Domain Information
WordPress Version: Unknown
Theme: Divi 4.9.96· 60% conf. (theme used by 473,297 domains)
Last Checked: 2026-09-10 21:40:25
HTTPS: Yes
Server: Apache
Response time (TTFB): 3,258 ms slow
Hosting: IONOS SE (AS8560)
IP address: 74.208.236.xxx
PHP version: 7.4.33 — end-of-life, no security updates
Plugins (15)
| Plugin | Version | Used By |
|---|---|---|
| addons-for-divi | 3.6.6· 85% conf. | 11,332 |
| divi-event-calendar-module | 1.0.0· 85% conf. | 3,175 |
| divi-mad-menu | 1.9.1· 85% conf. | 1,314 |
| dzs-zoomsounds | 6.73· 85% conf. | 148 |
| event-tickets | 5.9.0· 85% conf. | 18,484 |
| give | 4.16.8· 85% conf. | 17,104 |
| give-fee-recovery | 2.2.0· 85% conf. | 1,742 |
| give-form-field-manager | 3.0.4· 85% conf. | 2,460 |
| give-funds | 2.0.1· 85% conf. | 678 |
| give-recurring | 2.7.0· 85% conf. | 3,764 |
| give-stripe | 2.5.0· 60% conf. | 778 |
| give-tributes | 2.1.0· 85% conf. | 1,093 |
| supreme-modules-pro-for-divi | 4.9.96· 85% conf. | 29,776 |
| the-events-calendar | 5.2.5· 85% conf. | 117,404 |
| tribe-ext-calendar-widget-areas | 1.1.0· 60% conf. | 103 |
Security Headers
6 missing headers
Missing headers:
- Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
- X-Content-Type-Options — Prevents MIME sniffing ?
- X-Frame-Options — Prevents clickjacking ?
- Referrer-Policy — Controls referrer information ?
- Permissions-Policy — Limits browser features ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.
Other WordPress domains on this IP (25+)
These WordPress domains are served from the same IP (74.208.236.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- a*o*t*s*w*t*h.com
- b*e*t*o*l.com
- b*o*n*v*l*e*r*p.com
- d*n*e*b*u*r*a*.com
- d*s*e*t*d*r*e*e*i*o.com
- e*t*o*t*r*e*s.com
- e*o*v*w*a*o*s*y*t*m*.com
- e*b*n*f*n*e*.com
- e*w*y*n*u*a*c*g*o*p.com
- e*w*y*o*t*a*e*r*u*.com
- e*w*y*o*u*i*n*.com
- f*d*o*t*c*.com
- h*p*r*o*a*h*m*c*r*.com
- k*o*k*s*n*o*m*t*c*s.com
- m*k*n*e*m*x*d.com
- m*a*d*o*m*s.com
- o*k*i*l*d*v*l*p*e*t.com
- p*r*s*i*.com
- r*e*g*g*.com
- r*n*o*r*o*d*i*e.com
- r*t*i*p*r*n*r.com
- r*s*o*l*f*.com
- s*i*i*a*r*c*n*a*k*t.com
- s*m*r*e*s*.com
- s*i*a*t*p*o*m.com