guihet.com
Aggregated from public BGP, CT logs, our scan layer, honeypots and global probes.
Run a live full scan of guihet.com
On-demand: ports, banners, TLS, tech-stack, subdomains and origin/IP-leak detection. Results are shared publicly for everyone to link to.
DNS Records
WHOIS / Registration
Registration data planned
Registrar, creation/expiry dates and domain status via RDAP. Rolling out gradually — bulk WHOIS is rate-limited, so we resolve on a prioritized cadence.
Subdomains
Every subdomain we know about — harvested from CT-log SANs, scan-observed certs and HTML body references — paired with its current A/AAAA target.
| Subdomain | Resolves to | Last seen |
|---|---|---|
| guihet.com | 2026-06-20 00:26:28.538 | |
| mdir.guihet.com | 2026-06-03 00:44:42.356 | |
| stream.guihet.com | 2026-06-03 02:09:52.082 | |
| www.api.guihet.com | 2026-06-23 19:14:47.968 | |
| www.guihet.com | 2026-06-20 01:49:05.336 | |
| api.guihet.com | 1970-01-01 00:00:00.000 | |
| h5ai.guihet.com | 2026-05-31 21:21:51.436 | |
| py.guihet.com | 1970-01-01 00:00:00.000 | |
| raja.guihet.com | 1970-01-01 00:00:00.000 | |
| sitemap.guihet.com | 2026-05-31 21:48:51.477 | |
| ww3.guihet.com | 1970-01-01 00:00:00.000 | |
| www.py.guihet.com | 1970-01-01 00:00:00.000 |
Tech Stack
Tech detection pending
Wappalyzer-rules detect CMS, frameworks, analytics, JS libs and server-side languages on this domain.
TLS Certificates
Certificate observations pending
TLS certs naming this domain in subject or SANs will appear here as our scan-layer catches them.
IPs Citing This Domain
Hosts whose HTML body references this domain. Strong signal for origin/mirror/embed discovery.
Origin / IP-Leak
When a hostname is served behind a CDN (e.g. Cloudflare), the origin server can sometimes be identified by matching its TLS cert against the protected hostname. Findings shown here are heuristic candidates, not guarantees.
No origin-IP leaks detected (yet)
Either this domain doesn't sit behind a CDN, or we haven't seen a TLS cert from a non-CDN IP matching this hostname. Run a fullscan to refresh the cert→IP cross-reference.
Threat Intelligence
Domain threat-intel pending
Matches in URLhaus, OpenPhish, PhishTank, malware feeds, and Spamhaus DBL.
History
Passive DNS — every value this name ever resolved to and when we first / last observed it. Updates every cycle of our forward-DNS crawler.
| Type | Value | First seen | Last seen |
|---|---|---|---|
| NS | ns2.brainydns.com | 2026-05-26 08:56:48.112 | 2026-06-20 00:26:28.538 |
| NS | ns1.brainydns.com | 2026-05-26 08:56:48.112 | 2026-06-20 00:26:28.538 |
| A | 212.92.104.2 | 2026-05-26 08:56:48.112 | 2026-05-26 08:56:48.112 |
| NS | ns2.kirklanddc.com | 2026-05-26 17:18:28.359 | 2026-05-26 17:18:28.359 |
| A | 212.92.104.10 | 2026-05-26 17:18:28.359 | 2026-05-26 17:18:28.359 |
| NS | ns1.kirklanddc.com | 2026-05-26 17:18:28.359 | 2026-05-26 17:18:28.359 |
| A | 212.92.104.6 | 2026-05-26 17:33:41.148 | 2026-05-26 17:33:41.148 |
| A | 37.48.77.79 | 2026-05-31 20:45:52.616 | 2026-05-31 20:45:52.616 |
| TXT | dbg: src: ds, acme: false | 2026-06-17 03:53:53.384 | 2026-06-20 00:26:28.538 |
| NS | ns1.magpiedns.com | 2026-06-17 03:53:53.384 | 2026-06-17 03:57:09.491 |
| A | 5.79.75.212 | 2026-06-17 03:53:53.384 | 2026-06-17 03:53:53.384 |
| NS | ns2.magpiedns.com | 2026-06-17 03:53:53.384 | 2026-06-17 03:57:09.491 |
| A | 212.92.104.116 | 2026-06-17 03:57:09.491 | 2026-06-20 00:26:28.538 |