publicsuffix / list

The Public Suffix List
https://publicsuffix.org/
Mozilla Public License 2.0
2k stars 1.2k forks source link

remove `graphox.us` #2062

Closed wdhdev closed 1 month ago

wdhdev commented 1 month ago

Reasons for removal:

Original PR was #960 opened by @gear4s.

groundcat commented 1 month ago

WHOIS

Expired domain: Creation Date: 2022-04-15T00:02:01Z is after the original PR.

Please read the original WHOIS records below:

Domain Name: graphox.us
Registry Domain ID: DFD0AF29DA73E43C1B4723355BD92F228-GDREG
Registrar WHOIS Server: https://porkbun.com/whois
Registrar URL: www.porkbun.com
Updated Date: 2024-06-19T02:35:18Z
Creation Date: 2022-04-15T00:02:01Z
Registry Expiry Date: 2025-04-15T00:02:01Z
Registrar: Porkbun
Registrar IANA ID: 1861
Registrar Abuse Contact Email: abuse@porkbun.com
Registrar Abuse Contact Phone: +1.5038508351
Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited
Registry Registrant ID: C5489B0E8874D4AECABF9E65082C4AB4D-GDREG
Registrant Name: Duc Tran Dinh
Registrant Organization:
Registrant Street: Huong Son
Registrant Street:
Registrant Street:
Registrant City: Ha Tinh
Registrant State/Province: Ha Tinh
Registrant Postal Code: 485000
Registrant Country: VN
Registrant Phone: +84.0945444333
Registrant Phone Ext:
Registrant Fax:
Registrant Fax Ext:
Registrant Email: admin@cu.tn
Registrant Application Purpose: P3
Registrant Nexus Category: C11
Registry Admin ID: C5489B0E8874D4AECABF9E65082C4AB4D-GDREG
Admin Name: Duc Tran Dinh
Admin Organization:
Admin Street: Huong Son
Admin Street:
Admin Street:
Admin City: Ha Tinh
Admin State/Province: Ha Tinh
Admin Postal Code: 485000
Admin Country: VN
Admin Phone: +84.0945444333
Admin Phone Ext:
Admin Fax:
Admin Fax Ext:
Admin Email: admin@cu.tn
Admin Application Purpose: P3
Admin Nexus Category: C11
Registry Tech ID: C5489B0E8874D4AECABF9E65082C4AB4D-GDREG
Tech Name: Duc Tran Dinh
Tech Organization:
Tech Street: Huong Son
Tech Street:
Tech Street:
Tech City: Ha Tinh
Tech State/Province: Ha Tinh
Tech Postal Code: 485000
Tech Country: VN
Tech Phone: +84.0945444333
Tech Phone Ext:
Tech Fax:
Tech Fax Ext:
Tech Email: admin@cu.tn
Tech Application Purpose: P3
Tech Nexus Category: C11
Name Server: ns2.graphox.us
Name Server: ns1.graphox.us
DNSSEC: signedDelegation
URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/
>>> Last update of WHOIS database: 2024-07-25T02:52:52Z <<<

Sources: whois utility generated at 2024-07-24 22:53:07

Organization Website and Nature Check

Sources:

_psl TXT Record

Responses from multiple DNS servers for the _psl TXT record of the domain:

Response from 8.8.8.8: empty

Response from 1.1.1.1: empty

Response from 208.67.222.222: empty

Sources: dig command using DNS servers: Google (8.8.8.8), Cloudflare (1.1.1.1), OpenDNS (208.67.222.222)

Root-level Domain Usage Scan

As a potential indicator of domain usage, we scan the following records:

NS records (graphox.us) returns ns1.graphox.us. ns2.graphox.us.

Additionally, we scan the following records for possible website usage at the root level:

A record (graphox.us) returns 103.199.16.248

A record (www.graphox.us) returns 103.199.16.248

MX records (graphox.us) returns 10 mail.graphox.us.

Sources: dig command for A, NS, and MX records

Search Engine Checks

For possible website usage, we queried multiple different search engines:

No active site found.

image image image image

Sources:

Subdomain Discovery

For potential usage of subdomains that are not discovered by the search engines, we used the following tools and here are the obtained observations:

1 domain found

image

3 found

image

Sources:

crt.sh Certificate Transparency Logs

For potential website usage of subdomains that are not discovered by the search engines, we checked the Certificate Transparency Logs and here are the obtained observations:

Some still active

image

Sources:

VirusTotal Check

To check for possible security issues, we used VirusTotal and here are the obtained observations:

1 vendor flag

image

Sources:

gear4s commented 1 week ago

sorry for being super late - yea I lost the domain to some domain scraper, safe to remove