covidrm-hs.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 42901
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • covidrm-hs.com. IN A
  • ANSWER SECTION:
  • covidrm-hs.com. 3584 IN A 182.50.132.242
  • Query time: 36 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Wed Jan 19 23:37:50 UTC 2022
  • MSG SIZE rcvd: 59

DNS Records

  • SOA ns59.domaincontrol.com 97.74.100.31
  • NS ns59.domaincontrol.com 97.74.100.31
  • NS ns59.domaincontrol.com 2603:5:2143::1f
  • NS ns60.domaincontrol.com 173.201.68.31
  • NS ns60.domaincontrol.com 2603:5:2243::1f
  • MX covidrmhs-com01i.mail.protection.outlook.com 104.47.20.36
  • MX covidrmhs-com01i.mail.protection.outlook.com 104.47.21.36
  • A covidrm-hs.com 182.50.132.242
  • SRV _sipfederationtls._tcp.covidrm-hs.com sipfed.online.lync.com 52.113.66.203 5061 1
  • SRV _sipfederationtls._tcp.covidrm-hs.com sipfed.online.lync.com 2603:1047:0:a::f 5061 1
  • SRV _sip._tls.covidrm-hs.com sipdir.online.lync.com 52.113.66.144 443 1
  • SRV _sip._tls.covidrm-hs.com sipdir.online.lync.com 2603:1047:0:b::f 443 1
  • SRV _sip._tls.covidrm-hs.com sipdir.online.lync.com 2603:1047:0:a::f 443 1
  • SRV _sip._tls.covidrm-hs.com sipdir.online.lync.com 2603:1047:0:2::b 443 1
  • SRV _sip._tls.covidrm-hs.com sipdir.online.lync.com 2603:1047:0:1::b 443 1
  • SRV _sip._tls.covidrm-hs.com sipdir.online.lync.com 2603:1047:0:9::f 443 1
  • SRV _sip._tls.covidrm-hs.com sipdir.online.lync.com 2603:1047:0:8::f 443 1

Whois Data

  • Domain Name: COVIDRM-HS.COM
  • Registry Domain ID: 2643456309_DOMAIN_COM-VRSN
  • Registrar URL: http://www.godaddy.com
  • Updated Date: 2021-09-25T06:43:32Z
  • Creation Date: 2021-09-25T06:43:31Z
  • Registry Expiry Date: 2023-09-25T06:43:31Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: NS59.DOMAINCONTROL.COM
  • Name Server: NS60.DOMAINCONTROL.COM
  • DNSSEC: unsigned
  • Domain Name: covidrm-hs.com
  • Registry Domain ID: 2643456309_DOMAIN_COM-VRSN
  • Registrar URL: https://www.godaddy.com
  • Updated Date: 2021-09-25T01:43:32Z
  • Creation Date: 2021-09-25T01:43:31Z
  • Registrar Registration Expiration Date: 2023-09-25T01:43:31Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Registrant Organization:
  • Registrant State/Province: Belsay
  • Registrant Country: GB
  • Name Server: NS59.DOMAINCONTROL.COM
  • Name Server: NS60.DOMAINCONTROL.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 91:0d:f0:1b:59:45:ff:57
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, ST = Arizona, L = Scottsdale, O = “GoDaddy.com, Inc.”, OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2
  • Validity
  • Not Before: Sep 25 12:14:18 2021 GMT
  • Not After : Sep 25 12:14:18 2022 GMT
  • Subject: CN = covidrm-hs.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • RSA Public-Key: (2048 bit)
  • Modulus:
  • 00:b0:17:c8:89:6a:c9:1e:50:14:61:f2:7b:12:24:
  • 0d:ed:89:e4:09:c4:1f:02:f9:97:1c:b2:aa:5f:4a:
  • 40:c7:04:34:01:5b:69:f6:bf:47:0d:c4:63:8c:7a:
  • 2d:0c:a6:ca:cb:a6:71:04:53:5c:d5:e2:fd:05:c3:
  • f4:e4:dd:09:c7:f4:52:1b:22:4e:c4:c1:d0:22:b3:
  • 65:4b:aa:17:ac:72:52:f2:99:f1:b7:5c:57:8f:64:
  • 7f:c5:a6:b9:b7:8d:8d:f9:8a:e1:f9:dc:29:b7:1c:
  • 07:6b:90:04:88:64:ff:ba:a4:b7:26:23:89:e1:13:
  • 83:db:7b:50:ee:01:c1:fd:5f:58:c5:71:d2:f7:73:
  • dd:3b:73:6e:7b:1f:de:5a:08:08:03:7c:1c:79:e3:
  • 3f:c4:5b:2f:3c:12:61:77:c1:2d:18:9e:e0:6b:35:
  • d7:1d:13:2f:9b:37:d7:b8:1f:3a:83:ee:58:5c:c8:
  • c0:8c:1e:66:fa:cd:2f:22:d5:db:17:ef:6a:f6:40:
  • 3d:d7:be:8f:a8:59:27:59:47:36:0f:f6:67:33:c2:
  • 2a:7b:f3:be:43:62:9b:40:ac:17:b6:34:a0:dc:1e:
  • f5:8c:22:56:d3:ae:cf:7a:0e:b9:9d:07:26:c3:f7:
  • e8:b8:2f:e7:a0:b9:e8:48:68:f8:91:66:de:97:e0:
  • 18:8f
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl.godaddy.com/gdig2s1-3323.crl
  • X509v3 Certificate Policies:
  • Policy: 2.16.840.1.114413.1.7.23.1
  • CPS: http://certificates.godaddy.com/repository/
  • Policy: 2.23.140.1.2.1
  • Authority Information Access:
  • OCSP - URI:http://ocsp.godaddy.com/
  • CA Issuers - URI:http://certificates.godaddy.com/repository/gdig2.crt
  • X509v3 Authority Key Identifier:
  • keyid:40:C2:BD:27:8E:CC:34:83:30:A2:33:D7:FB:6C:B3:F0:B4:2C:80:CE
  • X509v3 Subject Alternative Name:
  • DNS:covidrm-hs.com, DNS:www.covidrm-hs.com
  • X509v3 Subject Key Identifier:
  • 07:44:38:F9:94:B5:A9:8C:8D:5F:70:83:C5:0C:50:14:95:72:9E:29
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
  • BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
  • Timestamp : Sep 25 12:14:24.127 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:99:80:E2:E0:75:DE:15:27:5E:68:4C:
  • 0B:8E:A2:E0:5C:0D:3D:78:4E:07:C7:B8:30:03:C8:32:
  • 83:11:1B:63:4F:02:20:6A:64:C2:EB:CB:6C:D0:23:73:
  • FE:5A:69:3B:C3:46:4D:C6:54:11:92:40:4B:76:3A:00:
  • B9:0B:F1:A2:55:EA:D8
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
  • 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
  • Timestamp : Sep 25 12:14:24.709 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:3D:7E:AA:F3:EC:DC:B2:7D:10:E3:84:21:
  • 0A:0A:8C:16:66:D7:57:22:B2:49:3D:A6:76:11:32:67:
  • EF:6A:67:94:02:20:70:46:2A:BE:60:DF:FB:23:D0:48:
  • EF:C2:78:BE:ED:19:6A:A1:56:66:E9:40:48:B7:93:BA:
  • AE:E9:D4:A5:34:B3
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
  • EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
  • Timestamp : Sep 25 12:14:24.815 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:96:F8:43:C2:27:6F:D9:10:56:B8:0D:
  • 25:42:59:55:69:13:2B:6A:85:81:C1:EC:3A:80:7C:5B:
  • 49:63:C9:0D:A7:02:20:42:F7:7B:D1:60:D4:5C:68:EE:
  • DC:D2:6B:99:67:C3:A4:EF:D4:AC:AF:39:AC:6F:03:26:
  • 51:62:C8:E0:4D:D4:CB
  • Signature Algorithm: sha256WithRSAEncryption
  • 0b:85:e3:b4:14:53:42:1e:97:59:42:ab:3e:4d:b2:ee:16:6f:
  • e2:39:7a:bf:bf:af:0b:52:94:1d:b5:0c:14:71:5a:57:93:68:
  • 11:c6:0c:27:11:f9:c2:cb:90:ff:65:79:1a:03:d2:e4:ae:79:
  • 6e:e6:4f:44:b1:51:92:af:13:6e:45:02:a6:39:0b:9d:94:79:
  • 07:d9:44:29:20:5e:4c:fd:20:fb:09:33:00:1a:52:c2:96:ea:
  • 2b:65:47:0a:59:49:74:97:8b:89:46:0f:c5:83:f6:d2:a5:f5:
  • 6e:0c:7c:0d:cb:6b:b4:8d:f1:ed:7e:3e:45:0d:87:88:b1:fb:
  • a2:e9:54:f1:4c:80:be:49:72:fd:1a:36:46:27:c3:1f:d6:9e:
  • 79:73:87:97:fa:83:fa:d3:dd:df:7f:1e:e2:3a:58:76:ad:35:
  • 33:93:e2:d2:77:69:c7:16:90:4e:6a:cb:5d:86:7d:a8:c7:2c:
  • 5d:ce:43:d7:c4:2e:6f:cd:60:81:40:0a:30:c9:a9:01:59:44:
  • 07:c8:e2:e6:76:11:2b:f1:ab:a4:bc:3c:42:f3:fe:a8:a5:8f:
  • 58:6c:9e:56:13:f2:6b:cc:0c:73:29:14:28:e2:0a:d2:2f:64:
  • 37:65:b4:cf:79:d2:1f:1a:4d:5b:8c:da:0a:76:dc:b7:e8:cb:
  • 49:e1:8e:98

Sitemap

Technologies

*** Virustotal ***

*** WayBackMachine ***

Share on: