www-hejivip.com Threat Intelligence and Information

Host Location

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 48489
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • www-hejivip.com. IN A
  • ANSWER SECTION:
  • www-hejivip.com. 297 IN A 104.21.63.18
  • www-hejivip.com. 297 IN A 172.67.142.104
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Tue Feb 24 00:10:56 UTC 2026
  • MSG SIZE rcvd: 76

Whois Data

  • Domain Name: WWW-HEJIVIP.COM
  • Registry Domain ID: 2968546251_DOMAIN_COM-VRSN
  • Registrar URL: http://www.namesrs.com
  • Updated Date: 2025-05-20T04:42:17Z
  • Creation Date: 2025-03-20T18:03:44Z
  • Registry Expiry Date: 2026-03-20T18:03:44Z
  • Registrar: Name SRS AB
  • Registrar IANA ID: 638
  • Registrar Abuse Contact Email: abuse@namesrs.com
  • Registrar Abuse Contact Phone: +46.313011220
  • Name Server: JAXSON.NS.CLOUDFLARE.COM
  • Name Server: TRICIA.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain Name: www-hejivip.com
  • Registry Domain ID: 2968546251_DOMAIN_COM-VRSN
  • Registrar URL: https://www.namesrs.com
  • Creation Date: 2025-03-20T18:03:44.00Z
  • Registrar Registration Expiration Date: 2026-03-20T18:03:44.00Z
  • Registrar: Name SRS AB
  • Registrar IANA ID: 638
  • Registrar Abuse Contact Email: abuse@namesrs.com
  • Registrar Abuse Contact Phone: +46.313011220
  • Registry Registrant ID: Protected
  • Registrant Name: Protected Protected
  • Registrant Organization: Shield Whois
  • Registrant Street: Radiovägen 2
  • Registrant City: Västra Frölunda
  • Registrant State:
  • Registrant Postal Code: 42147
  • Registrant Country: SE
  • Registrant Phone: +46.104500390
  • Registrant Fax:
  • Registry Admin ID: Protected
  • Admin Name: Protected Protected
  • Admin Organization: Shield Whois
  • Admin Street: Radiovägen 2
  • Admin City: Västra Frölunda
  • Admin Postal Code: 42147
  • Admin Country: SE
  • Admin Phone: +46.104500390
  • Admin Fax:
  • Registry Tech ID: Protected
  • Tech Name: Protected Protected
  • Tech Organization: Shield Whois
  • Tech Street: Radiovägen 2
  • Tech City: Västra Frölunda
  • Tech Postal Code: 42147
  • Tech Country: SE
  • Tech Phone: +46.104500390
  • Tech Fax:
  • Name Server: JAXSON.NS.CLOUDFLARE.COM
  • Name Server: TRICIA.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 9e:46:8e:61:d4:04:aa:3a:0e:9f:b6:56:a0:4a:9a:b9
  • Signature Algorithm: ecdsa-with-SHA256
  • Issuer: C = US, O = Google Trust Services, CN = WE1
  • Validity
  • Not Before: Jan 12 01:03:05 2026 GMT
  • Not After : Apr 12 02:01:29 2026 GMT
  • Subject: CN = www-hejivip.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:eb:ad:62:84:e7:37:53:53:41:2c:bd:7f:a6:d3:
  • 46:a0:1c:cf:8d:ae:52:e5:56:8e:f3:80:36:3e:a0:
  • 79:9b:70:b0:53:d9:6d:b9:d9:6a:9a:b7:a1:bb:fa:
  • f5:3a:54:c9:2f:6f:a3:2c:f9:e7:99:27:3d:3b:0c:
  • 17:ac:a9:bb:44
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 0C:8B:7A:5B:03:81:DD:1E:47:38:0B:E1:35:E2:07:5D:F5:87:E0:7C
  • X509v3 Authority Key Identifier:
  • 90:77:92:35:67:C4:FF:A8:CC:A9:E6:7B:D9:80:79:7B:CC:93:F9:38
  • Authority Information Access:
  • OCSP - URI:http://o.pki.goog/s/we1/nkY
  • CA Issuers - URI:http://i.pki.goog/we1.crt
  • X509v3 Subject Alternative Name:
  • DNS:www-hejivip.com, DNS:*.www-hejivip.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://c.pki.goog/we1/S5C6cZxkWsc.crl
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 0E:57:94:BC:F3:AE:A9:3E:33:1B:2C:99:07:B3:F7:90:
  • DF:9B:C2:3D:71:32:25:DD:21:A9:25:AC:61:C5:4E:21
  • Timestamp : Jan 12 02:03:05.750 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:85:8B:89:22:4F:61:98:49:BD:BD:02:
  • 3C:D6:F0:1C:A3:A3:65:24:C9:4D:43:11:89:65:60:DF:
  • E0:1B:10:A1:6A:02:20:68:9B:05:41:0B:3C:D8:F7:2F:
  • 10:DF:20:C4:FC:CB:10:E2:ED:16:D6:26:53:EA:A8:A1:
  • 49:FB:8B:A5:74:DE:D0
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D1:6E:A9:A5:68:07:7E:66:35:A0:3F:37:A5:DD:BC:03:
  • A5:3C:41:12:14:D4:88:18:F5:E9:31:B3:23:CB:95:04
  • Timestamp : Jan 12 02:03:05.972 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C6:50:D4:58:40:52:E9:E4:D3:29:36:
  • 70:17:67:A5:F0:0D:D5:D1:A6:43:67:6A:87:30:B4:22:
  • E7:C2:A4:A6:8A:02:21:00:F0:69:C1:5B:3D:68:10:38:
  • 53:2D:DA:A8:AD:C9:56:8A:44:C2:0E:3C:09:C5:18:AB:
  • DD:88:51:8D:32:80:3A:56
  • Signature Algorithm: ecdsa-with-SHA256
  • Signature Value:
  • 30:45:02:21:00:d2:d4:89:26:a0:17:44:9c:55:88:b6:bf:48:
  • 40:2a:6d:60:3d:c5:f3:ef:48:d2:40:9a:4c:81:8c:cc:2d:61:
  • c9:02:20:76:61:2e:00:dc:f5:bf:b8:a4:c2:37:c7:93:44:b4:
  • 40:c1:77:9e:73:d6:9c:cf:db:35:3a:bd:59:67:a5:dc:da

*** Virustotal ***

*** WayBackMachine ***

Share on: