thecovid19files.net Threat Intelligence and Information
Nov 17, 2022
domainpage
Host Location
Dig Results
- Got answer:
- -»HEADER«- opcode: QUERY, status: NOERROR, id: 46220
- flags: qr rd ra QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 1
- OPT PSEUDOSECTION:
- EDNS: version: 0, flags: udp: 1232
- QUESTION SECTION:
- thecovid19files.net. IN A
- ANSWER SECTION:
- thecovid19files.net. 3596 IN A 13.248.243.5
- thecovid19files.net. 3596 IN A 76.223.105.230
- Query time: 12 msec
- SERVER: 192.168.1.153(192.168.1.1) (UDP)
- WHEN: Fri Nov 18 18:10:08 UTC 2022
- MSG SIZE rcvd: 80
DNS Records
Whois Data
- Domain Name: THECOVID19FILES.NET
- Registry Domain ID: 2607961094_DOMAIN_NET-VRSN
- Registrar URL: http://www.godaddy.com
- Updated Date: 2022-10-16T14:16:39Z
- Creation Date: 2021-04-27T02:14:05Z
- Registry Expiry Date: 2024-04-27T02:14:05Z
- Registrar: GoDaddy.com, LLC
- Registrar IANA ID: 146
- Registrar Abuse Contact Email: abuse@godaddy.com
- Registrar Abuse Contact Phone: 480-624-2505
- Name Server: NS07.DOMAINCONTROL.COM
- Name Server: NS08.DOMAINCONTROL.COM
- DNSSEC: unsigned
- Domain Name: thecovid19files.net
- Registry Domain ID: 2607961094_DOMAIN_NET-VRSN
- Registrar URL: https://www.godaddy.com
- Updated Date: 2022-05-09T15:01:05Z
- Creation Date: 2021-04-26T21:14:05Z
- Registrar Registration Expiration Date: 2024-04-26T21:14:05Z
- Registrar: GoDaddy.com, LLC
- Registrar IANA ID: 146
- Registrar Abuse Contact Email: abuse@godaddy.com
- Registrar Abuse Contact Phone: +1.4806242505
- Registry Registrant ID: Not Available From Registry
- Registrant Name: Registration Private
- Registrant Organization: Domains By Proxy, LLC
- Registrant Street: DomainsByProxy.com
- Registrant Street: 2155 E Warner Rd
- Registrant City: Tempe
- Registrant State/Province: Arizona
- Registrant Postal Code: 85284
- Registrant Country: US
- Registrant Phone: +1.4806242599
- Registrant Phone Ext:
- Registrant Fax: +1.4806242598
- Registrant Fax Ext:
- Registry Admin ID: Not Available From Registry
- Admin Name: Registration Private
- Admin Organization: Domains By Proxy, LLC
- Admin Street: DomainsByProxy.com
- Admin Street: 2155 E Warner Rd
- Admin City: Tempe
- Admin State/Province: Arizona
- Admin Postal Code: 85284
- Admin Country: US
- Admin Phone: +1.4806242599
- Admin Phone Ext:
- Admin Fax: +1.4806242598
- Admin Fax Ext:
- Registry Tech ID: Not Available From Registry
- Tech Name: Registration Private
- Tech Organization: Domains By Proxy, LLC
- Tech Street: DomainsByProxy.com
- Tech Street: 2155 E Warner Rd
- Tech City: Tempe
- Tech State/Province: Arizona
- Tech Postal Code: 85284
- Tech Country: US
- Tech Phone: +1.4806242599
- Tech Phone Ext:
- Tech Fax: +1.4806242598
- Tech Fax Ext:
- Name Server: NS07.DOMAINCONTROL.COM
- Name Server: NS08.DOMAINCONTROL.COM
- DNSSEC: unsigned
SSL Certificate Information
- Certificate:
- Data:
- Version: 3 (0x2)
- Serial Number: 1017597082163217213 (0xe1f3b279ed0033d)
- Signature Algorithm: sha256WithRSAEncryption
- Issuer: C = US, ST = Arizona, L = Scottsdale, O = “GoDaddy.com, Inc.”, OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2
- Validity
- Not Before: May 7 02:12:48 2022 GMT
- Not After : May 7 02:12:48 2023 GMT
- Subject: CN = thecovid19files.net
- Subject Public Key Info:
- Public Key Algorithm: rsaEncryption
- Public-Key: (2048 bit)
- Modulus:
- 00:b0:5c:05:56:32:68:9d:e3:4c:bc:2a:09:36:41:
- f2:f0:1a:89:30:5f:1a:da:b7:9a:a8:f1:a9:d1:c8:
- e1:ea:9d:f0:89:eb:af:90:89:a4:1d:7a:55:17:29:
- b1:52:10:43:47:99:72:70:15:10:c1:c0:9d:97:29:
- b2:ea:ab:6d:03:d6:7a:e2:d2:58:35:90:71:38:0b:
- 56:c4:83:7c:c9:48:2e:a8:9d:20:82:1c:12:b3:bc:
