Check-Host.cc

Domain

note.com

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of note.com

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
A/AAAA targets
Subdomains
CT + scan + body
Record Types
seen in DNS
Observed Certs
in our scans

DNS Records

A
AAAA
MX
NS
TXT
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: *.sports.gracenote.com
Issuer: DigiCert TLS RSA SHA256 2020 CA1
SANs: *.sports.gracenote.com, sports.gracenote.com
Subject: classnotebookapi.onenote.com
Issuer: Microsoft TLS G2 RSA CA OCSP 04
SANs: *.classnotebookapi.onenote.com, classnotebookapi.onenote.com
Subject: *.kinenote.com
Issuer: FujiSSL RSA Domain Validation Secure Server CA 2
SANs: *.kinenote.com, kinenote.com
Subject: handwrite.haniascriptnote.com
Issuer: YE2
SANs: handwrite.haniascriptnote.com
Subject: *.sports.gracenote.com
Issuer: DigiCert TLS RSA SHA256 2020 CA1
SANs: *.sports.gracenote.com, sports.gracenote.com
Subject: api.seedsnote.com
Issuer: Encryption Everywhere DV TLS CA - G1
SANs: api.seedsnote.com
Subject: *.ydnote.com
Issuer: WoTrus RSA DV SSL CA 2
SANs: *.ydnote.com, ydnote.com
Subject: *.sports.gracenote.com
Issuer: DigiCert TLS RSA SHA256 2020 CA1
SANs: *.sports.gracenote.com, sports.gracenote.com
Subject: mft.gracenote.com
Issuer: GlobalSign RSA OV SSL CA 2018
SANs: ftp.gracenote.com, mft.gracenote.com, sftp.gracenote.com
Subject: pp-bucket.dhinote.com
Issuer: WR3
SANs: pp-bucket.dhinote.com
Subject: stocknote.com
Issuer: R13
SANs: *.stocknote.com, stocknote.com
Subject: *.sports.gracenote.com
Issuer: DigiCert TLS RSA SHA256 2020 CA1
SANs: *.sports.gracenote.com, sports.gracenote.com
Subject: giftynote.com
Issuer: E7
SANs: giftynote.com
Subject: *.displaynote.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.displaynote.com, displaynote.com
Subject: humorousnote.com
Issuer: YE1
SANs: *.humorousnote.com, humorousnote.com
Subject: prv.curvenote.com
Issuer: WR3
SANs: prv.curvenote.com
Subject: *.dksnote.com
Issuer: RapidSSL TLS RSA CA G1
SANs: *.dksnote.com, dksnote.com
Subject: corvusnote.com
Issuer: YE1
SANs: corvusnote.com, www.corvusnote.com
Subject: *.sports.gracenote.com
Issuer: DigiCert TLS RSA SHA256 2020 CA1
SANs: *.sports.gracenote.com, sports.gracenote.com
Subject: scubacenote.com
Issuer: YR1
SANs: scubacenote.com, www.scubacenote.com
Subject: *.supernote.com.cn
Issuer: GeoTrust TLS RSA CA G1
SANs: *.supernote.com.cn, supernote.com.cn
Subject: *.w3devnote.com
Issuer: R11
SANs: *.w3devnote.com, w3devnote.com
Subject: camod.routenote.com
Issuer: YR1
SANs: camod.routenote.com
Subject: t-note.com
Issuer: TNote Inter1
SANs: *.t-note.com, t-note.com
Subject: apimonolith.onenote.com
Issuer: Microsoft TLS G2 RSA CA OCSP 04
SANs: *.apimonolith.onenote.com, apimonolith.onenote.com
Subject: me.errornote.com
Issuer: R13
SANs: me.errornote.com
Subject: *.sports.gracenote.com
Issuer: DigiCert TLS RSA SHA256 2020 CA1
SANs: *.sports.gracenote.com, sports.gracenote.com
Subject: api-cn.infinnote.com
Issuer: TrustAsia DV TLS RSA CA 2025
SANs: api-cn.infinnote.com
Subject: *.k8s-p.cloud.gracenote.com
Issuer: Amazon RSA 2048 M04
SANs: *.k8s-p.cloud.gracenote.com
Subject: mes.charnote.com
Issuer: Encryption Everywhere DV TLS CA - G2
SANs: mes.charnote.com

