Check-Host.cc

Domain

1-grid.com

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of 1-grid.com

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
A/AAAA targets
Subdomains
CT + scan + body
Record Types
seen in DNS
Observed Certs
in our scans

DNS Records

A
AAAA
MX
NS
TXT
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: *.1-grid.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.1-grid.com, 1-grid.com
Subject: *.1-grid.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.1-grid.com, 1-grid.com
Subject: *.1-grid.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.1-grid.com, 1-grid.com
Subject: *.1-grid.com
Issuer: Sectigo RSA Domain Validation Secure Server CA
SANs: *.1-grid.com, 1-grid.com
Subject: *.1-grid.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.1-grid.com, 1-grid.com
Subject: linus.ns.1-grid.com
Issuer: linus.ns.1-grid.com
SANs: linus.ns.1-grid.com
Subject: *.1-grid.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.1-grid.com, 1-grid.com
Subject: *.1-grid.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.1-grid.com, 1-grid.com
Subject: *.1-grid.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.1-grid.com, 1-grid.com
Subject: *.1-grid.com
Issuer: Sectigo Public Server Authentication CA DV R36
SANs: *.1-grid.com, 1-grid.com

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

41.185.111.90:80 href · ×2
41.185.110.11:80 href · ×2
41.185.110.58:80 href · ×1
41.185.114.15:80 href · ×1
41.185.111.222:80 href · ×1
41.185.110.19:80 href · ×1
41.185.111.228:80 href · ×1
41.185.110.14:80 href · ×1
41.185.111.185:80 href · ×1
41.185.110.59:80 href · ×1
41.185.111.227:80 href · ×1
41.185.110.61:80 href · ×1
41.185.110.53:80 href · ×1
41.185.111.187:80 href · ×1
41.185.110.17:80 href · ×1
41.185.111.189:80 href · ×1
41.185.110.42:80 href · ×1
41.185.111.30:80 href · ×1
41.185.111.200:80 href · ×1

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

Origin IP Origin ASN CDN ASN Confidence Reasoning
41.61.250.10 AS36943 AS13335 95% cert 5a707031… served by 41.61.250.10 (AS36943) carries SAN 1-grid.com which currently resolves through Cloudflare (AS13335) at 172.67.69.42, 104.26.6.91, 104.26.7.91, 2606:4700:20::681a:65b
41.185.120.16 AS36943 AS13335 95% cert 5a707031… served by 41.185.120.16 (AS36943) carries SAN 1-grid.com which currently resolves through Cloudflare (AS13335) at 172.67.69.42, 104.26.6.91, 104.26.7.91, 2606:4700:20::681a:65b
41.185.249.10 AS36943 AS13335 95% cert 5a707031… served by 41.185.249.10 (AS36943) carries SAN 1-grid.com which currently resolves through Cloudflare (AS13335) at 172.67.69.42, 104.26.6.91, 104.26.7.91, 2606:4700:20::681a:65b
41.185.61.66 AS36943 AS13335 95% cert 5a707031… served by 41.185.61.66 (AS36943) carries SAN 1-grid.com which currently resolves through Cloudflare (AS13335) at 172.67.69.42, 104.26.6.91, 104.26.7.91, 2606:4700:20::681a:65b
41.185.110.240 AS36943 AS13335 95% cert 6a9969f7… served by 41.185.110.240 (AS36943) carries SAN 1-grid.com which currently resolves through Cloudflare (AS13335) at 172.67.69.42, 104.26.6.91, 104.26.7.91, 2606:4700:20::681a:65b

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
TXT have-i-been-pwned-verification=9902b8cc935c05f8822cb9e127894b40 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issuewild "letsencrypt.org" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT Sendinblue-code:a22b183910216edf2fa48b4ea0481a4e 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT v=spf1 include:_spf.mlsend.com include:spf.protection.outlook.com include:relay.mailchannels.net include:144893436.spf04.hubspotemail.net include:registrarmail.net ip4:41.185.120.104 ip4:41.185.120.181 ip4:41.185.61.180 include:spf.sendinblue.com include:fdspfus.freshemail.io include:sg-warmup.freshemail.io mx -all 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
NS etta.ns.cloudflare.com 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
A 172.67.69.42 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT google-site-verification=h1vqrqY-XwhT0--iuHhWPDMEFFnNzyKdZivReGvVY4g 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT v3dnyl4wghznwc0cwplrcrc2brhvjsvj 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
A 104.26.7.91 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
AAAA 2606:4700:20::681a:65b 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT sendinblue-code:496aa4ecee6144636e0a48def1959a8b 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT google-site-verification=5Re5LRXgXvy9skAXbS2SoIyrEDhG22-CtCw7G7n_cEc 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT klaviyo-site-verification=Sm66Nq 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
AAAA 2606:4700:20::ac43:452a 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issue "ssl.com" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
SRV _carddav._tcp 0 0 2079 srv07.hostserv.co.za 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
SRV _caldav._tcp 0 0 2079 srv07.hostserv.co.za 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT google-site-verification=fLu2ypAWZQfsYnkNSCsJNKbYKvLpFCZEgXEkmmDjfGQ 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issuewild "digicert.com; cansignhttpexchanges=yes" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT google-site-verification=6tEFqk12j_P7wa7olIhlJu36A3v6C95s87CW0pFUYSQ 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
AAAA 2606:4700:20::681a:75b 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issuewild "ssl.com" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT 8hz4ldrrbfvvzfkhmwc3j88y065l9rfm 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
A 104.26.6.91 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issue "digicert.com; cansignhttpexchanges=yes" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
NS ajay.ns.cloudflare.com 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issuewild "comodoca.com" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issue "pki.goog; cansignhttpexchanges=yes" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issuewild "pki.goog; cansignhttpexchanges=yes" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
SRV _sipfederationtls._tcp 100 1 5061 sipfed.online.lync.com 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issue "letsencrypt.org" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT MS=ms79635226 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
TXT facebook-domain-verification=5en5qgosoi84rb9rx41esem61db71l 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
CAA 0 issue "comodoca.com" 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018
MX 0 1grid-com0c.mail.protection.outlook.com 2026-05-26 02:46:31.734 2026-07-28 08:12:48.018