Check-Host.cc

Domain

m.sohu.com

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of m.sohu.com

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
5
A/AAAA targets
Subdomains
CT + scan + body
Record Types
1
seen in DNS
Observed Certs
in our scans

DNS Records

A
43.152.42.109, 43.175.166.18, 43.175.22.42, 43.175.65.159, 43.175.65.95
AAAA
MX
NS
TXT
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: m.sohu.com
Issuer: GeoTrust CN RSA CA G1
SANs: *.api.m.sohu.com, *.book.m.sohu.com, *.m.sohu.com, *.sports.sohu.com, a.track.sohu.com, api.jincai.sohu.com, api.m.sohu.com, auth.os.sohuno.com, m.sohu.com, police.news.sohu.com, pre.beta.www.sohu.com, t2.read.m.sohu.com, test-auth.os.sohuno.com, test.mama.sohu.com

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

42.193.231.226:443 href · ×18
108.187.0.33:443 href · ×7
192.238.177.184:443 href · ×7
108.187.0.93:443 href · ×7
108.187.0.24:443 href · ×7
45.192.210.53:443 href · ×7
192.238.178.55:443 href · ×7
45.192.210.124:443 href · ×7
154.31.204.67:443 href · ×6
198.2.225.117:443 href · ×6
154.31.202.98:443 href · ×6
154.31.202.100:443 href · ×6
98.158.28.94:80 href · ×3
154.31.204.72:443 href · ×3
98.158.28.95:80 href · ×3
154.31.202.94:443 href · ×3
154.31.204.71:443 href · ×3
154.31.202.99:443 href · ×3
154.31.202.95:443 href · ×3
198.2.196.82:80 href · ×3
198.2.204.237:80 href · ×3
198.2.196.132:443 href · ×3
154.31.204.66:443 href · ×3
98.158.28.103:80 href · ×3
198.2.225.116:443 href · ×3
198.2.196.131:443 href · ×3
198.2.225.113:443 href · ×3
103.82.215.238:80 href · ×2
156.227.31.32:443 href · ×2
39.107.253.123:443 href · ×2
43.252.173.238:80 href · ×2
202.95.6.58:80 href · ×2
185.203.39.108:443 href · ×1
103.142.244.122:80 href · ×1
141.148.241.157:443 href · ×1
43.229.4.241:80 href · ×1
45.64.53.129:80 href · ×1
23.248.239.254:443 href · ×1
38.47.220.56:443 href · ×1
103.142.244.120:443 href · ×1
39.102.59.5:443 href · ×1
169.239.131.43:443 href · ×1
43.252.173.240:80 href · ×1
23.248.239.253:443 href · ×1
103.142.244.63:443 href · ×1
1.92.149.178:80 href · ×1
103.42.6.3:443 href · ×1
38.181.24.79:443 href · ×1
120.26.185.35:80 href · ×1
202.79.168.229:443 href · ×1

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-IP leaks detected (yet)

Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
A 43.175.65.95 2026-05-26 03:11:26.075 2026-06-04 01:17:01.085
A 43.175.65.159 2026-05-26 03:11:26.075 2026-06-04 01:17:01.085
A 43.175.166.18 2026-06-04 01:14:21.849 2026-07-28 10:29:13.532
A 43.152.42.109 2026-06-14 22:52:09.672 2026-07-29 02:43:37.325
A 43.175.22.42 2026-06-14 22:52:09.672 2026-07-29 02:43:37.325