1covid.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 2285
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • 1covid.com. IN A
  • ANSWER SECTION:
  • 1covid.com. 298 IN A 185.255.121.5
  • Query time: 56 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Tue Apr 19 12:12:15 UTC 2022
  • MSG SIZE rcvd: 55

DNS Records

  • SOA ns3.epik.com 52.55.168.70
  • NS ns3.epik.com 52.55.168.70
  • NS ns4.epik.com 91.149.194.188
  • A 1covid.com 185.255.121.5

Whois Data

  • Domain Name: 1COVID.COM
  • Registry Domain ID: 2626275116_DOMAIN_COM-VRSN
  • Registrar URL: http://porkbun.com
  • Updated Date: 2022-04-18T22:56:23Z
  • Creation Date: 2021-07-12T21:39:01Z
  • Registry Expiry Date: 2022-07-12T21:39:01Z
  • Registrar: Porkbun LLC
  • Registrar IANA ID: 1861
  • Registrar Abuse Contact Email: abuse@porkbun.com
  • Registrar Abuse Contact Phone: 5038508351
  • Name Server: NS3.EPIK.COM
  • Name Server: NS4.EPIK.COM
  • DNSSEC: unsigned
  • Domain Name: 1COVID.COM
  • Registry Domain ID: 2626275116_DOMAIN_COM-VRSN
  • Registrar URL: http://www.porkbun.com
  • Updated Date: 2021-07-12 21:39:02
  • Created Date: 2021-07-12 21:39:01
  • Registrar Registration Expiration Date: 2022-07-12 21:39:01
  • Registrar: Porkbun LLC
  • Registrar IANA ID: 1861
  • Registrar Abuse Contact Email: abuse@porkbun.com
  • Registrar Abuse Contact Phone: +1.5038508351
  • Registry Registrant ID:
  • Registrant Name: Whois Privacy
  • Registrant Organization: Private by Design, LLC
  • Registrant City: Sanford
  • Registrant State/Province: NC
  • Registrant Postal Code: 27330
  • Registrant Country: US
  • Registrant Phone: +1.9712666028
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registry Admin ID:
  • Admin Name: Whois Privacy
  • Admin Organization: Private by Design, LLC
  • Admin City: Sanford
  • Admin State/Province: NC
  • Admin Postal Code: 27330
  • Admin Country: US
  • Admin Phone: +1.9712666028
  • Admin Phone Ext:
  • Admin Fax:
  • Admin Fax Ext:
  • Registry Tech ID:
  • Tech Name: Whois Privacy
  • Tech Organization: Private by Design, LLC
  • Tech City: Sanford
  • Tech State/Province: NC
  • Tech Postal Code: 27330
  • Tech Country: US
  • Tech Phone: +1.9712666028
  • Tech Phone Ext:
  • Tech Fax:
  • Tech Fax Ext:
  • Name Server: ns3.epik.com
  • Name Server: ns4.epik.com

