Check-Host.cc

Domain

app.com

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of app.com

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
50
A/AAAA targets
Subdomains
34
CT + scan + body
Record Types
4
seen in DNS
Observed Certs
7
in our scans

DNS Records

A
140.248.134.62, 140.248.138.62, 146.75.118.62, 146.75.122.62, 151.101.190.62, 151.101.38.62, 199.232.58.62
AAAA
MX
5 app-com.mail.protection.outlook.com
NS
dns1.p04.nsone.net, dns2.p04.nsone.net, dns3.p04.nsone.net, dns4.p04.nsone.net, ns01.gannett-dns.com, ns02.gannett-dns.com, ns03.gannett-dns.com, ns04.gannett-dns.com
TXT
60316afcac044e5986843154886fb73b, DZC=yYT8k0W, MS=ms99462853, ZOOM_verify_QGXvv8v5Q0yDMDiqBJBdPQ, brave-ledger-verification=7c71510d106696ffb499e3c725bce863e1eb9ba51f0241507c9fadf16295e030, facebook-domain-verification=8olkbkiwtjars3tqh3zcjp1acax59k, fastly-domain-delegation-GKbU0zOnQ-05_07_17, google-site-verification=Nz0Vf3ViLNG9vABdaiLCtXOKpc3v8RinmVNXR1S-Is0
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Every subdomain we know about — harvested from CT-log SANs, scan-observed certs and HTML body references — paired with its current A/AAAA target.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: *.app.lillyhealthapp.com
Issuer: Go Daddy Secure Certificate Authority - G2
SANs: *.app.lillyhealthapp.com, app.lillyhealthapp.com
Subject: uglhancock.drxapp.com
Issuer: YE2
SANs: uglhancock.drxapp.com
Subject: *.smartapp.com
Issuer: Go Daddy Secure Certificate Authority - G2
SANs: *.smartapp.com, smartapp.com
Subject: ncv.us-c2-vmdb.npd.gnf.netapp.com
Issuer: WR3
SANs: ncv.us-c2-vmdb.npd.gnf.netapp.com
Subject: api01.m.nv03.cmnhn.tlbsapp.com
Issuer: GlobalSign RSA OV SSL CA 2018
SANs: api01.m.nv03.cmnhn.tlbsapp.com
Subject: activity.michoapp.com
Issuer: YR1
SANs: activity.michoapp.com
Subject: www.accentureminiapp.com
Issuer: Encryption Everywhere DV TLS CA - G2
SANs: accentureminiapp.com, www.accentureminiapp.com
Subject: *.sinaapp.com
Issuer: GeoTrust RSA CA 2018
SANs: *.sinaapp.com, sinaapp.com
Subject: api01.m.nv01.ppnhn.tlbsapp.com
Issuer: GlobalSign RSA OV SSL CA 2018
SANs: api01.m.nv01.ppnhn.tlbsapp.com
Subject: protoapp-dev.b-dapp.com
Issuer: WR3
SANs: protoapp-dev.b-dapp.com
Subject: app.megalos-official-app.com
Issuer: WR3
SANs: app.megalos-official-app.com
Subject: *.ghbapp.com
Issuer: Thawte TLS RSA CA G1
SANs: *.ghbapp.com, ghbapp.com
Subject: api.jdplcapp.com
Issuer: DigiCert TLS RSA SHA256 2020 CA1
SANs: api.jdplcapp.com
Subject: discordapp.com
Issuer: WE1
SANs: *.discordapp.com, discordapp.com
Subject: admin-portal.crewdriverapp.com
Issuer: E8
SANs: admin-portal.crewdriverapp.com
Subject: *.sinaapp.com
Issuer: GeoTrust RSA CA 2018
SANs: *.sinaapp.com, sinaapp.com
Subject: coon.drxapp.com
Issuer: YE1
SANs: coon.drxapp.com
Subject: mail.trackworksapp.com
Issuer: YR2
SANs: autoconfig.trackworksapp.com, autodiscover.trackworksapp.com, mail.trackworksapp.com
Subject: www.xinxiangapp.com.cn
Issuer: LiteSSL RSA CA 2025
SANs: www.xinxiangapp.com.cn
Subject: *.dvipapp.com
Issuer: R13
SANs: *.dvipapp.com, dvipapp.com
Subject: acc.doorsapp.com.tr
Issuer: GoGetSSL RSA DV CA
SANs: acc.doorsapp.com.tr, www.acc.doorsapp.com.tr
Subject: amgnapp.com
Issuer: YR1
SANs: amgnapp.com, autodiscover.amgnapp.com, cpanel.amgnapp.com, cpcalendars.amgnapp.com, cpcontacts.amgnapp.com, mail.oxf.otw.mybluehost.me, oxf.otw.mybluehost.me, webdisk.amgnapp.com, webmail.amgnapp.com, www.amgnapp.com, www.oxf.otw.mybluehost.me
Subject: yasenapp.com
Issuer: YE2
SANs: www.yasenapp.com, yasenapp.com
Subject: api.jdplcapp.com
Issuer: DigiCert TLS RSA SHA256 2020 CA1
SANs: api.jdplcapp.com
Subject: backend.magnettapp.com
Issuer: YE2
SANs: backend.magnettapp.com
Subject: 17cao17-app.com
Issuer: YR1
SANs: 17cao17-app.com, m.17cao17-app.com, wap.17cao17-app.com, www.17cao17-app.com
Subject: hth-app-app.com
Issuer: YE1
SANs: hth-app-app.com, m.hth-app-app.com, www.hth-app-app.com
Subject: *.teamzeusapp.com
Issuer: RapidSSL RSA CA 2018
SANs: *.teamzeusapp.com, teamzeusapp.com
Subject: *.aprop-app.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.aprop-app.com, aprop-app.com
Subject: sportclicapp.com
Issuer: YR2
SANs: sportclicapp.com

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

144.31.198.15:443 href · ×4
178.128.214.132:443 href · ×2
178.128.214.132:443 og:url · ×1
66.253.112.165:443 href · ×1
66.253.112.165:443 og:url · ×1
72.244.130.120:443 og:url · ×1
72.244.130.120:443 href · ×1

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

Origin IP Origin ASN CDN ASN Confidence Reasoning
159.54.240.81 AS21735 AS54113 95% cert b80f6394… served by 159.54.240.81 (AS21735) carries SAN app.com which currently resolves through Fastly (AS54113) at 140.248.134.62

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
MX 5 app-com.mail.protection.outlook.com 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
A 140.248.134.62 2026-05-26 02:59:13.593 2026-07-27 23:53:37.809
TXT fastly-domain-delegation-GKbU0zOnQ-05_07_17 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
NS dns4.p04.nsone.net 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT v=spf1 include:spf.mandrillapp.com include:spf.gannett.com include:spf.extole.io -all 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT facebook-domain-verification=8olkbkiwtjars3tqh3zcjp1acax59k 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT ZOOM_verify_QGXvv8v5Q0yDMDiqBJBdPQ 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT DZC=yYT8k0W 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
NS dns3.p04.nsone.net 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT google-site-verification=Nz0Vf3ViLNG9vABdaiLCtXOKpc3v8RinmVNXR1S-Is0 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
NS ns04.gannett-dns.com 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT brave-ledger-verification=7c71510d106696ffb499e3c725bce863e1eb9ba51f0241507c9fadf16295e030 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
NS ns01.gannett-dns.com 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
NS ns02.gannett-dns.com 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
NS dns1.p04.nsone.net 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
NS ns03.gannett-dns.com 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT tollbit-domain-verification=b27fc86e60e6b6e031433bc313f69a02f6c96ca02f1423c1782e27db850d573a 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT 60316afcac044e5986843154886fb73b 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
TXT MS=ms99462853 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
NS dns2.p04.nsone.net 2026-05-26 02:59:13.593 2026-07-28 00:00:54.884
A 151.101.190.62 2026-05-26 23:09:50.095 2026-07-23 22:55:32.577
A 146.75.118.62 2026-06-01 19:43:46.544 2026-07-17 10:35:32.134
A 199.232.58.62 2026-06-02 01:29:39.943 2026-06-26 01:05:02.691
A 146.75.122.62 2026-06-04 21:20:25.386 2026-06-04 21:20:25.386
A 151.101.38.62 2026-06-16 17:46:02.833 2026-06-16 17:46:02.833
A 140.248.138.62 2026-06-20 23:18:35.329 2026-07-28 00:00:54.884