Check-Host.cc

IP Address IPv4

147.91.75.49

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of 147.91.75.49

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
ASN
AS13092
Click for details
Country
RS
Serbia
Reverse DNS
PTR
Open Ports
2
Last scan

Autonomous System

ASN
AS Name
AS Type
RIR
RIPE NCC
Allocated
2000-03-16
Allocation status
Assigned

Geolocation

Country
RS · Serbia
Continent
Europe
Source
MaxMind GeoLite2

Reverse DNS

PTR
Last seen

Network

Prefix
RPKI

Open Ports

Port Proto Service Server Last seen
80 tcp http Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/5.4.16 2026-07-16 22:36:07.000
443 tcp https Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/5.4.16 2026-07-23 23:31:07.000

TLS Certificates

Port 443 14dac35b065a…
Subject: aeum.f.bg.ac.rs
Issuer: R13
SANs: aeum.f.bg.ac.rs
Valid 2026-02-07 00:01:04 → 2026-05-08 00:01:03

Known Vulnerabilities

Published CVEs matched to the software versions fingerprinted on this host. Matching is by product and version against the NVD dictionary — presence of a CVE does not confirm the host is exploitable (patches or backports may apply).

CVE Software CVSS Severity Summary
CVE-2014-9912 PHP 5.4.16 9.8 N/A The get_icu_disp_value_src_php function in ext/intl/locale/locale_methods.c in PHP before 5.3.29, 5.4.x before 5.4.30, and 5.5.x before 5.5.14 does not properly...
CVE-2013-6420 PHP 5.4.16 7.5 HIGH The asn1_time_to_time_t function in ext/openssl/openssl.c in PHP before 5.3.28, 5.4.x before 5.4.23, and 5.5.x before 5.5.7 does not properly parse (1) notBefor...
CVE-2014-3669 PHP 5.4.16 7.5 HIGH Integer overflow in the object_custom function in ext/standard/var_unserializer.c in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remot...
CVE-2014-9427 PHP 5.4.16 7.5 HIGH sapi/cgi/cgi_main.c in the CGI component in PHP through 5.4.36, 5.5.x through 5.5.20, and 5.6.x through 5.6.4, when mmap is used to read a .php file, does not p...
CVE-2015-0231 PHP 5.4.16 7.5 HIGH Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before...
CVE-2016-7478 PHP 5.4.16 7.5 N/A Zend/zend_exceptions.c in PHP, possibly 5.x before 5.6.28 and 7.x before 7.0.13, allows remote attackers to cause a denial of service (infinite loop) via a craf...
CVE-2011-4718 PHP 5.4.16 6.8 MEDIUM Session fixation vulnerability in the Sessions subsystem in PHP before 5.5.2 allows remote attackers to hijack web sessions by specifying a session ID.
CVE-2014-3597 PHP 5.4.16 6.8 MEDIUM Multiple buffer overflows in the php_parserr function in ext/standard/dns.c in PHP before 5.4.32 and 5.5.x before 5.5.16 allow remote DNS servers to cause a den...
CVE-2014-3670 PHP 5.4.16 6.8 MEDIUM The exif_ifd_make_value function in exif.c in the EXIF extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 operates on floating-point ar...
CVE-2015-0232 PHP 5.4.16 6.8 MEDIUM The exif_process_unicode function in ext/exif/exif.c in PHP before 5.4.37, 5.5.x before 5.5.21, and 5.6.x before 5.6.5 allows remote attackers to execute arbitr...
CVE-2014-3478 PHP 5.4.16 6.5 N/A Buffer overflow in the mconvert function in softmagic.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, all...
CVE-2014-5120 PHP 5.4.16 6.4 MEDIUM gd_ctx.c in the GD component in PHP 5.4.x before 5.4.32 and 5.5.x before 5.5.16 does not ensure that pathnames lack %00 sequences, which might allow remote atta...
CVE-2012-1171 PHP 5.4.16 5.0 MEDIUM The libxml RSHUTDOWN function in PHP 5.x allows remote attackers to bypass the open_basedir protection mechanism and read arbitrary files via vectors involving...
CVE-2014-3668 PHP 5.4.16 5.0 MEDIUM Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x befor...
CVE-2013-4248 PHP 5.4.16 4.3 MEDIUM The openssl_x509_parse function in openssl.c in the OpenSSL module in PHP before 5.4.18 and 5.5.x before 5.5.2 does not properly handle a '\0' character in a do...
CVE-2014-3587 PHP 5.4.16 4.3 MEDIUM Integer overflow in the cdf_read_property_info function in cdf.c in file through 5.19, as used in the Fileinfo component in PHP before 5.4.32 and 5.5.x before 5...

Tech Stack

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-leak candidates for this IP

When this IP serves a TLS cert for a domain that fronts behind a CDN, that domain surfaces here as an origin-leak candidate with a confidence score.

Hosted Domains

1 domain resolve (A-record) to this IP.

Multi-Vantage Check

Reachability accrued passively from real user-triggered checks across our 65+ probe nodes. Run a live check to add fresh data.

No accumulated reachability data yet

Reachability accrues from real user-triggered checks. Trigger a Ping or HTTP check from our 65+ probe nodes to contribute the first data point.

Threat Intelligence

No threat-intel matches

This IP doesn't appear in any of the feeds we mirror (Tor exits, FireHOL Level 1-3, Spamhaus DROP/EDROP, URLhaus, OpenPhish). Absence here doesn't prove the IP is clean — it just means none of our public-feed sources flag it.

Co-Hosted Domains

Domains this host references in its HTML AND whose DNS A/AAAA record resolves back to this IP — i.e. actually hosted here.

aeum.f.bg.ac.rs DNS-confirmed
aeum.f.bg.ac.rs DNS-confirmed
aeum.f.bg.ac.rs DNS-confirmed

External References

Domains the body links to whose DNS does NOT resolve to this IP — usually CDN assets, embeds, or third-party services. Boilerplate (Google Fonts, jsDelivr, w3.org…) is already filtered.

plus.google.com href · ×6
wordpress.com href · ×6
www.f.bg.ac.rs href · ×6
twitter.com href · ×6
facebook.com href · ×6
www.kultura.gov.rs href · ×3
www.bg.ac.rs href · ×3
catchthemes.com href · ×3
stylesplugin.com href · ×3
gmpg.org href · ×3
ec.europa.eu href · ×3
api.w.org href · ×3

History

First observed
2026-06-14 20:56
Last observed
2026-07-23 23:31
Scan observations
5

The full change-log (ASN moves, cert rotations, port-state diffs) accumulates as our archives grow.