investingduringcovid.com Threat Intelligence and Information
Jun 22, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 46442
- flags: qr rd ra QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- investingduringcovid.com. IN A
- ANSWER SECTION:
- investingduringcovid.com. 3594 IN A 103.224.182.242
- Query time: 20 msec
- SERVER: 192.168.1.153(192.168.1.1)
- WHEN: Mon Jun 27 07:54:15 UTC 2022
- MSG SIZE rcvd: 69
DNS Records
- SOA ns1.above.com 103.224.182.5
- SOA ns1.above.com 103.224.212.5
- NS ns1.above.com 103.224.212.5
- NS ns1.above.com 103.224.182.5
- NS ns2.above.com 103.224.182.6
- NS ns2.above.com 103.224.212.6
- MX park-mx.above.com 103.224.212.34
- A investingduringcovid.com 103.224.182.242
Whois Data
- Domain Name: INVESTINGDURINGCOVID.COM
- Registry Domain ID: 2636481837_DOMAIN_COM-VRSN
- Registrar URL: http://www.godaddy.com
- Updated Date: 2021-08-25T19:43:27Z
- Creation Date: 2021-08-25T19:43:27Z
- Registry Expiry Date: 2022-08-25T19:43:27Z
- Registrar: GoDaddy.com, LLC
- Registrar IANA ID: 146
- Registrar Abuse Contact Email: abuse@godaddy.com
- Registrar Abuse Contact Phone: 480-624-2505
- Name Server: NS11.ABOVE.COM
- Name Server: NS12.ABOVE.COM
- DNSSEC: unsigned
- Domain Name: investingduringcovid.com
- Registry Domain ID: 2636481837_DOMAIN_COM-VRSN
- Registrar URL: https://www.godaddy.com
- Updated Date: 2021-08-25T14:43:27Z
- Creation Date: 2021-08-25T14:43:27Z
- Registrar Registration Expiration Date: 2022-08-25T14:43:27Z
- Registrar: GoDaddy.com, LLC
- Registrar IANA ID: 146
- Registrar Abuse Contact Email: abuse@godaddy.com
- Registrar Abuse Contact Phone: +1.4806242505
- Registry Registrant ID: Not Available From Registry
- Registrant Name: Registration Private
- Registrant Organization: Domains By Proxy, LLC
- Registrant Street: DomainsByProxy.com
- Registrant Street: 2155 E Warner Rd
- Registrant City: Tempe
- Registrant State/Province: Arizona
- Registrant Postal Code: 85284
- Registrant Country: US
- Registrant Phone: +1.4806242599
- Registrant Phone Ext:
- Registrant Fax: +1.4806242598
- Registrant Fax Ext:
- Registry Admin ID: Not Available From Registry
- Admin Name: Registration Private
- Admin Organization: Domains By Proxy, LLC
- Admin Street: DomainsByProxy.com
- Admin Street: 2155 E Warner Rd
- Admin City: Tempe
- Admin State/Province: Arizona
- Admin Postal Code: 85284
- Admin Country: US
- Admin Phone: +1.4806242599
- Admin Phone Ext:
- Admin Fax: +1.4806242598
- Admin Fax Ext:
- Registry Tech ID: Not Available From Registry
- Tech Name: Registration Private
- Tech Organization: Domains By Proxy, LLC
- Tech Street: DomainsByProxy.com
- Tech Street: 2155 E Warner Rd
- Tech City: Tempe
- Tech State/Province: Arizona
- Tech Postal Code: 85284
- Tech Country: US
- Tech Phone: +1.4806242599
- Tech Phone Ext:
- Tech Fax: +1.4806242598
- Tech Fax Ext:
- Name Server: NS11.ABOVE.COM
- Name Server: NS12.ABOVE.COM
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number:
- 03:07:e9:64:1f:49:48:24:85:32:1a:89:fa:b5:8b:ae:fb:3d
- Signature Algorithm: sha256WithRSAEncryption
- Issuer: C = US, O = Let’s Encrypt, CN = R3
- Validity
