www-66154.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 50915
  • flags: qr rd ra QUERY: 1, ANSWER: 4, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • www-66154.com. IN A
  • ANSWER SECTION:
  • www-66154.com. 298 IN CNAME 301.yidong.2017058.com.
  • 301.yidong.2017058.com. 598 IN CNAME gm.ssl.gntz301.xyz.
  • gm.ssl.gntz301.xyz. 58 IN A 217.194.135.127
  • gm.ssl.gntz301.xyz. 58 IN A 217.194.135.126
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Sun Feb 01 00:21:21 UTC 2026
  • MSG SIZE rcvd: 139

Whois Data

  • Domain Name: WWW-66154.COM
  • Registry Domain ID: 2584465489_DOMAIN_COM-VRSN
  • Registrar URL: http://www.godaddy.com
  • Updated Date: 2025-10-13T11:54:45Z
  • Creation Date: 2021-01-13T11:22:53Z
  • Registry Expiry Date: 2027-01-13T11:22:53Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: NS1.DNSIP.COM
  • Name Server: NS2.DNSIP.COM
  • DNSSEC: unsigned
  • Domain Name: www-66154.com
  • Registry Domain ID: 2584465489_DOMAIN_COM-VRSN
  • Registrar URL: https://www.godaddy.com
  • Updated Date: 2025-10-13T06:54:43Z
  • Creation Date: 2021-01-13T06:22:53Z
  • Registrar Registration Expiration Date: 2027-01-13T06:22:53Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 100 S. Mill Ave, Suite 1600
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85281
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Registration Private
  • Tech Organization: Domains By Proxy, LLC
  • Tech Street: DomainsByProxy.com
  • Tech Street: 100 S. Mill Ave, Suite 1600
  • Tech City: Tempe
  • Tech State/Province: Arizona
  • Tech Postal Code: 85281
  • Tech Country: US
  • Tech Phone: +1.4806242599
  • Tech Phone Ext:
  • Tech Fax:
  • Tech Fax Ext:
  • Name Server: NS1.DNSIP.COM
  • Name Server: NS2.DNSIP.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 05:13:21:8d:74:11:53:7d:1b:bc:4c:44:c1:32:22:a1:da:d9
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R12
  • Validity
  • Not Before: Jan 20 12:05:50 2026 GMT
  • Not After : Apr 20 12:05:49 2026 GMT
  • Subject: CN = www-66154.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (4096 bit)
  • Modulus:
  • 00:b9:da:02:ab:d5:36:38:11:10:2e:cc:2b:00:c0:
  • aa:40:9c:5c:f5:ea:59:f3:cc:1c:8f:b9:b8:8c:f0:
  • db:50:01:f6:ee:03:01:ed:dd:16:3c:1a:89:39:0f:
  • f0:59:8f:ac:af:11:7b:f4:33:83:a9:69:14:31:17:
  • 50:1c:46:cb:8f:e4:fd:18:3d:9d:b4:2a:30:89:c9:
  • 6f:19:70:83:11:c5:f2:73:0c:5b:91:84:4f:18:7e:
  • b7:db:4a:3d:1a:ca:90:29:a3:90:f5:67:3f:ae:3e:
  • 93:e6:f8:84:50:de:73:8d:76:9e:73:f8:12:87:f6:
  • b1:f5:59:08:33:bd:10:4d:f1:10:87:22:45:96:16:
  • 48:99:69:09:d8:fd:d4:8b:30:15:f4:3b:d0:85:b6:
  • ff:4f:d7:04:17:f5:89:3c:c1:3c:67:7b:0b:db:fd:
  • f1:51:d0:52:85:f6:a9:6e:c7:6b:cb:01:0d:1b:1d:
  • e3:24:55:f2:0d:53:a6:2e:7b:c0:d4:1c:19:a5:e9:
  • 38:b2:fa:31:e3:3a:7b:f7:eb:59:f3:4e:5b:cd:ed:
  • d6:f8:8e:53:6b:cb:d9:5f:f6:e1:61:5a:04:d8:04:
  • 98:51:19:35:b8:a0:57:f7:07:5d:9f:6d:32:b6:b6:
  • 5d:d3:cb:7a:a5:6b:fa:cc:42:38:72:57:00:3b:73:
  • 57:b0:15:e8:6f:a8:6a:3b:81:bf:6c:89:bc:ff:8b:
  • fd:cb:32:0f:b3:d5:6e:b4:5c:56:f2:41:4c:46:8a:
