expresscovid.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 57310
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • expresscovid.com. IN A
  • ANSWER SECTION:
  • expresscovid.com. 598 IN A 13.248.213.45
  • expresscovid.com. 598 IN A 76.223.67.189
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Fri Jan 23 00:04:53 UTC 2026
  • MSG SIZE rcvd: 77

Whois Data

  • Domain Name: EXPRESSCOVID.COM
  • Registry Domain ID: 2576676115_DOMAIN_COM-VRSN
  • Registrar URL: http://www.wildwestdomains.com
  • Updated Date: 2024-12-06T18:02:30Z
  • Creation Date: 2020-12-05T15:36:25Z
  • Registry Expiry Date: 2026-12-05T15:36:25Z
  • Registrar: Wild West Domains, LLC
  • Registrar IANA ID: 440
  • Registrar Abuse Contact Email: abuse@wildwestdomains.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: NS09.DOMAINCONTROL.COM
  • Name Server: NS10.DOMAINCONTROL.COM
  • DNSSEC: unsigned
  • Domain Name: expresscovid.com
  • Registry Domain ID: 2576676115_DOMAIN_COM-VRSN
  • Registrar URL: https://www.wildwestdomains.com
  • Updated Date: 2024-12-06T13:02:28Z
  • Creation Date: 2020-12-05T10:36:25Z
  • Registrar Registration Expiration Date: 2026-12-05T10:36:25Z
  • Registrar: Wild West Domains, LLC
  • Registrar IANA ID: 440
  • Registrar Abuse Contact Email: abuse@wildwestdomains.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Reseller: Domains.com
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 100 S. Mill Ave, Suite 1600
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85281
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Registration Private
  • Tech Organization: Domains By Proxy, LLC
  • Tech Street: DomainsByProxy.com
  • Tech Street: 100 S. Mill Ave, Suite 1600
  • Tech City: Tempe
  • Tech State/Province: Arizona
  • Tech Postal Code: 85281
  • Tech Country: US
  • Tech Phone: +1.4806242599
  • Tech Phone Ext:
  • Tech Fax:
  • Tech Fax Ext:
  • Name Server: NS09.DOMAINCONTROL.COM
  • Name Server: NS10.DOMAINCONTROL.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 89:77:94:2b:0c:a1:47:09
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, ST = Arizona, L = Scottsdale, O = “GoDaddy.com, Inc.”, OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2
  • Validity
  • Not Before: Dec 21 17:45:04 2025 GMT
  • Not After : Jul 7 17:45:04 2026 GMT
  • Subject: CN = expresscovid.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (2048 bit)
  • Modulus:
  • 00:99:93:e0:64:bc:b3:4e:e2:f1:c2:ff:1a:a2:5e:
  • c1:66:6b:b0:ae:3d:88:b1:97:40:5a:c5:93:cf:a3:
  • 1e:d8:da:8e:23:33:c4:8d:6c:24:c6:6d:74:3b:2c:
  • c6:66:23:8f:c2:91:70:2d:34:22:c6:3a:1a:00:15:
  • 61:a2:e1:b5:cb:8a:f3:59:00:31:3b:69:46:6c:71:
  • 14:16:92:9e:dc:ca:7d:1f:71:d0:48:0f:e6:bd:8e:
  • 9e:30:b8:b0:10:7e:85:0f:52:96:a8:c2:02:8f:ba:
  • 27:e0:90:4e:ee:bd:63:2e:8a:20:ca:25:24:35:70:
  • f2:66:d8:45:81:9c:d9:5c:12:65:0b:20:98:16:21:
  • 2d:13:79:a1:4d:fe:c4:86:14:e8:d5:75:d0:06:3f:
  • fe:17:fb:13:66:e2:2e:db:b4:fc:58:b8:1b:e2:ce:
  • 96:6e:c0:43:1b:0b:43:b1:84:e3:40:2a:94:6a:86:
  • 2d:7f:22:53:50:8a:8c:ce:15:f0:d8:94:0e:a3:ac:
  • c8:a6:6c:2f:af:4d:b0:77:d5:6a:ed:91:db:6c:91:
  • 9a:c2:16:3c:24:1d:e7:f9:e0:b9:f5:2e:65:a2:4d:
  • ee:35:b5:e3:a2:02:1d:d3:81:0b:80:db:e2:58:fd:
  • 40:90:75:e7:71:c8:e3:83:37:75:44:da:76:d1:94:
  • ce:b3
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl.godaddy.com/gdig2s1-72075.crl
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 2.16.840.1.114413.1.7.23.1
  • CPS: http://certificates.godaddy.com/repository/
  • Authority Information Access:
  • OCSP - URI:http://ocsp.godaddy.com/
  • CA Issuers - URI:http://certificates.godaddy.com/repository/gdig2.crt
  • X509v3 Authority Key Identifier:
  • 40:C2:BD:27:8E:CC:34:83:30:A2:33:D7:FB:6C:B3:F0:B4:2C:80:CE
  • X509v3 Subject Alternative Name:
  • DNS:expresscovid.com
  • X509v3 Subject Key Identifier:
  • C5:41:4D:AF:0B:B5:BD:43:6E:FA:44:1B:D3:EC:39:60:93:80:4B:26
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CB:38:F7:15:89:7C:84:A1:44:5F:5B:C1:DD:FB:C9:6E:
  • F2:9A:59:CD:47:0A:69:05:85:B0:CB:14:C3:14:58:E7
  • Timestamp : Dec 21 17:45:04.719 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:E3:FF:9F:6A:B7:F7:57:C6:68:4E:DA:
  • 09:EA:FC:F5:CB:D0:76:15:0A:A6:2C:00:4C:2B:7A:98:
  • BD:AF:D5:A0:4E:02:21:00:91:35:70:97:F4:F6:7F:A9:
  • 5F:63:17:BF:8A:99:44:82:84:C0:84:C3:B8:33:40:D5:
  • 3A:AB:F6:E1:1B:6D:5E:3C
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 94:4E:43:87:FA:EC:C1:EF:81:F3:19:24:26:A8:18:65:
  • 01:C7:D3:5F:38:02:01:3F:72:67:7D:55:37:2E:19:D8
  • Timestamp : Dec 21 17:45:04.935 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:65:E6:84:D3:0A:DD:31:B4:73:17:B7:73:
  • F1:52:3E:19:E7:85:F3:A2:1D:56:8D:E8:92:28:0B:40:
  • E4:A4:05:3B:02:21:00:EC:CD:06:97:61:78:92:81:30:
  • C4:04:5D:3D:AE:68:40:2C:AF:FF:B5:04:19:87:06:AC:
  • DC:10:52:94:CA:7E:EA
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C2:31:7E:57:45:19:A3:45:EE:7F:38:DE:B2:90:41:EB:
  • C7:C2:21:5A:22:BF:7F:D5:B5:AD:76:9A:D9:0E:52:CD
  • Timestamp : Dec 21 17:45:05.092 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:39:9B:9C:63:7C:87:A5:0B:A7:93:C2:6D:
  • 2E:AE:D0:D7:37:73:91:3D:68:D7:43:61:8F:F4:8A:D1:
  • 61:3F:95:52:02:20:0B:3C:05:C6:C0:09:23:84:D2:67:
  • 41:CB:FB:90:24:E9:E4:FC:B8:8C:67:A1:E5:69:F1:DD:
  • EC:1D:6A:72:74:4B
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 72:d1:92:93:48:ff:05:43:d0:f2:19:ac:cf:b2:92:08:d2:1d:
  • 7e:59:0d:6e:e5:f1:2b:31:ff:e2:04:f4:cc:44:77:21:c9:a9:
  • dd:ce:33:3f:2c:a5:ba:96:7d:38:e8:93:dd:00:49:35:48:61:
  • 37:f8:70:1e:8e:a7:04:4c:22:6b:55:9c:89:bd:3a:c6:6b:97:
  • 19:ae:cb:31:47:0d:2d:f4:45:aa:95:55:b5:50:83:73:18:04:
  • b0:33:4d:25:61:b2:ab:c4:30:6e:56:1d:72:f0:38:2f:f6:c9:
  • 0b:d3:f1:d3:cb:21:69:4a:e1:2f:e3:f8:dc:31:ae:2e:61:90:
  • 9c:66:31:f6:a6:d7:ab:8a:6b:44:b7:4a:c6:ab:d2:7e:47:c6:
  • f6:4f:5c:d2:10:b9:e3:fb:53:40:4c:f8:08:20:1b:67:45:b5:
  • 4d:ff:d0:60:fe:a7:c1:fd:34:b8:ed:4f:76:36:f3:3c:51:f2:
  • ec:79:eb:2c:85:da:13:b1:ad:ea:f9:bf:87:c0:4c:03:79:06:
  • 18:c9:8f:5f:d0:fa:ab:de:71:fe:61:24:60:63:7f:a5:bf:0a:
  • 67:26:93:9f:dc:43:05:7a:65:1a:33:01:6a:b3:12:74:31:b4:
  • e1:e7:27:d5:ae:79:98:ea:08:da:0f:31:b7:02:b6:e5:82:7e:
  • e7:b1:7d:e8

*** Virustotal ***

*** WayBackMachine ***

Share on: