CONTINUOUS INTERNET TELEMETRY24H DRIFT6,766 material changesacross 6,468 domains · +5,857 vs yesterdayDNS DRIFT427 domains changed DNS providertop destination parity.domains · +401 vs yesterdayEMAIL DRIFT89 domains switched email providertop destination google.com · +81 vs yesterdayCERT DRIFT157 domains switched issuing CA24h · +134 vs yesterdayNOW1,809 curated domains not answering-901 vs yesterdayERRORS20,979 responded with an errorlast probe · 5xx / 404 / TLSTHROTTLED92,759 throttled or blocked our scanner429 rate-limit / 403 bot-block

windows.com

Observed Jul 21, 2026, 19:58 UTC (17h ago). Every field below was attested with an Ed25519 signature at scan time. Catalog observation, re-checked on rotation — watch it for 5-minute checks.

Up right now
Runs onMicrosoft Corporation
Secured byMicrosoft
Registered withMarkMonitor Inc.
Also usesFacebook/MetaGoogle Search Console
IPv6 · 4 subdomains · tranco_1k
Every line above is a signed observation. Check the math at the bottom of the page.
INFRASTRUCTURE MAPwhat windows.com actually stands on - every host below is a signed observation
windows.com
A / AAAA
20.231.239.24620.70.246.2020.76.201.17120.112.250.133+6 more
Microsoft Corporationserves the site
NS
ns1-205.azure-dns.comns2-205.azure-dns.netns3-205.azure-dns.orgns4-205.azure-dns.info
azure-dns.com + azure-dns.net + moreanswers its DNS
MX
mail.windows.com
windows.comreceives its email
TLS
surface.com
Microsoft Corporationissued its certificate

DNS Records

A 5

  • 20.231.239.246
  • 20.70.246.20
  • 20.76.201.171
  • 20.112.250.133
  • 20.236.44.162

AAAA 5

  • 2603:1010:3:3::5b
  • 2603:1030:c02:8::14
  • 2603:1020:201:10::10f
  • 2603:1030:20e:3::23c
  • 2603:1030:b:3::152

MX 1

  • 10mail.windows.com

TXT 5

  • v=spf1 mx -all
  • facebook-domain-verification=d65hkhpulntsek90x3rt1cqq4y06tk
  • D-TRUST=27XN9J9VBV6S24F
  • google-site-verification=ioCM5aKUAjBy9Z8Or81O6eQagwr_unGdyGJ0V8II7QM
  • v=DMARC1; p=reject; pct=100; rua=mailto:rua@dmarc.microsoft; ruf=mailto:ruf@dmarc.microsoft; fo=1

NS 4

  • ns1-205.azure-dns.com
  • ns2-205.azure-dns.net
  • ns3-205.azure-dns.org
  • ns4-205.azure-dns.info

SOA 1

  • ns1-205.azure-dns.com azuredns-hostmaster.microsoft.com

CAA 1

  • contactemail "caarecordaware@microsoft.com"

TLS Certificates (3)

Common NameIssuerExpires
surface.com C=US, O=Microsoft Corporation, CN=Microsoft TLS G2 RSA CA OCSP 04 Thu, 22 Oct 2026 19:00:10 +0000
Microsoft TLS G2 RSA CA OCSP 04 C=US, O=Microsoft Corporation, CN=Microsoft TLS RSA Root G2 Sun, 03 Jun 2029 20:02:59 +0000
Microsoft TLS RSA Root G2 C=US, O=DigiCert Inc, 2.5.4.11=www.digicert.com, CN=DigiCert Global Root G2 Tue, 19 Jun 2029 23:59:59 +0000

Subdomains (4)

The proof

Signed at scan time. Check the math yourself. Every line above is part of one signed observation. Re-hash it and check the Ed25519 signature in your own browser; nothing leaves your machine.

Verify this receipt

Put the receipt on your own site. A live badge showing what DomainDrift observes and signs for windows.com. It updates itself. It attests a signed observation - not that the site is safe.

DomainDrift signed-observation badge for windows.com <a href="https://domaindrift.io/t/windows.com"> <img src="https://domaindrift.io/badge/windows.com.svg" width="300" height="64" alt="DomainDrift signed observations for windows.com"> </a>

Ed25519 Receipt

Receipt ID
rcpt_413dc396fda0f4c4
Output Hash
92cd76a67419b1d83c4141d19c1dc69c3c2c2aef278c6b17e983a1989d4b7708
Signature
ed25519:58ede20cda0ef76b0d11ad6884ea45535cb45f568c4fa490935ac3dcdd552584d48659e60b2061ec0a24c9b761d7e0ebf319f4bf901df2f47dba36c0a083ec0b
Public Key
ed25519:178c3bd0f57d9d64b83cc4630753381e1a465005a2bbba3d032371f24af0bfd8
Parent
(genesis)
Plane
fast
Verify this in your browser