Check-Host.cc

Domain

hostkey.com

Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.

Run a live full scan of hostkey.com

On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.

Deep-scan now
Hosting IPs
A/AAAA targets
Subdomains
CT + scan + body
Record Types
seen in DNS
Observed Certs
in our scans

DNS Records

A
104.26.12.47, 104.26.13.47, 172.67.74.127
AAAA
2606:4700:20::681a:c2f, 2606:4700:20::681a:d2f, 2606:4700:20::ac43:4a7f
MX
1 aspmx.l.google.com, 10 aspmx2.googlemail.com, 10 aspmx3.googlemail.com, 10 aspmx4.googlemail.com, 10 aspmx5.googlemail.com, 5 alt1.aspmx.l.google.com, 5 alt2.aspmx.l.google.com
NS
anton.ns.cloudflare.com, violet.ns.cloudflare.com
TXT
NWeOWfbXFlz1XkWydyvpVBRHscznGsYHaA8reLbmKp8, v=spf1 include:_spf.google.com include:spf.brevo.com mx -all, yandex-verification: d0a6ec25928d2803
CNAME
CAA
0 issue "comodoca.com", 0 issue "digicert.com; cansignhttpexchanges=yes", 0 issue "letsencrypt.org", 0 issue "pki.goog; cansignhttpexchanges=yes", 0 issue "ssl.com", 0 issuewild "comodoca.com", 0 issuewild "digicert.com; cansignhttpexchanges=yes", 0 issuewild "letsencrypt.org"

WHOIS / Registration

Registration data planned

Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.

Subdomains

Subdomain enumeration pending

Every subdomain ever issued a TLS cert under this apex — extracted from Certificate Transparency logs, our own scan observations and body references.

Tech Stack

Tech detection pending

Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.

TLS Certificates

Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com
Subject: *.hostkey.com
Issuer: Sectigo Public Server Authentication CA OV R36
SANs: *.hostkey.com, hostkey.com

IPs Citing This Domain

Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.

82.38.66.66:443 href · ×142
82.38.66.66:443 og:url · ×2
82.38.66.66:443 canonical · ×1
185.146.232.15:443 href · ×1
66.248.205.244:80 href · ×1
66.248.205.244:443 href · ×1
158.255.6.78:443 href · ×1

Origin / IP-Leak

USP

When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.

Origin IP Origin ASN CDN ASN Confidence Reasoning
66.248.205.244 AS57043 AS13335 95% cert 5de936e2… served by 66.248.205.244 (AS57043) carries SAN hostkey.com which currently resolves through Cloudflare (AS13335) at 104.26.12.47, 104.26.13.47, 172.67.74.127, 2606:4700:20::681a:d2f
195.162.69.70 AS57043 AS13335 95% cert 5de936e2… served by 195.162.69.70 (AS57043) carries SAN hostkey.com which currently resolves through Cloudflare (AS13335) at 104.26.12.47, 104.26.13.47, 172.67.74.127, 2606:4700:20::681a:d2f
194.180.206.51 AS57043 AS13335 95% cert 5de936e2… served by 194.180.206.51 (AS57043) carries SAN hostkey.com which currently resolves through Cloudflare (AS13335) at 104.26.12.47, 104.26.13.47, 172.67.74.127, 2606:4700:20::681a:d2f
146.0.75.248 AS57043 AS13335 95% cert 5de936e2… served by 146.0.75.248 (AS57043) carries SAN hostkey.com which currently resolves through Cloudflare (AS13335) at 104.26.12.47, 104.26.13.47, 172.67.74.127, 2606:4700:20::681a:d2f
193.247.81.60 AS57043 AS13335 95% cert 5de936e2… served by 193.247.81.60 (AS57043) carries SAN hostkey.com which currently resolves through Cloudflare (AS13335) at 104.26.12.47, 104.26.13.47, 172.67.74.127, 2606:4700:20::681a:d2f
146.0.73.72 AS57043 AS13335 95% cert 5de936e2… served by 146.0.73.72 (AS57043) carries SAN hostkey.com which currently resolves through Cloudflare (AS13335) at 104.26.12.47, 104.26.13.47, 172.67.74.127, 2606:4700:20::681a:d2f
185.84.224.68 AS57043 AS13335 95% cert 5de936e2… served by 185.84.224.68 (AS57043) carries SAN hostkey.com which currently resolves through Cloudflare (AS13335) at 104.26.12.47, 104.26.13.47, 172.67.74.127, 2606:4700:20::681a:d2f
146.0.75.221 AS57043 AS13335 95% cert 5de936e2… served by 146.0.75.221 (AS57043) carries SAN hostkey.com which currently resolves through Cloudflare (AS13335) at 104.26.12.47, 104.26.13.47, 172.67.74.127, 2606:4700:20::681a:d2f

Threat Intelligence

Domain threat-intel pending

Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.

History

Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.

Type Value First seen Last seen
AAAA 2606:4700:20::ac43:4a7f 2026-05-25 21:52:03.357 2026-07-28 02:58:03.815
AAAA 2606:4700:20::681a:d2f 2026-05-25 21:52:03.357 2026-07-28 02:58:03.815
AAAA 2606:4700:20::681a:c2f 2026-05-25 21:52:03.357 2026-07-28 02:58:03.815
A 104.26.12.47 2026-05-25 21:52:03.357 2026-07-28 02:58:03.815
A 104.26.13.47 2026-05-25 21:52:03.357 2026-07-28 02:58:03.815
A 172.67.74.127 2026-05-25 21:52:03.357 2026-07-28 02:58:03.815
TXT v=spf1 include:_spf.google.com include:spf.brevo.com mx -all 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
NS violet.ns.cloudflare.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issue "ssl.com" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
TXT yandex-verification: d0a6ec25928d2803 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issuewild "digicert.com; cansignhttpexchanges=yes" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
MX 10 aspmx2.googlemail.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issuewild "ssl.com" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
MX 5 alt2.aspmx.l.google.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
TXT NWeOWfbXFlz1XkWydyvpVBRHscznGsYHaA8reLbmKp8 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
MX 1 aspmx.l.google.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
MX 10 aspmx4.googlemail.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issue "digicert.com; cansignhttpexchanges=yes" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
MX 5 alt1.aspmx.l.google.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issuewild "comodoca.com" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issuewild "letsencrypt.org" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issuewild "pki.goog; cansignhttpexchanges=yes" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
NS anton.ns.cloudflare.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issue "letsencrypt.org" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
MX 10 aspmx3.googlemail.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issue "comodoca.com" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
MX 10 aspmx5.googlemail.com 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815
CAA 0 issue "pki.goog; cansignhttpexchanges=yes" 2026-05-26 05:22:44.503 2026-07-28 02:58:03.815