- Not Before: Jun 22 17:20:42 2022 GMT
- Not After : Sep 20 17:20:41 2022 GMT
- Subject: CN = earthlingsasha.com
- Subject Public Key Info:
- Public Key Algorithm: rsaEncryption
- RSA Public-Key: (4096 bit)
- Modulus:
- 00:dd:ec:2f:e7:10:32:54:0a:9d:2c:0e:b1:54:ca:
- 3b:a1:6f:e4:ad:7f:cf:1f:8a:55:80:4f:a3:db:0e:
- 7e:da:1d:25:ab:55:bd:df:d8:f0:98:69:d0:93:39:
- 6a:18:b0:8e:79:0b:d0:3f:e0:e8:20:53:26:fe:30:
- 9b:35:e5:f4:1b:2e:f0:79:db:5d:e4:8a:67:c8:82:
- d3:b1:b7:9a:fb:75:0a:9e:13:41:12:ef:53:df:40:
- 53:b3:8d:ee:45:0e:13:d4:a4:2d:27:92:c2:98:07:
- 52:db:43:8c:f8:f3:c5:42:2f:6c:45:a9:91:d5:5c:
- 9a:d0:db:12:f8:c6:f3:26:c7:10:4a:22:c3:0f:f8:
- d2:d5:ea:c6:96:01:9a:7d:da:14:e2:fc:30:11:d7:
- 20:6d:e0:e1:f0:f9:6d:75:d0:df:8e:80:2b:b9:56:
- 15:92:21:84:8a:b5:b6:08:67:74:a4:24:ff:4d:54:
- 5d:e4:23:4d:da:a7:89:bb:da:23:90:a0:b5:c3:cc:
- 9d:6e:3e:8e:57:fd:ee:0c:f5:29:fd:68:3b:0f:ac:
- b6:7f:9f:9c:19:c3:e3:64:0e:19:9e:3d:db:a9:48:
- b0:cf:9e:b3:1a:ef:53:e3:c2:70:9a:36:ec:8d:84:
- 3e:61:6a:07:39:a5:ff:0d:28:99:2a:b2:d8:45:7c:
- 05:32:1a:3b:a1:88:d4:93:ff:bb:29:cb:cd:09:55:
- 39:c8:45:11:af:f7:bf:88:c9:c9:86:0f:8f:8b:8a:
- 94:fa:d6:49:d6:70:ba:55:c6:ad:fa:e3:2a:99:09:
- c0:6f:55:a4:cf:11:a0:7f:7e:5c:13:8c:03:ae:ca:
- 11:c2:96:52:f5:64:6b:90:c9:b5:38:f8:9b:f3:69:
- 02:3a:5b:5c:b0:48:ec:88:12:26:25:79:6a:7f:56:
- 92:b1:74:60:85:aa:33:1d:4c:22:34:d3:2a:d8:1a:
- 2e:78:dd:43:99:03:ff:63:54:22:b7:4c:17:a0:08:
- 23:63:fa:b3:20:70:6b:f1:68:80:94:36:38:93:a2:
- 5c:d6:67:ed:df:90:a1:8c:ec:1e:3e:70:3b:7d:e3:
- 72:cf:e4:4d:e7:2f:c2:94:1b:fe:91:65:16:b2:40:
- e7:d8:27:86:9b:53:f2:71:02:e4:8a:fe:c7:fd:f7:
- 5c:35:f1:d2:a8:ae:69:bb:60:0e:e1:fb:c2:1e:da:
- fe:fa:5f:27:59:26:29:01:47:0c:55:9a:93:4e:cb:
- 17:01:83:f4:37:89:97:c2:14:71:a3:e7:66:d2:63:
- be:ac:71:b9:af:ca:b8:1c:b9:a1:a5:5a:08:01:7b:
- 64:27:4b:52:04:1f:42:0e:64:6a:66:ea:c9:39:84:
- 66:f8:9d
- Exponent: 65537 (0x10001)
- X509v3 extensions:
- X509v3 Key Usage: critical
- Digital Signature, Key Encipherment
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Subject Key Identifier:
- 77:9F:BB:69:75:19:41:D8:E0:91:DC:3E:E0:12:5F:DF:74:2F:AB:8B
- X509v3 Authority Key Identifier:
- keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
- Authority Information Access:
- OCSP - URI:http://r3.o.lencr.org
- CA Issuers - URI:http://r3.i.lencr.org/
- X509v3 Subject Alternative Name:
- DNS:.0578.in, DNS:.2009.net.au, DNS:.2010.net.au, DNS:.2012.net.au, DNS:.2021.net.au, DNS:.3271.com.au, DNS:.4470.com.au, DNS:.4742.com.au, DNS:.5085.com.au, DNS:.5632.com.au, DNS:.7112.com.au, DNS:.7923.com.au, DNS:.amazoz.de, DNS:.closedcircuittvs.com.au, DNS:.couchcover.com.au, DNS:.earthlingsasha.com, DNS:.gibraltar.com.au, DNS:.gjbz98.com, DNS:.gradeschools.us, DNS:.imbot.com, DNS:.interracialteen.co.uk, DNS:.investingduringcovid.com, DNS:.jeyz.com, DNS:.jmlinks.co, DNS:.kidsdesk.com.au, DNS:.landmarkcentre.com, DNS:.lasrosas.es, DNS:.lawclinic.info, DNS:.lilbank.com, DNS:.loiros.com, DNS:.lovely-house.net, DNS:.minnesotans.info, DNS:.oldanimations.net, DNS:.photonoisereducer.com, DNS:.r4gang.com, DNS:.rekryt.info, DNS:.sharebrokers.com.au, DNS:.sto-lot.website, DNS:.teen18.cam, DNS:.timberblind.com.au, DNS:.toothache.com.au, DNS:.topshelfclothing.com, DNS:.trinitybaptistangier.org, DNS:.usedcaravansforsale.com.au, DNS:.vende-ce.com, DNS:.vijftelefoon.fun, DNS:.wasserimmobilie.com, DNS:.windowsxlive.com, DNS:.wonderlaine.net, DNS:.xhyamster.com, DNS:0578.in, DNS:2009.net.au, DNS:2010.net.au, DNS:2012.net.au, DNS:2021.net.au, DNS:3271.com.au, DNS:4470.com.au, DNS:4742.com.au, DNS:5085.com.au, DNS:5632.com.au, DNS:7112.com.au, DNS:7923.com.au, DNS:amazoz.de, DNS:closedcircuittvs.com.au, DNS:couchcover.com.au, DNS:earthlingsasha.com, DNS:gibraltar.com.au, DNS:gjbz98.com, DNS:gradeschools.us, DNS:imbot.com, DNS:interracialteen.co.uk, DNS:investingduringcovid.com, DNS:jeyz.com, DNS:jmlinks.co, DNS:kidsdesk.com.au, DNS:landmarkcentre.com, DNS:lasrosas.es, DNS:lawclinic.info, DNS:lilbank.com, DNS:loiros.com, DNS:lovely-house.net, DNS:minnesotans.info, DNS:oldanimations.net, DNS:photonoisereducer.com, DNS:r4gang.com, DNS:rekryt.info, DNS:sharebrokers.com.au, DNS:sto-lot.website, DNS:teen18.cam, DNS:timberblind.com.au, DNS:toothache.com.au, DNS:topshelfclothing.com, DNS:trinitybaptistangier.org, DNS:usedcaravansforsale.com.au, DNS:vende-ce.com, DNS:vijftelefoon.fun, DNS:wasserimmobilie.com, DNS:windowsxlive.com, DNS:wonderlaine.net, DNS:xhyamster.com
- X509v3 Certificate Policies:
- Policy: 2.23.140.1.2.1
- Policy: 1.3.6.1.4.1.44947.1.1.1
- CPS: http://cps.letsencrypt.org
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
- EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
- Timestamp : Jun 22 18:20:42.564 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:83:63:FB:BD:B7:7F:2C:50:0C:DE:19:
- 3A:B5:D3:37:60:BF:79:A8:ED:8B:70:57:48:52:7B:06:
- 44:E6:92:CA:6E:02:20:30:C9:82:83:12:80:20:15:E4:
- D3:1F:74:79:04:86:5E:09:9E:BC:72:9F:48:02:B1:41:
- 46:7C:23:E7:FA:DF:5B
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
- 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
- Timestamp : Jun 22 18:20:42.608 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:20:69:84:D1:5B:7E:CC:57:A9:B6:3D:A9:55:
- 29:F3:14:BA:AC:37:A0:25:C3:28:F5:77:1B:EE:ED:E5:
- 17:F1:BF:51:02:21:00:E8:29:A6:8F:C9:9A:1A:BC:44:
- 67:98:B3:EE:C0:BC:CC:C5:BC:88:D2:EA:02:1A:92:C9:
- 17:61:ED:D3:32:1D:1D
- Signature Algorithm: sha256WithRSAEncryption
- 27:c5:a3:d7:45:36:69:1b:57:96:b9:5e:0d:95:1b:e7:de:c3:
- 5f:8d:f0:ca:89:8c:b8:60:97:84:6a:f6:58:0e:41:1d:6f:69:
- 0e:ee:d0:99:9b:65:c6:47:d1:8b:ed:59:bf:f7:ab:a1:fa:c9:
- 7e:ff:67:a2:af:7c:db:40:94:16:58:28:82:2b:47:a2:6b:5a:
- e2:b2:a7:41:f9:44:07:06:b1:8f:2e:52:bd:ec:33:a1:0c:5f:
- 83:e3:d0:df:d6:f5:b3:14:0c:d0:fc:ad:28:c8:05:b0:f1:b9:
- 86:f1:17:8e:23:11:6b:8c:07:6e:00:4e:dd:d7:16:e1:86:52:
- 3a:e5:0a:2d:25:27:e9:9f:62:b7:bb:b2:3a:fd:d0:f6:05:32:
- e2:04:90:ea:ed:29:9d:e9:b6:b0:d1:08:1e:6f:c5:b9:55:f1:
- 1e:ec:4b:72:e8:06:09:fd:af:49:f9:0b:6b:0a:c3:ed:e9:1e:
- 60:5d:16:3f:e9:3b:fd:f0:d7:e3:bc:cc:11:61:e3:5e:8a:d5:
- c8:ef:c9:99:c8:21:b9:7a:fe:bb:d1:fa:60:f3:51:90:5e:4a:
- 18:5c:1e:fa:d2:a1:59:47:e3:da:49:1f:2b:30:7d:71:4f:51:
- 5b:a5:a9:35:f0:ff:d3:1a:f0:73:b1:25:30:88:1b:37:ce:43:
- 23:f2:af:a3