googlework.xyz Threat Intelligence and Information

Host Location

Screenshot

alt-text

Dig Results

  • Got answer:
  • -»HEADER«- opcode: QUERY, status: NOERROR, id: 43750
  • flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
  • OPT PSEUDOSECTION:
  • EDNS: version: 0, flags: udp: 1432
  • QUESTION SECTION:
  • googlework.xyz. IN A
  • ANSWER SECTION:
  • googlework.xyz. 278 IN A 172.67.152.80
  • googlework.xyz. 278 IN A 104.21.1.172
  • Query time: 0 msec
  • SERVER: 192.168.1.153(192.168.1.1) (UDP)
  • WHEN: Wed Dec 03 00:05:58 UTC 2025
  • MSG SIZE rcvd: 75

Whois Data

SSL Certificate Information

  • Certificate:
  • Data:
  • Version: 3 (0x2)
  • Serial Number:
  • 82:2a:4e:60:b2:26:0e:5e:11:49:9f:18:7d:9b:3e:85
  • Signature Algorithm: ecdsa-with-SHA256
  • Issuer: C = US, O = Google Trust Services, CN = WE1
  • Validity
  • Not Before: Nov 9 14:06:04 2025 GMT
  • Not After : Feb 7 15:04:45 2026 GMT
  • Subject: CN = googlework.xyz
  • Subject Public Key Info:
  • Public Key Algorithm: id-ecPublicKey
  • Public-Key: (256 bit)
  • pub:
  • 04:9d:04:93:33:ef:4f:d7:18:1f:0f:b5:3b:46:d2:
  • ab:f1:dc:fa:bf:34:5e:5f:17:8b:0b:eb:3a:44:b6:
  • f0:bb:61:0b:bd:41:69:76:d5:85:60:50:0d:03:e9:
  • ce:68:96:52:4e:d2:9f:b3:f0:58:a1:4a:4c:4d:cc:
  • 34:2d:34:3e:40
  • ASN1 OID: prime256v1
  • NIST CURVE: P-256
  • X509v3 extensions:
  • X509v3 Key Usage: critical
  • Digital Signature
  • X509v3 Extended Key Usage:
  • TLS Web Server Authentication
  • X509v3 Basic Constraints: critical
  • CA:FALSE
  • X509v3 Subject Key Identifier:
  • 33:88:40:5F:86:3F:A8:36:04:B4:F2:F7:B9:18:1A:57:FE:AC:2D:76
  • X509v3 Authority Key Identifier:
  • 90:77:92:35:67:C4:FF:A8:CC:A9:E6:7B:D9:80:79:7B:CC:93:F9:38
  • Authority Information Access:
  • OCSP - URI:http://o.pki.goog/s/we1/gio
  • CA Issuers - URI:http://i.pki.goog/we1.crt
  • X509v3 Subject Alternative Name:
  • DNS:googlework.xyz, DNS:*.googlework.xyz
  • X509v3 Certificate Policies:
  • Policy: 2.23.140.1.2.1
  • X509v3 CRL Distribution Points:
  • Full Name:
  • URI:http://c.pki.goog/we1/0rbAgG3gMgU.crl
  • CT Precertificate SCTs:
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 96:97:64:BF:55:58:97:AD:F7:43:87:68:37:08:42:77:
  • E9:F0:3A:D5:F6:A4:F3:36:6E:46:A4:3F:0F:CA:A9:C6
  • Timestamp : Nov 9 15:06:04.958 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:ED:0A:45:6E:EB:75:F8:A9:15:86:F9:
  • F7:E1:53:7D:AA:BD:0F:0A:56:1F:30:E7:E4:17:14:CD:
  • 98:D0:DA:B6:31:02:20:50:CC:FE:33:04:74:EB:2F:4E:
  • 49:F2:DE:59:26:A3:39:DF:C0:A1:23:34:EC:E3:38:EF:
  • B5:C9:2C:64:EC:62:BE
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D1:6E:A9:A5:68:07:7E:66:35:A0:3F:37:A5:DD:BC:03:
  • A5:3C:41:12:14:D4:88:18:F5:E9:31:B3:23:CB:95:04
  • Timestamp : Nov 9 15:06:05.137 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:26:38:9C:8A:93:84:22:E9:64:E0:EA:64:
  • F2:53:3A:72:06:B1:45:16:CC:6B:FF:B6:63:AF:79:34:
  • 4C:4D:2B:74:02:21:00:A9:50:83:BD:94:CE:7C:1D:E7:
  • 6F:2C:59:19:06:1F:2E:42:49:5B:34:30:D4:FF:48:8F:
  • 91:68:74:1A:0C:AD:58
  • Signature Algorithm: ecdsa-with-SHA256
  • Signature Value:
  • 30:45:02:21:00:e2:4d:6c:c2:a7:09:15:45:c3:1b:46:16:fd:
  • f9:ce:4b:b4:2a:4f:bf:48:62:8e:4a:a7:55:ac:86:99:ae:e1:
  • 8b:02:20:08:0a:49:31:89:30:1a:ed:eb:e4:15:d6:fd:07:08:
  • a3:c4:59:be:b7:f1:7b:79:d1:f7:3e:3d:fc:25:5d:db:b6

Technologies

OpenSSH

*** Virustotal ***

*** WayBackMachine ***

Share on: