Check-Host.cc

Domain

com.de

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of com.de

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
A/AAAA targets
Subdomains
CT + scan + body
Record Types
seen in DNS
Observed Certs
in our scans

DNS Records

A
54.153.56.183
AAAA
MX
10 mail.cash9.com
NS
ns1.centralnic.net, ns2.centralnic.net, ns3.centralnic.net, ns4.centralnic.net
TXT
v=spf1 include:googlemail.com ~all
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Every subdomain we know about — harvested from CT-log SANs, scan-observed certs and HTML body references — paired with its current A/AAAA target.

Subdomain Resolves to Last seen
com.de 2026-07-15 20:04:13.980

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: mailbackup.sta.com.de
Issuer: YR1
SANs: mailbackup.sta.com.de
Subject: *.adi.com.de
Issuer: RapidSSL TLS RSA CA G1
SANs: *.adi.com.de, adi.com.de
Subject: web2.restorfx.com.dev6.restorfx.com
Issuer: web2.restorfx.com.dev6.restorfx.com
SANs: cpanel.web2.restorfx.com, cpcalendars.web2.restorfx.com, cpcontacts.web2.restorfx.com, mail.web2.restorfx.com, web2.restorfx.com, web2.restorfx.com.dev6.restorfx.com, webdisk.web2.restorfx.com, webmail.web2.restorfx.com, www.web2.restorfx.com, www.web2.restorfx.com.dev6.restorfx.com
Subject: pbx.kraftcom.de
Issuer: YR2
SANs: pbx.kraftcom.de
Subject: lig.com.de
Issuer: YR2
SANs: lig.com.de
Subject: mail.poicom.de
Issuer: YR1
SANs: mail.poicom.de
Subject: rustdesk.terracom.de
Issuer: YE2
SANs: rustdesk.terracom.de
Subject: nuecomutm01.nuecom.de
Issuer: NÜCOM WebAdmin CA
SANs: nuecomutm01.nuecom.de
Subject: 10betcasino.com.de
Issuer: YR1
SANs: 10betcasino.com.de, www.10betcasino.com.de
Subject: *.mm-com.de
Issuer: Thawte TLS RSA CA G1
SANs: *.mm-com.de, mm-com.de
Subject: *.flexicom.de
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.flexicom.de, flexicom.de
Subject: poolfolie.com.de
Issuer: YR2
SANs: poolfolie.com.de, webmail.poolfolie.com.de, www.poolfolie.com.de
Subject: *.drillisch-telecom.de
Issuer: Sectigo Public Server Authentication CA DV E36
SANs: *.drillisch-telecom.de, drillisch-telecom.de
Subject: ccm19.wappcom.de
Issuer: YR1
SANs: ccm19.wappcom.de
Subject: analyticom.de
Issuer: YR2
SANs: *.analyticom.de, analyticom.de
Subject: media.lexcom.de
Issuer: YE2
SANs: media.lexcom.de
Subject: mag2opensource.basecom.de
Issuer: YE1
SANs: mag2opensource.basecom.de
Subject: ff-hausbruch.waldicom.de
Issuer: YE1
SANs: ff-hausbruch.waldicom.de
Subject: nati0nalcasino.com.de
Issuer: YR2
SANs: nati0nalcasino.com.de, www.nati0nalcasino.com.de
Subject: *.dedicom.de
Issuer: Sectigo RSA Domain Validation Secure Server CA
SANs: *.dedicom.de, dedicom.de
Subject: sdzecom.de
Issuer: YE2
SANs: sdzecom.de, www.sdzecom.de
Subject: cpcalendars.skimsdeutschland.com.de
Issuer: YR1
SANs: cpanel.skimsdeutschland.com.de, cpcalendars.skimsdeutschland.com.de, cpcontacts.skimsdeutschland.com.de, mail.skimsdeutschland.com.de, skimsdeutschland.com.de, webdisk.skimsdeutschland.com.de, webmail.skimsdeutschland.com.de, www.skimsdeutschland.com.de
Subject: web.qardscom.de
Issuer: Telekom Security ServerID OV Class 2 CA
SANs: web.communigate.org, web.qardscom.de
Subject: *.loyo.com.de
Issuer: YE2
SANs: *.loyo.com.de, loyo.com.de
Subject: *.loyo.com.de
Issuer: YE2
SANs: *.loyo.com.de, loyo.com.de
Subject: *.alpha-com.de
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.alpha-com.de, alpha-com.de
Subject: git-prod.velocom.de
Issuer: YR1
SANs: git-prod.velocom.de
Subject: alarm-hilden.jerocom.de
Issuer: YR2
SANs: alarm-hilden.jerocom.de
Subject: gravel.com.de
Issuer: E7
SANs: gravel.com.de
Subject: plesk01.sn-datacom.de
Issuer: YR2
SANs: plesk01.sn-datacom.de

IPs Citing This Domain

No citing IPs found yet

As the world-sweep progresses, hosts referencing this domain in their HTML will surface here.

