Check-Host.cc

Domain

command.pl

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of command.pl

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
A/AAAA targets
Subdomains
CT + scan + body
Record Types
seen in DNS
Observed Certs
in our scans

DNS Records

A
13.59.147.167, 18.224.104.61
AAAA
MX
NS
a.ns.3m.com, b.ns.3m.com
TXT
facebook-domain-verification=6055we0i7rdk88h3o5oddgk7nn48se, google-site-verification=ZYu-WD8Yh6BtY8tEdlhmjO_3518VI2hPQiEDLpsHR4A, v=spf1 -all
CNAME
CAA

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: command.platform.qintel.com
Issuer: Amazon RSA 2048 M04
SANs: command.platform.qintel.com
Subject: command.platform.qintel.com
Issuer: Amazon RSA 2048 M04
SANs: command.platform.qintel.com

IPs Citing This Domain

No citing IPs found yet

As the world-sweep progresses, hosts referencing this domain in their HTML will surface here.

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

Origin IP Origin ASN CDN ASN Confidence Reasoning
23.8.147.241 AS17639 AS16625 95% cert 0417d1a9… served by 23.8.147.241 (AS17639) carries SAN www.command.pl which currently resolves through Akamai (AS16625) at 104.102.56.101, 2a02:26f0:fe00:185::34fe, 2a02:26f0:fe00:1b7::34fe

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
TXT v=spf1 -all 2026-07-23 19:37:25.305 2026-07-23 19:37:25.305
A 13.59.147.167 2026-07-23 19:37:25.305 2026-07-23 19:37:25.305
NS b.ns.3m.com 2026-07-23 19:37:25.305 2026-07-23 19:37:25.305
TXT google-site-verification=ZYu-WD8Yh6BtY8tEdlhmjO_3518VI2hPQiEDLpsHR4A 2026-07-23 19:37:25.305 2026-07-23 19:37:25.305
A 18.224.104.61 2026-07-23 19:37:25.305 2026-07-23 19:37:25.305
NS a.ns.3m.com 2026-07-23 19:37:25.305 2026-07-23 19:37:25.305
TXT facebook-domain-verification=6055we0i7rdk88h3o5oddgk7nn48se 2026-07-23 19:37:25.305 2026-07-23 19:37:25.305