Check-Host.cc

Domain

api.w.org

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of api.w.org

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
4
A/AAAA targets
Subdomains
CT + scan + body
Record Types
6
seen in DNS
Observed Certs
in our scans

DNS Records

A
AAAA
MX
NS
TXT
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Certificate observations pending

TLS certs naming this domain in subject or SANs will appear here as our scan-layer catches them.

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

139.59.113.91:443 href · ×72
18.133.91.110:80 href · ×25
188.34.202.164:443 href · ×22
192.36.171.160:80 href · ×21
192.36.171.160:443 href · ×21
34.248.110.32:443 href · ×21
52.204.236.224:443 href · ×16
54.253.51.238:443 href · ×14
35.200.255.86:443 href · ×12
100.56.66.145:443 href · ×9
34.226.31.65:443 href · ×9
34.14.52.175:443 href · ×5
35.205.87.125:443 href · ×5
193.136.43.14:443 href · ×4
101.32.204.98:80 href · ×4
193.170.124.228:80 href · ×4
43.165.167.248:443 href · ×4
161.34.4.28:80 href · ×4
64.210.133.132:80 href · ×4
210.129.88.45:443 href · ×4
60.43.197.23:443 href · ×4
185.209.223.35:443 href · ×4
69.172.211.73:443 href · ×4
206.189.140.182:80 href · ×4
45.146.48.66:80 href · ×3
15.204.135.110:443 href · ×3
157.245.216.217:443 href · ×3
185.110.188.169:8080 href · ×3
138.219.252.8:443 href · ×3
61.112.36.21:80 href · ×3
140.227.21.106:80 href · ×3
216.213.30.223:443 href · ×3
172.234.16.123:443 href · ×3
162.14.76.190:443 href · ×3
148.178.149.224:443 href · ×3
66.39.154.38:80 href · ×3
68.178.193.134:443 href · ×3
45.55.136.112:443 href · ×3
13.247.39.115:443 href · ×3
5.133.198.147:443 href · ×3
101.42.90.12:443 href · ×3
192.185.56.156:443 href · ×3
93.158.68.181:80 href · ×3
143.110.159.137:443 href · ×3
162.240.230.144:80 href · ×3
95.163.236.246:443 href · ×3
103.27.179.38:80 href · ×3
2.9.183.126:443 href · ×3
3.209.82.233:80 href · ×3
24.144.68.99:443 href · ×3

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-IP leaks detected (yet)

Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Domain timeline pending

Passive-DNS history accumulates as our forward-DNS crawler observes A/AAAA/MX/NS/TXT records over time.