  • 61:b0:e5:a6:1b:2c:4a:fb:52:8e:39:b4:ee:b0:2a:
  • d4:04:01:80:28:84:df:39:eb:26:8a:b3:a9:0b:4c:
  • bc:fc:d2:5c:3e:1e:ac:6b:05:12:58:06:5d:8a:fc:
  • c7:7b:27:a1:d2:c7:83:42:5a:14:c1:50:cb:fe:f0:
  • 56:66:a2:ee:3b:ae:a0:8d:7e:0d:99:66:8e:58:39:
  • 61:f0:07:48:b0:77:62:d5:35:9e:c0:92:02:51:b3:
  • e9:bb:fc:0c:2c:f0:43:e4:b7:9e:df:5d:20:55:c9:
  • 99:6f:83:b6:62:d4:70:6a:25:7a:90:08:8f:37:df:
  • 70:86:2e:a5:52:39:09:c1:3a:ba:d2:df:13:da:a0:
  • dc:8b:a4:0e:c8:1c:fc:b7:36:ca:22:84:26:09:34:
  • 0f:68:b8:d1:86:93:1e:38:32:19:6e:36:1a:61:2b:
  • 50:d3:db:29:1c:83:ba:b2:90:bb:f6:4e:3c:19:74:
  • 8d:ad:c9:be:26:28:45:d4:79:df:53:2a:3a:83:f5:
  • ea:ae:76:d2:22:49:15:ba:1e:fe:1b:bf:2c:85:4c:
  • c8:99:0a:96:d8:57:0c:57:15:ab:5a:9e:73:6f:04:
  • 24:80:75
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • EB:5E:4C:50:D2:B6:37:4D:F7:96:18:63:34:BC:3C:31:26:C3:8C:32
  • X509v3 Authority Key Identifier:
  • 00:B5:29:F2:2D:8E:6F:31:E8:9B:4C:AD:78:3E:FA:DC:E9:0C:D1:D2
  • Authority Information Access:
  • CA Issuers - URI:http://r12.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:www-66154.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://r12.c.lencr.org/90.crl
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 71:7E:95:F3:C2:38:8A:6D:B1:E3:84:49:3D:31:E1:5A:
  • A9:62:08:76:2D:42:00:E0:05:0C:D0:67:B5:A6:61:E2
  • Timestamp : Jan 20 13:04:21.008 2026 GMT
  • Extensions: 00:00:05:00:07:65:6D:0E
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:D3:39:8C:3E:CE:12:31:AB:37:FF:8B:
  • 5D:10:76:0D:B5:25:FE:13:91:44:FA:22:BD:AA:C4:D6:
  • 5F:77:EC:F5:6E:02:21:00:96:62:EB:F8:C1:90:B9:A7:
  • 74:62:7B:AF:BF:04:53:67:FF:D3:4E:45:A5:68:61:11:
  • F2:C0:4C:58:4F:DC:26:5C
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 64:11:C4:6C:A4:12:EC:A7:89:1C:A2:02:2E:00:BC:AB:
  • 4F:28:07:D4:1E:35:27:AB:EA:FE:D5:03:C9:7D:CD:F0
  • Timestamp : Jan 20 13:04:22.840 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:12:6B:51:A3:D7:D4:06:F0:BA:F3:56:50:
  • 17:30:FE:56:E1:C3:6C:EE:DA:E4:17:21:0C:42:77:42:
  • 07:53:7C:85:02:21:00:E6:9A:F7:BB:23:1C:CA:15:51:
  • 4E:63:64:A3:79:BA:2B:16:83:F8:0A:3C:ED:2F:4F:EC:
  • 20:90:79:0A:B8:DC:79
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 90:97:be:fa:8a:7a:23:6c:99:e6:e7:10:b8:33:08:f1:19:80:
  • 1e:a2:73:06:8b:e1:b9:53:b0:49:43:0b:60:28:bb:57:2e:6e:
  • 85:54:ec:f5:dc:6d:c6:65:89:8c:fa:93:9f:e7:02:f0:d7:82:
  • e4:51:0a:5f:05:8d:14:e1:ed:f4:78:41:f8:5b:d8:7b:f9:57:
  • 29:b9:47:d2:e7:7d:bc:a3:ee:e1:00:76:3a:24:99:ce:0e:95:
  • 62:d2:d5:70:12:97:1c:68:55:6a:9a:e9:78:2f:45:11:db:39:
  • 2f:40:af:75:89:e4:a4:39:21:ff:39:9f:a7:7d:0d:58:99:df:
  • 9d:51:bb:ac:ea:48:d6:ae:e2:38:4e:a6:19:30:30:15:a0:e9:
  • 50:d7:7f:d4:46:e6:1d:8f:43:0c:c0:be:4f:c4:e4:2a:e8:a5:
  • 51:b7:4f:da:dd:e6:80:61:1d:db:a0:11:67:be:25:5f:62:25:
  • 53:0d:82:b8:97:b4:d5:50:e6:08:c2:51:79:be:d0:21:ff:c9:
  • c5:c8:fe:8b:4e:7e:8f:6e:e6:e4:2a:24:b5:a9:00:20:9f:f3:
  • 91:b1:83:32:c3:95:d3:7f:be:7f:e9:1e:6e:b6:c4:58:09:f1:
  • f9:74:ce:2b:9b:5f:04:36:a0:70:7c:4e:90:8a:b0:f1:b6:a9:
  • 5e:fb:ed:8f

*** Virustotal ***

*** WayBackMachine ***

Share on: