Check-Host.cc

Domain

fr.wordpress.org

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of fr.wordpress.org

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
4
A/AAAA targets
Subdomains
CT + scan + body
Record Types
6
seen in DNS
Observed Certs
in our scans

DNS Records

A
198.143.164.252, 66.6.42.252
AAAA
2607:f978:5:8002::c68f:a4fc, 2620:109:b00a::4206:2afc
MX
10 smtp1-dca.wordpress.org, 10 smtp1-ord.wordpress.org, 10 smtp2-dca.wordpress.org, 10 smtp2-ord.wordpress.org
NS
ns1.wordpress.org, ns2.wordpress.org, ns3.wordpress.org, ns4.wordpress.org
TXT
google-site-verification=UL0sGJ1dZbCT4J7pGrLW3hqM_I1LJ8pUi2WBEI_98kI, google-site-verification=t8FjG1vzC4OFZJ8qL4SkR8xxtLyKldXKbswyeemQS5w, v=spf1 ip4:66.6.42.0/24 ip4:66.155.40.0/24 include:helpscoutemail.com -all, v=spf1 ip4:66.6.42.0/24 ip4:66.155.40.0/24 ip4:198.143.164.0/24 include:helpscoutemail.com -all
CNAME
CAA
0 iodef "mailto:caa@wordpress.org", 0 issue "letsencrypt.org;validationmethods=dns-01;accounturi=https://acme-v02.api.letsencrypt.org/acme/acct/53691143"

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Certificate observations pending

TLS certs naming this domain in subject or SANs will appear here as our scan-layer catches them.

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

31.207.39.232:443 href · ×4
82.64.196.122:80 href · ×3
15.237.124.36:443 href · ×3
109.234.164.94:443 href · ×2
149.202.141.135:80 href · ×2
204.13.238.26:443 href · ×2
46.16.202.116:443 href · ×2
151.80.40.159:443 href · ×2
91.121.33.136:443 href · ×2
193.168.147.147:80 href · ×2
81.13.224.159:80 href · ×2
54.37.67.188:8080 href · ×2
62.210.103.191:443 href · ×2
193.183.109.93:443 href · ×2
54.36.142.246:80 href · ×2
185.216.25.160:80 href · ×2
212.83.137.4:443 href · ×2
5.196.137.142:80 href · ×2
104.238.188.240:80 href · ×2
41.79.227.142:443 href · ×2
15.236.140.133:80 href · ×2
141.94.78.44:443 href · ×2
23.236.238.37:80 href · ×2
193.168.146.188:80 href · ×2
138.197.133.138:443 href · ×2
162.19.246.229:443 href · ×2
51.83.104.50:443 href · ×2
51.77.200.7:80 href · ×2
142.93.145.124:443 href · ×2
34.135.51.28:8080 href · ×2
213.186.56.68:443 href · ×2
51.178.79.132:443 href · ×2
20.39.253.111:443 href · ×2
163.172.73.146:80 href · ×2
109.234.161.143:443 href · ×2
46.225.208.124:443 href · ×2
192.46.234.199:8080 href · ×2
87.98.167.137:443 href · ×1
23.254.231.134:80 href · ×1
109.234.161.172:443 href · ×1
185.22.110.28:443 href · ×1
141.145.220.106:80 href · ×1
57.131.49.5:443 href · ×1
86.196.239.29:8081 href · ×1
51.38.178.115:443 href · ×1
51.210.107.253:443 href · ×1
164.132.213.35:80 href · ×1
82.64.130.38:80 href · ×1
152.160.222.136:443 href · ×1
51.75.197.54:443 href · ×1

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

No origin-IP leaks detected (yet)

Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
AAAA 2607:f978:5:8002::c68f:a4fc 2026-05-25 21:56:50.553 2026-06-23 20:09:05.501
A 198.143.164.252 2026-05-25 21:56:50.553 2026-06-23 20:09:05.501
TXT google-site-verification=UL0sGJ1dZbCT4J7pGrLW3hqM_I1LJ8pUi2WBEI_98kI 2026-05-25 22:05:29.416 2026-07-28 13:32:41.076
MX 10 smtp2-ord.wordpress.org 2026-05-25 22:05:29.416 2026-05-31 12:03:40.730
NS ns4.wordpress.org 2026-05-25 22:05:29.416 2026-07-28 13:32:41.076
TXT google-site-verification=t8FjG1vzC4OFZJ8qL4SkR8xxtLyKldXKbswyeemQS5w 2026-05-25 22:05:29.416 2026-07-28 13:32:41.076
NS ns2.wordpress.org 2026-05-25 22:05:29.416 2026-07-28 13:32:41.076
NS ns3.wordpress.org 2026-05-25 22:05:29.416 2026-07-28 13:32:41.076
TXT v=spf1 ip4:66.6.42.0/24 ip4:66.155.40.0/24 ip4:198.143.164.0/24 include:helpscoutemail.com -all 2026-05-25 22:05:29.416 2026-06-23 20:09:05.501
NS ns1.wordpress.org 2026-05-25 22:05:29.416 2026-07-28 13:32:41.076
MX 10 smtp1-ord.wordpress.org 2026-05-25 22:05:29.416 2026-05-31 12:03:40.730
CAA 0 issue "letsencrypt.org;validationmethods=dns-01;accounturi=https://acme-v02.api.letsencrypt.org/acme/acct/53691143" 2026-05-26 00:03:35.658 2026-07-28 13:32:41.076
CAA 0 iodef "mailto:caa@wordpress.org" 2026-05-26 00:03:35.658 2026-07-28 13:32:41.076
MX 10 smtp2-dca.wordpress.org 2026-06-14 22:08:58.337 2026-07-28 13:32:41.076
MX 10 smtp1-dca.wordpress.org 2026-06-14 22:08:58.337 2026-07-28 13:32:41.076
A 66.6.42.252 2026-07-16 00:15:27.850 2026-07-28 13:32:41.076
AAAA 2620:109:b00a::4206:2afc 2026-07-16 00:15:27.850 2026-07-28 13:32:41.076
TXT v=spf1 ip4:66.6.42.0/24 ip4:66.155.40.0/24 include:helpscoutemail.com -all 2026-07-16 00:15:27.850 2026-07-28 13:32:41.076