:1f:a3:84:d6:02:31:
  • 00:fe:f8:96:83:3e:a4:23:e7:af:e8:7b:ca:a1:d0:03:e3:8a:
  • 19:a5:da:22:2e:f7:0a:d5:95:90:af:ea:3f:b1:32:76:f8:c6:
  • cc:b3:67:5d:ff:ea:0c:3a:aa:29:90:bd:8d

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: