Domain Information
WordPress Version: 7.1
Theme: hello-elementor (used by 604,726 domains)
Last Checked: 2026-09-07 18:16:39
HTTPS: No
Server: Apache
Response time (TTFB): 3,381 ms slow
Hosting: IONOS SE (AS8560)
IP address: 217.160.0.xxx
Plugins (15)
| Plugin | Used By |
|---|---|
| co-authors-plus | 1,125 |
| cookie-notice | 143,627 |
| download-list-block-with-icons | 70 |
| elementor | 1,713,799 |
| elementor-pro | 1,021,839 |
| embed-pdf-viewer | 4,863 |
| flexible-table-block | 2,246 |
| flexy-breadcrumb | 3,940 |
| gg-lightbox | 293 |
| gutena-tabs | 249 |
| image-hover-effects-block | 1,036 |
| osm-map-elementor | 1,856 |
| pojo-accessibility | 62,884 |
| very-simple-event-list | 2,176 |
| wpfront-scroll-top | 33,608 |
Security Headers
6 missing headers
Missing headers:
- Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
- X-Content-Type-Options — Prevents MIME sniffing ?
- X-Frame-Options — Prevents clickjacking ?
- Referrer-Policy — Controls referrer information ?
- Permissions-Policy — Limits browser features ?
Exposed Files & Configurations
No exposed files detected
Our automated scan did not detect any publicly-accessible sensitive files or critical misconfigurations on this domain.
However, this does not mean the site is completely secure. There are many other potential vulnerabilities that require deeper analysis:
- Outdated themes or plugins
- Outdated third-party scripts and software
- Weak passwords and authentication
- SQL injection vulnerabilities
- Cross-site scripting (XSS) issues
- Insecure server configurations
- OS command injection vulnerabilities
- Unprotected file uploads
- ...
Questions about your WordPress security? Reach out — we offer comprehensive security audits and can help identify hidden vulnerabilities.
Other WordPress domains on this IP (25+)
These WordPress domains are served from the same IP (217.160.0.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- a*e*b*h*i*g.de
- a*l*i*-*l*s*i*s.de
- a*a*o*a*e*b*o*.com
- a*d*l*o*e.com
- a*d*u*v*s.com
- a*d*e*s*o*z*u*i*.com
- a*e*c*n.com
- a*n*a*b*r*.com
- a*i*-*a*i*i*.de
- b*a*w*l*b*a*k*m*t*s.com
- c*m*u*-*o*k*w*t*.de
- c*-*i*l*n*u*g.de
- d*l*a*f*s*e*i*.com
- d*n*b*r*i*.com
- d*n*e*o*.com
- d*v*d*o*e*r*l*a*.com
- d*r*o*o*r*h*.com
- d*s*g*f*r*i*s*n*.com
- d*u*i*m*-*t*g*.com
- d*v*l*o*-*d.com
- e*s*t*l*a.net
- e*t*a*e*i*m*r*e*i*g.digital
- e*t*d*o*o*e*o.com
- e*-*e*a.com
- e*-*i.de