zibamazon.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 55397
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • zibamazon.com. IN A
  • ANSWER SECTION:
  • zibamazon.com. 3568 IN A 185.147.160.181
  • Query time: 8 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Sat May 20 17:44:19 UTC 2023
  • MSG SIZE rcvd: 58

Whois Data

  • Domain Name: ZIBAMAZON.COM
  • Registry Domain ID: 2731022117_DOMAIN_COM-VRSN
  • Registrar URL: http://www.joker.com
  • Updated Date: 2022-10-12T07:47:50Z
  • Creation Date: 2022-10-10T07:06:09Z
  • Registry Expiry Date: 2023-10-10T07:06:09Z
  • Registrar: CSL Computer Service Langenbach GmbH d/b/a joker.com
  • Registrar IANA ID: 113
  • Registrar Abuse Contact Email: abuse@joker.com
  • Registrar Abuse Contact Phone: +49.21186767447
  • Name Server: IRNS1.NETAFRAZ.COM
  • Name Server: IRNS2.NETAFRAZ.COM
  • DNSSEC: unsigned
  • Domain Name: zibamazon.com
  • Registry Domain ID: N/A
  • Registrar URL: https://joker.com
  • Updated Date: 2022-10-12T07:47:49Z
  • Creation Date: 2022-10-10T07:06:09Z
  • Registrar Registration Expiration Date: 2023-10-10T07:06:09Z
  • Registrar: CSL Computer Service Langenbach GmbH d/b/a joker.com
  • Registrar IANA ID: 113
  • Registrar Abuse Contact Email: abuse@joker.com
  • Registrar Abuse Contact Phone: +49.21186767447
  • Reseller: Reseller.World
  • Reseller: Joker/Reseller.World
  • Reseller: www.Reseller.World
  • Registrant Country: DK
  • Registrant Email: https://csl-registrar.com/contact/zibamazon.com/owner
  • Admin Email: https://csl-registrar.com/contact/zibamazon.com/admin
  • Tech Email: https://csl-registrar.com/contact/zibamazon.com/tech
  • Name Server: irns1.netafraz.com
  • Name Server: irns2.netafraz.com
  • DNSSEC: unsigned
  • NOTE: unsolicited, commercial advertising or solicitations via direct mail,
  • NOTE: e-mail, telephone, or facsimile; or (2) enable high volume, automated,
  • NOTE: electronic processes that apply to Joker.com (or its computer systems).
  • NOTE: The compilation, repackaging, dissemination or other use of this data
  • NOTE: is expressly prohibited without the prior written consent of Joker.com.

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 03:37:3f:fa:80:f1:87:92:b8:56:32:7f:f1:3a:14:b3:fe:0b
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R3
  • Validity
  • Not Before: Apr 13 19:50:47 2023 GMT
  • Not After : Jul 12 19:50:46 2023 GMT
  • Subject: CN = ftp.zibamazon.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (384 bit)
  • pub:
  • 04:32:29:13:62:ff:41:a8:fb:66:47:51:90:6b:78:
  • 3c:fa:4a:50:56:3c:8b:3f:ba:5b:c3:09:cf:bf:7b:
  • e8:11:39:fb:7f:3a:35:d9:f9:67:aa:d1:bd:ae:8c:
  • 41:cd:62:8f:6f:0d:a6:6d:d9:04:7b:02:b7:31:37:
  • b1:82:ee:42:63:c6:c6:bc:17:b2:6e:6d:3d:7d:27:
  • 5d:89:8f:7b:77:5f:51:d1:64:a6:0c:51:2f:97:a3:
  • da:53:44:60:62:50:40
  • ASN1 OID: secp384r1
  • NIST CURVE: P-384
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 4F:57:05:6F:A0:73:8C:5A:3F:48:46:BD:22:58:78:29:74:1D:E1:18
  • X509v3 Authority Key Identifier:
  • 14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
  • Authority Information Access:
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:ftp.zibamazon.com, DNS:mail.zibamazon.com, DNS:pop.zibamazon.com, DNS:smtp.zibamazon.com, DNS:www.zibamazon.com, DNS:zibamazon.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B7:3E:FB:24:DF:9C:4D:BA:75:F2:39:C5:BA:58:F4:6C:
  • 5D:FC:42:CF:7A:9F:35:C4:9E:1D:09:81:25:ED:B4:99
  • Timestamp : Apr 13 20:50:47.644 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:85:B2:7B:04:49:D0:42:D4:8F:46:A6:
  • DB:95:C3:18:C6:BA:59:A5:68:4A:40:AE:68:3F:EC:02:
  • 91:2F:0C:55:FF:02:21:00:DB:07:4D:DA:0B:16:49:B2:
  • 3F:5F:2C:96:29:3D:25:75:D2:8E:1A:30:69:F8:BD:9B:
  • 7C:21:41:61:75:EE:5B:3B
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
  • 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
  • Timestamp : Apr 13 20:50:47.635 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:E3:FA:58:1C:54:9B:8C:B4:72:BB:3D:
  • 82:4C:F7:48:E1:E7:21:BA:E7:0C:B3:85:02:E2:38:5D:
  • D6:B0:6C:D2:4F:02:20:3D:88:BC:96:5A:48:71:87:F9:
  • 56:4A:AE:37:53:82:08:FE:5C:28:46:53:97:C8:CF:80:
  • C8:96:1F:CE:FF:4D:29
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 22:1e:73:12:db:6d:80:9d:94:58:67:6b:88:72:6a:d1:5e:33:
  • 5c:20:7c:9e:ea:56:e1:f8:76:d8:cd:04:ce:69:f3:70:78:01:
  • 29:4a:a7:98:fd:2c:73:64:95:a0:81:35:17:c0:45:91:47:a1:
  • 44:5c:bc:ce:fb:06:69:dd:bd:ad:31:51:16:b6:11:e8:a8:ba:
  • f2:27:d5:5f:72:3f:e1:7d:30:3d:ff:fc:97:d9:33:7b:c8:74:
  • 87:bd:42:8e:c7:b4:2c:66:7e:6f:f8:4e:da:72:09:eb:bf:4c:
  • 20:ee:30:5a:9c:a5:49:c0:ec:42:0b:b9:32:da:c4:49:35:9b:
  • 46:3f:11:08:eb:d3:a5:2a:a7:21:75:40:e3:07:c7:40:d7:0d:
  • 22:4a:2e:08:36:8e:bf:a6:b5:26:e8:fa:c1:95:8e:85:34:22:
  • b3:31:ba:72:6e:6e:ee:25:37:29:d4:af:b2:39:5b:cf:33:f9:
  • d1:c3:0d:03:b1:f0:df:cf:1d:d7:d4:2c:c6:1b:5c:f6:86:e6:
  • f6:32:4c:94:06:d4:6f:7c:65:eb:85:e4:2c:2a:dc:5d:7f:9a:
  • 57:3d:ca:59:0a:16:ec:7f:78:69:a0:b5:e0:5b:a0:34:66:04:
  • 38:b6:38:48:00:d1:00:12:1e:b7:a4:2f:9f:b8:ad:23:45:df:
  • 54:05:49:21

Technologies

Pure-FTPd nginx nginx

*** Virustotal ***

*** WayBackMachine ***

Share on: