covidtrojanhorse.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 39099
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • covidtrojanhorse.com. IN A
  • ANSWER SECTION:
  • covidtrojanhorse.com. 14367 IN A 68.66.226.89
  • Query time: 32 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Thu Jan 20 12:36:10 UTC 2022
  • MSG SIZE rcvd: 65

DNS Records

  • SOA ns1.supercp.com 162.159.24.43
  • NS ns4.supercp.com 162.159.25.237

Whois Data

  • Domain Name: COVIDTROJANHORSE.COM
  • Registry Domain ID: 2620580412_DOMAIN_COM-VRSN
  • Registrar URL: http://www.ionos.com
  • Updated Date: 2021-06-18T17:54:19Z
  • Creation Date: 2021-06-18T17:48:20Z
  • Registry Expiry Date: 2022-06-18T17:48:20Z
  • Registrar: IONOS SE
  • Registrar IANA ID: 83
  • Registrar Abuse Contact Email: abuse@ionos.com
  • Registrar Abuse Contact Phone: +1.6105601459
  • Name Server: NS1.SUPERCP.COM
  • Name Server: NS2.SUPERCP.COM
  • Name Server: NS3.SUPERCP.COM
  • Name Server: NS4.SUPERCP.COM
  • DNSSEC: unsigned
  • Domain Name: covidtrojanhorse.com
  • Registry Domain ID: 2620580412_DOMAIN_COM-VRSN
  • Registrar URL: http://ionos.com
  • Updated Date: 2021-06-18T17:54:19.000Z
  • Creation Date: 2021-06-18T17:48:20.000Z
  • Registrar Registration Expiration Date: 2022-06-18T17:48:20.000Z
  • Registrar: IONOS SE
  • Registrar IANA ID: 83
  • Registrar Abuse Contact Email: abuse@ionos.com
  • Registrar Abuse Contact Phone: +1.8774612631
  • Reseller:
  • Registry Registrant ID: REDACTED FOR PRIVACY
  • Registrant Name: REDACTED FOR PRIVACY
  • Registrant Organization: 1&1 Internet Inc
  • Registrant Street: REDACTED FOR PRIVACY
  • Registrant City: REDACTED FOR PRIVACY
  • Registrant State/Province: PA
  • Registrant Postal Code: REDACTED FOR PRIVACY
  • Registrant Country: US
  • Registrant Phone: REDACTED FOR PRIVACY
  • Registrant Phone Ext:
  • Registrant Fax: REDACTED FOR PRIVACY
  • Registrant Fax Ext:
  • Registrant Email: dataprivacyprotected@ionos.de
  • Registry Admin ID: REDACTED FOR PRIVACY
  • Admin Name: REDACTED FOR PRIVACY
  • Admin Organization: REDACTED FOR PRIVACY
  • Admin Street: REDACTED FOR PRIVACY
  • Admin City: REDACTED FOR PRIVACY
  • Admin State/Province: REDACTED FOR PRIVACY
  • Admin Postal Code: REDACTED FOR PRIVACY
  • Admin Country: REDACTED FOR PRIVACY
  • Admin Phone: REDACTED FOR PRIVACY
  • Admin Phone Ext: REDACTED FOR PRIVACY
  • Admin Fax: REDACTED FOR PRIVACY
  • Admin Fax Ext: REDACTED FOR PRIVACY
  • Admin Email: dataprivacyprotected@ionos.de
  • Registry Tech ID: REDACTED FOR PRIVACY
  • Tech Name: REDACTED FOR PRIVACY
  • Tech Organization: REDACTED FOR PRIVACY
  • Tech Street: REDACTED FOR PRIVACY
  • Tech City: REDACTED FOR PRIVACY
  • Tech State/Province: REDACTED FOR PRIVACY
  • Tech Postal Code: REDACTED FOR PRIVACY
  • Tech Country: REDACTED FOR PRIVACY
  • Tech Phone: REDACTED FOR PRIVACY
  • Tech Phone Ext: REDACTED FOR PRIVACY
  • Tech Fax: REDACTED FOR PRIVACY
  • Tech Fax Ext: REDACTED FOR PRIVACY
  • Tech Email: dataprivacyprotected@ionos.de
  • Nameserver: ns1.supercp.com
  • Nameserver: ns2.supercp.com
  • Nameserver: ns3.supercp.com
  • Nameserver: ns4.supercp.com
  • DNSSEC: Unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • fd:49:ac:de:d5:54:3e:3a:19:dd:c0:b4:3d:31:2f:7c
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, ST = TX, L = Houston, O = “cPanel, Inc.”, CN = “cPanel, Inc. Certification Authority”
  • Validity
  • Not Before: Nov 17 00:00:00 2021 GMT
  • Not After : Feb 15 23:59:59 2022 GMT
  • Subject: CN = covidtrojanhorse.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • RSA Public-Key: (2048 bit)
  • Modulus:
  • 00:c0:61:53:54:db:ba:e6:6e:a1:f6:07:a8:62:90:
