DNS report
grimms3dworlds.ddns.net
Complete DNS, mail, web and security analysis.
DNS cache tools
If you have recently made DNS changes and they are not yet reflected in the report, you can try to flush the DNS cache of these public resolvers: The domain name will be copied to your clipboard automatically when clicking on a button
| Category | Status | Test | Details | ||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
WHOIS0.1 ms |
Domain Status |
Unable to retrieve WHOIS information for grimms3dworlds.ddns.net.
Retry, this time it might work! Reason: whois/rdap response too minimal to parse |
|||||||||||||||||||||||||
|
PARENT0.0 ms |
Domain NS records |
No NS records found from nf1.no-ip.com.
dig: dig NS 'grimms3dworlds.ddns.net' @'8.8.8.8' +time=2 +tries=1 +noall +answer +authority +additional 2>/dev/null |
|||||||||||||||||||||||||
| TLD Parent Check |
The parent server did not return any information for this TLD.
|
||||||||||||||||||||||||||
| Your nameservers are listed |
nf1.no-ip.com has your nameservers listed.
This is a must if you want to be found as anyone that does not know your DNS servers will first ask the parent nameservers. |
||||||||||||||||||||||||||
| DNS Parent sent Glue |
0 of 0 nameservers sent GLUE.
The parent nameserver a.gtld-servers.net sent GLUE, meaning it sent your nameservers as well as the IPs of your nameservers. Glue records are A records that are associated with NS records to provide "bootstrapping" information to the nameserver. (See RFC 1912 section 2.3) |
||||||||||||||||||||||||||
| Nameservers A records |
Every nameserver listed has A records.
This is a must if you want to be found. |
||||||||||||||||||||||||||
|
NS26.9 ms |
NS records from your NameServers |
NS records returned by the currently delegated nameservers are:
Oops! I could not get any nameservers from your nameservers. Please verify that the nameservers listed at the parent are not lame and are configured properly. |
|||||||||||||||||||||||||
| Public Resolver |
|
||||||||||||||||||||||||||
| Mismatched NS records |
The NS records at all your nameservers are identical to those listed by the parent.
|
||||||||||||||||||||||||||
| DNS servers responded |
All nameservers listed at the parent server responded.
|
||||||||||||||||||||||||||
| Name of nameservers are valid |
All of the NS records that your nameservers report seem valid.
|
||||||||||||||||||||||||||
| Multiple Nameservers |
You only have 0 nameserver(s). RFC2182 recommends at least 2, ideally 3 or more.
|
||||||||||||||||||||||||||
| Missing nameservers reported by parent |
All NS records are the same at the parent and at your nameservers.
|
||||||||||||||||||||||||||
| Missing nameservers reported by your nameservers |
All nameservers returned by the parent server are the same as the ones reported by your nameservers.
|
||||||||||||||||||||||||||
| Domain CNAMEs |
OK. RFC1912 2.4 and RFC2181 10.3 state that there should be no CNAMEs if an NS (or any other) record is present.
|
||||||||||||||||||||||||||
| NSs CNAME check |
OK. RFC1912 2.4 and RFC2181 10.3 state that there should be no CNAMEs if an NS (or any other) record is present.
|
||||||||||||||||||||||||||
| Different subnets |
All nameservers are on the same subnet (can be a risk).
|
||||||||||||||||||||||||||
| Recursive Queries |
Test skipped because no authoritative nameserver responded well enough to perform this check.
|
||||||||||||||||||||||||||
| Same Glue |
Test skipped because no authoritative nameserver responded well enough to perform this check.
|
||||||||||||||||||||||||||
| NS Self-IP Consistency |
Test skipped because no authoritative nameserver responded well enough to perform this check.
|
||||||||||||||||||||||||||
| Glue for NS records |
Test skipped because no authoritative nameserver responded well enough to perform this check.
|
||||||||||||||||||||||||||
| Nameservers are lame |
Test skipped because no authoritative nameserver responded well enough to perform this check.
|
||||||||||||||||||||||||||
| IPs of nameservers are public |
Test skipped because no authoritative nameserver responded well enough to perform this check.
|
||||||||||||||||||||||||||
| DNS servers allow TCP connection |
Test skipped because no authoritative nameserver responded well enough to perform this check.
|
||||||||||||||||||||||||||
| Different autonomous systems |
Test skipped because no authoritative nameserver responded well enough to perform this check.
|
||||||||||||||||||||||||||
| Stealth NS records sent |
Ok. No stealth NS records are sent
|
||||||||||||||||||||||||||
|
DNSSEC144.8 ms |
Zone signed |
DNSSEC: Unsigned
No RRSIG record found. The zone is not signed with DNSSEC. |
|||||||||||||||||||||||||
| DNSKEY records |
No DNSKEY records found.
|
||||||||||||||||||||||||||
| DS record in parent |
No DS record found in the parent zone.
|
||||||||||||||||||||||||||
| NSEC/NSEC3 record |
No NSEC or NSEC3 record found when querying a non-existent subdomain.
This may indicate a misconfiguration or lack of proper DNSSEC denial-of-existence support. |
||||||||||||||||||||||||||
|
SOA0.0 ms |
SOA Record |
No SOA record was found for this domain.
|
|||||||||||||||||||||||||
|
MX ... |
MX Records |
|
|||||||||||||||||||||||||
|
TXT0.1 ms |
TXT Records |
No TXT Records published.
|
|||||||||||||||||||||||||
|
DMARC30.5 ms |
DMARC Record |
No valid DMARC record was found at _dmarc.grimms3dworlds.ddns.net.
|
|||||||||||||||||||||||||
|
MTA-STS / TLS-RPT77.3 ms |
Mail TLS security |
MTA-STS score 0/5 Recommendations:
|
|||||||||||||||||||||||||
|
DKIM ... |
DKIM Records Detected |
|
|||||||||||||||||||||||||
|
BIMI58.2 ms |
BIMI Record |
No BIMI record found at: default._bimi.grimms3dworlds.ddns.net.
|
|||||||||||||||||||||||||
|
SSL ... |
SSL Certificate Summary |
|
|||||||||||||||||||||||||
|
CAA ... |
CAA Records |
|
|||||||||||||||||||||||||
|
HSTS ... |
HSTS |
|
|||||||||||||||||||||||||
|
HTTPS ... |
HTTPS |
|
|||||||||||||||||||||||||
|
HTTPS (DNS) ... |
HTTPS DNS record |
|
|||||||||||||||||||||||||
|
WWW ... |
A Record |
|
|||||||||||||||||||||||||
|
AXFR (Zone Transfer)33.9 ms |
AXFR status for the zone |
AXFR test could not be determined for grimms3dworlds.ddns.net.
|
|||||||||||||||||||||||||
| Security note |
Zone transfers (AXFR) should be disabled in production unless explicitly required and restricted.
Leaving AXFR open allows anyone to enumerate your entire DNS zone (subdomains, MX, TXT, internal hosts, etc.). |
||||||||||||||||||||||||||
|
PORTS ... |
Open ports detected (80.3.208.16) |
|
|||||||||||||||||||||||||
|
REPUTATION ... |
IP in blacklists (80.3.208.16) |
|
|||||||||||||||||||||||||
|
DNS found ... |
|
||||||||||||||||||||||||||
| Test | Details | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
Website Preview0.0 ms
|
Snapshot is generated through DNSprobe's rendering proxy and may be served from a short cache.
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
Security Headers790.8 ms
|
Score: 8/100 (F) Failing, very weak or absent security headers
Other detected headers Additional headers returned by the server. Shown for information only and not included in the score.
Recommended starter configuration (.htaccess) Starter configuration to copy and adapt. CSP, CORS and cookie rewriting are intentionally commented because they can break some sites if enabled blindly. |
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
WHOIS0.2 ms
|
Source: unknown / partial data
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Processed in 0.008 seconds.
Made with with PHP and a bit of JS.
Made with with PHP and a bit of JS.
Lines of code: 20,351