Check-Host.cc

Domain

bi.no

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of bi.no

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
48
A/AAAA targets
Subdomains
142
CT + scan + body
Record Types
6
seen in DNS
Observed Certs
6
in our scans

DNS Records

A
135.116.209.218
AAAA
MX
10 bi-no.mail.protection.outlook.com
NS
ns1-02.azure-dns.com, ns2-02.azure-dns.net, ns3-02.azure-dns.org, ns4-02.azure-dns.info
TXT
MS=ms53615153, ZOOM_verify_bw7KnxrBSh6WHMO0voa0vg, adobe-idp-site-verification=a8c35250679d1c4300c9459191ab0796ea07afa7c43fdb034b867ec29a9fe92e, anthropic-domain-verification-wna4t5=4YV221uv9ZXeQvtXGSgqTFjdi, apple-domain-verification=2VHJPnLKVEbWsMx0, atlassian-domain-verification=gJaWCmFUyUVl8qinfEFCLjGHiihTjVRdf6NRPGKv8B4B/T2Bdf6Ppz+J7yKdRRpP, canva-site-verification=vJa7CAt75ZJ-5RhVLs94dg, dropbox-domain-verification=9x1rcg1jy07e
CNAME
CAA
0 iodef "mailto:hostmaster@bi.no", 0 issue "digicert.com", 0 issue "letsencrypt.org", 0 issue "pki.goog", 0 issue "sectigo.com", 0 issuewild "sectigo.com"

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: dev.bi.no
Issuer: YR2
SANs: dev.bi.edu, dev.bi.no
Subject: bi.novacloud.kz
Issuer: YE2
SANs: bi.novacloud.kz
Subject: qa.bi.no
Issuer: YR1
SANs: qa.bi.edu, qa.bi.no
Subject: bi.novotec.es
Issuer: Thawte TLS RSA CA G1
SANs: bi.novotec.es
Subject: stage.jbi.nonprod.webservices.mozgcp.net
Issuer: R13
SANs: stage.jbi.nonprod.webservices.mozgcp.net
Subject: studentappapi-qa.bi.no
Issuer: R13
SANs: studentappapi-qa.bi.no
Subject: bam.bi.no
Issuer: E8
SANs: bam.bi.no
Subject: *.columbi.no
Issuer: RapidSSL TLS RSA CA G1
SANs: *.columbi.no, columbi.no
Subject: discover.bi.no
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: discover.bi.no
Subject: *.columbi.no
Issuer: RapidSSL TLS RSA CA G1
SANs: *.columbi.no, columbi.no
Subject: nicebi.nortekcontrol.com
Issuer: Amazon RSA 2048 M01
SANs: bi.nortekcontrol.com, nicebi.nortekcontrol.com
Subject: bi.no
Issuer: R13
SANs: bi.edu, bi.no, www.bi.edu, www.bi.no
Subject: bannerqa.bi.no
Issuer: R12
SANs: bannerqa.bi.no
Subject: dah-bi.novaims.unl.pt
Issuer: R12
SANs: dah-bi.novaims.unl.pt
Subject: bi.novaspa.eu
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: bi.novaspa.eu, www.bi.novaspa.eu
Subject: *.columbi.no
Issuer: RapidSSL TLS RSA CA G1
SANs: *.columbi.no, columbi.no
Subject: bi.nongjia365.cn
Issuer: R11
SANs: bi.nongjia365.cn
Subject: wasabi.nosky.io
Issuer: RapidSSL TLS RSA CA G1
SANs: wasabi.nosky.io
Subject: *.columbi.no
Issuer: RapidSSL TLS RSA CA G1
SANs: *.columbi.no, columbi.no
Subject: *.columbi.no
Issuer: RapidSSL TLS RSA CA G1
SANs: *.columbi.no, columbi.no
Subject: bi.no
Issuer: R13
SANs: bi.edu, bi.no, www.bi.edu, www.bi.no
Subject: portal-test.bi.no
Issuer: R12
SANs: portal-test.bi.no
Subject: *.columbi.no
Issuer: RapidSSL TLS RSA CA G1
SANs: *.columbi.no, columbi.no
Subject: test.nip.bi.no
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: test.nip.bi.no

IPs Citing This Domain

No citing IPs found yet

As the world-sweep progresses, hosts referencing this domain in their HTML will surface here.

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

Origin IP Origin ASN CDN ASN Confidence Reasoning
23.12.210.146 AS9498 AS16625 95% cert ef1642f8… served by 23.12.210.146 (AS9498) carries SAN image.info.bi.no which currently resolves through Akamai (AS16625) at 184.24.21.74, 2a02:26f0:fe00:193::1621, 2a02:26f0:fe00:199::1621, 2a02:26f0:1180:688::1621
23.39.82.69 AS45758 AS16625 95% cert ef1642f8… served by 23.39.82.69 (AS45758) carries SAN image.info.bi.no which currently resolves through Akamai (AS16625) at 184.24.21.74, 2a02:26f0:fe00:193::1621, 2a02:26f0:fe00:199::1621, 2a02:26f0:1180:688::1621

CT-Log Evidence

Certificates from public Certificate Transparency logs whose subject or SAN names this domain — including historic certs we never observed live.

155f730fa1631796… google · argon2026h2
Subject: bi.no
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: bi.no, bi.edu, www.bi.edu, www.bi.no
Valid: 2025-08-19 00:00:00 → 2026-08-19 23:59:59
5c730516393561c5… google · argon2026h2
Subject: bi.no
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: bi.no, bi.edu, www.bi.edu, www.bi.no
Valid: 2025-08-19 00:00:00 → 2026-08-19 23:59:59

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Domain timeline pending

Passive-DNS history accumulates as our forward-DNS crawler observes A/AAAA/MX/NS/TXT records over time.