fakecovidcard.com Threat Intelligence and Information

Host Location

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 5039
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • fakecovidcard.com. IN A
  • ANSWER SECTION:
  • fakecovidcard.com. 599 IN A 3.33.130.190
  • fakecovidcard.com. 599 IN A 15.197.148.33
  • Query time: 4 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Wed Jan 21 00:08:33 UTC 2026
  • MSG SIZE rcvd: 78

Whois Data

  • Domain Name: FAKECOVIDCARD.COM
  • Registry Domain ID: 2576444137_DOMAIN_COM-VRSN
  • Registrar URL: http://www.godaddy.com
  • Updated Date: 2025-12-09T16:18:51Z
  • Creation Date: 2020-12-04T09:31:44Z
  • Registry Expiry Date: 2026-12-04T09:31:44Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: 480-624-2505
  • Name Server: NS47.DOMAINCONTROL.COM
  • Name Server: NS48.DOMAINCONTROL.COM
  • DNSSEC: unsigned
  • Domain Name: fakecovidcard.com
  • Registry Domain ID: 2576444137_DOMAIN_COM-VRSN
  • Registrar URL: https://www.godaddy.com
  • Updated Date: 2025-12-09T11:18:49Z
  • Creation Date: 2020-12-04T04:31:44Z
  • Registrar Registration Expiration Date: 2026-12-04T04:31:44Z
  • Registrar: GoDaddy.com, LLC
  • Registrar IANA ID: 146
  • Registrar Abuse Contact Email: abuse@godaddy.com
  • Registrar Abuse Contact Phone: +1.4806242505
  • Registry Registrant ID: Not Available From Registry
  • Registrant Name: Registration Private
  • Registrant Organization: Domains By Proxy, LLC
  • Registrant Street: DomainsByProxy.com
  • Registrant Street: 100 S. Mill Ave, Suite 1600
  • Registrant City: Tempe
  • Registrant State/Province: Arizona
  • Registrant Postal Code: 85281
  • Registrant Country: US
  • Registrant Phone: +1.4806242599
  • Registrant Phone Ext:
  • Registrant Fax:
  • Registrant Fax Ext:
  • Registry Tech ID: Not Available From Registry
  • Tech Name: Registration Private
  • Tech Organization: Domains By Proxy, LLC
  • Tech Street: DomainsByProxy.com
  • Tech Street: 100 S. Mill Ave, Suite 1600
  • Tech City: Tempe
  • Tech State/Province: Arizona
  • Tech Postal Code: 85281
  • Tech Country: US
  • Tech Phone: +1.4806242599
  • Tech Phone Ext:
  • Tech Fax:
  • Tech Fax Ext:
  • Name Server: NS47.DOMAINCONTROL.COM
  • Name Server: NS48.DOMAINCONTROL.COM
  • DNSSEC: unsigned

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number: 2057222032733863640 (0x1c8cb88a05357ed8)
  • Signature Algorithm: sha256WithRSAEncryption
  • Issuer: C = US, ST = Arizona, L = Scottsdale, O = “GoDaddy.com, Inc.”, OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2
  • Validity
  • Not Before: Sep 23 21:13:37 2025 GMT
  • Not After : Sep 23 21:13:37 2026 GMT
  • Subject: CN = fakecovidcard.com
  • Subject Public Key Info:
  • Public Key Algorithm: rsaEncryption
  • Public-Key: (2048 bit)
  • Modulus:
  • 00:b1:4a:b3:31:ed:04:9d:6f:ff:23:0b:18:a4:c6:
  • 80:70:07:f8:5a:92:7e:fa:91:20:50:51:a3:88:c8:
  • c0:aa:ef:53:6a:9f:f9:ab:4d:05:b9:d8:3e:4a:97:
  • e9:ac:47:9a:40:09:82:6c:03:62:9d:aa:f7:ae:bc:
  • b0:e5:02:d6:7c:41:92:59:d2:ff:da:b7:33:bb:8b:
  • ad:9c:fb:36:9a:7c:ae:c7:74:a6:f0:7a:cf:a6:93:
  • 1a:43:ef:42:32:85:89:95:af:cd:44:3f:fc:89:ad:
  • f8:84:d6:3a:08:01:9d:91:59:4e:f1:20:a2:13:b4:
  • 31:f3:e8:dc:70:2b:73:b8:b7:4f:0a:3b:22:27:cd:
  • fe:36:86:6f:b3:f5:3e:a9:ee:21:a2:ed:35:08:7f:
  • 54:f4:ae:a4:8b:8e:8a:4b:48:f3:16:bc:23:e7:58:
  • 57:6f:4c:16:e6:ca:3e:08:44:2b:c2:6a:ec:ea:e5:
  • 1e:e0:4c:1b:a6:ed:22:08:f6:d8:da:7a:d2:17:4e:
  • 46:fb:52:fc:ea:70:c5:54:b1:73:dc:ee:16:57:c9:
  • 53:7d:2c:b3:40:78:b0:02:22:bf:d3:7b:bf:1d:d1:
  • c7:2f:2e:72:78:3b:1c:64:ac:4b:af:28:fd:8a:1b:
  • 61:75:99:74:4f:89:bf:c4:53:68:ed:b9:54:9c:89:
  • 69:81
  • Exponent: 65537 (0x10001)
  • X509v3 extensions:
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication, TLS Web Client Authentication
  • X509v3 Key Usage: critical
  • Digital Signature, Key Encipherment
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://crl.godaddy.com/gdig2s1-63300.crl
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • Policy: 2.16.840.1.114413.1.7.23.1
  • CPS: http://certificates.godaddy.com/repository/
  • Authority Information Access:
  • OCSP - URI:http://ocsp.godaddy.com/
  • CA Issuers - URI:http://certificates.godaddy.com/repository/gdig2.crt
  • X509v3 Authority Key Identifier:
  • 40:C2:BD:27:8E:CC:34:83:30:A2:33:D7:FB:6C:B3:F0:B4:2C:80:CE
  • X509v3 Subject Alternative Name:
  • DNS:fakecovidcard.com
  • X509v3 Subject Key Identifier:
  • 2C:B8:8F:BA:F6:77:B0:2B:CE:82:16:5B:4F:DD:1D:C6:E0:D5:64:6F
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D7:6D:7D:10:D1:A7:F5:77:C2:C7:E9:5F:D7:00:BF:F9:
  • 82:C9:33:5A:65:E1:D0:B3:01:73:17:C0:C8:C5:69:77
  • Timestamp : Sep 23 21:13:38.361 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C7:63:30:25:1A:39:AC:17:2D:66:BB:
  • DE:FB:10:5E:C5:B9:E9:57:E2:FF:69:08:BD:88:39:B0:
  • D6:C6:E5:EC:A9:02:21:00:CC:76:1C:2B:40:02:EC:FB:
  • 8C:30:EF:96:8C:83:CE:AA:3C:A7:1F:BC:27:52:34:3B:
  • 81:4D:4D:04:63:7F:99:E1
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C2:31:7E:57:45:19:A3:45:EE:7F:38:DE:B2:90:41:EB:
  • C7:C2:21:5A:22:BF:7F:D5:B5:AD:76:9A:D9:0E:52:CD
  • Timestamp : Sep 23 21:13:38.648 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:B1:3C:BB:88:F5:89:88:D8:65:4E:7B:
  • 99:10:A4:89:8C:40:D2:81:D1:5B:A2:68:62:0A:8B:B8:
  • 80:69:32:3E:D5:02:21:00:FC:08:2C:A8:29:68:80:75:
  • 4A:9F:98:0D:D7:DB:F6:4D:EC:7C:72:07:6C:8B:B6:AE:
  • 9B:B6:93:B6:06:DC:EB:16
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CB:38:F7:15:89:7C:84:A1:44:5F:5B:C1:DD:FB:C9:6E:
  • F2:9A:59:CD:47:0A:69:05:85:B0:CB:14:C3:14:58:E7
  • Timestamp : Sep 23 21:13:38.849 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:94:B0:B7:C7:4B:34:50:B2:9F:1F:90:
  • 5D:E1:0D:83:3E:FD:71:F4:82:C3:F1:1E:D4:DB:9A:44:
  • 38:1B:27:1F:7E:02:20:05:11:9D:0A:A5:02:B1:A3:BE:
  • 5D:2E:7F:4A:87:02:D2:B1:53:73:89:AC:E8:A1:1B:DD:
  • CA:9F:8A:7D:E9:B3:AC
  • Signature Algorithm: sha256WithRSAEncryption
  • Signature Value:
  • 59:58:f0:cb:20:a9:d4:94:75:d4:50:0c:89:6a:71:9e:25:14:
  • d4:91:a5:8e:08:8d:b8:75:88:79:14:2b:3a:4b:ce:a6:ce:09:
  • f6:97:05:78:42:89:20:ae:c2:28:fc:8e:5c:10:ea:db:2c:23:
  • 06:2d:f7:60:2e:3c:92:e8:83:c5:80:58:68:19:a7:62:7c:c8:
  • 0c:28:82:b9:e5:d2:f3:68:46:ad:49:ac:98:da:d3:93:23:7d:
  • 3f:f2:9d:14:dc:1d:54:58:47:58:05:e6:92:7a:e1:d6:04:cc:
  • ef:b9:72:47:55:a1:a0:ab:15:13:c7:9b:44:42:a2:e3:75:2d:
  • 9d:96:ef:53:db:d3:3e:a1:fa:ba:72:f2:c8:6f:a2:1d:94:d6:
  • 58:25:73:cf:2e:32:a6:25:09:5c:72:9f:03:06:b9:65:d9:9a:
  • eb:65:9e:db:95:01:2a:19:d9:4b:08:4f:db:02:10:c9:47:86:
  • c7:3a:e5:33:55:4e:50:85:d1:0d:b3:b1:1d:42:69:d2:d5:8b:
  • 96:0b:6f:28:8b:a4:c9:a2:78:78:c1:8f:c2:eb:3e:74:09:c7:
  • 41:85:3d:da:29:5a:4b:6a:b5:52:11:15:9a:98:20:c6:9b:3b:
  • f5:56:eb:4b:09:71:0e:bb:9c:ee:51:37:99:78:56:5b:5a:3d:
  • aa:6e:77:70

*** Virustotal ***

*** WayBackMachine ***

Share on: