covidreturntowork.com Threat Intelligence and Information

Host Location

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 2437
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • covidreturntowork.com. IN A
  • ANSWER SECTION:
  • covidreturntowork.com. 14382 IN A 139.162.17.123
  • Query time: 12 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Wed Jan 19 23:12:02 UTC 2022
  • MSG SIZE rcvd: 66

DNS Records

  • SOA ns1.sg15.fcomet.com 139.162.17.123
  • NS ns2.sg15.fcomet.com 172.104.35.253

Whois Data

  • Domain Name: COVIDRETURNTOWORK.COM
  • Registry Domain ID: 2631637128_DOMAIN_COM-VRSN
  • Registrar URL: http://www.publicdomainregistry.com
  • Updated Date: 2021-08-05T05:56:53Z
  • Creation Date: 2021-08-05T04:45:42Z
  • Registry Expiry Date: 2022-08-05T04:45:42Z
  • Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com
  • Registrar IANA ID: 303
  • Registrar Abuse Contact Email: abuse-contact@publicdomainregistry.com
  • Registrar Abuse Contact Phone: +1.2013775952
  • Name Server: NS1.SG15.FCOMET.COM
  • Name Server: NS2.SG15.FCOMET.COM
  • DNSSEC: unsigned
  • Domain Name: COVIDRETURNTOWORK.COM
  • Registry Domain ID: 2631637128_DOMAIN_COM-VRSN
  • Registrar URL: www.publicdomainregistry.com
  • Updated Date: 2021-10-05T02:15:22Z
  • Creation Date: 2021-08-05T04:45:42Z
  • Registrar Registration Expiration Date: 2022-08-05T04:45:42Z
  • Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com
  • Registrar IANA ID: 303
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Domain Admin
  • Registrant Organization: Privacy Protect, LLC (PrivacyProtect.org)
  • Registrant Street: 10 Corporate Drive
  • Registrant City: Burlington
  • Registrant State/Province: MA
  • Registrant Postal Code: 01803
  • Registrant Country: US
  • Registrant Phone: +1.8022274003
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registrant Email: contact@privacyprotect.org
  • Registry Admin ID: Not Available From Registry
  • Admin Name: Domain Admin
  • Admin Organization: Privacy Protect, LLC (PrivacyProtect.org)
  • Admin Street: 10 Corporate Drive
  • Admin City: Burlington
  • Admin State/Province: MA
  • Admin Postal Code: 01803
  • Admin Country: US
  • Admin Phone: +1.8022274003
  • Admin Phone Ext:
  • Admin Fax:
  • Admin Fax Ext:
  • Admin Email: contact@privacyprotect.org
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Domain Admin
  • Tech Organization: Privacy Protect, LLC (PrivacyProtect.org)
  • Tech Street: 10 Corporate Drive
  • Tech City: Burlington
  • Tech State/Province: MA
  • Tech Postal Code: 01803
  • Tech Country: US
  • Tech Phone: +1.8022274003
  • Tech Phone Ext:
  • Tech Fax:
  • Tech Fax Ext:
  • Tech Email: contact@privacyprotect.org
  • Name Server: ns1.sg15.fcomet.com
  • Name Server: ns2.sg15.fcomet.com
  • DNSSEC: Unsigned
  • Registrar Abuse Contact Email: abuse-contact@publicdomainregistry.com
  • Registrar Abuse Contact Phone: +1.2013775952
  • Registration Service Provided By: FASTCOMET
  • http://privacyprotect.org/contact. We have a stringent abuse policy and any

