Initializing diagnostics...

⚡ Live Data: Report generated fresh from authoritative registries. 🔄 Force Refresh
🤖 AI Intelligence Summary

The domain klzv-haeslach.de is registered with an undisclosed registrar. It resolves to IP address 81.169.145.105, hosted by Strato AG. Email delivery is handled by Self-hosted or Custom. No valid SPF record was detected. DMARC policy is published.

Domain Overview: klzv-haeslach.de

Domain Registration 🌐
Active N/A

Expires in N/A · DNSSEC: Unsigned

Email Security 🛡️
SPF: Missing DKIM: Not Detected DMARC: Reject

Self-hosted or Custom (1 MX)

SSL Certificate 🔒
Untrusted N/A Days Left

Issuer: N/A

Server & Hosting 🖥️
N/A N/A

Berlin (Charlottenburg-Wilmersdorf), Berlin, Germany (DE)

🌐 Domain & Registration Identity View Full Whois Details →

Domainklzv-haeslach.de
Website TitleFavicon N/A
RegisteredN/A
ExpiresN/A
Remaining ValidityN/A
Domain AgeN/A
RegistrarN/A
Domain StatusN/A i
DNSSEC Delegation Unsigned · Zone not signed with DNSSEC keys i
Authoritative Nameservers docks01.rzone.de, shades09.rzone.de i

🛡️ Email Security & Deliverability (SPF, DKIM, DMARC) View Complete Email Security Diagnostics →

Detected Email Provider 📬 Self-hosted or Custom
Primary Mail Server (MX) smtpin.rzone.de (Priority: 5) · 1 MX server configured i
SPF Record (Sender Policy) Missing i
DKIM Authentication Not Detected · (No common third-party selector found; custom keys may be configured) i
DMARC Policy Pass (Reject) i
v=DMARC1;p=reject;
SMTP Port 25 Status Online (193ms) · Inbound mail server handshake response

🖥️ Web Server, Hosting & Network View Full Server & Tech Details →

Web Server Software N/A i
HTTP Status Code N/A i
Server IP (IPv4) 81.169.145.105 View Geo Details →
IPv6 Address (AAAA) 2a01:238:20a:202:1105::
Reverse DNS (PTR) ntweb.rzone.de
Server Location 📍 Berlin (Charlottenburg-Wilmersdorf), Berlin, Germany (DE)
ASN Network & ISP AS6724 (Strato AG)
Hosting Provider Strato AG i
Control Panel Not Detected i
Technology Stack No third-party framework or CMS fingerprints detected
HTTP Security Headers None Detected (Missing HSTS / CSP) Audit Details →
DNSBL Blacklist Reputation Clean (0/5 lists)

🔒 SSL/TLS Certificate Summary View Full SSL Certificate & Chain →

Primary Hostname (CN) N/A
SSL IssuerN/A
SSL Valid TillN/A
Remaining ValidityN/A Days
Chain Status Invalid / Untrusted
Signature AlgorithmN/A

Whois Ownership & Registration for klzv-haeslach.de

📄 View Raw Registry Response ↓

Domain Information i

Registrar Information i

Registrant Contact i

Contact information for this role is not provided or redacted.

Administrative Contact i

Contact information for this role is not provided or redacted.

Technical Contact i

Contact information for this role is not provided or redacted.

📄 View Raw Registry Response Legacy Whois (Port 43)
Domain: klzv-haeslach.de
Status: connect

DNS Records for klzv-haeslach.de

NS Records i

NameDataCopy
klzv-haeslach.de. docks01.rzone.de.
klzv-haeslach.de. shades09.rzone.de.

A Records i

NameDataCopy
klzv-haeslach.de. 81.169.145.105

AAAA Records i

NameDataCopy
klzv-haeslach.de. 2a01:238:20a:202:1105::

WWW Records (www.klzv-haeslach.de) i

TypeHostValueCopy
CNAME www.klzv-haeslach.de. klzv-haeslach.de.
A www.klzv-haeslach.de. klzv-haeslach.de.
A klzv-haeslach.de. 81.169.145.105

MX Records i

PriorityMail Server TargetCopy
5 smtpin.rzone.de.

TXT Records i

No TXT records found.

Email Security (MX, SPF, DKIM, DMARC, SMTP) for klzv-haeslach.de

Detected Email Provider
📬 Self-hosted or Custom
✓ Active MX Routing (1 Server)

Mail Exchange (MX) Routing Records i

Priority Mail Server Hostname Copy
5 smtpin.rzone.de

SPF Record Validation i

No SPF record found to validate.

Common DKIM Selectors i

No common third-party DKIM selectors found. Custom selectors may be configured.

🔍 Query Custom DKIM Selector

Live DNS Lookup

Using a custom or date-based selector (e.g. crm, newsletter, 2024)? Query its public key live on klzv-haeslach.de:

DMARC Policy Validation i

v=DMARC1;p=reject;

Tag Breakdown

TagValueDescription
v DMARC1 Version: Must be "DMARC1".
p reject Policy: The action to take for failed emails (none, quarantine, reject).

Validation Summary

DMARC Record Published Pass A DMARC record was found.
Syntax Check Pass The record has a valid version tag.
Policy Enforcement Pass The policy is "p=reject", which provides the strongest protection against spoofing.
Aggregate Reporting Warning No "rua" tag was found. You will not receive summary reports.

Optimization Suggestions

It is highly recommended to add an "rua" tag (e.g., "rua=mailto:dmarc-reports@yourdomain.com") to monitor email traffic and ensure legitimate emails are not failing checks.

SMTP Connectivity Test (Port 25)

Mail ServerStatusLatencyBanner / Handshake Response
smtpin.rzone.de Success 193ms 220 smtpin.rzone.de ESMTP RZmta 55.6.2 ready (mi4)

Server IP Blacklist Check (81.169.145.105)

  • Spamhaus ZEN: Clean
  • SpamCop: Clean
  • Barracuda: Clean
  • GBUdb Truncate: Clean
  • DroneBL: Clean
  • SSL/TLS Certificate Details for klzv-haeslach.de

    Could not connect to get SSL certificate.

    Website & Server Intelligence for klzv-haeslach.de

    Website Identity

    TitleFavicon N/A
    Meta DescriptionN/A

    Hosting & Server Network

    IP Address81.169.145.105
    HTTP StatusN/A i
    Hosting ProviderStrato AG i
    Web ServerN/A i
    Control Panel Not Detected i

    Technology Profile

    No specific third-party frameworks or CMS fingerprints detected.

    HTTP Security Headers

    Could not fetch HTTP headers.

    IP Details & Geolocation

    IP Address 81.169.145.105
    Reverse DNS (PTR) ntweb.rzone.de
    CountryGermany (DE)
    RegionBerlin
    CityBerlin (Charlottenburg-Wilmersdorf)
    ZIP CodeN/A
    ASN6724
    Organization / ISPStrato AG

    Understanding Diagnostic Terms for klzv-haeslach.de

    Domain Status (EPP)

    EPP status codes (e.g., clientTransferProhibited, active) indicating if a domain is locked against unauthorized transfer, pending renewal, or active.

    Registrar Information

    The authorized or accredited organization managing the domain reservation and authoritative registry delegation.

    Nameservers (NS)

    Authoritative servers that translate domain names into IP addresses and direct web visitors and mail traffic globally.

    A & AAAA Records

    Primary address records mapping your domain name directly to standard IPv4 (e.g., 192.0.2.1) and newer IPv6 server network addresses.

    MX (Mail Exchange)

    Priority-ranked records pointing inbound emails to designated mail server hosts (e.g., Google Workspace, Microsoft 365, Zoho).

    SPF & DMARC Security

    Email authentication standards that verify authorized sender IPs (SPF) and instruct receiving servers how to enforce security policies (DMARC).

    DKIM Signatures

    Cryptographic public key in DNS used by receiving mail servers to verify digital signatures on your emails, ensuring messages were not tampered with.

    SSL Certificate & Chain

    Establishes encrypted HTTPS connections and authenticates domain ownership via an intermediate certificate authority chain.

    Hosting Provider & ASN

    The physical server infrastructure where website files reside and the autonomous system network (ASN) routing global traffic.

    Reverse DNS (PTR)

    Pointer (PTR) records that map a server's IP address back to its canonical hostname, verifying server identity and preventing email spam rejection.

    HTTP Security Headers

    Directives like HSTS, CSP, and X-Frame-Options instructed by the server to protect browser visitors against XSS, clickjacking, and packet sniffing.

    ⚠️ Report Limitations & Data Sources

    • Data Currency: This report uses cached registry and DNS data (freshened within 4 hours) for high-speed resolution. Click "🔄 Refresh Live" to query directly against authoritative registries.
    • DNS Resolution & Propagation: Records are queried via Google Public DNS-over-HTTPS. Global DNS propagation may take up to 24–48 hours across different regional ISP resolvers during recent DNS record changes.
    • Completeness & Scope: This diagnostic tool analyzes standard authoritative records (A, AAAA, MX, NS, TXT, CNAME, SOA). It does not perform invasive brute-force subdomain scans or unauthenticated DNS zone transfers.
    • Email Deliverability & Reputation: The security analysis (SPF, DKIM, DMARC, and Port 25 SMTP handshake) reflects public DNS policies and inbound connection states. Recipient spam filters evaluate internal headers that cannot be checked from outside.
    • Reverse Proxies & CDNs: If a website is behind Cloudflare, Fastly, or another CDN/reverse proxy, the detected IP, web server software, and SSL edge certificate reflect the proxy tier.