Check-Host.cc

Domain

mega.io

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of mega.io

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
38
A/AAAA targets
Subdomains
100
CT + scan + body
Record Types
6
seen in DNS
Observed Certs
40
in our scans

DNS Records

A
66.203.124.37, 66.203.127.11, 66.203.127.13, 66.203.127.23, 66.203.127.24, 89.44.169.132, 89.44.169.134, 94.24.37.161
AAAA
2001:678:25c:2215::550, 2001:678:25c:2215::552, 2a0b:e40:3::11, 2a0b:e40:3::13, 2a0b:e40:3::23, 2a0b:e40:3::24, 2a0b:e45:1::161, 2a0b:e45:1::162
MX
10 mail.mega.co.nz
NS
nslu1.mega.co.nz, nslu2.mega.co.nz, nsnl1.mega.co.nz, nsnl2.mega.co.nz
TXT
anthropic-domain-verification-v2yerz=12oiSds5yMrYvrswOJptg2mMg, figma-domain-verification=b522f07d669ca751949e95ec202d2e3f95321c0099644686c8a8b5b2782e7d6a-1768864945, google-site-verification=2h4XcIxuYHBK9QrpgZu4UGS8cLBeJgj_WRzdZWamRLw, google-site-verification=7LubaMe8LwjSP61DABj065xM1RhFT7xBuLcvrqE5Dd0, google-site-verification=JQ6dANtoKE5Fg2Nh00-ZEnC_upOs0W1e8ufKmR7hMYE, v=spf1 include:mega.co.nz -all
CNAME
CAA
0 issue "letsencrypt.org", 0 issue "sectigo.com"

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Certificate observations pending

TLS certs naming this domain in subject or SANs will appear here as our scan-layer catches them.

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

106.53.15.165:80 href · ×1
172.96.253.110:443 href · ×1

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-IP leaks detected (yet)

Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Domain timeline pending

Passive-DNS history accumulates as our forward-DNS crawler observes A/AAAA/MX/NS/TXT records over time.