  • c4:ef:f4:7b:8f:10:94:85:44:9e:17:81:c7:76:e4:
  • 6e:86:3c:f5:c1:22:db:fe:9f:66:d6:3e:1b:12:9c:
  • f6:17:4b:a1:c4:63:a9:9f:2a:33:ef:78:bc:66:c8:
  • a3:56:53:1b:fa:1f:ac:44:51:09:05:4a:13:6a:d9:
  • 85:85:e0:fb:36:1e:b8:33:3f:1d:e9:7e:22:ba:6a:
  • e6:19:cc:da:4e:0f:50:ae:66:f3:5e:c4:15:fd:f5:
  • 14:ee:65:d8:c1:bd:76:9b:57:be:3f:b1:f1:52:9a:
  • da:94:16:72:26:20:84:03:63:dd:04:d8:89:51:82:
  • cb:6a:a1:6d:f0:43:9f:7f:75:34:d5:3d:9b:a6:16:
  • 9b:c9:92:46:86:67:5f:92:15:e0:fa:e3:36:91:cf:
  • 24:97:d4:3b:a7:cc:bb:90:28:44:a0:44:53:af:6c:
  • c3:ad:5b:fc:dd:73:3f:10:ea:b7:0e:dc:76:7a:7c:
  • 5c:6f:d5:1b:7d:12:0e:e7:4a:69:94:ef:5f:1c:c3:
  • 8a:77:3b:1d:0b:fe:2c:16:9f:f7:9b:b9:c3:b6:f2:
  • 27:a9:dd:b5:e9:50:95:01:7c:77:e8:27:2a:bf:17:
  • 7a:62:16:a1:8f:99:22:22:24:fd:b6:13:c8:f1:02:
  • 47:4d
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Authority Key Identifier:
  • keyid:7E:03:5A:65:41:6B:A7:7E:0A:E1:B8:9D:08:EA:1D:8E:1D:6A:C7:65
  • X509v3 Subject Key Identifier:
  • C7:1F:C2:E3:AF:2F:5E:C3:E0:46:99:FB:E7:B2:58:1F:BA:76:84:D7
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Certificate Policies:
  • Policy: 1.3.6.1.4.1.6449.1.2.2.52
  • CPS: https://sectigo.com/CPS
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl.comodoca.com/cPanelIncCertificationAuthority.crl
  • Authority Information Access:
  • CA Issuers - URI:http://crt.comodoca.com/cPanelIncCertificationAuthority.crt
  • OCSP - URI:http://ocsp.comodoca.com
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
  • 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
  • Timestamp : Nov 17 11:50:04.320 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:2F:DC:9B:84:3F:2B:F8:74:26:A5:D5:4B:
  • 03:D9:91:65:48:0C:98:07:DE:9E:63:56:D7:91:AA:84:
  • B6:57:F0:EE:02:20:03:90:D3:E0:C6:84:15:62:55:40:
  • F4:3A:B5:80:E6:BA:2E:CC:78:16:2E:F4:AC:F7:FF:3C:
  • 3D:5F:FE:DC:C5:39
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
  • 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
  • Timestamp : Nov 17 11:50:04.256 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:6D:DF:9D:55:E0:C8:8B:D5:C6:01:F6:68:
  • A7:AE:38:19:8A:3A:1C:3F:45:26:9B:A5:8C:6C:43:84:
  • 9D:B7:85:DC:02:20:64:E0:9B:00:2C:70:8A:F1:AA:77:
  • 7B:BA:33:30:41:66:82:52:DD:4C:37:12:DF:D2:E4:62:
  • 15:B9:2B:7E:14:98
  • X509v3 Subject Alternative Name:
  • DNS:covidtrojanhorse.com, DNS:autodiscover.covidtrojanhorse.com, DNS:cpanel.covidtrojanhorse.com, DNS:cpcalendars.covidtrojanhorse.com, DNS:cpcontacts.covidtrojanhorse.com, DNS:mail.covidtrojanhorse.com, DNS:webdisk.covidtrojanhorse.com, DNS:webmail.covidtrojanhorse.com, DNS:www.covidtrojanhorse.com
  • Signature Algorithm: sha256WithRSAEncryption
  • 50:55:f9:e1:44:77:d1:5d:3c:18:95:29:12:ac:c9:6f:7d:e6:
  • ec:0b:34:93:d0:35:fa:73:6f:57:92:c3:6c:a5:7b:db:d9:43:
  • ad:c7:5a:7f:e0:64:fd:15:2b:00:7a:b2:04:74:88:12:94:98:
  • dc:db:f7:8c:ab:2b:8c:05:71:83:3e:50:32:a1:ac:c1:f3:75:
  • 3a:83:ed:fc:ec:02:e7:6b:96:43:32:31:75:14:e8:94:c1:6c:
  • b5:7c:46:d6:85:e3:75:a8:31:22:01:35:99:a4:9d:54:d7:86:
  • 72:52:bb:12:e9:4d:ad:59:50:58:0f:d9:77:41:70:22:e9:d7:
  • ea:5d:e6:23:5d:9c:c4:b2:52:f3:0e:85:92:54:3e:43:93:dd:
  • 88:4b:1c:8b:4e:b4:65:d5:dd:4b:c1:b9:06:91:c5:df:c4:f6:
  • 42:2b:aa:f7:66:64:34:4b:73:36:5d:d1:cd:97:86:70:4f:46:
  • e8:a4:df:5c:a2:5e:e0:95:29:5d:6d:26:5c:a4:89:04:b8:6e:
  • 8f:28:ff:a0:e1:e3:66:42:02:a3:fe:c6:3d:d8:1f:0a:67:8e:
  • 81:52:4b:e0:1b:f4:fe:23:f9:ba:82:50:17:e7:50:4c:4d:e8:
  • d3:28:0a:10:89:93:4b:71:5b:09:e8:c0:77:7e:9a:56:64:76:
  • b6:da:8e:0f

Sitemap

Technologies

Imunify360 Webshield Exim smtpd MySQL PostgreSQL

*** Virustotal ***

*** WayBackMachine ***

Share on: