CONTINUOUS INTERNET TELEMETRY24H DRIFT321 material changesacross 272 domains · -337 vs yesterdayCERT DRIFT3 domains switched issuing CA24h · +1 vs yesterdayNOW3,494 curated domains not answering+665 vs yesterdayERRORS22,966 responded with an errorlast probe · 5xx / 404 / TLSTHROTTLED63,777 throttled or blocked our scanner429 rate-limit / 403 bot-block24H DRIFT321 material changesacross 272 domains · -337 vs yesterdayCERT DRIFT3 domains switched issuing CA24h · +1 vs yesterdayNOW3,494 curated domains not answering+665 vs yesterdayERRORS22,966 responded with an errorlast probe · 5xx / 404 / TLSTHROTTLED63,777 throttled or blocked our scanner429 rate-limit / 403 bot-block

aws.com

Observed Jul 18, 2026, 05:54 UTC (2d ago). Every field below was attested with an Ed25519 signature at scan time.

Up right now
Runs onCloudflare
Registered withMarkMonitor Inc.
Also usesGoogle Search Console
IPv6 · 5 subdomains · tranco_5k
Every line above is a signed observation. Check the math at the bottom of the page.
INFRASTRUCTURE MAPwhat aws.com actually stands on - every host below is a signed observation
aws.com
A / AAAA
52.85.151.10852.85.151.1352.85.151.6252.85.151.21+8 more
Cloudflareserves the site
NS
ns-1500.awsdns-59.orgns-164.awsdns-20.comns-2028.awsdns-61.co.ukns-917.awsdns-50.net
awsdns-59.org + awsdns-20.com + moreanswers its DNS
MX
inbound-smtp.us-east-1.amazonaws.com
amazonaws.comreceives its email

HTTPS probe

redirect Redirecting (3xx) 302 → https://www.aws.com:443/
HTTP status302
Servercloudflare
TLS protocolHTTP/2
TLS issuernot observed
Behind Cloudflareyes
Response time166 ms
DNS resolutionNOERROR
Redirect chain
https://www.aws.com:443/

Every field above is part of the same signed observation as the records below. Blank means not observed, never "none".

DNS Records

A 4

  • 52.85.151.108
  • 52.85.151.13
  • 52.85.151.62
  • 52.85.151.21

AAAA 8

  • 2600:9000:201e:200:10:ef80:1740:93a1
  • 2600:9000:201e:fc00:10:ef80:1740:93a1
  • 2600:9000:201e:b200:10:ef80:1740:93a1
  • 2600:9000:201e:2c00:10:ef80:1740:93a1
  • 2600:9000:201e:1c00:10:ef80:1740:93a1
  • 2600:9000:201e:f400:10:ef80:1740:93a1
  • 2600:9000:201e:6800:10:ef80:1740:93a1
  • 2600:9000:201e:7600:10:ef80:1740:93a1

MX 1

  • 10inbound-smtp.us-east-1.amazonaws.com

TXT 2

  • google-site-verification=wVtlu6d2YFE8PLs5bIjYDMwbdUU4LpAZFCCHffz1vCY
  • v=DMARC1; p=quarantine; rua=mailto:dmarc-rua-reports-aws@aws.com; ruf=mailto:dmarc-ruf-reports-aws@aws.com;

NS 4

  • ns-1500.awsdns-59.org
  • ns-164.awsdns-20.com
  • ns-2028.awsdns-61.co.uk
  • ns-917.awsdns-50.net

SOA 1

  • ns-2028.awsdns-61.co.uk awsdns-hostmaster.amazon.com

TLS Certificates (0)

None.

Subdomains (5)

The proof

Signed at scan time. Check the math yourself. Every line above is part of one signed observation. Re-hash it and check the Ed25519 signature in your own browser; nothing leaves your machine.

Verify this receipt

Put the receipt on your own site. A live badge showing what DomainDrift observes and signs for aws.com. It updates itself. It attests a signed observation - not that the site is safe.

DomainDrift signed-observation badge for aws.com <a href="https://domaindrift.io/t/aws.com"> <img src="https://domaindrift.io/badge/aws.com.svg" width="300" height="64" alt="DomainDrift signed observations for aws.com"> </a>

Ed25519 Receipt

Receipt ID
0ab70dda-ecad-4253-81e1-1da1d697e19d
Output Hash
2973994ca6fdce0cb92b18d92f72a743fcfa127dadff0616e5065f903063f47e
Signature
ed25519:c0531f0b9a568fbe9f9d80dfc7b1b455c3463f94320c04ca415e9bfda8e497387dc998700dd56a4a0beab1c80f394a17170da7cffabc5a43822869c92594fb0c
Public Key
ed25519:7aad40f2d6399c207fe2fc15aade04a78324787a355d36725cc90687f9e10cff
Parent
(genesis)
Plane
fast
Verify this in your browser