Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

N

 

No trusted Certificate

 

Checked:
10.07.2024 07:10:52

 

Older results

No older results found

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
shamara.info
A
195.24.65.64
Moscow/Russia (RU) - JSC "RU-CENTER"
No Hostname found
yes
1
0

AAAA

yes


www.shamara.info
A
195.24.65.64
Moscow/Russia (RU) - JSC "RU-CENTER"
No Hostname found
yes
1
0

AAAA

yes


*.shamara.info
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes


 

2. DNSSEC

Zone (*)DNSSEC - Informations


Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 5613, Flags 256






Public Key with Algorithm 8, KeyTag 20038, Flags 256






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 22.07.2024, 00:00:00 +, Signature-Inception: 01.07.2024, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: info

info
1 DS RR in the parent zone found






DS with Algorithm 8, KeyTag 5104, DigestType 2 and Digest GvdUio0+KVDCAwN1ffk5DCbPo54myLao9six5y3Y90Q=






1 RRSIG RR to validate DS RR found






RRSIG-Owner info., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 22.07.2024, 20:00:00 +, Signature-Inception: 09.07.2024, 19:00:00 +, KeyTag 20038, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20038 used to validate the DS RRSet in the parent zone






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 5104, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 10644, Flags 256






Public Key with Algorithm 8, KeyTag 27051, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner info., Algorithm: 8, 1 Labels, original TTL: 3600 sec, Signature-expiration: 30.07.2024, 15:36:01 +, Signature-Inception: 09.07.2024, 14:36:01 +, KeyTag 5104, Signer-Name: info






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 5104 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 5104, DigestType 2 and Digest "GvdUio0+KVDCAwN1ffk5DCbPo54myLao9six5y3Y90Q=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: shamara.info

shamara.info
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "bnntlt0v7sonio5qogh5hbtqnpj6biaj" between the hashed NSEC3-owner "bnnj0rn7ivo99046qr1ik5siqj74ikj1" and the hashed NextOwner "bno95na763hb3pavoh1u9u6u42jft5lu". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner bnnj0rn7ivo99046qr1ik5siqj74ikj1.info., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 30.07.2024, 15:36:01 +, Signature-Inception: 09.07.2024, 14:36:01 +, KeyTag 27051, Signer-Name: info






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "nts9719ejeced08jegq9ombmafneqsd7" as Owner. That's the Hash of "info" with the NextHashedOwnerName "ntsgcq8bftqmnbickse3jqev1v3utmru". So that domain name is the Closest Encloser of "shamara.info". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner nts9719ejeced08jegq9ombmafneqsd7.info., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 31.07.2024, 05:09:54 +, Signature-Inception: 10.07.2024, 04:09:54 +, KeyTag 27051, Signer-Name: info






0 DNSKEY RR found









Zone: www.shamara.info

www.shamara.info
0 DS RR in the parent zone found

 

3. Name Servers

DomainNameserverNS-IP
www.shamara.info
  ns1.kngk.org

shamara.info
  ns1.kngk.org
46.18.200.246
Krasnodar/Krasnodar Krai/Russia (RU) - Kuban-Telecom Ltd.


  ns2.kngk.org
109.196.202.178
Krasnodar/Krasnodar Krai/Russia (RU) - MTS PJSC

info
  a0.info.afilias-nst.info / app12.ams2.hosts.meta.redstone.afilias-nst.info-1615580861


  a2.info.afilias-nst.info / FRA4


  b0.info.afilias-nst.org / app3.ams2.hosts.meta.redstone.afilias-nst.info-1615580861


  b2.info.afilias-nst.org / FRA4


  c0.info.afilias-nst.info / app23.ams2.hosts.meta.redstone.afilias-nst.info-1615580861


  d0.info.afilias-nst.org / app10.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861

 

4. SOA-Entries


Domain:info
Zone-Name:info
Primary:a0.info.afilias-nst.info
Mail:hostmaster.donuts.email
Serial:1720587963
Refresh:7200
Retry:900
Expire:1209600
TTL:3600
num Entries:6


Domain:shamara.info
Zone-Name:shamara.info
Primary:ns1.kngk.org
Mail:postmaster.kngk.org
Serial:2024071001
Refresh:3600
Retry:900
Expire:1209600
TTL:3600
num Entries:2


Domain:www.shamara.info
Zone-Name:shamara.info
Primary:ns1.kngk.org
Mail:postmaster.kngk.org
Serial:2024071001
Refresh:3600
Retry:900
Expire:1209600
TTL:3600
num Entries:1


5. Screenshots

Startaddress: https://yama.su/login.php, address used: https://yama.su/login.php, Screenshot created 2024-07-10 07:18:03 +00:0

 

Mobil (412px x 732px)

 

1115 milliseconds

 

Screenshot mobile - https://yama.su/login.php
Mobil + Landscape (732px x 412px)

 

1126 milliseconds

 

Screenshot mobile landscape - https://yama.su/login.php
Screen (1280px x 1680px)

 

1281 milliseconds

 

Screenshot Desktop - https://yama.su/login.php

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport412716
content Size1002716

 

Fatal: Horizontal scrollbar detected. Content-size width is greater then visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://shamara.info/
195.24.65.64
301
https://yama.su/
Html is minified: 108.19 %
0.104
E
Server: nginx/1.14.1
Date: Wed, 10 Jul 2024 05:11:33 GMT
Connection: close
Location: https://yama.su/
Content-Type: text/html
Content-Length: 185

• http://www.shamara.info/
195.24.65.64 No Compression used - 1550 / 4057 - 38.21 % possible
200

Html is minified: 243.81 %
0.113
H
Server: nginx/1.14.1
Date: Wed, 10 Jul 2024 05:11:33 GMT
Connection: close
ETag: "61c22ddf-fd9"
Accept-Ranges: bytes
Content-Type: text/html
Content-Length: 4057
Last-Modified: Tue, 21 Dec 2021 19:41:19 GMT

• https://shamara.info/
195.24.65.64
301
https://yama.su/
Html is minified: 108.19 %
4.116
N
Certificate error: RemoteCertificateChainErrors
Server: nginx/1.14.1
Date: Wed, 10 Jul 2024 05:11:34 GMT
Connection: close
Location: https://yama.su/
Content-Type: text/html
Content-Length: 185

• https://www.shamara.info/
195.24.65.64
301
https://www.leptacapital.ru/
Html is minified: 108.19 %
3.180
N
Certificate error: RemoteCertificateNameMismatch, RemoteCertificateChainErrors
Server: nginx/1.14.1
Date: Wed, 10 Jul 2024 05:11:39 GMT
Connection: close
Location: https://www.leptacapital.ru/
Content-Type: text/html
Content-Length: 185

• https://yama.su/

302
https://shamara.info/login.php

3.437
B
Server: openresty
Date: Wed, 10 Jul 2024 05:11:49 GMT
Connection: close
X-Powered-By: PHP/5.2.17
Set-Cookie: S=f3dc55b9d1033c8bcdafb3c03640d417; path=/
Cache-Control: no-store, must-revalidate, no-cache, post-check=0, pre-check=0
Pragma: no-cache
Location: /login.php
Content-Type: text/html; charset=windows-1251
Content-Length: 0
Expires: Thu, 19 Nov 1981 08:52:00 GMT

• https://shamara.info/login.php

301
https://yama.su/login.php
Html is minified: 108.19 %
3.623
N
Certificate error: RemoteCertificateChainErrors
Server: nginx/1.14.1
Date: Wed, 10 Jul 2024 05:12:02 GMT
Connection: close
Location: https://yama.su/login.php
Content-Type: text/html
Content-Length: 185

• https://yama.su/login.php

Inline-JavaScript (∑/total): 2/723 Inline-CSS (∑/total): 0/0
200

Html is minified: 118.03 %
Other inline scripts (∑/total): 2/723
2.766
B
Server: openresty
Date: Wed, 10 Jul 2024 05:12:06 GMT
Transfer-Encoding: chunked
Connection: close
Vary: Accept-Encoding
X-Powered-By: PHP/5.2.17
Set-Cookie: S=0bee696c87b1902dc162338f730f1dd1; path=/
Cache-Control: no-store, must-revalidate, no-cache, post-check=0, pre-check=0
Pragma: no-cache
Content-Type: text/html; charset=windows-1251
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Content-Encoding: gzip

• https://www.leptacapital.ru/

Inline-JavaScript (∑/total): 6/2111 Inline-CSS (∑/total): 2/7117
200

Html is minified: 143.39 %
Other inline scripts (∑/total): 4/2111
2.914
I
Server: nginx
Date: Wed, 10 Jul 2024 05:11:53 GMT
Transfer-Encoding: chunked
Connection: close
Vary: Accept-Encoding
X-Powered-By: PHP/7.0.33
Cache-Control: no-store, must-revalidate, no-cache
Pragma: no-cache
Set-Cookie: sid=rqqq91a9inm6b3h81i8g7b2c66; path=/; domain=leptacapital.ru
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Content-Encoding: gzip

• http://shamara.info/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
195.24.65.64
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://yama.su/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 108.19 %
Other inline scripts (∑/total): 0/0
0.113
E
Visible Content:
Server: nginx/1.14.1
Date: Wed, 10 Jul 2024 05:11:43 GMT
Connection: close
Location: https://yama.su/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Type: text/html
Content-Length: 185

• http://www.shamara.info/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
195.24.65.64
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 1/1999
404

Html is minified: 273.11 %
Other inline scripts (∑/total): 0/0
0.117
A
Not Found
Visible Content:
Server: nginx/1.14.1
Date: Wed, 10 Jul 2024 05:11:43 GMT
Connection: close
ETag: "61c22ddf-f83"
Content-Type: text/html
Content-Length: 3971

• https://yama.su/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

Inline-JavaScript (∑/total): 6/959 Inline-CSS (∑/total): 0/0
302
https://shamara.info/login.php
Html is minified: 124.53 %
Other inline scripts (∑/total): 3/959
2.747
B
Visible Content:
Server: openresty
Date: Wed, 10 Jul 2024 05:11:57 GMT
Connection: close
X-Powered-By: PHP/5.2.17
Set-Cookie: S=0907a260ca40fceb9bd02a514cdd210e; path=/
Cache-Control: no-store, must-revalidate, no-cache, post-check=0, pre-check=0
Pragma: no-cache
Location: /login.php
Content-Type: text/html; charset=windows-1251
Content-Length: 7118
Expires: Thu, 19 Nov 1981 08:52:00 GMT

• https://195.24.65.64/
195.24.65.64
301
https://www.leptacapital.ru/
Html is minified: 108.19 %
2.877
N
Certificate error: RemoteCertificateNameMismatch, RemoteCertificateChainErrors
Server: nginx/1.14.1
Date: Wed, 10 Jul 2024 05:11:44 GMT
Connection: close
Location: https://www.leptacapital.ru/
Content-Type: text/html
Content-Length: 185

 

7. Comments


1. General Results, most used to calculate the result

Aname "shamara.info" is domain, public suffix is ".info", top-level-domain is ".info", top-level-domain-type is "generic", tld-manager is "Afilias Limited", num .info-domains preloaded: 1436 (complete: 245733)
AGood: All ip addresses are public addresses
Warning: Only one ip address found: shamara.info has only one ip address.
Warning: Only one ip address found: www.shamara.info has only one ip address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: shamara.info has no ipv6 address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: www.shamara.info has no ipv6 address.
AGood: No asked Authoritative Name Server had a timeout
Ahttps://yama.su/
302
https://shamara.info/login.php
Correct redirect https to https
Ahttps://shamara.info/login.php
301
https://yama.su/login.php
Correct redirect https to https
Ahttps://shamara.info/ 195.24.65.64
301
https://yama.su/
Correct redirect https to https
Ahttps://www.shamara.info/ 195.24.65.64
301
https://www.leptacapital.ru/
Correct redirect https to https
Ahttps://yama.su/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
302
https://shamara.info/login.php
Correct redirect https to https
AGood: No cookie sent via http.
AExcellent: Domain is in the Google-Preload-List
AExcellent: Domain is in the Mozilla/Firefox-Preload-List
HSTS-Preload-Status: Removed. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):2 complete Content-Type - header (4 urls)
http://www.shamara.info/ 195.24.65.64


Url with incomplete Content-Type - header - missing charset
http://www.shamara.info/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 195.24.65.64


Url with incomplete Content-Type - header - missing charset
Bhttps://shamara.info/login.php
301

Missing HSTS-Header
Bhttps://yama.su/
302

Missing HSTS-Header
Bhttps://shamara.info/ 195.24.65.64
301

Missing HSTS-Header
Bhttps://yama.su/login.php
200

Missing HSTS-Header
Bhttps://www.shamara.info/ 195.24.65.64
301

Missing HSTS-Header
Bhttps://www.leptacapital.ru/
200

Missing HSTS-Header
Bhttps://yama.su/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
302

Missing HSTS-Header
Bhttps://yama.su/
302
S=f3dc55b9d1033c8bcdafb3c03640d417; path=/
Cookie sent via https, but not marked as secure
Bhttps://yama.su/login.php
200
S=0bee696c87b1902dc162338f730f1dd1; path=/
Cookie sent via https, but not marked as secure
Bhttps://www.leptacapital.ru/
200
sid=rqqq91a9inm6b3h81i8g7b2c66; path=/; domain=leptacapital.ru
Cookie sent via https, but not marked as secure
Bhttps://yama.su/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
302
S=0907a260ca40fceb9bd02a514cdd210e; path=/
Cookie sent via https, but not marked as secure
Bhttps://yama.su/
302
S=f3dc55b9d1033c8bcdafb3c03640d417; path=/
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://yama.su/login.php
200
S=0bee696c87b1902dc162338f730f1dd1; path=/
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://www.leptacapital.ru/
200
sid=rqqq91a9inm6b3h81i8g7b2c66; path=/; domain=leptacapital.ru
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://yama.su/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
302
S=0907a260ca40fceb9bd02a514cdd210e; path=/
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
CError - no preferred version www or non-www. Select one version as preferred version, then add a redirect https + not-preferred version to https + preferred version. Perhaps in your port 443 vHost something like "RewriteEngine on" + "RewriteCond %{SERVER_NAME} = example.com" + "ReWriteRule ^ https://www.example.com%{REQUEST_URI} [END,QSA,R=permanent]" (three rows, without the "). That should create a redirect https + example.com ⇒ https + www.example.com. Or switch both values to use the non-www version as your preferred version.
CError - more then one version with Http-Status 200. After all redirects, all users (and search engines) should see the same https url: Non-www or www, but not both with http status 200.
Ehttp://shamara.info/ 195.24.65.64
301
https://yama.su/
Wrong redirect one domain http to other domain https. First redirect to https without new dns query, so the server can send the HSTS header. That's fundamental using HSTS (Http Strict Transport Security). First step: Add correct redirects http ⇒ https. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop. Then recheck your domain, should be Grade C. There is the rule to select one https version as preferred version.
HFatal error: http result with http-status 200, no encryption. Add a redirect http ⇒ https, so every connection is secure. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop.
Ihttps://www.leptacapital.ru/
200

Content problems or problems with resources included - http links, files doesn't exist, different Content-Type definitions. Check the Html-Content - Part.
Nhttps://shamara.info/login.php
301
https://yama.su/login.php
Error - Certificate isn't trusted, RemoteCertificateChainErrors
Nhttps://shamara.info/ 195.24.65.64
301
https://yama.su/
Error - Certificate isn't trusted, RemoteCertificateChainErrors
Nhttps://www.shamara.info/ 195.24.65.64
301
https://www.leptacapital.ru/
Error - Certificate isn't trusted, RemoteCertificateNameMismatch, RemoteCertificateChainErrors
Nhttps://195.24.65.64/ 195.24.65.64
301
https://www.leptacapital.ru/
Error - Certificate isn't trusted, RemoteCertificateNameMismatch, RemoteCertificateChainErrors
Oshamara.info / 195.24.65.64 / 443


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 12 Cipher Suites without Forward Secrecy found
Owww.shamara.info / 195.24.65.64 / 443


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 12 Cipher Suites without Forward Secrecy found
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are the same. So that domain doesn't require Server Name Indication (SNI), it's the primary certificate of that set of ip addresses.: Domain www.shamara.info, 1 ip addresses, 1 different http results.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain shamara.info, 1 ip addresses.
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.shamara.info

2. Header-Checks

Fyama.su
Content-Security-Policy
Critical: Missing Header:
Fyama.su
X-Content-Type-Options
Critical: Missing Header:
Fyama.su
Referrer-Policy
Critical: Missing Header:
Fyama.su
Permissions-Policy
Critical: Missing Header:
Byama.su
Cross-Origin-Embedder-Policy
Info: Missing Header
Byama.su
Cross-Origin-Opener-Policy
Info: Missing Header
Byama.su
Cross-Origin-Resource-Policy
Info: Missing Header
Fwww.leptacapital.ru
Content-Security-Policy
Critical: Missing Header:
Fwww.leptacapital.ru
X-Content-Type-Options
Critical: Missing Header:
Fwww.leptacapital.ru
Referrer-Policy
Critical: Missing Header:
Fwww.leptacapital.ru
Permissions-Policy
Critical: Missing Header:
Bwww.leptacapital.ru
Cross-Origin-Embedder-Policy
Info: Missing Header
Bwww.leptacapital.ru
Cross-Origin-Opener-Policy
Info: Missing Header
Bwww.leptacapital.ru
Cross-Origin-Resource-Policy
Info: Missing Header

3. DNS- and NameServer - Checks

AInfo:: 2 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 2 Name Servers.
AInfo:: 2 Queries complete, 2 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
AGood: Some ip addresses of name servers found with the minimum of two DNS Queries. One to find the TLD-Zone, one to ask the TLD-Zone.ns1.kngk.org (46.18.200.246), ns2.kngk.org (109.196.202.178)
AGood (1 - 3.0):: An average of 1.0 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 2 different Name Servers found: ns1.kngk.org, ns2.kngk.org, 2 Name Servers included in Delegation: ns1.kngk.org, ns2.kngk.org, 2 Name Servers included in 1 Zone definitions: ns1.kngk.org, ns2.kngk.org, 1 Name Servers listed in SOA.Primary: ns1.kngk.org.
AGood: Only one SOA.Primary Name Server found.: ns1.kngk.org.
AGood: SOA.Primary Name Server included in the delegation set.: ns1.kngk.org.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: ns1.kngk.org, ns2.kngk.org
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 2 different Name Servers found
Warning: No Name Server IPv6 address found. IPv6 is the future, so your name servers should be visible via IPv6.: 2 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 2 Name Servers, 1 Top Level Domain: org
Warning: All Name Servers have the same domain name. If there is a problem with that domain name (or with the name servers of that domain name), your domain may be affected. Better: Use Name Servers with different domain names / different top level domains.: Only one domain name used: kngk.org
Warning: All Name Servers from the same Country / IP location.: 2 Name Servers, 1 Countries: RU
AInfo: Ipv4-Subnet-list: 2 Name Servers, 2 different subnets (first Byte): 109., 46., 2 different subnets (first two Bytes): 109.196., 46.18., 2 different subnets (first three Bytes): 109.196.202., 46.18.200.
AExcellent: Every Name Server IPv4-address starts with an unique Byte.
AGood: Nameserver supports TCP connections: 2 good Nameserver
AGood: Nameserver supports Echo Capitalization: 2 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 2 good Nameserver
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 2 good Nameserver
AGood: All SOA have the same Serial Number
AGood: CAA entries found, creating certificate is limited: letsencrypt.org is allowed to create certificates

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: Every https result with status 200 and greater 1024 Bytes is compressed (gzip, deflate, br checked).
https://yama.su/login.php
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://www.leptacapital.ru/
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://yama.su/login.php
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
https://www.leptacapital.ru/
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
AGood: Every https connection via port 443 supports the http/2 protocol via ALPN.
AGood: Some script Elements (type text/javascript) with a src-Attribute have a defer / async - Attribute. So loading and executing these JavaScripts doesn't block parsing and rendering the Html-Output.
https://www.leptacapital.ru/
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 2 script elements without defer/async.
https://yama.su/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
302