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

34.117.61.52:443 href · ×46
162.43.6.59:80 href · ×36
52.68.20.148:443 href · ×26
13.193.186.2:80 href · ×26
119.245.179.112:443 href · ×22
133.167.123.120:443 href · ×18
153.127.62.36:443 href · ×16
110.50.206.121:80 href · ×16
124.146.220.19:443 href · ×15
3.112.158.230:443 href · ×14
122.1.104.211:80 href · ×12
210.129.19.243:443 href · ×12
18.177.59.183:443 href · ×12
160.16.71.254:443 href · ×12
182.48.14.140:443 href · ×11
52.196.193.21:80 href · ×11
210.233.72.112:80 href · ×10
150.60.176.117:443 href · ×10
116.80.12.190:80 href · ×9
153.126.141.112:443 href · ×9
61.126.47.127:443 href · ×9
13.248.146.255:443 href · ×8
176.32.76.150:443 href · ×8
34.107.150.62:443 href · ×8
34.80.145.132:443 href · ×8
176.34.8.119:80 href · ×8
202.238.63.95:443 href · ×8
13.115.89.34:443 href · ×8
13.158.171.50:443 href · ×8
13.158.211.177:443 href · ×7
104.198.110.188:80 href · ×7
158.199.160.160:80 href · ×7
150.60.241.173:80 href · ×6
49.212.237.232:443 href · ×6
160.251.203.110:80 href · ×6
1.33.176.30:443 href · ×6
150.60.241.173:443 href · ×6
54.168.152.219:443 href · ×6
4.216.199.4:80 href · ×6
183.181.85.183:443 href · ×6
54.250.100.68:443 href · ×6
180.222.186.235:80 href · ×6
160.251.80.29:80 href · ×6
18.177.104.88:443 href · ×6
1.33.175.111:443 href · ×6
35.78.47.148:443 href · ×6
47.79.146.26:443 href · ×6
54.250.100.68:80 href · ×6
210.239.39.3:443 href · ×6
57.181.228.22:80 href · ×5

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-IP leaks detected (yet)

Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.

CT-Log Evidence

Certificates from public Certificate Transparency logs whose subject or SAN names this domain — including historic certs we never observed live.

d78d99235d1cc473… google · xenon2026h2
Subject: note.com
Issuer: Amazon RSA 2048 M04
SANs: note.com, *.note.jp, *.note.mu, note.jp, *.note.com, note.mu
Valid: 2026-03-11 00:00:00 → 2026-09-24 23:59:59
6b67ec4773e9951e… google · argon2026h2
Subject: *.note.com
Issuer: GlobalSign GCC R3 DV TLS CA 2020
SANs: *.note.com, note.com
Valid: 2025-11-04 07:45:43 → 2026-12-06 07:45:42
c95757afb36fac05… google · argon2026h2
Subject: *.note.com
Issuer: GlobalSign GCC R3 DV TLS CA 2020
SANs: *.note.com, note.com
Valid: 2025-11-04 07:45:43 → 2026-12-06 07:45:42
6b67ec4773e9951e… google · xenon2026h2
Subject: *.note.com
Issuer: GlobalSign GCC R3 DV TLS CA 2020
SANs: *.note.com, note.com
Valid: 2025-11-04 07:45:43 → 2026-12-06 07:45:42
c95757afb36fac05… cloudflare · nimbus2026
Subject: *.note.com
Issuer: GlobalSign GCC R3 DV TLS CA 2020
SANs: *.note.com, note.com
Valid: 2025-11-04 07:45:43 → 2026-12-06 07:45:42

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Domain timeline pending

Passive-DNS history accumulates as our forward-DNS crawler observes A/AAAA/MX/NS/TXT records over time.