abuse.ch

.ch crawl

First seen 2026-05-13 · Last seen 2026-05-19 · ok HTTP/1.1 200 3262 ms crawled 2026-05-19

US · 151.101.2.49 · AS54113 Fastly, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
abuse.ch | Fighting malware and botnets
Description
abuse.ch | Fighting malware and botnets
Language
en
Feeds

Technology

Server
Apache
Analytics
  • Google Tag Manager

Third-party hosts loaded (1)

  • www.googletagmanager.com×1

Social

DNS records live

NS
  • ns-cloud-d1.googledomains.com
  • ns-cloud-d2.googledomains.com
  • ns-cloud-d3.googledomains.com
  • ns-cloud-d4.googledomains.com
MX
  • 10 mail.abuse.ch
TXT
  • google-site-verification=9GmGDr8P2F0vNkxmJlN8PMBfJSlDyiltmmXIyqi01tg
  • _globalsign-domain-verification=3_1gRaAk96wFvXtXKHjIaI9Ew5GcqF5wtj8Uyt292w
  • globalsign-domain-verification=o5TMkvqJXWM01aNCIJz3LZjm6Vc2Yv7_Go1DndvoC7

Email authentication strong

SPF
v=spf1 mx ip4:207.154.192.128 ip4:92.42.187.64 ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; sp=reject; rua=mailto:fhx90s51@ag.dmarcian-eu.com; ruf=mailto:fhx90s51@fr.dmarcian-eu.com;
policy: reject (enforced) · sp=reject
DKIM
no key found at common selectors

Certificate (current)

GlobalSign Atlas R3 DV TLS CA 2025 Q4
from 2025-12-09 to 2027-01-10
Expires in 236 days

HTTP security headers

Header hygiene 95/100 Checked live page: https://abuse.ch/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
findings
  • CSP allows unsafe inline scripts/styles
Header values
referrer-policy
strict-origin-when-cross-origin
x-frame-options
sameorigin
permissions-policy
accelerometer=(), ambient-light-sensor=(), autoplay=(), camera=(), encrypted-media=(), fullscreen=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), speaker=(), usb=(), vr=()
x-content-type-options
nosniff
content-security-policy
default-src 'self' https://fonts.gstatic.com https://www.gstatic.com:443; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://platform.twitter.com:443 https://www.gstatic.com:443 https://www.googletagmanager.com:443; style-src 'self' 'unsafe-inline' https://www.gstatic.com:443 https://fonts.googleapis.com; frame-src https://platform.twitter.com:443; img-src 'self' data: https://syndication.twitter.com:443; object-src 'none'
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (5)

Linked from (3)