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 3 script elements without defer/async.
Warning: CSS / JavaScript found without Compression. Compress these ressources, gzip, deflate, br are checked. 6 external CSS / JavaScript files without GZip found - 8 with GZip, 14 complete
AGood: All images with internal compression not compressed. Some Images (.png, .jpg, .jpeg, .webp, .gif) are already compressed, so an additional compression isn't helpful. 4 images (type image/png, image/jpg) found without additional GZip. Not required because these images are already compressed
Warning: CSS / JavaScript files with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 2 external CSS / JavaScript files without Cache-Control-Header, 5 with Cache-Control, but no max-age, 1 with Cache-Control max-age too short (minimum 7 days), 6 with Cache-Control long enough, 14 complete.
Warning: Images with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 7 image files without Cache-Control-Header, 2 with Cache-Control, but no max-age, 4 with Cache-Control max-age too short (minimum 7 days), 3 with Cache-Control long enough, 16 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: Some img-elements have a valid alt-attribute.: 69 img-elements found, 18 img-elements with correct alt-attributes (defined, not an empty value).
Wrong: img-elements without alt-attribute or empty alt-attribute found. The alt-attribute ("alternative") is required and should describe the img. So Screenreader and search engines are able to use these informations.: 50 img-elements without alt-attribute, 1 img-elements with empty alt-attribute found.
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
AInfo: Different Server-Headers found
ADuration: 447140 milliseconds, 447.140 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
yama.su
yama.su
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
yama.su
yama.su
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=www.yama.su


2CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE


3CN=GlobalSign, OU=GlobalSign Root CA - R3, O=GlobalSign


shamara.info
shamara.info
443
Certificate/chain invalid
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

shamara.info
shamara.info
443
Certificate/chain invalid
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
no http/2 via ALPN 
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=shamara.info


shamara.info
195.24.65.64
443
Certificate/chain invalid
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

shamara.info
195.24.65.64
443
Certificate/chain invalid
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
no http/2 via ALPN 
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=shamara.info


www.shamara.info
195.24.65.64
443
Certificate/chain invalid and wrong name
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.shamara.info
195.24.65.64
443
Certificate/chain invalid and wrong name
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
no http/2 via ALPN 
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=kngk-development.ru


www.leptacapital.ru
www.leptacapital.ru
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.leptacapital.ru
www.leptacapital.ru
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=leptacapital.ru


2CN=R3, O=Let's Encrypt, C=US


195.24.65.64
195.24.65.64
443
Certificate/chain invalid and wrong name
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

195.24.65.64
195.24.65.64
443
Certificate/chain invalid and wrong name
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
no http/2 via ALPN 
Cert sent without SNI
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Cert sent without SNI
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=kngk-development.ru

 

9. Certificates

1.
1.
CN=shamara.info
08.04.2024
07.07.2024
260 days expired
alexey-shamara.com, alexey-shamara.ru, anastasia-shamara.com, anastasia-shamara.ru, shamara.info, анастасия-шамара.рф (xn----7sbaabaa4dwbe4bfbm8g4e.xn--p1ai), алексей-шамара.рф (xn----7sbbaa0aa6ahir3cg5h.xn--p1ai) - 7 entries
1.
1.
CN=shamara.info
08.04.2024

07.07.2024
260 days expired


alexey-shamara.com, alexey-shamara.ru, anastasia-shamara.com, anastasia-shamara.ru, shamara.info, анастасия-шамара.рф (xn----7sbaabaa4dwbe4bfbm8g4e.xn--p1ai), алексей-шамара.рф (xn----7sbbaa0aa6ahir3cg5h.xn--p1ai) - 7 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:04A1B0C51AA6E7CA10D7DDC3875546F9E529
Thumbprint:00550619903E2212678C34C6F3DB8DD5ED0714A4
SHA256 / Certificate:OJyZIDGvMB1HFnLGPOp2cb/yCFi2FkgIfCo/NOFLoIA=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):a5a72f8a0ec9dd47d482a276ddb806f9acc504cca6ed64d2adbdc15db420f091
SHA256 hex / Subject Public Key Information (SPKI):a5a72f8a0ec9dd47d482a276ddb806f9acc504cca6ed64d2adbdc15db420f091 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://r3.o.lencr.org
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


NotTimeValid: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
RevocationStatusUnknown: The revocation function was unable to check revocation for the certificate.
OfflineRevocation: The revocation function was unable to check revocation because the revocation server was offline.


2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020
15.09.2025
expires in 175 days


2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020

15.09.2025
expires in 175 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00912B084ACF0C18A753F6D62E25A75F5A
Thumbprint:A053375BFE84E8B748782C7CEE15827A6AF5A405
SHA256 / Certificate:Z63RFmsCCuYbj1/JaBPATCqliZYHloZVcqPH5zdhPf0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SHA256 hex / Subject Public Key Information (SPKI):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3724 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3724 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




2.
1.
CN=kngk-development.ru
08.04.2024
07.07.2024
260 days expired
k-development.ru, kngk-development.ru, www.k-development.ru, www.kngk-development.ru, кнгк.рф (xn--c1anbk.xn--p1ai) - 5 entries
2.
1.
CN=kngk-development.ru
08.04.2024

07.07.2024
260 days expired


k-development.ru, kngk-development.ru, www.k-development.ru, www.kngk-development.ru, кнгк.рф (xn--c1anbk.xn--p1ai) - 5 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0429402F216DE5A13C333F15A5879C130595
Thumbprint:A33824701D4A9A694FFDF704C33388482AEE5463
SHA256 / Certificate:MTYnhbTicfYRacM80gRcO8IEdPrLoA5w9CAp7j2d0bE=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):3d1f1dc4444e1b33c0177749b8a4bf72ac97a96a84280799f7dc2d7a24f0a1c8
SHA256 hex / Subject Public Key Information (SPKI):3d1f1dc4444e1b33c0177749b8a4bf72ac97a96a84280799f7dc2d7a24f0a1c8 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://r3.o.lencr.org
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


NotTimeValid: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
RevocationStatusUnknown: The revocation function was unable to check revocation for the certificate.
OfflineRevocation: The revocation function was unable to check revocation because the revocation server was offline.


2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020
15.09.2025
expires in 175 days


2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020

15.09.2025
expires in 175 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00912B084ACF0C18A753F6D62E25A75F5A
Thumbprint:A053375BFE84E8B748782C7CEE15827A6AF5A405
SHA256 / Certificate:Z63RFmsCCuYbj1/JaBPATCqliZYHloZVcqPH5zdhPf0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SHA256 hex / Subject Public Key Information (SPKI):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3724 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3724 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




3.
1.
CN=www.yama.su
03.02.2024
06.03.2025
18 days expired
www.yama.su, yama.su - 2 entries
3.
1.
CN=www.yama.su
03.02.2024

06.03.2025
18 days expired


www.yama.su, yama.su - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:6A3BF1486718D910A353D091
Thumbprint:8F1AD626A156B374548FDDEE8088B6B756A7E533
SHA256 / Certificate:7RXLjGkI1zWrgTdKK4ouKYn7KalQ+8LSNp3B0IrTsZU=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):1148bfd34eb6777df9392c5b2eac2de3fd1485fd49b77915b42a2759680d90b4
SHA256 hex / Subject Public Key Information (SPKI):1148bfd34eb6777df9392c5b2eac2de3fd1485fd49b77915b42a2759680d90b4 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.globalsign.com/gsgccr3dvtlsca2020
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=www.yama.su
03.02.2024
06.03.2025
18 days expired
www.yama.su, yama.su - 2 entries

2.
CN=www.yama.su
03.02.2024

06.03.2025
18 days expired


www.yama.su, yama.su - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:6A3BF1486718D910A353D091
Thumbprint:8F1AD626A156B374548FDDEE8088B6B756A7E533
SHA256 / Certificate:7RXLjGkI1zWrgTdKK4ouKYn7KalQ+8LSNp3B0IrTsZU=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):1148bfd34eb6777df9392c5b2eac2de3fd1485fd49b77915b42a2759680d90b4
SHA256 hex / Subject Public Key Information (SPKI):1148bfd34eb6777df9392c5b2eac2de3fd1485fd49b77915b42a2759680d90b4 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.globalsign.com/gsgccr3dvtlsca2020
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




3.
CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE
28.07.2020
18.03.2029
expires in 1455 days


3.
CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE
28.07.2020

18.03.2029
expires in 1455 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:77BD0E0742D5D9E9D049D774D02A6F9A
Thumbprint:1C610A0A87D492F48322C2AFD3BE9B6AD36B6BEE
SHA256 / Certificate:diU4Q5UJxBHEN9PFZ1Y+E3hnEoH8ShRkrdAxhwhDZ24=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):Error find_SubjectPublicKeyInfo_in_Certificate - no result found
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp2.globalsign.com/rootr3
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




4.
CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE
28.07.2020
18.03.2029
expires in 1455 days


4.
CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE
28.07.2020

18.03.2029
expires in 1455 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:77BD0E0742D5D9E9D049D774D02A6F9A
Thumbprint:1C610A0A87D492F48322C2AFD3BE9B6AD36B6BEE
SHA256 / Certificate:diU4Q5UJxBHEN9PFZ1Y+E3hnEoH8ShRkrdAxhwhDZ24=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):
SHA256 hex / Subject Public Key Information (SPKI):49cef02f815f3b0f2e79de70dc9392ceee4ccc1e3bd4f7ea7723788673186d7e
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp2.globalsign.com/rootr3
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




5.
CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R3
19.09.2018
28.01.2028
expires in 1040 days


5.
CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R3
19.09.2018

28.01.2028
expires in 1040 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:01EE5F169DFF97352B6465D66A
Thumbprint:0BBFAB97059595E8D1EC48E89EB8657C0E5AAE71
SHA256 / Certificate:RF7seLxhIVBEoDeWVqotXbXkL3bLcLjRTCB3qpQ9Trs=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):706bb1017c855c59169bad5c1781cf597f12d2cad2f63d1a4aa37493800ffb80
SHA256 hex / Subject Public Key Information (SPKI):706bb1017c855c59169bad5c1781cf597f12d2cad2f63d1a4aa37493800ffb80
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.globalsign.com/rootr1
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




6.
CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R3
18.03.2009
18.03.2029
expires in 1455 days


6.
CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R3
18.03.2009

18.03.2029
expires in 1455 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:04000000000121585308A2
Thumbprint:D69B561148F01C77C54578C10926DF5B856976AD
SHA256 / Certificate:y7Ui17fxJ61qAROGW98c1BAufQdZr2NafPRyDcljxTs=
SHA256 hex / Cert (DANE * 0 1):cbb522d7b7f127ad6a0113865bdf1cd4102e7d0759af635a7cf4720dc963c53b
SHA256 hex / PublicKey (DANE * 1 1):706bb1017c855c59169bad5c1781cf597f12d2cad2f63d1a4aa37493800ffb80
SHA256 hex / Subject Public Key Information (SPKI):706bb1017c855c59169bad5c1781cf597f12d2cad2f63d1a4aa37493800ffb80
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





7.
CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE
01.09.1998
28.01.2028
expires in 1040 days


7.
CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE
01.09.1998

28.01.2028
expires in 1040 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:040000000001154B5AC394
Thumbprint:B1BC968BD4F49D622AA89A81F2150152A41D829C
SHA256 / Certificate:69QQQOS7PsdCyeOB0x7ypBpItmhclufO88HfbNQzHJk=
SHA256 hex / Cert (DANE * 0 1):ebd41040e4bb3ec742c9e381d31ef2a41a48b6685c96e7cef3c1df6cd4331c99
SHA256 hex / PublicKey (DANE * 1 1):2bcee858158cf5465fc9d76f0dfa312fef25a4dca8501da9b46b67d1fbfa1b64
SHA256 hex / Subject Public Key Information (SPKI):2bcee858158cf5465fc9d76f0dfa312fef25a4dca8501da9b46b67d1fbfa1b64
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




4.
1.
CN=leptacapital.ru
29.05.2024
27.08.2024
209 days expired
leptacapital.ru, www.leptacapital.ru - 2 entries
4.
1.
CN=leptacapital.ru
29.05.2024

27.08.2024
209 days expired


leptacapital.ru, www.leptacapital.ru - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:03A38061317E23D3509EE6992155506D12A8
Thumbprint:D035F4FE63302F23DD8B4F1CC0E9D083D4A81F08
SHA256 / Certificate:pTEEBRxBtLUq55ZjQsSTbPMNDVU7uA/O1simES7SYqM=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):52c0835af5fbbefd016d13f3fe9a03d3b11a9b88897b1859e5da107e471b658c
SHA256 hex / Subject Public Key Information (SPKI):52c0835af5fbbefd016d13f3fe9a03d3b11a9b88897b1859e5da107e471b658c (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://r3.o.lencr.org
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020
15.09.2025
expires in 175 days


2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020

15.09.2025
expires in 175 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00912B084ACF0C18A753F6D62E25A75F5A
Thumbprint:A053375BFE84E8B748782C7CEE15827A6AF5A405
SHA256 / Certificate:Z63RFmsCCuYbj1/JaBPATCqliZYHloZVcqPH5zdhPf0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SHA256 hex / Subject Public Key Information (SPKI):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3724 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3724 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Issuerlast 7 daysactivenum Certs
CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE
0
0
1

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
5451831804
precert
CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE
2023-06-29 09:45:44
2024-07-30 09:45:43
shamara.info, www.shamara.info - 2 entries


 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

Issuerlast 7 daysactivenum Certs
CN=R3, O=Let's Encrypt, C=US
0 /0 new
0
1
CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE
0
0
1

CRT-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
12657935770
leaf cert
CN=R3, O=Let's Encrypt, C=US
2024-04-08 03:22:02
2024-07-07 03:22:01
alexey-shamara.com, alexey-shamara.ru, anastasia-shamara.com, anastasia-shamara.ru, shamara.info, алексей-шамара.рф (xn----7sbbaa0aa6ahir3cg5h.xn--p1ai), анастасия-шамара.рф (xn----7sbaabaa4dwbe4bfbm8g4e.xn--p1ai)
7 entries


9778683686
precert
CN=GlobalSign GCC R3 DV TLS CA 2020, O=GlobalSign nv-sa, C=BE
2023-06-29 07:45:44
2024-07-30 07:45:43
shamara.info, www.shamara.info
2 entries


 

11. Html-Content - Entries

Summary


Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://yama.su/login.php
a

1

0


0
0
0


form

1

0
1
0
0
0
0


img

6
227,023 Bytes
0
5
1
0
0
0


link
stylesheet
2
583 Bytes
0
2
0
0
0
0


meta
other
1

0


0
0
0

https://www.leptacapital.ru/
a

78

0


0
0
0


form

6

0
4
0
0
0
0


img

58

0
3
2
0
0
0


link
stylesheet
1

0
1
0
0
0
0


link
other
1

0
1
0
0
0
0


meta
apple
1

0


0
0
0


meta
other
6

0


0
0
0


script

6

0
5
1
0
0
0


style

6
221,448 Bytes
4
6
0
0
0
0

 

Details (currently limited to 500 rows - some problems with spam users)

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://yama.su/login.php

a

/password.php


1
ok















form
post
/login.php?Action=entry
200

1
ok
text/html; charset=windows-1251
missing X-Content-Type-Options nosniff





1834 Bytes








img
src
//mc.yandex.ru/watch/26604729
302
/watch/26604729/1?redirnss=1
1
ok
no alt-Attribute
missing X-Content-Type-Options nosniff





0 Bytes






Server-Header Access-Control-Allow-Origin: https://yama.su
Cross-Origin Resource Sharing (CORS) not supported



img
src
/images/loginpage_enter.png
200

1
ok
alt: Вход на сайтimage/png
missing X-Content-Type-Options nosniff





No Cache-Control header
No Compression - 1113 Bytes








img
src
/images/loginpage_helloname.png
200

1
ok
alt: Юрий Алексеевич и Марина Сергеевна Шамараimage/png
missing X-Content-Type-Options nosniff





No Cache-Control header
No Compression - 3132 Bytes








img
src
/images/loginpage_logo.png
200

1
ok
alt: ХРАНЮ И ОХРАНЯЮimage/png
missing X-Content-Type-Options nosniff





No Cache-Control header
No Compression - 104156 Bytes








img
src
/images/loginpage_password.png
200

1
ok
alt: Парольimage/png
missing X-Content-Type-Options nosniff





No Cache-Control header
No Compression - 763 Bytes








img
src
images/Shamara_Uyriy_Marina.jpg
200

1
ok
alt: Юрий Алексеевич и Марина Сергеевна Шамараimage/jpeg
missing X-Content-Type-Options nosniff





No Cache-Control header
No Compression - 117859 Bytes








link
stylesheet
/css/login.css
200

1
ok
text/css
missing X-Content-Type-Options nosniff





No Cache-Control - header
Compression required: 594 Bytes






local SRI possible, possible hash-values:

 

sha256-5geNhBcHxviDqtWrpLMXSk1afOSL1gK6QF9Qb4yLJNc=
sha384-+2g3LaIzDEl0Doj17YIRJzJFL6P4GurUg1N2vPlZlvGWNludgkZPgBDaaC7w87MJ
sha512-VcuquSM6H/O0JtEM7aW1QUZej5M2LT4gAxYNJZ0ejhJ6Y7rGzPtTJFDMVVeang9X75hPC0k66ijPzOjTDbk8Dg==

 

<link rel="stylesheet" href="/css/login.css" crossorigin="anonymous" integrity="sha256-5geNhBcHxviDqtWrpLMXSk1afOSL1gK6QF9Qb4yLJNc=" />


Content loaded via url("...")

 

/images/login_field_bg.gif1
/images/loginpage_bg.png1
/images/loginpage_photoborder.png1

link
stylesheet
/css/main.css
200

1
ok
text/css
missing X-Content-Type-Options nosniff





No Cache-Control - header
583 Bytes






local SRI possible, possible hash-values:

 

sha256-F36Ylv+ymoBAoKMXtFkJhB7LOHkjBmo2irMzEOiIWJg=
sha384-imHbkFc5jHc2f553bdehxAfFwWCbx6UNjNTL4GC8u4HT/Afqr+r2pzJLXofpEh78
sha512-hmjgtEzJVrBUIEL2nBYGkJb+ap8SwaEHFQITHJvcs8xImAfAdSRYX7/X5X6cyNDzu8RfbveXB/9q1aTSpwF1Kg==

 

<link rel="stylesheet" href="/css/main.css" crossorigin="anonymous" integrity="sha256-F36Ylv+ymoBAoKMXtFkJhB7LOHkjBmo2irMzEOiIWJg=" />


Content loaded via url("...")

 

/images/background.gif1

meta
Content-Type
text/html; charset=windows-1251


1
ok














https://www.leptacapital.ru/

a




6
ok















a

#


9
ok















a

#modal-call


1
ok















a

#modal-svayz


1
ok















a

/


1
ok















a

/about/


4
ok















a

/contacts/


3
ok















a

/news/


4
ok















a

/news/sotrudniki-lepta-capital-posetili-xv-ezhegodnuyu-ofisnuyu-konferentsiyu-nf-group.html


1
ok















a

/news/upravlyayuschiy-direktor-lepta-capital-natalya-dunaeva-posetila-vystavku-mallpic-sochi-30.html


1
ok















a

/news/upravlyayuschiy-direktor-lepta-capital-natalya-dunaeva-prinyala-uchastie-v-konferentsii-dlya-kogo-my-stroim.html


1
ok















a

/news/upravlyayuschuyu-lepta-capital-kompaniyu-ooo-shamara-vozglavit-robert-babich.html


1
ok















a

/politika-konfidentsialnosti/


6
ok















a

/real-estate/


4
ok















a

/real-estate/?city=2&class=0


1
ok















a

/real-estate/?city=3&class=0


1
ok















a

/real-estate/office-property/bashnya-federaciya-vostok.html


2
ok















a

/real-estate/office-property/icity.html


2
ok















a

/real-estate/office-property/kngk-delovoy-centr.html


2
ok















a

/real-estate/office-property/kngk-park.html


2
ok















a

/real-estate/office-property/ostankino-business-park.html


2
ok















a

/real-estate/office-property/proekty_9.html


3
ok















a

/real-estate/office-property/shamariki-education.html


2
ok















a

/real-estate/office-property/stone-towers.html


2
ok















a

/real-estate/office-property/yes-tekhnopark.html


2
ok















a

/rent/


3
ok















a

https://absolutbank.ru/


1
ok















a

https://anastasiafond.ru/


1
ok















a

https://intel-m.ru


3
ok















a

https://kf.expert/


1
ok















a

https://kk.bank/


1
ok















a

https://www.kngk-group.ru/


1
ok















a

https://www.sberbank.ru/ru/person


1
ok















a

tel:+74954673345


1
ok















a

tel:+79183122045


1
ok















form




2
ok















form
post
/netcat/add.php
200

4
ok
text/html; charset=utf-8
missing X-Content-Type-Options nosniff





2981 Bytes








img




43
ok
no alt-Attribute














img




1
ok
alt: NF Group














img




1
ok
alt: Абсолют банк














img




1
ok
alt: Банк «Кубань Кредит»














img




1
ok
alt: Благотворительный фонд «Анастасия»














img




1
ok
alt: КНГК-ГРУПП














img




1
ok
alt: Сбер














img




1
ok
alt: Сотрудники LEPTA CAPITAL посетили XV Ежегодную офисную конференцию NF Group














img




1
ok
alt: Управляющий директор LEPTA CAPITAL Наталья Дунаева посетила выставку MALLPIC SOCHI 3.0














img




1
ok
alt: Управляющий директор LEPTA CAPITAL Наталья Дунаева приняла участие в конференции «ДЛЯ КОГО МЫ СТРОИМ?»














img




1
ok
alt: Управляющую LEPTA CAPITAL компанию ООО «Шамара» возглавит Роберт Бабич














img
src
/img/svg/intel-m.svg
200

3
ok
no alt-Attributeimage/svg+xml
missing X-Content-Type-Options nosniff





Cache-Control: max-age=3888000 with long duration found.
No Compression - 8042 Bytes








img
src
https://mc.yandex.ru/watch/86601999
302
/watch/86601999/1?redirnss=1
1
ok
no alt-Attribute
missing X-Content-Type-Options nosniff





0 Bytes






Server-Header Access-Control-Allow-Origin: https://www.leptacapital.ru
Cross-Origin Resource Sharing (CORS) not supported



img
src
https://mc.yandex.ru/watch/94209024
302
/watch/94209024/1?redirnss=1
1
ok
no alt-Attribute
missing X-Content-Type-Options nosniff





0 Bytes






Server-Header Access-Control-Allow-Origin: https://www.leptacapital.ru
Cross-Origin Resource Sharing (CORS) not supported



link
shortcut icon
/img/favicons/favicon.svg
200

1
ok
image/svg+xml
missing X-Content-Type-Options nosniff





Cache-Control: max-age=3888000 with long duration found.
No Compression - 2198 Bytes








link
stylesheet
/styles/main.min.css
200

1
ok
text/css
missing X-Content-Type-Options nosniff





Cache-Control: max-age=3888000 - with long duration found.
Compression required: 66244 Bytes






local SRI possible, possible hash-values:

 

sha256-gNbc5kHjkbNRRiokP50JyLZuIN45Ha3FAHsYQA0RO7Y=
sha384-HvpBn1ZlfjefJZZup2yUGYQm7dKbMh3MbkhqQVL3uI16TwxzMcA8fRJ0C6ZnOz6A
sha512-uyYzLXjNFZJ1Jlwt+XQ4AvlFUuRonaujzao9tvdlFmrLo2+dLSWqVWtLEqiZ/xycP77R6gWgZNXxNApv63D9hw==

 

<link rel="stylesheet" href="/styles/main.min.css" crossorigin="anonymous" integrity="sha256-gNbc5kHjkbNRRiokP50JyLZuIN45Ha3FAHsYQA0RO7Y=" />


Content loaded via url("...")

 