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

Origin IP Origin ASN CDN ASN Confidence Reasoning
2.23.32.8 AS55836 AS16625 95% cert 1fec2e05… served by 2.23.32.8 (AS55836) carries SAN www-lab.mobil.com.de which currently resolves through Akamai (AS16625) at 23.222.37.76, 23.36.236.172, 23.52.150.200
23.39.207.69 AS25019 AS16625 95% cert eb47fe87… served by 23.39.207.69 (AS25019) carries SAN miele.com.de which currently resolves through Akamai (AS16625) at 23.222.18.10, 2a02:26f0:1180:196::12a1, 2a02:26f0:1180:185::12a1
82.22.187.99 AS57043 AS13335 95% cert fc047980… served by 82.22.187.99 (AS57043) carries SAN bokepid.com.de which currently resolves through Cloudflare (AS13335) at 172.67.216.133, 104.21.93.230, 2606:4700:3036::6815:5de6, 2606:4700:3035::ac43:d885
82.21.7.110 AS57043 AS13335 95% cert 93e767eb… served by 82.21.7.110 (AS57043) carries SAN bokepchina.com.de which currently resolves through Cloudflare (AS13335) at 172.67.182.223, 104.21.83.232, 2606:4700:3032::6815:53e8, 2606:4700:3032::ac43:b6df
154.17.231.56 AS906 AS13335 95% cert 12c7949f… served by 154.17.231.56 (AS906) carries SAN download.hub.com.de which currently resolves through Cloudflare (AS13335) at 172.67.166.8, 104.21.11.125, 2606:4700:3030::6815:b7d, 2606:4700:3037::ac43:a608
40.126.114.17 AS58593 AS8075 95% cert 009fba11… served by 40.126.114.17 (AS58593) carries SAN mobil.com.de which currently resolves through Microsoft (AS8075) at 172.190.140.10, 13.64.199.231
212.100.171.161 AS3257 AS13335 95% cert f6a4613f… served by 212.100.171.161 (AS3257) carries SAN carton.telewebion.com.de which currently resolves through Cloudflare (AS13335) at 172.67.172.246, 104.21.30.137, 2606:4700:3030::ac43:acf6, 2606:4700:3034::6815:1e89
65.109.31.230 AS24940 AS13335 95% cert 0560f383… served by 65.109.31.230 (AS24940) carries SAN allforwomen.com.de which currently resolves through Cloudflare (AS13335) at 172.67.196.144, 104.21.92.169, 2606:4700:3034::6815:5ca9, 2606:4700:3031::ac43:c490
185.130.224.120 AS57043 AS13335 95% cert f241962b… served by 185.130.224.120 (AS57043) carries SAN bokepindo.com.de which currently resolves through Cloudflare (AS13335) at 104.21.81.58, 172.67.157.43, 2606:4700:3036::ac43:9d2b, 2606:4700:3037::6815:513a
103.124.172.23 AS139549 AS13335 95% cert 46b2abde… served by 103.124.172.23 (AS139549) carries SAN support.tashanwin.com.de which currently resolves through Cloudflare (AS13335) at 188.114.97.3, 188.114.96.3, 2a06:98c1:3120::3, 2a06:98c1:3121::3
188.245.194.107 AS24940 AS13335 95% cert c815dac7… served by 188.245.194.107 (AS24940) carries SAN order.luxwash.com.de which currently resolves through Cloudflare (AS13335) at 188.114.97.3, 188.114.96.3, 2a06:98c1:3120::3, 2a06:98c1:3121::3
42.159.157.164 AS58593 AS8075 95% cert 6f34153c… served by 42.159.157.164 (AS58593) carries SAN mobil.com.de which currently resolves through Microsoft (AS8075) at 172.190.140.10, 13.64.199.231

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
NS ns1.centralnic.net 2026-06-02 03:45:33.953 2026-07-15 20:04:13.980
TXT v=spf1 include:googlemail.com ~all 2026-06-02 03:45:33.953 2026-07-15 20:04:13.980
NS ns3.centralnic.net 2026-06-02 03:45:33.953 2026-07-15 20:04:13.980
A 54.153.56.183 2026-06-02 03:45:33.953 2026-07-15 20:04:13.980
MX 10 mail.cash9.com 2026-06-02 03:45:33.953 2026-07-15 20:04:13.980
NS ns2.centralnic.net 2026-06-02 03:45:33.953 2026-07-15 20:04:13.980
NS ns4.centralnic.net 2026-06-02 03:45:33.953 2026-07-15 20:04:13.980