covidpasscertificate.com Threat Intelligence and Information

Host Location

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 21105
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • covidpasscertificate.com. IN A
  • ANSWER SECTION:
  • covidpasscertificate.com. 295 IN A 172.67.187.195
  • covidpasscertificate.com. 295 IN A 104.21.68.61
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Thu Feb 05 00:09:09 UTC 2026
  • MSG SIZE rcvd: 85

Whois Data

  • Domain Name: COVIDPASSCERTIFICATE.COM
  • Registry Domain ID: 2967494452_DOMAIN_COM-VRSN
  • Registrar URL: http://www.namecheap.com
  • Updated Date: 2025-09-08T13:16:21Z
  • Creation Date: 2025-03-16T18:17:38Z
  • Registry Expiry Date: 2027-03-16T18:17:38Z
  • Registrar: NameCheap, Inc.
  • Registrar IANA ID: 1068
  • Registrar Abuse Contact Email: abuse@namecheap.com
  • Registrar Abuse Contact Phone: +1.6613102107
  • Name Server: ASA.NS.CLOUDFLARE.COM
  • Name Server: GUY.NS.CLOUDFLARE.COM
  • DNSSEC: unsigned
  • Domain name: covidpasscertificate.com
  • Registry Domain ID: 2967494452_DOMAIN_COM-VRSN
  • Registrar URL: http://www.namecheap.com
  • Updated Date: 2025-09-08T13:14:45.00Z
  • Creation Date: 2025-03-16T18:17:38.00Z
  • Registrar Registration Expiration Date: 2027-03-16T18:17:38.00Z
  • Registrar: NAMECHEAP INC
  • Registrar IANA ID: 1068
  • Registrar Abuse Contact Email: abuse@namecheap.com
  • Registrar Abuse Contact Phone: +1.9854014545
  • Reseller: NAMECHEAP INC
  • Registry Registrant ID:
  • Registrant Name: Redacted for Privacy
  • Registrant Organization: Privacy service provided by Withheld for Privacy ehf
  • Registrant Street: Kalkofnsvegur 2
  • Registrant City: Reykjavik
  • Registrant State/Province: Capital Region
  • Registrant Postal Code: 101
  • Registrant Country: IS
  • Registrant Phone: +354.4212434
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registrant Email: 993d2cb5272f42da894f85bbb1fa0301.protect@withheldforprivacy.com
  • Registry Admin ID:
  • Admin Name: Redacted for Privacy
  • Admin Organization: Privacy service provided by Withheld for Privacy ehf
  • Admin Street: Kalkofnsvegur 2
  • Admin City: Reykjavik
  • Admin State/Province: Capital Region
  • Admin Postal Code: 101
  • Admin Country: IS
  • Admin Phone: +354.4212434
  • Admin Phone Ext:
  • Admin Fax:
  • Admin Fax Ext:
  • Admin Email: 993d2cb5272f42da894f85bbb1fa0301.protect@withheldforprivacy.com
  • Registry Tech ID:
  • Tech Name: Redacted for Privacy
  • Tech Organization: Privacy service provided by Withheld for Privacy ehf
  • Tech Street: Kalkofnsvegur 2
  • Tech City: Reykjavik
  • Tech State/Province: Capital Region
  • Tech Postal Code: 101
  • Tech Country: IS
  • Tech Phone: +354.4212434
  • Tech Phone Ext:
  • Tech Fax:
  • Tech Fax Ext:
  • Tech Email: 993d2cb5272f42da894f85bbb1fa0301.protect@withheldforprivacy.com
  • Name Server: guy.ns.cloudflare.com
  • Name Server: asa.ns.cloudflare.com
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 92:59:7d:c0:93:6d:d5:07:0d:c2:1e:e0:e6:d5:ce:1a
  • Signature Algorithm: ecdsa-with-SHA256
  • Issuer: C = US, O = Google Trust Services, CN = WE1
  • Validity
  • Not Before: Dec 23 21:15:59 2025 GMT
  • Not After : Mar 23 22:12:20 2026 GMT
  • Subject: CN = covidpasscertificate.com
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:37:c4:5d:c8:16:ff:de:e8:57:70:24:ec:aa:2d:
  • a4:3a:31:da:f2:72:db:03:47:12:df:35:2a:c3:9e:
  • 7f:47:38:17:bb:e3:0d:ac:f7:e8:27:a9:3b:05:01:
  • 4a:27:9f:39:50:d0:79:38:ca:ed:5f:9b:e3:06:2f:
  • 5b:d1:26:48:eb
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 53:94:1A:B9:09:95:92:78:5B:5B:9E:AE:86:16:3F:47:4F:BA:55:16
  • X509v3 Authority Key Identifier:
  • 90:77:92:35:67:C4:FF:A8:CC:A9:E6:7B:D9:80:79:7B:CC:93:F9:38
  • Authority Information Access:
  • OCSP - URI:http://o.pki.goog/s/we1/klk
  • CA Issuers - URI:http://i.pki.goog/we1.crt
  • X509v3 Subject Alternative Name:
  • DNS:covidpasscertificate.com, DNS:*.covidpasscertificate.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://c.pki.goog/we1/tygqm2Ip0_w.crl
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 96:97:64:BF:55:58:97:AD:F7:43:87:68:37:08:42:77:
  • E9:F0:3A:D5:F6:A4:F3:36:6E:46:A4:3F:0F:CA:A9:C6
  • Timestamp : Dec 23 22:16:00.329 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C3:C2:B5:4F:92:C2:2F:DA:FA:DE:45:
  • 9F:D8:0F:67:9E:D4:66:27:58:07:66:3F:79:FE:A8:A2:
  • F8:5E:DA:59:3F:02:21:00:AD:B8:4A:64:D6:6E:DD:09:
  • AA:28:D3:3A:85:42:95:31:C4:DC:EB:D7:2F:C6:B9:7E:
  • BE:3D:8D:69:4A:89:74:B3
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 16:83:2D:AB:F0:A9:25:0F:0F:F0:3A:A5:45:FF:C8:BF:
  • C8:23:D0:87:4B:F6:04:29:27:F8:E7:1F:33:13:F5:FA
  • Timestamp : Dec 23 22:16:00.324 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:9A:BA:51:B7:74:1A:1A:4F:D9:97:25:
  • 4E:1E:63:17:45:C7:81:7E:F7:3D:6D:7E:87:E2:58:61:
  • EC:65:2A:90:0B:02:20:47:3E:BE:68:E5:93:29:34:FA:
  • 0C:50:D3:EE:15:1F:47:23:9C:4F:FC:47:77:3E:77:CF:
  • 78:69:35:74:87:59:31
  • Signature Algorithm: ecdsa-with-SHA256
  • Signature Value:
  • 30:45:02:21:00:b7:10:15:c7:6c:f8:2c:5e:d5:c9:9e:de:40:
  • b4:ba:f7:0f:e7:8e:3c:70:29:c0:9d:3c:40:5e:88:89:ca:b8:
  • e5:02:20:0e:a4:92:ce:ae:cf:c8:4e:1a:28:ea:a6:67:d5:03:
  • a5:e4:e7:2c:93:27:fc:09:a6:fa:2f:60:ad:1d:3c:4c:ab

*** Virustotal ***

*** WayBackMachine ***

Share on: