us-wellsfargo.com Threat Intelligence and Information

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 49875
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • us-wellsfargo.com. IN A
  • ANSWER SECTION:
  • us-wellsfargo.com. 292 IN A 172.67.202.113
  • us-wellsfargo.com. 292 IN A 104.21.90.160
  • Query time: 12 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Tue Apr 19 11:15:04 UTC 2022
  • MSG SIZE rcvd: 78

DNS Records

  • SOA abdullah.ns.cloudflare.com 108.162.195.203
  • SOA abdullah.ns.cloudflare.com 162.159.44.203
  • SOA abdullah.ns.cloudflare.com 172.64.35.203
  • SOA abdullah.ns.cloudflare.com 2606:4700:58::a29f:2ccb
  • SOA abdullah.ns.cloudflare.com 2803:f800:50::6ca2:c3cb
  • SOA abdullah.ns.cloudflare.com 2a06:98c1:50::ac40:23cb
  • NS abdullah.ns.cloudflare.com 172.64.35.203
  • NS abdullah.ns.cloudflare.com 108.162.195.203
  • NS abdullah.ns.cloudflare.com 162.159.44.203
  • NS abdullah.ns.cloudflare.com 2803:f800:50::6ca2:c3cb
  • NS abdullah.ns.cloudflare.com 2a06:98c1:50::ac40:23cb
  • NS abdullah.ns.cloudflare.com 2606:4700:58::a29f:2ccb
  • NS jillian.ns.cloudflare.com 108.162.194.44
  • NS jillian.ns.cloudflare.com 162.159.38.44
  • NS jillian.ns.cloudflare.com 172.64.34.44
  • NS jillian.ns.cloudflare.com 2606:4700:50::a29f:262c
  • NS jillian.ns.cloudflare.com 2803:f800:50::6ca2:c22c
  • NS jillian.ns.cloudflare.com 2a06:98c1:50::ac40:222c
  • MX fwd2.porkbun.com 52.10.201.111
  • MX fwd1.porkbun.com 44.226.226.6
  • A us-wellsfargo.com 172.67.202.113
  • A us-wellsfargo.com 104.21.90.160
  • AAAA us-wellsfargo.com 2606:4700:3034::ac43:ca71
  • AAAA us-wellsfargo.com 2606:4700:3036::6815:5aa0
  • TXT us-wellsfargo.com v=spf1 mx ~all

Whois Data

  • Domain Name: US-WELLSFARGO.COM
  • Registry Domain ID: 2683893579_DOMAIN_COM-VRSN
  • Registrar URL: http://porkbun.com
  • Updated Date: 2022-03-24T00:30:47Z
  • Creation Date: 2022-03-23T23:42:44Z
  • Registry Expiry Date: 2023-03-23T23:42:44Z
  • Registrar: Porkbun LLC
  • Registrar IANA ID: 1861
  • Registrar Abuse Contact Email: abuse@porkbun.com
  • Registrar Abuse Contact Phone: 5038508351
  • Name Server: ABDULLAH.NS.CLOUDFLARE.COM
  • Name Server: JILLIAN.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: US-WELLSFARGO.COM
  • Registry Domain ID: 2683893579_DOMAIN_COM-VRSN
  • Registrar URL: http://www.porkbun.com
  • Updated Date: 2022-03-23 23:42:45
  • Created Date: 2022-03-23 23:42:44
  • Registrar Registration Expiration Date: 2023-03-23 23:42:44
  • Registrar: Porkbun LLC
  • Registrar IANA ID: 1861
  • Registrar Abuse Contact Email: abuse@porkbun.com
  • Registrar Abuse Contact Phone: +1.5038508351
  • Registry Registrant ID:
  • Registrant Name: Whois Privacy
  • Registrant Organization: Private by Design, LLC
  • Registrant City: Sanford
  • Registrant State/Province: NC
  • Registrant Postal Code: 27330
  • Registrant Country: US
  • Registrant Phone: +1.9712666028
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registry Admin ID:
  • Admin Name: Whois Privacy
  • Admin Organization: Private by Design, LLC
  • Admin City: Sanford
  • Admin State/Province: NC
  • Admin Postal Code: 27330
  • Admin Country: US
  • Admin Phone: +1.9712666028
  • Admin Phone Ext:
  • Admin Fax:
  • Admin Fax Ext:
  • Registry Tech ID:
  • Tech Name: Whois Privacy
  • Tech Organization: Private by Design, LLC
  • Tech City: Sanford
  • Tech State/Province: NC
  • Tech Postal Code: 27330
  • Tech Country: US
  • Tech Phone: +1.9712666028
  • Tech Phone Ext:
  • Tech Fax:
  • Tech Fax Ext:
  • Name Server: abdullah.ns.cloudflare.com
  • Name Server: jillian.ns.cloudflare.com

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 09:32:79:be:87:5b:e4:fd:b2:63:6d:3d:49:8c:e9:5f
  • Signature Algorithm: ecdsa-with-SHA256
  • Issuer: C = US, O = “Cloudflare, Inc.”, CN = Cloudflare Inc ECC CA-3
  • Validity
  • Not Before: Mar 24 00:00:00 2022 GMT
  • Not After : Mar 24 23:59:59 2023 GMT
  • Subject: C = US, ST = California, L = San Francisco, O = “Cloudflare, Inc.”, CN = sni.cloudflaressl.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:1f:9b:b4:52:d9:c5:24:7a:44:81:b7:27:b7:17:
  • f8:2c:07:bb:74:e3:f2:b0:5f:e1:55:f0:b9:cf:85:
  • 66:1f:ef:7f:10:43:3e:dc:0c:0f:7f:fc:3f:8e:2c:
  • 60:ec:ca:b6:39:9f:f1:b9:f3:9d:40:ae:f4:8d:ad:
  • a9:50:25:ee:fb
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Authority Key Identifier:
  • keyid:A5:CE:37:EA:EB:B0:75:0E:94:67:88:B4:45:FA:D9:24:10:87:96:1F
  • X509v3 Subject Key Identifier:
  • 81:CF:75:E5:90:CC:F6:DA:D0:99:34:19:02:FB:3A:2C:7A:3F:6A:9F
  • X509v3 Subject Alternative Name:
  • DNS:sni.cloudflaressl.com, DNS:*.us-wellsfargo.com, DNS:us-wellsfargo.com
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl3.digicert.com/CloudflareIncECCCA-3.crl
  • Full Name:
  • URI:http://crl4.digicert.com/CloudflareIncECCCA-3.crl
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
  • Authority Information Access:
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/CloudflareIncECCCA-3.crt
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
  • 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
  • Timestamp : Mar 24 00:32:51.542 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:F1:4B:BF:B4:EC:31:42:CA:F0:27:8E:
  • A7:C4:51:51:A6:60:97:2A:82:13:F9:FA:0F:01:C3:19:
  • 61:B2:75:CA:BC:02:20:2B:40:AE:AA:43:71:1F:14:45:
  • 71:65:18:50:85:A5:D3:7F:36:CB:24:4B:5D:F2:4E:9C:
  • CD:51:FA:6C:A4:24:7B
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
  • B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
  • Timestamp : Mar 24 00:32:51.523 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:FD:6A:9E:E6:59:40:B5:7A:9B:4D:9F:
  • 35:1C:61:84:F9:95:AE:3D:CE:02:72:BD:26:82:3B:81:
  • 9A:B1:A6:1B:23:02:21:00:93:3E:F4:8E:90:05:A1:31:
  • 82:22:0F:BC:CB:B7:6A:93:78:AD:78:E8:1A:0E:7D:5E:
  • 7A:F9:DC:4B:EA:E6:7A:D3
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B3:73:77:07:E1:84:50:F8:63:86:D6:05:A9:DC:11:09:
  • 4A:79:2D:B1:67:0C:0B:87:DC:F0:03:0E:79:36:A5:9A
  • Timestamp : Mar 24 00:32:51.556 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:92:61:57:54:C6:D0:0A:7E:C5:5E:9F:
  • C8:D2:74:0A:F2:15:09:E2:EA:E3:75:85:FA:A3:9F:30:
  • 41:7D:FC:AD:AD:02:21:00:F1:42:FA:95:89:06:81:7E:
  • 61:68:AF:85:0F:9D:C3:DF:D6:85:8A:1E:2E:BA:D5:72:
  • 28:BB:0A:D0:F8:C4:52:3A
  • Signature Algorithm: ecdsa-with-SHA256
  • 30:46:02:21:00:83:f9:3e:64:73:db:39:9b:0d:8c:4d:94:e5:
  • ac:60:30:c9:01:31:3c:90:df:25:d4:23:f8:98:02:29:ac:a6:
  • c6:02:21:00:83:5b:ed:cd:83:b3:6a:ba:3d:79:d7:07:2c:74:
  • c3:ea:c6:47:eb:04:32:7b:50:74:86:cc:22:df:3e:93:0b:25

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: