Check-Host.cc

IP Address IPv4

116.63.80.21

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of 116.63.80.21

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
ASN
AS58466
Click for details
Country
CN
China
Reverse DNS
ecs-116-63-80-21.compute.hwclouds-dns.com
PTR
Open Ports
2
Last scan

Autonomous System

ASN
AS Name
AS Type
RIR
APNIC
Allocated
2011-12-08
Allocation status
Allocated

Geolocation

Country
CN · China
Continent
Asia
Source
MaxMind GeoLite2

Reverse DNS

Last seen
2026-07-23 22:01:19

Network

RPKI

Open Ports

Port Proto Service Server Last seen
80 tcp http Apache/2.4.12 (Win32) OpenSSL/1.0.1m PHP/5.6.7 2026-05-26 17:48:20.000
443 tcp https Apache/2.4.12 (Win32) OpenSSL/1.0.1m PHP/5.6.7 2026-07-23 22:00:33.000

TLS Certificates

Port 443 847fe0275c1b…
Subject: www.example.net
Issuer: ca.mountec.net
SANs: *.example.com, *.example.net, 192.168.2.100, example.com, example.net, www.example.net
Valid 2016-05-10 10:01:45 → 2017-05-01 10:01:45

Known Vulnerabilities

Published CVEs matched to the software versions fingerprinted on this host. Matching is by product and version against the NVD dictionary — presence of a CVE does not confirm the host is exploitable (patches or backports may apply).

CVE Software CVSS Severity Summary
CVE-2017-3169 Apache 2.4.12 9.8 N/A In Apache httpd 2.2.x before 2.2.33 and 2.4.x before 2.4.26, mod_ssl may dereference a NULL pointer when third-party modules call ap_hook_process_connection() d...
CVE-2018-1312 Apache 2.4.12 9.8 N/A In Apache httpd 2.2.0 to 2.4.29, when generating an HTTP Digest authentication challenge, the nonce sent to prevent reply attacks was not correctly generated us...
CVE-2016-0705 OpenSSL 1.0.1m 9.8 N/A Double free vulnerability in the dsa_priv_decode function in crypto/dsa/dsa_ameth.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allows remote attacke...
CVE-2016-0799 OpenSSL 1.0.1m 9.8 N/A The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates string lengths, which allows remote att...
CVE-2016-2177 OpenSSL 1.0.1m 9.8 N/A OpenSSL through 1.0.2h incorrectly uses pointer arithmetic for heap-buffer boundary checks, which might allow remote attackers to cause a denial of service (int...
CVE-2016-2182 OpenSSL 1.0.1m 9.8 N/A The BN_bn2dec function in crypto/bn/bn_print.c in OpenSSL before 1.1.0 does not properly validate division results, which allows remote attackers to cause a den...
CVE-2016-2842 OpenSSL 1.0.1m 9.8 N/A The doapr_outch function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g does not verify that a certain memory allocation succeed...
CVE-2016-6303 OpenSSL 1.0.1m 9.8 N/A Integer overflow in the MDC2_Update function in crypto/mdc2/mdc2dgst.c in OpenSSL before 1.1.0 allows remote attackers to cause a denial of service (out-of-boun...
CVE-2015-4116 PHP 5.6.7 9.8 N/A Use-after-free vulnerability in the spl_ptr_heap_insert function in ext/spl/spl_heap.c in PHP before 5.5.27 and 5.6.x before 5.6.11 allows remote attackers to e...
CVE-2015-6835 PHP 5.6.7 9.8 N/A The session deserializer in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 mishandles multiple php_var_unserialize calls, which allow remote at...
CVE-2015-6834 PHP 5.6.7 9.8 N/A Multiple use-after-free vulnerabilities in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 allow remote attackers to execute arbitrary code via...
CVE-2015-5589 PHP 5.6.7 9.8 N/A The phar_convert_to_other function in ext/phar/phar_object.c in PHP before 5.4.43, 5.5.x before 5.5.27, and 5.6.x before 5.6.11 does not validate a file pointer...
CVE-2015-4642 PHP 5.6.7 9.8 N/A The escapeshellarg function in ext/standard/exec.c in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 on Windows allows remote attackers to exec...
CVE-2015-4603 PHP 5.6.7 9.8 N/A The exception::getTraceAsString function in Zend/zend_exceptions.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to...
CVE-2015-4602 PHP 5.6.7 9.8 N/A The __PHP_Incomplete_Class function in ext/standard/incomplete_class.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers...
CVE-2015-4600 PHP 5.6.7 9.8 N/A The SoapClient implementation in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to cause a denial of service (applicatio...
CVE-2015-4599 PHP 5.6.7 9.8 N/A The SoapFault::__toString method in ext/soap/soap.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to obtain sensitiv...
CVE-2015-8835 PHP 5.6.7 9.8 N/A The make_http_soap_request function in ext/soap/php_http.c in PHP before 5.4.44, 5.5.x before 5.5.28, and 5.6.x before 5.6.12 does not properly retrieve keys, w...
CVE-2016-2554 PHP 5.6.7 9.8 N/A Stack-based buffer overflow in ext/phar/tar.c in PHP before 5.5.32, 5.6.x before 5.6.18, and 7.x before 7.0.3 allows remote attackers to cause a denial of servi...
CVE-2016-3141 PHP 5.6.7 9.8 N/A Use-after-free vulnerability in wddx.c in the WDDX extension in PHP before 5.5.33 and 5.6.x before 5.6.19 allows remote attackers to cause a denial of service (...
CVE-2016-6290 PHP 5.6.7 9.8 N/A ext/session/session.c in PHP before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9 does not properly maintain a certain hash data structure, which allows rem...
CVE-2016-4071 PHP 5.6.7 9.8 N/A Format string vulnerability in the php_snmp_error function in ext/snmp/snmp.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote atta...
CVE-2016-4072 PHP 5.6.7 9.8 N/A The Phar extension in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to execute arbitrary code via a crafted filename, as...
CVE-2016-4073 PHP 5.6.7 9.8 N/A Multiple integer overflows in the mbfl_strcut function in ext/mbstring/libmbfl/mbfl/mbfilter.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 a...
CVE-2016-4473 PHP 5.6.7 9.8 N/A /ext/phar/phar_object.c in PHP 7.0.7 and 5.6.x allows remote attackers to execute arbitrary code. NOTE: Introduced as part of an incomplete fix to CVE-2015-683...
CVE-2016-4537 PHP 5.6.7 9.8 N/A The bcpowmod function in ext/bcmath/bcmath.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 accepts a negative integer for the scale argument,...
CVE-2016-4538 PHP 5.6.7 9.8 N/A The bcpowmod function in ext/bcmath/bcmath.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 modifies certain data structures without considerin...
CVE-2016-4539 PHP 5.6.7 9.8 N/A The xml_parse_into_struct function in ext/xml/xml.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to cause a denial of...
CVE-2016-4540 PHP 5.6.7 9.8 N/A The grapheme_stripos function in ext/intl/grapheme/grapheme_string.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to...
CVE-2016-4541 PHP 5.6.7 9.8 N/A The grapheme_strpos function in ext/intl/grapheme/grapheme_string.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to c...
CVE-2016-4542 PHP 5.6.7 9.8 N/A The exif_process_IFD_TAG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not properly construct spprintf argume...
CVE-2016-4543 PHP 5.6.7 9.8 N/A The exif_process_IFD_in_JPEG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not validate IFD sizes, which allo...
CVE-2016-6296 PHP 5.6.7 9.8 N/A Integer signedness error in the simplestring_addn function in simplestring.c in xmlrpc-epi through 0.54.2, as used in PHP before 5.5.38, 5.6.x before 5.6.24, an...
CVE-2016-6295 PHP 5.6.7 9.8 N/A ext/snmp/snmp.c in PHP before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9 improperly interacts with the unserialize implementation and garbage collection,...
CVE-2016-6294 PHP 5.6.7 9.8 N/A The locale_accept_from_http function in ext/intl/locale/locale_methods.c in PHP before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9 does not properly restr...
CVE-2016-5768 PHP 5.6.7 9.8 N/A Double free vulnerability in the _php_mb_regex_ereg_replace_exec function in php_mbregex.c in the mbstring extension in PHP before 5.5.37, 5.6.x before 5.6.23,...
CVE-2016-5769 PHP 5.6.7 9.8 N/A Multiple integer overflows in mcrypt.c in the mcrypt extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allow remote attackers to cause a...
CVE-2016-5773 PHP 5.6.7 9.8 N/A php_zip.c in the zip extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 improperly interacts with the unserialize implementation and garb...
CVE-2016-6291 PHP 5.6.7 9.8 N/A The exif_process_IFD_in_MAKERNOTE function in ext/exif/exif.c in PHP before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9 allows remote attackers to cause a...
CVE-2016-1903 PHP 5.6.7 9.1 N/A The gdImageRotateInterpolated function in ext/gd/libgd/gd_interpolation.c in PHP before 5.5.31, 5.6.x before 5.6.17, and 7.x before 7.0.2 allows remote attacker...

Tech Stack

Detected via Wappalyzer-style rules on the HTTP response body, headers, scripts and meta tags.

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-leak candidates for this IP

When this IP serves a TLS cert for a domain that fronts behind a CDN, that domain surfaces here as an origin-leak candidate with a confidence score.

Hosted Domains

1 domain resolve (A-record) to this IP.

Multi-Vantage Check

Reachability accrued passively from real user-triggered checks across our 65+ probe nodes. Run a live check to add fresh data.

ICMP responsive This IP replied to our global ICMP sweep — last confirmed 2026-08-05.

No accumulated reachability data yet

Reachability accrues from real user-triggered checks. Trigger a Ping or HTTP check from our 65+ probe nodes to contribute the first data point.

Web Pages

Port Page title Status Flags
443 ssl index 200
80 广州云岫信息科技有限公司_云笔电_瘦客户机操作系统_统一门户_融合桌面云_多云融合_录屏审计_文档摆渡_网盘_桌面云智能监控运维_Daas 200

Threat Intelligence

No threat-intel matches

This IP doesn't appear in any of the feeds we mirror (Tor exits, FireHOL Level 1-3, Spamhaus DROP/EDROP, URLhaus, OpenPhish). Absence here doesn't prove the IP is clean — it just means none of our public-feed sources flag it.

Co-Hosted Domains

Domains this host references in its HTML AND whose DNS A/AAAA record resolves back to this IP — i.e. actually hosted here.

mobile.mountec.net DNS-confirmed

External References

Domains the body links to whose DNS does NOT resolve to this IP — usually CDN assets, embeds, or third-party services. Boilerplate (Google Fonts, jsDelivr, w3.org…) is already filtered.

www.cnpc.com.cn href · ×1
www.skyworth.com href · ×1
www.cgnpc.com.cn href · ×1
www.csg.cn href · ×1
www.gac-toyota.com.cn href · ×1
www.189.cn href · ×1
www.huawei.com href · ×1
www.szcsot.com href · ×1
www.csair.com href · ×1
forum.mountec.net href · ×1
www.sinopec.com href · ×1
www.cmhk.com href · ×1
static.meiqia.com href · ×1
www.crrcgc.cc href · ×1
www.ccb.com href · ×1
www.10086.cn href · ×1
beian.miit.gov.cn href · ×1

History

First observed
2026-05-26 03:24
Last observed
2026-07-23 22:00
Scan observations
6

The full change-log (ASN moves, cert rotations, port-state diffs) accumulates as our archives grow.