covidux.site Threat Intelligence and Information

Host Location

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 62385
  • flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1232
  • QUESTION SECTION:
  • covidux.site. IN A
  • ANSWER SECTION:
  • covidux.site. 14400 IN A 31.31.198.186
  • Query time: 672 msec
  • SERVER: 192.168.1.153(192.168.1.1)
  • WHEN: Thu Jan 20 13:00:19 UTC 2022
  • MSG SIZE rcvd: 57

DNS Records

  • SOA ns1.hosting.reg.ru 31.31.194.245
  • SOA ns1.hosting.reg.ru 31.31.194.251
  • SOA ns1.hosting.reg.ru 31.31.196.37
  • SOA ns1.hosting.reg.ru 31.31.196.52
  • SOA ns1.hosting.reg.ru 31.31.196.61
  • SOA ns1.hosting.reg.ru 31.31.196.180
  • SOA ns1.hosting.reg.ru 31.31.198.177
  • SOA ns1.hosting.reg.ru 37.140.192.20
  • SOA ns1.hosting.reg.ru 37.140.192.93
  • SOA ns1.hosting.reg.ru 37.140.193.121
  • SOA ns1.hosting.reg.ru 37.140.196.144
  • SOA ns1.hosting.reg.ru 194.58.91.38
  • SOA ns1.hosting.reg.ru 194.67.73.6
  • SOA ns1.hosting.reg.ru 194.67.73.9
  • NS ns2.hosting.reg.ru 31.31.194.244

Whois Data

  • Domain Name: COVIDUX.SITE
  • Registry Domain ID: D253336474-CNIC
  • Registrar URL: https://www.reg.ru/
  • Updated Date: 2021-10-11T06:41:53.0Z
  • Creation Date: 2021-10-06T06:36:19.0Z
  • Registry Expiry Date: 2022-10-06T23:59:59.0Z
  • Registrar: Registrar of Domain Names REG.RU, LLC
  • Registrar IANA ID: 1606
  • Registrant Organization:
  • Registrant State/Province: Yaroslavl
  • Registrant Country: UA
  • Registrant Phone: +380.994623903
  • Registrant Email: smixeev077@gmail.com
  • Admin Phone: +380.994623903
  • Admin Email: smixeev077@gmail.com
  • Tech Phone: +380.994623903
  • Tech Email: smixeev077@gmail.com
  • Name Server: NS1.HOSTING.REG.RU
  • Name Server: NS2.HOSTING.REG.RU
  • DNSSEC: unsigned
  • Billing Phone: +380.994623903
  • Billing Email: smixeev077@gmail.com
  • Registrar Abuse Contact Email: abuse@reg.ru
  • Registrar Abuse Contact Phone: +7.4955801111
  • https://www.centralnic.com/support/rdap «<
  • blacklisted. All data is (c) CentralNic Ltd (https://www.centralnic.com)

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 66:e3:f8:8b:14:2d:29:78:cb:a1:26:1e
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = BE, O = GlobalSign nv-sa, CN = GlobalSign GCC R3 DV TLS CA 2020
  • Validity
  • Not Before: Oct 6 11:34:02 2021 GMT
  • Not After : Nov 7 11:34:02 2022 GMT
  • Subject: CN = www.covidux.site
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • RSA Public-Key: (4096 bit)
  • Modulus:
  • 00:af:fb:ce:f5:27:35:d2:8b:6c:78:06:43:91:62:
  • 2e:a3:69:57:72:80:8e:d1:e1:76:50:08:d4:dc:3c:
  • 9b:6e:b2:25:a5:45:92:3c:02:eb:16:04:e7:68:b8:
  • 46:55:2c:1a:b1:71:2f:22:c3:dd:77:ed:47:2c:82:
  • 45:f7:c8:92:f4:92:99:a9:a0:ac:eb:b9:3d:bc:9c:
  • 88:d0:5b:d6:71:a2:67:a0:d1:5b:0b:c5:07:33:1e:
  • a5:47:7c:0f:51:28:c3:14:e0:c1:17:85:4f:8a:92:
  • b1:92:b5:e5:4b:82:c4:0e:bf:3b:ee:94:cc:87:19:
  • a9:12:34:91:86:b6:76:5c:96:dd:5b:70:e7:22:23:
  • 4f:6d:5a:c9:e6:40:f5:4f:5b:b1:8e:e2:0c:d1:d0:
  • 82:5a:6a:6c:3c:aa:8a:bd:35:de:7a:ae:9f:db:38:
  • 6c:44:35:da:53:88:d8:03:45:5b:e9:14:2a:85:4a:
  • 65:53:f5:94:55:fe:df:46:bc:4a:ab:98:7f:f6:ea:
  • 0d:fb:61:ab:b3:33:82:d6:7d:b5:4a:b0:1a:89:e9:
  • b1:7c:87:aa:2c:7c:89:5b:fe:9b:58:bf:70:f0:1f:
  • 7a:f6:77:cc:83:92:72:68:ce:26:ef:8c:14:13:4c:
  • af:40:ee:d9:70:b2:3b:7f:c7:0c:b6:75:e6:e9:bb:
  • 85:4d:37:9c:33:17:7c:c9:24:93:96:90:21:81:e7:
  • 3b:df:cb:23:89:02:2e:a0:a4:51:12:f6:62:a5:ef:
  • 2a:fa:3a:39:09:72:a5:84:d1:b8:86:7f:1f:25:2a:
  • 82:ba:d5:0e:59:f5:3f:24:b7:d6:31:2f:03:bd:ff:
  • 06:2e:f6:e4:ce:74:b9:c4:d3:bb:8b:74:e4:bc:14:
  • 50:8d:51:8f:71:8c:3f:f6:9b:7e:45:be:ac:99:eb:
  • 81:70:e5:6e:47:d7:49:59:e2:5b:58:0c:6d:a7:1d:
  • 95:5e:8c:61:fe:84:80:e7:92:b9:15:dd:ca:02:af:
  • 2c:79:1a:ef:f4:07:f6:79:0f:97:e1:8c:12:1c:78:
  • 22:ab:5f:7f:6d:51:2a:41:02:84:d9:42:a3:57:46:
  • a4:58:65:4a:58:53:37:ee:bb:a0:39:b1:9b:ba:00:
  • 1d:05:5f:25:a5:84:a5:57:38:ff:44:f6:e9:51:6c:
  • e1:68:46:2f:41:a9:ee:ae:ae:42:83:f5:d6:0a:7f:
  • 77:8e:d7:4b:11:db:0b:34:f8:9f:df:6a:bc:ec:43:
  • 1f:a7:7c:1d:2a:d1:21:80:41:e6:a8:3b:2b:1a:f3:
  • 67:06:91:84:fa:53:8e:22:a5:d9:7a:a8:16:af:f1:
  • 47:c0:09:5d:64:4e:90:e6:d8:f2:1e:a7:66:37:17:
  • 98:66:b7
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • Authority Information Access:
  • CA Issuers - URI:http://secure.globalsign.com/cacert/gsgccr3dvtlsca2020.crt
  • OCSP - URI:http://ocsp.globalsign.com/gsgccr3dvtlsca2020
  • X509v3 Certificate Policies:
  • Policy: 1.3.6.1.4.1.4146.1.10
  • CPS: https://www.globalsign.com/repository/
  • Policy: 2.23.140.1.2.1
  • X509v3 Basic Constraints:
  • CA:FALSE
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl.globalsign.com/gsgccr3dvtlsca2020.crl
  • X509v3 Subject Alternative Name:
  • DNS:www.covidux.site, DNS:autodiscover.covidux.site, DNS:mail.covidux.site, DNS:owa.covidux.site, DNS:covidux.site
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Authority Key Identifier:
  • keyid:0D:98:C0:73:7F:AB:BD:BD:D9:47:4B:49:AD:0A:4A:0C:AC:3E:C7:7C
  • X509v3 Subject Key Identifier:
  • E9:34:CC:04:2F:D3:79:E4:7B:9A:75:D2:BE:E1:7A:19:EF:29:64:17
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 6F:53:76:AC:31:F0:31:19:D8:99:00:A4:51:15:FF:77:
  • 15:1C:11:D9:02:C1:00:29:06:8D:B2:08:9A:37:D9:13
  • Timestamp : Oct 6 11:34:03.452 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:1F:87:4C:4D:C6:E5:E3:8F:49:70:65:03:
  • 31:A3:CD:02:19:11:4F:75:0F:4E:ED:57:9F:CF:DF:1F:
  • C5:1D:0F:F2:02:20:08:DF:E6:53:9F:12:AD:6D:AB:2C:
  • 81:BC:97:C9:DF:5C:70:5D:C7:04:7E:40:50:42:87:F6:
  • F9:F4:BA:8B:84:CA
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
  • BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
  • Timestamp : Oct 6 11:34:03.457 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:FA:B7:57:E5:A4:29:F5:83:BB:59:E6:
  • 95:70:A1:97:6D:4E:7B:BA:88:35:F5:98:4D:E7:C7:29:
  • 54:A1:9C:33:2D:02:20:0E:02:0C:0C:FA:C8:66:EF:A4:
  • C7:90:2A:29:09:BF:9D:07:79:ED:38:86:6E:BF:4C:D4:
  • 0F:0B:3F:CF:20:1C:86
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 51:A3:B0:F5:FD:01:79:9C:56:6D:B8:37:78:8F:0C:A4:
  • 7A:CC:1B:27:CB:F7:9E:88:42:9A:0D:FE:D4:8B:05:E5
  • Timestamp : Oct 6 11:34:03.488 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:CF:93:D4:ED:38:8D:41:1A:95:AA:05:
  • E9:AE:BD:BA:41:CC:4E:51:C4:6A:A1:48:45:1F:39:12:
  • B2:7C:68:7A:49:02:20:27:82:8A:39:66:87:B4:F2:FD:
  • 9D:CE:DF:5C:A3:83:49:C0:CE:5C:35:22:71:DD:BB:B3:
  • E7:FA:77:31:CC:DF:07
  • Signature Algorithm: sha256WithRSAEncryption
  • 89:f3:22:11:91:c5:8c:d7:68:66:f2:38:ef:f2:0e:05:63:41:
  • 46:fd:6e:ce:85:ea:41:be:c7:b7:db:e2:13:a2:32:89:4f:c1:
  • c5:90:4f:06:22:a0:f1:5d:9c:28:4c:a3:a6:1a:a4:3b:e8:1e:
  • c9:4c:7f:52:47:61:0b:bc:5b:b4:5d:90:44:f2:a8:e8:d4:a7:
  • 16:0a:a9:3e:5c:8e:a9:20:60:61:cf:c5:3b:36:40:e5:b2:2e:
  • 6f:e5:10:98:43:12:42:22:d9:49:df:3f:a8:0a:74:05:d4:93:
  • a6:e3:36:8d:2e:e7:33:8c:df:01:64:58:3b:79:2f:5c:09:3b:
  • 02:5d:74:0e:a2:7e:53:c1:91:ad:ab:18:6d:28:78:6b:3b:a5:
  • 45:a4:df:2c:5e:ec:01:2d:55:98:43:11:14:94:1b:03:93:78:
  • 36:ff:ee:54:3d:10:8b:a2:9d:e4:de:d8:5f:48:1b:aa:04:66:
  • da:d0:ee:e9:74:75:42:e1:31:3c:37:99:f9:8d:fb:78:4e:19:
  • 20:78:f7:51:79:ad:a7:fe:7a:55:a1:0e:69:7e:79:d7:9e:5c:
  • b2:a0:53:86:32:d3:0d:7f:e0:13:34:f9:22:48:2d:14:b4:74:
  • 7c:39:d9:24:67:34:18:4d:92:3c:a7:01:f6:94:b5:cd:76:dd:
  • fe:7f:1b:15

Sitemap

Technologies

nginx nginx

*** Virustotal ***

*** WayBackMachine ***

Share on: