Initializing diagnostics...

⚡ Live Data: Report generated fresh from authoritative registries. 🔄 Force Refresh
🤖 AI Intelligence Summary

The domain deost.ru is registered with an undisclosed registrar. It resolves to IP address 92.53.96.207, hosted by JSC "TIMEWEB". Email delivery is handled by Self-hosted or Custom. SPF authentication is published and valid. DMARC policy is published. Web traffic is secured with an SSL certificate issued by GlobalSign GCC R3 DV TLS CA 2020.

Domain Overview: deost.ru

Domain Registration 🌐
Active N/A

Expires in N/A · DNSSEC: Unsigned

Email Security 🛡️
SPF: Pass DKIM: Detected DMARC: Reject

Self-hosted or Custom (2 MX)

SSL Certificate 🔒
Valid Chain 64 Days Left

Issuer: GlobalSign GCC R3 DV TLS CA 2020 (2 SANs)

Server & Hosting 🖥️
200 nginx/1.30.4

St Petersburg, St.-Petersburg, Russia (RU)

🌐 Domain & Registration Identity View Full Whois Details →

Domaindeost.ru
Website TitleFavicon Деост
RegisteredN/A
ExpiresN/A
Remaining ValidityN/A
Domain AgeN/A
RegistrarN/A
Domain StatusN/A i
DNSSEC Delegation Unsigned · Zone not signed with DNSSEC keys i
Authoritative Nameservers ns1.yandexcloud.net, ns2.yandexcloud.net i

🛡️ Email Security & Deliverability (SPF, DKIM, DMARC) View Complete Email Security Diagnostics →

Detected Email Provider 📬 Self-hosted or Custom
Primary Mail Server (MX) mx76.antispam-post.ru (Priority: 10) · 2 MX servers configured i
SPF Record (Sender Policy) Pass · 2/10 DNS Lookups · Policy: -all i
v=spf1 +a:mail.deost.ru include:spf.protection.outlook.com -all
DKIM Authentication Detected · Discovered: Mail / Generic (mail) i
DMARC Policy Pass (Reject) · Subdomain Policy: sp=reject · Reports: mailto:postmaster@deost.ru i
v=DMARC1; p=reject; sp=reject; rua=mailto:postmaster@deost.ru; ruf=mailto:postmaster@deost.ru; fo=0
SMTP Port 25 Status Online (568ms) · Inbound mail server handshake response

🖥️ Web Server, Hosting & Network View Full Server & Tech Details →

Web Server Software nginx/1.30.4 i
HTTP Status Code 200 i
Server IP (IPv4) 92.53.96.207 View Geo Details →
IPv6 Address (AAAA) Not Configured
Reverse DNS (PTR) vh192.timeweb.ru
Server Location 📍 St Petersburg, St.-Petersburg, Russia (RU)
ASN Network & ISP AS9123 (JSC "TIMEWEB")
Hosting Provider JSC "TIMEWEB" i
Control Panel Not Detected i
Technology Stack Nginx Google Analytics
HTTP Security Headers 1 / 6 Active (X-Frame) Audit Details →
DNSBL Blacklist Reputation Clean (0/5 lists)

🔒 SSL/TLS Certificate Summary View Full SSL Certificate & Chain →

Primary Hostname (CN) *.deost.ru · Multi-Domain SAN (Covers 2 hostnames)
SSL IssuerGlobalSign GCC R3 DV TLS CA 2020
SSL Valid Till2026-11-29
Remaining Validity64 Days
Chain Status Valid Trusted Chain
Signature AlgorithmRSA-SHA256

Whois Ownership & Registration for deost.ru

📄 View Raw Registry Response ↓

Domain Information i

Registrar Information i

Registrant Contact i

Contact information for this role is not provided or redacted.

Administrative Contact i

Contact information for this role is not provided or redacted.

Technical Contact i

Contact information for this role is not provided or redacted.

📄 View Raw Registry Response Legacy Whois (Port 43)
% TCI Whois Service. Terms of use:
% https://tcinet.ru/documents/whois_ru_rf.pdf (in Russian)
% https://tcinet.ru/documents/whois_su.pdf (in Russian)

domain:        DEOST.RU
nserver:       ns1.yandexcloud.net.
nserver:       ns2.yandexcloud.net.
state:         REGISTERED, DELEGATED, VERIFIED
org:           
taxpayer-id:   
registrar:     RU-CENTER-RU
admin-contact: https://www.nic.ru/whois
created:       2000-11-26T21:00:00Z
paid-till:     2026-11-28T21:00:00Z
free-date:     2026-12-30
source:        TCI

Last updated on 2026-09-25T16:58:01Z

DNS Records for deost.ru

NS Records i

NameDataCopy
deost.ru. ns1.yandexcloud.net.
deost.ru. ns2.yandexcloud.net.

A Records i

NameDataCopy
deost.ru. 92.53.96.207

AAAA Records i

No AAAA records found.

WWW Records (www.deost.ru) i

TypeHostValueCopy
A www.deost.ru. 92.53.96.207

MX Records i

PriorityMail Server TargetCopy
10 mx76.antispam-post.ru.
20 mx32.antispam-post.ru.

TXT Records i

NameValueCopy
deost.ru. _globalsign-domain-verification=btBeqjo5_z4FE8GTGKmqdvCJMVDsq7oTItNpwQ7q7H
deost.ru. yandex-verification: c344fcb8345e30f6
deost.ru. MS=ms57984913
deost.ru. v=spf1 +a:mail.deost.ru include:spf.protection.outlook.com -all
deost.ru. D19rvICjgxaxDV16oG/0epgmd7MRfnn1LWCDdHo/wL126T+9uegtuK3oOhVSoYTsbZy7r2S8xfvZMUvttcCJNw==
deost.ru. _globalsign-domain-verification=6i8R_MTQenA2oyMV5xUbGEmbqpswZZGVCaEkJdets1

Email Security (MX, SPF, DKIM, DMARC, SMTP) for deost.ru

Detected Email Provider
📬 Self-hosted or Custom
✓ Active MX Routing (2 Servers)

Mail Exchange (MX) Routing Records i

Priority Mail Server Hostname Copy
10 mx76.antispam-post.ru
20 mx32.antispam-post.ru

SPF Record Validation i

v=spf1 +a:mail.deost.ru include:spf.protection.outlook.com -all

Record Breakdown

PrefixMechanismValueDescription
+ v spf1 The SPF record version.
+ a mail.deost.ru Match if the sender's IP is one of the domain's A records.
+ include spf.protection.outlook.com The specified domain is searched for a match.
- all Always matches. This should be the last mechanism.

Validation Summary

SPF Record Published Pass An SPF record was found.
Multiple SPF Records Pass Only one SPF record was found.
Included Lookups Pass The number of DNS lookups (2) is within the limit of 10.
Type PTR Check Pass The deprecated PTR mechanism was not found.
Characters After ALL Pass No mechanisms were found after the "all" mechanism.

Common DKIM Selectors i

Mail / Generic (mail)

NameDataCopy
mail._domainkey.deost.ru.v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt8YOsXqEJrl/Z79PKRF8IVdjq3xrJyFwAjCFNlCqbXgnuL4vaWtR25/HMuf8JB5aTt4Ces3YwdcXSyKlW2nRk6i8dODd39xWAxeupOe+puGexpuSPMXf3FHP19zSsqIDt53DL3ggw9XwrvZ2Bhx6KiE2FD/nVdc2Wt1KvjID5a8FgTDT9Pr36nsgo2Y8P2sk7toxZwNHG/aRhF07L+ITd69GeiB2Li0TRXpk5k26QO9eo9bNYdgiPaWYBB78CE9xgImZsBJNkW/HOxcK9D0BHeZ6/9uI6KUsyvseyrM8C2M4uc/l6kkWxhRk6LgGZ35uiCU125eAyeqFP0AFBDRv9QIDAQAB

🔍 Query Custom DKIM Selector

Live DNS Lookup

Using a custom or date-based selector (e.g. crm, newsletter, 2024)? Query its public key live on deost.ru:

DMARC Policy Validation i

v=DMARC1; p=reject; sp=reject; rua=mailto:postmaster@deost.ru; ruf=mailto:postmaster@deost.ru; fo=0

Tag Breakdown

TagValueDescription
v DMARC1 Version: Must be "DMARC1".
p reject Policy: The action to take for failed emails (none, quarantine, reject).
sp reject Subdomain Policy: The policy for subdomains (none, quarantine, reject).
rua mailto:postmaster@deost.ru Aggregate Reports: Email address(es) to send summary reports.
ruf mailto:postmaster@deost.ru Forensic Reports: Email address(es) to send detailed failure reports.
fo 0 Failure Reporting Options: Defines when to send forensic reports.

Validation Summary

DMARC Record Published Pass A DMARC record was found.
Syntax Check Pass The record has a valid version tag.
Policy Enforcement Pass The policy is "p=reject", which provides the strongest protection against spoofing.
Aggregate Reporting Pass An address for aggregate reports was found.

