Check-Host.cc

Domain

jsj.top

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of jsj.top

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
A/AAAA targets
Subdomains
CT + scan + body
Record Types
seen in DNS
Observed Certs
in our scans

DNS Records

A
52.83.185.165, 52.83.193.114, 52.83.39.254
AAAA
MX
NS
vip3.alidns.com, vip4.alidns.com
TXT
google-site-verification=E5ogd8xEs3COZFmT7CD-kteO6JsVX8g5A5v5xwkxMGc
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: *.zsjsj.top
Issuer: E7
SANs: *.zsjsj.top, zsjsj.top
Subject: www.xjsj.top
Issuer: YR2
SANs: www.xjsj.top
Subject: jinshuju.net
Issuer: Amazon RSA 2048 M04
SANs: *.form.top, *.jinshuju.net, *.jsj.ink, *.jsj.top, form.top, jinshuju.net, jsj.ink, jsj.top
Subject: jinshuju.net
Issuer: Amazon RSA 2048 M04
SANs: *.form.top, *.jinshuju.net, *.jsj.ink, *.jsj.top, form.top, jinshuju.net, jsj.ink, jsj.top
Subject: jinshuju.net
Issuer: Amazon RSA 2048 M04
SANs: *.form.top, *.jinshuju.net, *.jsj.ink, *.jsj.top, form.top, jinshuju.net, jsj.ink, jsj.top
Subject: www.mdjsj.top
Issuer: Encryption Everywhere DV TLS CA - G2
SANs: mdjsj.top, www.mdjsj.top

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

120.27.217.73:443 href · ×9
8.140.96.211:443 href · ×9
8.159.128.155:443 href · ×4
8.134.165.202:443 href · ×4
47.94.16.211:443 href · ×4
101.201.127.143:443 href · ×4
121.229.187.217:443 href · ×4
175.24.19.240:443 href · ×2
123.254.109.193:80 href · ×2
8.140.50.77:443 href · ×2
8.148.5.230:80 href · ×2
39.97.41.46:443 href · ×2
47.86.99.97:443 href · ×1
182.92.73.108:443 href · ×1
47.96.81.127:443 href · ×1
101.201.213.239:443 href · ×1
123.57.52.26:443 href · ×1
47.104.105.248:80 href · ×1
8.137.99.137:443 href · ×1
47.94.173.63:80 href · ×1
120.25.255.214:443 href · ×1
218.244.154.140:80 href · ×1
118.178.186.164:443 href · ×1
1.15.158.76:443 href · ×1
59.110.22.41:443 href · ×1
47.76.135.124:443 href · ×1

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-IP leaks detected (yet)

Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
A 52.83.185.165 2026-05-25 21:50:03.344 2026-07-27 21:00:01.298
A 52.83.193.114 2026-05-25 21:50:03.344 2026-07-25 09:45:42.465
A 52.83.39.254 2026-05-25 21:50:03.344 2026-07-20 23:57:12.309
NS vip3.alidns.com 2026-05-25 22:11:29.484 2026-07-27 21:00:01.298
TXT google-site-verification=E5ogd8xEs3COZFmT7CD-kteO6JsVX8g5A5v5xwkxMGc 2026-05-25 22:11:29.484 2026-07-27 21:00:01.298
NS vip4.alidns.com 2026-05-25 22:11:29.484 2026-07-27 21:00:01.298