Check-Host.cc

Domain

pub.dev

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of pub.dev

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
A/AAAA targets
Subdomains
CT + scan + body
Record Types
seen in DNS
Observed Certs
in our scans

DNS Records

A
34.36.0.14
AAAA
2600:1901:0:382a::
MX
0 smtp.google.com
NS
TXT
google-site-verification=C3k_OdhshSLlONW9s05koU4-y3iQcZLTETDw5KGf5m0, v=spf1 include:_spf.google.com ~all
CNAME
CAA
0 issue "pki.goog"

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: monitor-app-files.somepub.dev.gcp.liana.dev
Issuer: WR3
SANs: monitor-app-files.somepub.dev.gcp.liana.dev
Subject: xsp1-pub.devlab.xomst.net
Issuer: xsp1-pub.devlab.xomst.net
SANs: xsp1-pub.devlab.xomst.net
Subject: pub.dev-fpa-usersite.publis.onl
Issuer: YR2
SANs: pub.dev-fpa-usersite.publis.onl
Subject: novipub.dev.skarp.nl
Issuer: E7
SANs: novipub.dev.skarp.nl
Subject: pub.dev.k8s.ocp.ai
Issuer: Amazon RSA 2048 M03
SANs: pub.auth.dev.k8s.ocp.ai, pub.dev.k8s.ocp.ai
Subject: *.pub.dev.higala.ph
Issuer: Amazon RSA 2048 M01
SANs: *.pub.dev.higala.ph
Subject: *.development.hgm.pub.dev.homestagr.am
Issuer: WR3
SANs: *.development.hgm.pub.dev.homestagr.am
Subject: pub.dev.eureciclo.io
Issuer: Amazon RSA 2048 M01
SANs: *.pub.dev.eureciclo.io, pub.dev.eureciclo.io
Subject: pub.dev.k8s.ocp.ai
Issuer: Amazon RSA 2048 M03
SANs: pub.auth.dev.k8s.ocp.ai, pub.dev.k8s.ocp.ai
Subject: *.pub.dev.tekmetric.com
Issuer: Amazon RSA 2048 M04
SANs: *.pub.dev.tekmetric.com
Subject: xsp1-pub.devlab.xomst.net
Issuer: xsp1-pub.devlab.xomst.net
SANs: xsp1-pub.devlab.xomst.net
Subject: *.dev-v133-pub.dev.purpleray.com
Issuer: E8
SANs: *.dev-v133-pub.dev.purpleray.com
Subject: mcp-pub.dev.aiera.com
Issuer: Amazon RSA 2048 M01
SANs: *.mcp-pub.dev.aiera.com, mcp-pub.dev.aiera.com
Subject: *.pub.dev.tekmetric.com
Issuer: Amazon RSA 2048 M04
SANs: *.pub.dev.tekmetric.com
Subject: *.pub.dev.tekmetric.com
Issuer: Amazon RSA 2048 M04
SANs: *.pub.dev.tekmetric.com
Subject: *.dev-v133-pub.dev.purpleray.com
Issuer: E8
SANs: *.dev-v133-pub.dev.purpleray.com
Subject: *.pub.dev.higala.ph
Issuer: Amazon RSA 2048 M01
SANs: *.pub.dev.higala.ph
Subject: dev-backport-pub.dev.f10.cloud
Issuer: dev-backport-pub.dev.f10.cloud
SANs: dev-backport-pub.dev.f10.cloud

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

150.203.161.167:443 href · ×5
204.168.205.38:443 href · ×4
52.74.191.112:80 href · ×3
47.130.107.126:80 href · ×3
35.196.221.40:443 href · ×3
49.13.53.176:443 href · ×3
18.166.107.187:80 href · ×3
129.153.225.87:443 href · ×2
132.226.168.35:443 href · ×2
136.110.162.99:443 href · ×1
8.134.147.233:443 href · ×1
129.154.247.216:443 href · ×1
38.55.106.218:443 href · ×1
172.232.169.155:80 href · ×1
35.229.214.200:5000 href · ×1
74.220.28.27:80 href · ×1
172.234.31.10:443 href · ×1

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-IP leaks detected (yet)

Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
TXT v=spf1 include:_spf.google.com ~all 2026-05-26 00:24:59.887 2026-07-27 18:59:24.775
MX 0 smtp.google.com 2026-05-26 00:24:59.887 2026-07-27 18:59:24.775
AAAA 2600:1901:0:382a:: 2026-05-26 00:24:59.887 2026-07-27 18:59:24.775
CAA 0 issue "pki.goog" 2026-05-26 00:24:59.887 2026-07-27 18:59:24.775
A 34.36.0.14 2026-05-26 00:24:59.887 2026-07-27 18:59:24.775
TXT google-site-verification=C3k_OdhshSLlONW9s05koU4-y3iQcZLTETDw5KGf5m0 2026-05-26 00:24:59.887 2026-07-27 18:59:24.775