Check-Host.cc

Domain

cursor.com

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of cursor.com

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
103
A/AAAA targets
Subdomains
43
CT + scan + body
Record Types
4
seen in DNS
Observed Certs
3
in our scans

DNS Records

A
76.76.21.21
AAAA
MX
1 aspmx.l.google.com, 10 alt3.aspmx.l.google.com, 10 alt4.aspmx.l.google.com, 5 alt1.aspmx.l.google.com, 5 alt2.aspmx.l.google.com
NS
ns-1366.awsdns-42.org, ns-1758.awsdns-27.co.uk, ns-265.awsdns-33.com, ns-682.awsdns-21.net
TXT
MS=ms66950797, afternic-verification-hyPeMFwWREkaDpMSPT6FPJ, anthropic-domain-verification-1er2cj=fcUJsdJ7kfq2Lp6XgYABnKuOo, apple-domain-verification=6WmKH1DQgWyhoqQT, docusign=cf0819bc-9ccb-4b86-8fb2-587d8f103d9b, doordash-verification=9ZAkHrNetG2LEg7f8Tuq2jU64bEmjT, figma-domain-verification=d7a81001ff0da28fcf26c182906e70d4adcc3860d2208054b56adeb46f57fb7c-1778743381, google-site-verification=9UChtu6OmXW-_O3sToc8Cl5kIhXjYRBpx_o1M6XlBlA
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: crazycursor.com
Issuer: YE1
SANs: crazycursor.com, www.crazycursor.com
Subject: cpcalendars.clickcursor.com
Issuer: R10
SANs: autodiscover.clickcursor.com, clickcursor.com, cpanel.clickcursor.com, cpcalendars.clickcursor.com, cpcontacts.clickcursor.com, mail.clickcursor.com, webdisk.clickcursor.com, webmail.clickcursor.com, www.clickcursor.com
Subject: cluster-controller.internal.cursor.com
Issuer: Amazon RSA 2048 M01
SANs: cluster-controller.internal.cursor.com
Subject: origin.cursor.com
Issuer: Amazon RSA 2048 M04
SANs: origin.cursor.com
Subject: origin.cursor.com
Issuer: Amazon RSA 2048 M04
SANs: origin.cursor.com
Subject: cursor.com
Issuer: cursor.com
SANs: cursor.com
Subject: ss-gtm.cursor.com
Issuer: Amazon RSA 2048 M01
SANs: ss-gtm.cursor.com
Subject: ss-gtm.cursor.com
Issuer: Amazon RSA 2048 M01
SANs: ss-gtm.cursor.com
Subject: origin.cursor.com
Issuer: Amazon RSA 2048 M04
SANs: origin.cursor.com
Subject: origin.cursor.com
Issuer: Amazon RSA 2048 M04
SANs: origin.cursor.com
Subject: origin.cursor.com
Issuer: Amazon RSA 2048 M04
SANs: origin.cursor.com
Subject: origin.cursor.com
Issuer: Amazon RSA 2048 M04
SANs: origin.cursor.com
Subject: origin-staging.cursor.com
Issuer: Amazon RSA 2048 M04
SANs: origin-staging.cursor.com
Subject: www.aikefucursor.com
Issuer: R12
SANs: aikefucursor.com, www.aikefucursor.com
Subject: crazycursor.com
Issuer: E7
SANs: crazycursor.com, www.crazycursor.com
Subject: blucursor.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: blucursor.com, www.blucursor.com
Subject: origin.cursor.com
Issuer: Amazon RSA 2048 M04
SANs: origin.cursor.com
Subject: api.cursor.com
Issuer: Amazon RSA 2048 M01
SANs: *.api.cursor.com, api.cursor.com

IPs Citing This Domain

No citing IPs found yet

As the world-sweep progresses, hosts referencing this domain in their HTML will surface here.

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

Origin IP Origin ASN CDN ASN Confidence Reasoning
91.107.250.13 AS24940 AS16509 95% cert 807f0501… served by 91.107.250.13 (AS24940) carries SAN cursor.com which currently resolves through Amazon (AS16509) at 76.76.21.21

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Domain timeline pending

Passive-DNS history accumulates as our forward-DNS crawler observes A/AAAA/MX/NS/TXT records over time.