ekey.bh
Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.
Run a live full scan of ekey.bh
On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.
DNS Records
WHOIS / Registration
Registration data planned
Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.
Subdomains
Every subdomain we know about — harvested from CT-log SANs, scan-observed certs and HTML body references — paired with its current A/AAAA target.
| Subdomain | Resolves to | Last seen |
|---|---|---|
| ekey.bh | 2026-06-18 00:27:29.121 | |
| relying-party.ekey.bh | 2026-07-17 16:01:35.629 | |
| app.ekey.bh | 1970-01-01 00:00:00.000 | |
| app.staging.ekey.bh | 1970-01-01 00:00:00.000 | |
| integrations.ekey.bh | 1970-01-01 00:00:00.000 | |
| internal.ekey.bh | 1970-01-01 00:00:00.000 |
Tech Stack
Tech detection pending
Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.
TLS Certificates
Certificate observations pending
TLS certs naming this domain in subject or SANs will appear here as our scan-layer catches them.
IPs Citing This Domain
No citing IPs found yet
As the world-sweep progresses, hosts referencing this domain in their HTML will surface here.
Origin / IP-Leak
When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.
No origin-IP leaks detected (yet)
Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.
CT-Log Evidence
Certificates from public Certificate Transparency logs whose subject or SAN names this domain — including historic certs we never observed live.
Threat Intelligence
Domain threat-intel pending
Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.
History
Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.
| Type | Value | First seen | Last seen |
|---|---|---|---|
| NS | ns-341.awsdns-42.com | 2026-06-01 18:09:31.644 | 2026-06-18 00:27:29.121 |
| NS | ns-1356.awsdns-41.org | 2026-06-01 18:09:31.644 | 2026-06-18 00:27:29.121 |
| NS | ns-1673.awsdns-17.co.uk | 2026-06-01 18:09:31.644 | 2026-06-18 00:27:29.121 |
| A | 99.80.104.202 | 2026-06-01 18:09:31.644 | 2026-06-01 18:09:31.644 |
| TXT | dzq6lf1fy7l99kkb9s1dcc3mky94mhnh | 2026-06-01 18:09:31.644 | 2026-06-18 00:27:29.121 |
| NS | ns-531.awsdns-02.net | 2026-06-01 18:09:31.644 | 2026-06-18 00:27:29.121 |
| TXT | amazonses:G0y36QQFzTs6Hk+RxM/8aCy+L3kpDvWWVBILuRMyaJ0= | 2026-06-01 18:09:31.644 | 2026-06-18 00:27:29.121 |
| A | 52.210.65.56 | 2026-06-01 18:09:31.644 | 2026-06-01 18:09:31.644 |
| MX | 10 inbound-smtp.eu-west-1.amazonaws.com | 2026-06-01 18:09:31.644 | 2026-06-18 00:27:29.121 |
| TXT | v=spf1 include:amazonses.com -all | 2026-06-01 18:09:31.644 | 2026-06-18 00:27:29.121 |
| A | 52.18.241.54 | 2026-06-18 00:27:29.121 | 2026-06-18 00:27:29.121 |
| A | 108.128.76.105 | 2026-06-18 00:27:29.121 | 2026-06-18 00:27:29.121 |