SMTP Connectivity Test (Port 25)

Mail ServerStatusLatencyBanner / Handshake Response
mx76.antispam-post.ru Success 568ms 220 Antispam-post.ru filtering service ESMTP

Server IP Blacklist Check (92.53.96.207)

  • Spamhaus ZEN: Clean
  • SpamCop: Clean
  • Barracuda: Clean
  • GBUdb Truncate: Clean
  • DroneBL: Clean
  • SSL/TLS Certificate Details for deost.ru

    • Issuer: GlobalSign GCC R3 DV TLS CA 2020
    • Expires In: 64 Days
    • Chain Status: Valid Chain

    🔒 SSL / TLS Protocol Support

    Excellent
    TLS protocol versions
    TLS 1.3 Enabled
    TLS 1.2 Enabled
    TLS 1.1 (deprecated) Disabled
    TLS 1.0 (deprecated) Disabled
    SSL protocol versions
    SSLv3 (deprecated) Disabled
    SSLv2 (deprecated) Disabled

    Main Leaf Certificate

    • Common Name: *.deost.ru
    • SANs: DNS:*.deost.ru, DNS:deost.ru
    • Organization: N/A
    • Validity: Oct 28, 2025 to Nov 29, 2026
    • Algorithm: RSA-SHA256
    ↓ Intermediate CA Certificate ↓
    • Common Name: GlobalSign GCC R3 DV TLS CA 2020
    • Organization: GlobalSign nv-sa
    • Valid Till: Mar 18, 2029
    • Issuer: GlobalSign
    ↓ Intermediate CA Certificate ↓
    • Common Name: GlobalSign
    • Organization: GlobalSign
    • Valid Till: Jan 28, 2028
    • Issuer: GlobalSign Root CA

    Website & Server Intelligence for deost.ru

    Website Identity

    TitleFavicon Деост
    Meta DescriptionКомпания предоставляет полную клиническую и техническую поддержку по направлениям: аритмология эндоваскулярная хирургия

    Hosting & Server Network

    IP Address92.53.96.207
    HTTP Status200 i
    Hosting ProviderJSC "TIMEWEB" i
    Web Servernginx/1.30.4 i
    Control Panel Not Detected i

    Technology Profile

    • Nginx
    • Google Analytics

    HTTP Security Headers

    Strict-Transport-Security Missing
    Content-Security-Policy Missing
    X-Frame-Options Present
    X-Content-Type-Options Missing
    Referrer-Policy Missing
    Permissions-Policy Missing

    IP Details & Geolocation

    IP Address 92.53.96.207
    Reverse DNS (PTR) vh192.timeweb.ru
    CountryRussia (RU)
    RegionSt.-Petersburg
    CitySt Petersburg
    ZIP CodeN/A
    ASN9123
    Organization / ISPJSC "TIMEWEB"

    Understanding Diagnostic Terms for deost.ru

    Domain Status (EPP)

    EPP status codes (e.g., clientTransferProhibited, active) indicating if a domain is locked against unauthorized transfer, pending renewal, or active.

    Registrar Information

    The authorized or accredited organization managing the domain reservation and authoritative registry delegation.

    Nameservers (NS)

    Authoritative servers that translate domain names into IP addresses and direct web visitors and mail traffic globally.

    A & AAAA Records

    Primary address records mapping your domain name directly to standard IPv4 (e.g., 192.0.2.1) and newer IPv6 server network addresses.

    MX (Mail Exchange)

    Priority-ranked records pointing inbound emails to designated mail server hosts (e.g., Google Workspace, Microsoft 365, Zoho).

    SPF & DMARC Security

    Email authentication standards that verify authorized sender IPs (SPF) and instruct receiving servers how to enforce security policies (DMARC).

    DKIM Signatures

    Cryptographic public key in DNS used by receiving mail servers to verify digital signatures on your emails, ensuring messages were not tampered with.

    SSL Certificate & Chain

    Establishes encrypted HTTPS connections and authenticates domain ownership via an intermediate certificate authority chain.

    Hosting Provider & ASN

    The physical server infrastructure where website files reside and the autonomous system network (ASN) routing global traffic.

    Reverse DNS (PTR)

    Pointer (PTR) records that map a server's IP address back to its canonical hostname, verifying server identity and preventing email spam rejection.

    HTTP Security Headers

    Directives like HSTS, CSP, and X-Frame-Options instructed by the server to protect browser visitors against XSS, clickjacking, and packet sniffing.

    ⚠️ Report Limitations & Data Sources

    • Data Currency: This report uses cached registry and DNS data (freshened within 4 hours) for high-speed resolution. Click "🔄 Refresh Live" to query directly against authoritative registries.
    • DNS Resolution & Propagation: Records are queried via Google Public DNS-over-HTTPS. Global DNS propagation may take up to 24–48 hours across different regional ISP resolvers during recent DNS record changes.
    • Completeness & Scope: This diagnostic tool analyzes standard authoritative records (A, AAAA, MX, NS, TXT, CNAME, SOA). It does not perform invasive brute-force subdomain scans or unauthenticated DNS zone transfers.
    • Email Deliverability & Reputation: The security analysis (SPF, DKIM, DMARC, and Port 25 SMTP handshake) reflects public DNS policies and inbound connection states. Recipient spam filters evaluate internal headers that cannot be checked from outside.
    • Reverse Proxies & CDNs: If a website is behind Cloudflare, Fastly, or another CDN/reverse proxy, the detected IP, web server software, and SSL edge certificate reflect the proxy tier.