Check-Host.cc

Domain

note.com

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of note.com

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
44
A/AAAA targets
Subdomains
32
CT + scan + body
Record Types
4
seen in DNS
Observed Certs
6
in our scans

DNS Records

A
AAAA
MX
NS
TXT
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Every subdomain we know about — harvested from CT-log SANs, scan-observed certs and HTML body references — paired with its current A/AAAA target.

Subdomain Resolves to Last seen
note.com 2026-07-28 17:23:57.234
info.beta.note.com 2026-06-03 04:27:09.976
money.beta2.note.com 2026-07-19 16:02:28.638
money.note.com 2026-07-27 20:25:08.329
tales.beta8.note.com 2026-06-01 12:42:54.768
beta1.note.com
1970-01-01 00:00:00.000
beta10.note.com
1970-01-01 00:00:00.000
beta2.note.com
1970-01-01 00:00:00.000
beta3.note.com
1970-01-01 00:00:00.000
beta6.note.com
1970-01-01 00:00:00.000
money.beta1.note.com
1970-01-01 00:00:00.000
rc1.note.com
1970-01-01 00:00:00.000
rc2.note.com
1970-01-01 00:00:00.000
rc3.note.com
1970-01-01 00:00:00.000
status.note.com
1970-01-01 00:00:00.000
tales.beta1.note.com
1970-01-01 00:00:00.000
tales.beta2.note.com
1970-01-01 00:00:00.000
tales.note.com
1970-01-01 00:00:00.000

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Certificate observations pending

TLS certs naming this domain in subject or SANs will appear here as our scan-layer catches them.

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

34.117.61.52:443 href · ×46
162.43.6.59:80 href · ×36
52.68.20.148:443 href · ×26
13.193.186.2:80 href · ×26
119.245.179.112:443 href · ×22
133.167.123.120:443 href · ×18
153.127.62.36:443 href · ×16
110.50.206.121:80 href · ×16
124.146.220.19:443 href · ×15
3.112.158.230:443 href · ×14
122.1.104.211:80 href · ×12
210.129.19.243:443 href · ×12
18.177.59.183:443 href · ×12
160.16.71.254:443 href · ×12
182.48.14.140:443 href · ×11
52.196.193.21:80 href · ×11
210.233.72.112:80 href · ×10
150.60.176.117:443 href · ×10
116.80.12.190:80 href · ×9
153.126.141.112:443 href · ×9
61.126.47.127:443 href · ×9
13.248.146.255:443 href · ×8
176.32.76.150:443 href · ×8
34.107.150.62:443 href · ×8
34.80.145.132:443 href · ×8
176.34.8.119:80 href · ×8
202.238.63.95:443 href · ×8
13.115.89.34:443 href · ×8
13.158.171.50:443 href · ×8
13.158.211.177:443 href · ×7
104.198.110.188:80 href · ×7
158.199.160.160:80 href · ×7
150.60.241.173:80 href · ×6
49.212.237.232:443 href · ×6
160.251.203.110:80 href · ×6
1.33.176.30:443 href · ×6
150.60.241.173:443 href · ×6
54.168.152.219:443 href · ×6
4.216.199.4:80 href · ×6
183.181.85.183:443 href · ×6
54.250.100.68:443 href · ×6
180.222.186.235:80 href · ×6
160.251.80.29:80 href · ×6
18.177.104.88:443 href · ×6
1.33.175.111:443 href · ×6
35.78.47.148:443 href · ×6
47.79.146.26:443 href · ×6
54.250.100.68:80 href · ×6
210.239.39.3:443 href · ×6
57.181.228.22:80 href · ×5

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-IP leaks detected (yet)

Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.

CT-Log Evidence

Certificates from public Certificate Transparency logs whose subject or SAN names this domain — including historic certs we never observed live.

d78d99235d1cc473… google · xenon2026h2
Subject: note.com
Issuer: Amazon RSA 2048 M04
SANs: note.com, *.note.jp, *.note.mu, note.jp, *.note.com, note.mu
Valid: 2026-03-11 00:00:00 → 2026-09-24 23:59:59
6b67ec4773e9951e… google · argon2026h2
Subject: *.note.com
Issuer: GlobalSign GCC R3 DV TLS CA 2020
SANs: *.note.com, note.com
Valid: 2025-11-04 07:45:43 → 2026-12-06 07:45:42
c95757afb36fac05… google · argon2026h2
Subject: *.note.com
Issuer: GlobalSign GCC R3 DV TLS CA 2020
SANs: *.note.com, note.com
Valid: 2025-11-04 07:45:43 → 2026-12-06 07:45:42
6b67ec4773e9951e… google · xenon2026h2
Subject: *.note.com
Issuer: GlobalSign GCC R3 DV TLS CA 2020
SANs: *.note.com, note.com
Valid: 2025-11-04 07:45:43 → 2026-12-06 07:45:42
c95757afb36fac05… cloudflare · nimbus2026
Subject: *.note.com
Issuer: GlobalSign GCC R3 DV TLS CA 2020
SANs: *.note.com, note.com
Valid: 2025-11-04 07:45:43 → 2026-12-06 07:45:42

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Domain timeline pending

Passive-DNS history accumulates as our forward-DNS crawler observes A/AAAA/MX/NS/TXT records over time.