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 04:93:2a:f0:49:fb:84:d7:40:6e:48:01:f7:c1:be:ea:6d:b4
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R3
  • Validity
  • Not Before: Jan 19 07:00:34 2022 GMT
  • Not After : Apr 19 07:00:33 2022 GMT
  • Subject: CN = starbuckslocation.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • RSA Public-Key: (2048 bit)
  • Modulus:
  • 00:cf:58:2c:92:ca:b8:1e:38:93:7a:16:81:7a:f0:
  • 2b:8d:1e:cd:14:87:87:9b:29:9b:88:a0:6e:d5:7e:
  • 7f:ba:4e:c3:d6:00:93:b5:c4:36:b9:bb:f6:7a:b8:
  • 5f:95:4d:be:4a:73:40:a3:34:3b:e5:b6:4d:2d:3c:
  • f8:3a:01:cd:43:50:02:54:9d:53:c8:a9:38:0c:29:
  • dd:df:8c:cd:2c:e5:dc:7c:0d:ce:a2:b5:1e:71:1b:
  • 5d:2e:48:a9:ae:44:2e:32:e5:4b:66:ac:07:63:75:
  • 18:ac:bb:ef:c5:9b:1b:c1:83:b3:94:21:13:5d:cd:
  • 71:98:e7:52:2f:68:95:56:ad:b1:2e:94:d9:b4:84:
  • dc:c7:17:9a:4f:8d:d0:37:58:2e:ba:bc:25:29:d2:
  • 1f:ec:b8:15:5c:fe:1f:00:85:75:47:b4:26:1b:6c:
  • cc:06:dd:4d:2b:2f:39:4f:90:c4:92:5b:ff:63:f2:
  • 8b:bf:77:48:0d:fc:cd:85:b3:91:db:76:3b:b8:b6:
  • d1:29:10:02:1a:4e:b9:4a:46:f0:f3:a9:36:26:ae:
  • 56:de:12:67:43:72:d0:9c:4c:19:99:ec:bc:0d:24:
  • b8:92:a0:f3:56:a8:32:f9:3e:81:38:d4:e1:53:d1:
  • dd:38:ba:1c:2c:30:06:50:cb:05:96:41:66:03:85:
  • 41:59
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 66:7E:80:D6:6E:FB:AF:9D:C0:6C:3B:A9:03:D7:ED:AE:1C:B0:61:39
  • X509v3 Authority Key Identifier:
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
  • Authority Information Access:
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:belasaude.com, DNS:caearthquake.com, DNS:hempbranding.com, DNS:intoroi.com, DNS:moneydoctor.ca, DNS:prpsanjose.com, DNS:realitygf.com, DNS:rollblock.com, DNS:starbuckslocation.com, DNS:www.belasaude.com, DNS:www.caearthquake.com, DNS:www.hempbranding.com, DNS:www.intoroi.com, DNS:www.moneydoctor.ca, DNS:www.prpsanjose.com, DNS:www.realitygf.com, DNS:www.rollblock.com, DNS:www.starbuckslocation.com, DNS:www.zeeland.online, DNS:zeeland.online
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
  • EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
  • Timestamp : Jan 19 08:00:34.558 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:33:B5:F9:79:5D:A6:2D:5E:95:20:E2:44:
  • 34:AA:D2:B6:CC:B1:73:38:E9:9E:27:81:CA:66:91:8C:
  • FE:B5:F0:58:02:20:70:3A:3D:88:FB:D1:F8:3D:19:B0:
  • F8:F8:4B:B0:85:F8:8B:40:9A:C1:2D:81:26:FF:2F:8E:
  • 17:DC:D4:C0:D4:18
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
  • BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
  • Timestamp : Jan 19 08:00:34.568 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:6B:0B:85:DD:05:E8:76:92:F4:E0:24:FF:
  • 6B:30:69:0D:BA:62:DD:08:6A:40:84:54:6A:EE:17:72:
  • 37:EF:1E:EC:02:20:5C:D8:73:31:19:AD:C7:ED:25:92:
  • 3C:2F:F4:29:C9:63:42:7B:F3:CE:74:B3:86:5D:85:E0:
  • DC:22:FB:B3:05:5F
  • Signature Algorithm: sha256WithRSAEncryption
  • a7:76:a9:92:d5:fc:82:87:d2:7a:24:cf:0c:97:ad:a1:20:bb:
  • 30:2d:66:58:e0:fb:d8:31:9d:37:93:6e:8f:c2:28:29:8e:10:
  • b3:3f:42:dd:47:9f:f2:3f:36:0a:98:d9:22:ab:2e:6e:75:20:
  • 23:1b:0a:a9:7b:93:77:fa:4f:e5:7a:bf:dd:eb:1b:02:83:ec:
  • b4:62:4e:05:5a:d6:ef:d6:03:59:83:c3:f4:73:0c:69:c2:fb:
  • e9:9f:b3:b6:b8:ac:6d:09:e4:f0:b4:56:44:ab:d2:3a:13:3c:
  • c8:7e:6f:19:d2:8f:7f:de:39:69:29:7b:95:44:2b:95:80:d1:
  • 17:98:b8:e4:53:eb:11:f9:1e:0c:fb:a1:65:53:c2:d5:79:07:
  • a7:6b:e6:90:7a:45:cc:ad:8a:31:5b:4e:2b:cd:f6:bb:b0:0b:
  • db:fa:90:8a:bc:f4:fe:d9:c9:ab:17:06:7d:31:c3:ff:95:35:
  • ee:99:1f:65:66:f8:96:d6:16:e3:13:c2:b9:ac:d4:49:2a:0d:
  • 00:c8:f3:3e:99:7c:26:c5:05:32:31:3c:53:03:de:9b:d6:04:
  • 68:d4:cc:e1:16:81:25:ae:30:de:05:b9:71:26:12:73:ab:dc:
  • 7b:17:a9:e7:0a:7f:db:42:1f:7c:58:43:97:cc:be:d2:1c:1b:
  • ab:f1:8e:3d

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: