Okay!!
I have added some more retry logic to avoid having to retry ALL 8 certificates, but can retry a single one up to 3 times using the same request.
I did now see the same domain stick out again and it seems they are using ns.namebrightdns.com which there is an old article for on this site, will maybe have to exclude this domain from our list!