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 04:bb:d7:6c:4b:eb:83:7a:68:cc:60:95:3f:d9:0e:2f:0e:4c
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, O = Let’s Encrypt, CN = R3
  • Validity
  • Not Before: Nov 4 08:47:07 2021 GMT
  • Not After : Feb 2 08:47:06 2022 GMT
  • Subject: CN = aadisat.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • RSA Public-Key: (2048 bit)
  • Modulus:
  • 00:d0:5a:37:17:8b:61:20:06:2e:7a:aa:6e:e5:14:
  • 50:f7:89:d1:42:97:ca:d2:96:ab:9f:89:e3:f0:39:
  • a0:61:74:7f:e0:66:62:82:6e:de:55:cc:ee:32:9a:
  • 11:04:46:c3:ae:6c:09:a0:f1:cb:25:2c:11:a2:2b:
  • b4:b4:fe:d7:1b:07:a1:95:ae:3d:8f:3b:ae:df:ac:
  • 17:3d:65:44:c6:9c:f9:ad:ae:d9:d3:3d:f7:35:02:
  • 63:20:ec:63:ba:a7:23:1a:1f:0a:ae:d0:99:23:91:
  • 7c:7e:64:32:4b:b3:1d:d0:e7:72:5c:88:a1:dd:f6:
  • 0a:06:f5:26:54:09:2c:0e:98:8a:32:0b:9c:3f:7f:
  • 8d:5a:1b:e1:4d:bc:3b:05:c5:90:c4:91:ef:dc:21:
  • 4c:4f:be:70:e5:98:a0:7c:92:22:f9:bb:50:4c:c8:
  • ef:84:5d:7f:c2:87:ef:c6:89:14:62:f2:9d:16:e1:
  • 17:9c:32:db:8d:e7:ce:27:7c:9a:c3:5b:6b:be:7b:
  • 0d:dc:da:c5:fa:a5:9f:6a:ae:a7:d9:d4:fb:3f:96:
  • be:8c:0e:ba:62:8c:39:58:d0:7e:7e:95:23:88:4b:
  • f4:5f:34:f1:3f:14:05:3c:05:2c:a6:76:2c:3c:01:
  • 36:10:e8:20:e8:d4:21:35:37:82:18:1d:0c:7a:45:
  • ca:5b
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 70:C9:8B:39:AF:E1:25:07:12:AD:A5:C0:87:20:98:35:DA:33:17:7E
  • X509v3 Authority Key Identifier:
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
  • Authority Information Access:
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
  • X509v3 Subject Alternative Name:
  • DNS:aadisat.com, DNS:mail.aadisat.com, DNS:www.aadisat.com
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
  • EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
  • Timestamp : Nov 4 09:47:07.116 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:F9:0B:22:B6:23:7F:A4:A4:4C:BD:B7:
  • 55:AF:B7:49:FC:9E:BC:C0:99:19:66:A0:CB:5E:B5:87:
  • 6D:27:AC:44:6F:02:20:07:E2:D1:D1:24:BB:C9:DE:81:
  • C0:8C:6B:A3:BF:51:D8:3F:A5:5B:D5:00:3A:53:2A:BC:
  • 89:BE:3A:30:2C:E2:96
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
  • 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
  • Timestamp : Nov 4 09:47:07.156 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:91:5A:48:2D:0D:A7:E2:09:A6:35:94:
  • 5D:50:3F:65:F7:73:50:A0:61:59:FA:CB:81:BE:06:92:
  • DD:B3:FE:CE:C8:02:20:13:30:C9:67:21:D6:CE:9A:F3:
  • A8:ED:33:12:B2:2E:84:34:16:BA:6C:E7:27:88:E4:F9:
  • 37:CB:F6:E7:B4:F0:4A
  • Signature Algorithm: sha256WithRSAEncryption
  • 60:76:24:84:d8:41:b0:c3:0f:3e:2f:35:4a:4a:c6:65:f5:ae:
  • 11:8b:15:93:dc:f3:48:ed:76:e1:7a:44:8d:e6:a8:ba:3f:e8:
  • 3c:be:93:7e:9f:b0:1a:80:1e:d9:03:2e:39:3d:59:5e:4b:4e:
  • 18:1a:af:37:23:7e:fb:65:1c:fd:01:b2:a4:0a:15:d9:bc:32:
  • c0:f7:d6:e7:50:b8:0f:41:bc:1b:cb:7b:f4:e4:81:36:c2:ae:
  • 88:5e:9c:8a:40:1a:cd:4d:c7:fa:59:f7:0a:5c:37:f0:69:1b:
  • ab:12:8e:4c:42:d9:9c:78:d0:24:49:8c:ff:08:f8:32:99:fd:
  • 22:db:4f:f0:a8:e3:ed:58:e1:0e:0f:fb:ac:67:b7:9a:3e:0a:
  • 93:f8:6e:4d:23:52:81:ae:b3:0b:d3:8e:61:51:c3:e3:64:49:
  • ee:68:d8:8b:9d:8f:53:82:26:56:f3:6e:90:a1:6b:5d:bb:0a:
  • a6:dd:71:ab:4e:22:11:8f:e5:85:a3:21:7a:84:16:07:e3:b7:
  • 7d:57:c4:17:7d:d3:ed:95:25:5d:c6:56:50:51:8a:c3:df:b2:
  • 6f:c8:0e:25:2f:5e:bf:86:95:06:99:e2:6e:7f:5e:b4:3b:ee:
  • ec:74:f8:e4:49:64:5c:f7:d7:a4:81:a4:45:be:27:b5:61:d7:
  • 6d:a2:30:14

Sitemap

Technologies

Pure-FTPd Imunify360 Webshield Apache httpd Exim smtpd

*** Virustotal ***

*** WayBackMachine ***

Share on: