covidvaccinationrecordcards.com Threat Intelligence and Information
Jan 17, 2022
domainpage
Host Location
Screenshot

Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 28907
- flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- covidvaccinationrecordcards.com. IN A
- ANSWER SECTION:
- covidvaccinationrecordcards.com. 1142 IN A 199.188.201.85
- Query time: 44 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Thu Jan 20 13:26:52 UTC 2022
- MSG SIZE rcvd: 76
DNS Records
- SOA dns1.namecheaphosting.com 156.154.132.200
- NS dns1.namecheaphosting.com 156.154.132.200
Whois Data
- Domain Name: COVIDVACCINATIONRECORDCARDS.COM
- Registry Domain ID: 2642465236_DOMAIN_COM-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 2021-12-21T04:29:52Z
- Creation Date: 2021-09-21T00:09:07Z
- Registry Expiry Date: 2023-09-21T00:09:07Z
- Registrar: NameCheap, Inc.
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.6613102107
- Name Server: DNS1.NAMECHEAPHOSTING.COM
- Name Server: DNS2.NAMECHEAPHOSTING.COM
- DNSSEC: unsigned
- Domain name: covidvaccinationrecordcards.com
- Registry Domain ID: 2642465236_DOMAIN_COM-VRSN
- Registrar URL: http://www.namecheap.com
- Updated Date: 0001-01-01T00:00:00.00Z
- Creation Date: 2021-09-21T00:09:07.00Z
- Registrar Registration Expiration Date: 2023-09-21T00:09:07.00Z
- Registrar: NAMECHEAP INC
- Registrar IANA ID: 1068
- Registrar Abuse Contact Email: abuse@namecheap.com
- Registrar Abuse Contact Phone: +1.9854014545
- Reseller: NAMECHEAP INC
- Registry Registrant ID:
- Registrant Name: Redacted for Privacy
- Registrant Organization: Privacy service provided by Withheld for Privacy ehf
- Registrant Street: Kalkofnsvegur 2
- Registrant City: Reykjavik
- Registrant State/Province: Capital Region
- Registrant Postal Code: 101
- Registrant Country: IS
- Registrant Phone: +354.4212434
- Registrant Phone Ext:
- Registrant Fax:
- Registrant Fax Ext:
- Registrant Email: f289534401104b16b118c6d823c48cd7.protect@withheldforprivacy.com
- Registry Admin ID:
- Admin Name: Redacted for Privacy
- Admin Organization: Privacy service provided by Withheld for Privacy ehf
- Admin Street: Kalkofnsvegur 2
- Admin City: Reykjavik
- Admin State/Province: Capital Region
- Admin Postal Code: 101
- Admin Country: IS
- Admin Phone: +354.4212434
- Admin Phone Ext:
- Admin Fax:
- Admin Fax Ext:
- Admin Email: f289534401104b16b118c6d823c48cd7.protect@withheldforprivacy.com
- Registry Tech ID:
- Tech Name: Redacted for Privacy
- Tech Organization: Privacy service provided by Withheld for Privacy ehf
- Tech Street: Kalkofnsvegur 2
- Tech City: Reykjavik
- Tech State/Province: Capital Region
- Tech Postal Code: 101
- Tech Country: IS
- Tech Phone: +354.4212434
- Tech Phone Ext:
- Tech Fax:
- Tech Fax Ext:
- Tech Email: f289534401104b16b118c6d823c48cd7.protect@withheldforprivacy.com
- Name Server: dns1.namecheaphosting.com
- Name Server: dns2.namecheaphosting.com
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 37:b3:24:9f:77:1b:eb:13:6e:62:de:2d:20:d0:2d:73
- Signature Algorithm: sha256WithRSAEncryption
- Issuer: C = GB, ST = Greater Manchester, L = Salford, O = Sectigo Limited, CN = Sectigo RSA Domain Validation Secure Server CA
- Validity
- Not Before: Dec 21 00:00:00 2021 GMT
- Not After : Dec 21 23:59:59 2022 GMT
- Subject: CN = covidvaccinationrecordcards.com
- Subject Public Key Info:
- Public Key Algorithm: rsaEncryption
- RSA Public-Key: (2048 bit)
- Modulus:
- 00:e5:00:64:42:16:19:22:75:84:08:ae:e7:d5:7a:
- 70:51:80:ca:44:e6:81:d5:10:40:e5:8b:7d:01:c1:
- 8b:23:94:86:a0:fa:15:03:91:dc:20:fe:4c:c2:db:
- ab:c7:0e:a1:3c:99:a8:1a:8b:12:eb:ef:fb:1a:a3:
- 9d:f2:46:8c:9b:51:be:ca:22:ce:67:35:f1:9d:0c:
- 72:25:00:70:8c:c9:b7:67:1e:f7:01:1a:a1:44:76:
- 43:29:94:25:a4:e6:e0:28:1f:d8:8d:bc:71:55:bd:
- 02:a8:60:4b:19:fd:36:70:91:41:76:ef:24:a3:49:
- 1a:41:9c:7d:b4:08:a4:7e:86:d4:30:0f:eb:a6:35:
- fa:e4:1e:dc:20:2b:b5:7b:bd:10:c9:cf:c3:57:04:
- a9:00:18:23:ed:b9:fb:7a:75:18:78:0e:99:7e:df:
- 53:09:8b:92:8b:1a:8e:cb:87:5b:6b:d5:64:a0:5d:
- 30:74:6a:79:52:25:37:ca:e0:54:91:1e:86:70:31:
- 7a:8e:45:61:e0:b7:7b:65:74:7a:9c:f6:06:8b:1f:
- 2e:38:00:ec:f3:c7:f8:07:b7:53:82:c5:43:f7:03:
- de:92:b5:4c:84:db:f4:24:f5:c1:f4:2a:dd:d7:27:
- 59:88:07:2c:7c:eb:2c:69:f8:ab:90:26:86:67:1d:
- e6:cb
- Exponent: 65537 (0x10001)
- X509v3 extensions:
- X509v3 Authority Key Identifier:
- keyid:8D:8C:5E:C4:54:AD:8A:E1:77:E9:9B:F9:9B:05:E1:B8:01:8D:61:E1
- X509v3 Subject Key Identifier:
- 67:AB:60:E7:6C:8E:79:39:42:BA:D7:A4:FC:19:28:06:B4:F3:B8:29
- X509v3 Key Usage: critical
- Digital Signature, Key Encipherment
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Certificate Policies:
- Policy: 1.3.6.1.4.1.6449.1.2.2.7
- CPS: https://sectigo.com/CPS
- Policy: 2.23.140.1.2.1
- Authority Information Access:
- CA Issuers - URI:http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt
- OCSP - URI:http://ocsp.sectigo.com
- X509v3 Subject Alternative Name:
- DNS:covidvaccinationrecordcards.com, DNS:www.covidvaccinationrecordcards.com
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
- 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
- Timestamp : Dec 21 19:08:46.267 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:43:02:20:78:48:DB:76:44:65:EA:40:EE:12:D1:99:
- 3B:8E:32:C2:CA:BE:B0:9C:3E:BC:AC:F1:64:91:13:43:
- 92:63:35:E4:02:1F:42:CA:EB:47:2C:D9:D4:4E:F5:FB:
- 20:DE:4F:16:92:66:A2:68:67:34:00:86:F7:19:A2:8C:
- 13:53:B1:67:A6
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 41:C8:CA:B1:DF:22:46:4A:10:C6:A1:3A:09:42:87:5E:
- 4E:31:8B:1B:03:EB:EB:4B:C7:68:F0:90:62:96:06:F6
- Timestamp : Dec 21 19:08:46.276 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:7C:41:29:FB:5F:D3:F0:47:42:A5:DD:A6:
- A8:AB:BD:88:A1:8A:7B:E6:45:E8:E0:5E:D4:97:7C:FF:
- F6:6E:AB:78:02:21:00:B8:3D:B3:95:B7:60:6E:5B:42:
- B7:AD:7A:62:24:C9:2A:A2:D6:21:BB:6A:7A:68:20:CF:
- 2D:9F:A3:8C:50:4A:ED
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
- BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
- Timestamp : Dec 21 19:08:46.235 2021 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:44:02:20:32:D0:E7:E1:9E:A1:4B:73:17:04:AD:AC:
- 31:90:59:3A:31:1C:F1:BA:25:70:73:90:41:49:92:6D:
- 2B:C8:13:BF:02:20:10:68:CB:A6:42:C5:14:95:76:E9:
- A2:47:F3:F5:1B:64:1B:51:F0:1E:FD:E0:C5:BA:FF:61:
- 28:57:FF:5E:0A:12
- Signature Algorithm: sha256WithRSAEncryption
- 42:d3:4d:54:28:bd:9a:7d:3c:5e:b9:25:78:82:35:25:ee:61:
- dd:af:49:03:f0:cc:42:c8:90:fd:9f:89:e8:6e:e8:87:77:e8:
- 4b:21:fc:1e:2e:00:14:8f:4c:cb:b9:61:ba:7c:2c:45:cb:dc:
- 13:df:44:8d:1a:d5:c4:a8:13:8e:76:53:11:dd:ea:37:b0:65:
- 8c:34:9c:f6:55:8f:f3:35:57:74:7b:56:ea:7b:19:f4:ff:2e:
- ae:12:1f:5d:a8:73:7d:a3:b2:0b:06:47:85:fc:d3:a8:fe:a2:
- 78:45:57:f2:4b:d0:0a:c6:f7:2a:0a:4a:9c:16:0f:70:04:81:
- 4f:3f:be:9e:92:9d:17:ad:15:ba:4f:6e:7e:c3:bb:d4:e0:93:
- f7:f7:93:bb:85:2f:47:99:41:d9:48:92:b0:c3:9b:e0:a1:e2:
- a6:3f:98:ee:3a:99:d6:20:03:f2:be:67:ce:a8:a3:8a:d7:c1:
- a2:02:87:cb:6f:86:e2:4d:ec:f4:4b:66:c8:03:23:2e:10:8a:
- 1a:cc:37:9d:bd:96:e1:16:25:7d:ee:e4:29:31:98:8e:dd:6b:
- 96:61:3a:b8:90:3d:74:9f:46:63:45:72:e0:ca:af:1d:28:bd:
- d4:4e:2f:e1:f0:ff:45:22:0c:75:a1:f3:bc:5e:89:35:75:2f:
- 13:ea:af:29