- 00:1f:5d:e8:e6:07:1a:6b:b1:d1:4d:92:cb:6a:ac:
- 2e:af:ca:47:4d:e7:41:1d:24:c4:04:6a:02:cd:59:
- 44:08:2e:92:0a:af:bb:0f:a1:ff:b6:f5:13:b3:19:
- 47:c9:8f:9d:ae:0a:ce:da:1a:fd:65:c6:12:33:c9:
- 62:46:56:80:5d:05:fa:66:83:12:0e:a0:df:50:be:
- 31:c6:de:44:61:7f:d5:13:00:9e:9f:cd:b1:7f:fb:
- 4f:15:0a:55:98:8e:a8:ca:32:af:16:3a:6d:27:cc:
- ad:31:8e:e3:12:eb:09:91:5e:2a:a7:5e:34:60:de:
- 47:2e:9f:5e:8f:90:02:7c:bc:f9:69:1f:e8:14:d3:
- 3d:fb:3b:7e:88:12:6f:76:e7:6e:bb:b5:b1:cb:68:
- de:c1:fc:95:3d:e9:4f:bf:b5:61:d6:0c:1d:85:80:
- 65:4b
- Exponent: 65537 (0x10001)
- X509v3 extensions:
- X509v3 Basic Constraints: critical
- CA:FALSE
- X509v3 Extended Key Usage:
- TLS Web Server Authentication, TLS Web Client Authentication
- X509v3 Key Usage: critical
- Digital Signature, Key Encipherment
- X509v3 CRL Distribution Points:
- Full Name:
- URI:http://crl.godaddy.com/gdig2s1-4082.crl
- X509v3 Certificate Policies:
- Policy: 2.16.840.1.114413.1.7.23.1
- CPS: http://certificates.godaddy.com/repository/
- Policy: 2.23.140.1.2.1
- Authority Information Access:
- OCSP - URI:http://ocsp.godaddy.com/
- CA Issuers - URI:http://certificates.godaddy.com/repository/gdig2.crt
- X509v3 Authority Key Identifier:
- 40:C2:BD:27:8E:CC:34:83:30:A2:33:D7:FB:6C:B3:F0:B4:2C:80:CE
- X509v3 Subject Alternative Name:
- DNS:www.thecovid19files.net, DNS:thecovid19files.net
- X509v3 Subject Key Identifier:
- E4:E0:F6:62:58:DB:06:F9:F2:87:4E:6B:22:6B:57:CF:6B:60:DB:04
- CT Precertificate SCTs:
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
- 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
- Timestamp : May 7 02:12:53.189 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:46:02:21:00:AC:90:16:4D:8D:11:DA:EE:19:9B:D6:
- 5B:B7:77:EB:29:8D:65:23:23:83:A8:15:5E:41:15:73:
- A8:5B:E8:0A:DA:02:21:00:A3:69:A7:16:AA:EA:5F:96:
- 18:B9:6A:CE:24:D7:02:AD:A1:5B:06:CB:F2:11:A9:2B:
- F1:46:4B:6B:49:94:A6:54
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
- B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
- Timestamp : May 7 02:12:53.585 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:9C:62:96:AB:B4:2F:EB:60:35:0A:D7:
- 3E:A2:6B:05:9B:EA:F8:2E:73:E1:36:BA:DD:A0:9C:F4:
- AA:66:A9:6E:C3:02:20:1F:28:6C:A4:CF:C0:2B:1E:E6:
- 87:27:20:62:EF:C9:56:D5:AD:16:62:73:2A:13:85:D3:
- 4D:73:EA:2B:DD:C2:DF
- Signed Certificate Timestamp:
- Version : v1 (0x0)
- Log ID : 7A:32:8C:54:D8:B7:2D:B6:20:EA:38:E0:52:1E:E9:84:
- 16:70:32:13:85:4D:3B:D2:2B:C1:3A:57:A3:52:EB:52
- Timestamp : May 7 02:12:53.754 2022 GMT
- Extensions: none
- Signature : ecdsa-with-SHA256
- 30:45:02:21:00:F9:56:22:19:C3:68:3C:C9:C6:2F:EC:
- 81:CD:BF:67:D4:CC:36:FD:17:E0:C9:D9:A3:91:00:0C:
- 3A:17:3D:A5:00:02:20:12:B5:D7:7E:0F:AD:2C:FF:1A:
- B7:57:BE:F5:34:49:8D:8B:F1:A2:25:14:07:4A:59:4A:
- 20:69:4B:06:92:D5:BE
- Signature Algorithm: sha256WithRSAEncryption
- Signature Value:
- 81:57:b9:41:48:35:60:96:75:25:b2:9e:9f:79:62:ae:ef:42:
- 44:9a:cf:80:90:ac:57:3c:e9:bb:b3:af:c9:7d:74:e8:09:58:
- b5:01:02:dd:26:7e:82:98:d0:ef:71:5f:c6:b3:dd:c7:85:53:
- 2c:37:11:e8:ab:b5:20:8d:b2:dc:7a:b3:5e:77:00:eb:20:23:
- 68:5a:f9:f2:e8:8f:f7:32:2d:2a:f8:67:6e:0e:9d:60:a2:da:
- 06:c3:88:7e:68:0c:93:b4:81:01:8f:9a:2b:13:17:b4:1f:6b:
- 76:44:4e:f5:a5:cb:fb:2d:ef:81:0b:e5:fe:9b:01:b1:ad:61:
- 70:ed:4c:25:9a:94:70:f1:8d:77:32:49:d6:8b:57:51:e4:a0:
- 79:46:10:0e:19:f1:04:16:6b:9c:2f:00:28:bc:4a:84:70:dd:
- 92:49:dc:98:c1:e3:25:09:e6:89:42:21:d4:d1:09:aa:8a:bd:
- 7c:dd:57:9b:cc:63:81:34:39:ac:9a:e0:18:82:64:ae:7b:9d:
- ba:f2:f1:5e:fa:e7:4a:fa:76:e7:83:58:15:19:1f:e6:f0:19:
- ec:d1:e4:0e:3c:8c:82:a5:f9:e7:30:9b:ef:d3:fb:7d:07:ba:
- 2c:5f:6c:2b:0a:ec:7c:78:27:27:f8:05:96:9d:0b:7e:18:a9:
- c0:51:f5:27