Skip to content

Hostname

sign-doc.com

Last fetched

sign-doc.com is a hostname indexed by WhisperGraph, the internet-infrastructure graph behind the Whisper Internet Directory. sign-doc.com is listed by 1 threat feed; reconciled level HIGH.

Threat posture

40threat score (procedure-native scale)

HIGH

Listed by 1 threat feed. At least one source recommends blocking.

Threat feeds listing this
1
Verdict coverage
malicious-evidenced
First seen on a feed
Wed, 26 Aug 2026 14:51:25 GMT
Last seen on a feed
Sun, 13 Sep 2026 00:18:18 GMT

Nutrition Label

WHISPER CANON · sign-doc.comRouting diversity0.0/10Peering density0.0/10MOAS conflict✓ noneThreat-feed listings8.0/10WHOIS transparency10.0/10Resolver footprint4.6/10canon.whisper.security/host/sign-doc.com

Resolution chain

No IPv4 resolution is recorded for sign-doc.com in WhisperGraph.

IPv6 resolution

No AAAA record for sign-doc.com is recorded in WhisperGraph.

WHOIS identity

Registrar
iana:468
Registrant organisation
on behalf of sign-doc.com owner
Contact emails
4e2e6238-5405-4b93-a9fe-da774fbeea61@identity-protect.org, 9aacdf55-ef8a-4f50-a314-bc41ecfdfa53@identity-protect.org, a68e67d7-2a24-4d95-8d70-258de8907617@identity-protect.org, b4472f60-74e7-4722-8bcf-d90a10934a72@identity-protect.org, de0a12b7-0a0f-4233-9513-af0305d2d84b@identity-protect.org, owner-11741905@sign-doc.com.whoisprivacyservice.org, owner-3519731@sign-doc.com.whoisprivacyservice.org, owner-3944844@sign-doc.com.whoisprivacyservice.org

Subdomains

Mail and authentication

Nameservers

  • ns-373.awsdns-46.com
  • ns-909.awsdns-49.net
  • ns-1263.awsdns-29.org
  • ns-1960.awsdns-53.co.uk

MX records

  • inbound-smtp.us-east-1.amazonaws.com

SPF policy

  • include: _phishspf.knowbe4.com

Threat-feed evidence

History

Related pages

Pivot from sign-doc.com into the addresses, networks and registries it depends on.

Cypher and MCP

Reproduce this hostname's resolution chain against graph.whisper.security:

MATCH (h:HOSTNAME {name: "sign-doc.com"})-[:RESOLVES_TO]->(ip:IPV4)
      -[:ANNOUNCED_BY]->(ap:ANNOUNCED_PREFIX)-[:ROUTES]->(a:ASN)
OPTIONAL MATCH (a)-[:HAS_NAME]->(n:ASN_NAME)
RETURN ip.name AS ip, ap.name AS prefix, a.name AS asn, n.name AS network
LIMIT 20

Or query Whisper from your own LLM workflow via the Whisper MCP server.