../fonts/Akrobat-Black.ttf1
../fonts/Akrobat-Black.woff1
../fonts/Akrobat-Black.woff21
../fonts/Akrobat-Bold.ttf1
../fonts/Akrobat-Bold.woff1
../fonts/Akrobat-Bold.woff21
../fonts/Akrobat-ExtraLight.ttf1
../fonts/Akrobat-ExtraLight.woff1
../fonts/Akrobat-ExtraLight.woff21
../fonts/Akrobat-Light.ttf1
../fonts/Akrobat-Light.woff1
../fonts/Akrobat-Light.woff21
../fonts/Akrobat-Regular.ttf1
../fonts/Akrobat-Regular.woff1
../fonts/Akrobat-Regular.woff21
../fonts/Akrobat-SemiBold.ttf1
../fonts/Akrobat-SemiBold.woff1
../fonts/Akrobat-SemiBold.woff21
../fonts/Akrobat-Thin.ttf1
../fonts/Akrobat-Thin.woff1
../fonts/Akrobat-Thin.woff21
../fonts/montserrat-bold.ttf1
../fonts/montserrat-bold.woff1
../fonts/montserrat-bold.woff21
../fonts/montserrat-medium.ttf1
../fonts/montserrat-medium.woff1
../fonts/montserrat-medium.woff21
../fonts/montserrat-regular.ttf1
../fonts/montserrat-regular.woff1
../fonts/montserrat-regular.woff21
../img/arr_dow.png1
../img/arr_dow_white.png1
../img/inner/shop_decor.png2
../img/inners/back_menu.png2
../img/main/arr_dow.png1
../img/main/arr_white.png2
../img/main/call.png1
../img/main/check1.png1
../img/main/main-img14.png1
../img/main/main-img14-2.png1
../img/svg/svg-arr-1.svg1
../img/svg/svg-arr3.svg3
../img/svg/svg-arr5.svg2
../img/svg/svg-check.svg1
data:application/font-woff;charset=utf-8;base64, d09GRgABAAAAAAZgABAAAAAADAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAABGRlRNAAAGRAAAABoAAAAci6qHkUdERUYAAAWgAAAAIwAAACQAYABXR1BPUwAABhQAAAAuAAAANuAY7+xHU1VCAAAFxAAAAFAAAABm2fPczU9TLzIAAAHcAAAASgAAAGBP9V5RY21hcAAAAkQAAACIAAABYt6F0cBjdnQgAAACzAAAAAQAAAAEABEBRGdhc3AAAAWYAAAACAAAAAj//wADZ2x5ZgAAAywAAADMAAAD2MHtryVoZWFkAAABbAAAADAAAAA2E2+eoWhoZWEAAAGcAAAAHwAAACQC9gDzaG10eAAAAigAAAAZAAAArgJkABFsb2NhAAAC0AAAAFoAAABaFQAUGG1heHAAAAG8AAAAHwAAACAAcABAbmFtZQAAA/gAAAE5AAACXvFdBwlwb3N0AAAFNAAAAGIAAACE5s74hXjaY2BkYGAAYpf5Hu/j+W2+MnAzMYDAzaX6QjD6/4//Bxj5GA8AuRwMYGkAPywL13jaY2BkYGA88P8Agx4j+/8fQDYfA1AEBWgDAIB2BOoAeNpjYGRgYNBh4GdgYgABEMnIABJzYNADCQAACWgAsQB42mNgYfzCOIGBlYGB0YcxjYGBwR1Kf2WQZGhhYGBiYGVmgAFGBiQQkOaawtDAoMBQxXjg/wEGPcYDDA4wNUA2CCgwsAAAO4EL6gAAeNpj2M0gyAACqxgGNWBkZ2D4/wMA+xkDdgAAAHjaY2BgYGaAYBkGRgYQiAHyGMF8FgYHIM3DwMHABGQrMOgyWDLEM1T9/w8UBfEMgLzE////P/5//f/V/xv+r4eaAAeMbAxwIUYmIMHEgKYAYjUcsDAwsLKxc3BycfPw8jEQA/gZBASFhEVExcQlJKWkZWTl5BUUlZRVVNXUNTQZBgMAAMR+E+gAEQFEAAAAKgAqACoANAA+AEgAUgBcAGYAcAB6AIQAjgCYAKIArAC2AMAAygDUAN4A6ADyAPwBBgEQARoBJAEuATgBQgFMAVYBYAFqAXQBfgGIAZIBnAGmAbIBzgHsAAB42u2NMQ6CUAyGW568x9AneYYgm4MJbhKFaExIOAVX8ApewSt4Bic4AfeAid3VOBixDxfPYEza5O+Xfi04YADggiUIULCuEJK8VhO4bSvpdnktHI5QCYtdi2sl8ZnXaHlqUrNKzdKcT8cjlq+rwZSvIVczNiezsfnP/uznmfPFBNODM2K7MTQ45YEAZqGP81AmGGcF3iPqOop0r1SPTaTbVkfUe4HXj97wYE+yNwWYxwWu4v1ugWHgo3S1XdZEVqWM7ET0cfnLGxWfkgR42o2PvWrDMBSFj/IHLaF0zKjRgdiVMwScNRAoWUoH78Y2icB/yIY09An6AH2Bdu/UB+yxopYshQiEvnvu0dURgDt8QeC8PDw7Fpji3fEA4z/PEJ6YOB5hKh4dj3EvXhxPqH/SKUY3rJ7srZ4FZnh1PMAtPhwP6fl2PMJMPDgeQ4rY8YT6Gzao0eAEA409DuggmTnFnOcSCiEiLMgxCiTI6Cq5DZUd3Qmp10vO0LaLTd2cjN4fOumlc7lUYbSQcZFkutRG7g6JKZKy0RmdLY680CDnEJ+UMkpFFe1RN7nxdVpXrC4aTtnaurOnYercZg2YVmLN/d/gczfEimrE/fs/bOuq29Zmn8tloORaXgZgGa78yO9/cnXm2BpaGvq25Dv9S4E9+5SIc9PqupJKhYFSSl47+Qcr1mYNAAAAeNptw0cKwkAAAMDZJA8Q7OUJvkLsPfZ6zFVERPy8qHh2YER+3i/BP83vIBLLySsoKimrqKqpa2hp6+jq6RsYGhmbmJqZSy0sraxtbO3sHRydnEMU4uR6yx7JJXveP7WrDycAAAAAAAH//wACeNpjYGRgYOABYhkgZgJCZgZNBkYGLQZtIJsFLMYAAAw3ALgAeNolizEKgDAQBCchRbC2sFER0YD6qVQiBCv/H9ezGI6Z5XBAw8CBK/m5iQQVauVbXLnOrMZv2oLdKFa8Pjuru2hJzGabmOSLzNMzvutpB3N42mNgZGBg4GKQYzBhYMxJLMlj4GBgAYow/P/PAJJhLM6sSoWKfWCAAwDAjgbRAAB42mNgYGBkAIIbCZo5IPrmUn0hGA0AO8EFTQAA1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2213%22%20height%3D%2213%22%20viewBox%3D%220%200%2013%2013%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Crect%20fill%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20width%3D%2213%22%20height%3D%221%22%20x%3D%220%22%20y%3D%226%22%20%2F%3E%0A%20%20%20%20%3Crect%20fill%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20width%3D%221%22%20height%3D%2213%22%20x%3D%226%22%20y%3D%220%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2213%22%20height%3D%2213%22%20viewBox%3D%220%200%2013%2013%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Crect%20fill%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20width%3D%2213%22%20height%3D%221%22%20x%3D%220%22%20y%3D%226%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2214%22%20height%3D%2211%22%20viewBox%3D%220%200%2014%2011%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22%23666%22%20points%3D%2212%201%205%207.5%202%205%201%205.5%205%2010%2013%201.5%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2214%22%20height%3D%2211%22%20viewBox%3D%220%200%2014%2011%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22%23999%22%20points%3D%2212%201%205%207.5%202%205%201%205.5%205%2010%2013%201.5%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2214%22%20height%3D%2211%22%20viewBox%3D%220%200%2014%2011%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22%23fff%22%20points%3D%2212%201%205%207.5%202%205%201%205.5%205%2010%2013%201.5%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2214%22%20height%3D%2214%22%20viewBox%3D%220%200%2014%2014%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolyline%20fill%3D%22none%22%20stroke%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20stroke-width%3D%221.1%22%20points%3D%221%204%207%2010%2013%204%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2214%22%20height%3D%2214%22%20viewBox%3D%220%200%2014%2014%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolyline%20fill%3D%22none%22%20stroke%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20stroke-width%3D%221.1%22%20points%3D%2210%201%204%207%2010%2013%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2216%22%20height%3D%2216%22%20viewBox%3D%220%200%2016%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Ccircle%20fill%3D%22%23666%22%20cx%3D%228%22%20cy%3D%228%22%20r%3D%222%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2216%22%20height%3D%2216%22%20viewBox%3D%220%200%2016%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Ccircle%20fill%3D%22%23999%22%20cx%3D%228%22%20cy%3D%228%22%20r%3D%222%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2216%22%20height%3D%2216%22%20viewBox%3D%220%200%2016%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Ccircle%20fill%3D%22%23fff%22%20cx%3D%228%22%20cy%3D%228%22%20r%3D%222%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2216%22%20height%3D%2216%22%20viewBox%3D%220%200%2016%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Crect%20fill%3D%22%23666%22%20x%3D%223%22%20y%3D%228%22%20width%3D%2210%22%20height%3D%221%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2216%22%20height%3D%2216%22%20viewBox%3D%220%200%2016%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Crect%20fill%3D%22%23999%22%20x%3D%223%22%20y%3D%228%22%20width%3D%2210%22%20height%3D%221%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2216%22%20height%3D%2216%22%20viewBox%3D%220%200%2016%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Crect%20fill%3D%22%23fff%22%20x%3D%223%22%20y%3D%228%22%20width%3D%2210%22%20height%3D%221%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2220%22%20height%3D%2220%22%20viewBox%3D%220%200%2020%2020%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Ccircle%20fill%3D%22none%22%20stroke%3D%22%23e5e5e5%22%20stroke-width%3D%222%22%20cx%3D%2210%22%20cy%3D%2210%22%20r%3D%227%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2220%22%20height%3D%2220%22%20viewBox%3D%220%200%2020%2020%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Ccircle%20fill%3D%22none%22%20stroke%3D%22rgba%28255,%20255,%20255,%200.2%29%22%20stroke-width%3D%222%22%20cx%3D%2210%22%20cy%3D%2210%22%20r%3D%227%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2224%22%20height%3D%2216%22%20viewBox%3D%220%200%2024%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22%23666%22%20points%3D%2212%201%209%206%2015%206%22%20%2F%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22%23666%22%20points%3D%2212%2013%209%208%2015%208%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2224%22%20height%3D%2216%22%20viewBox%3D%220%200%2024%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22%23666%22%20points%3D%2212%2012%208%206%2016%206%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2224%22%20height%3D%2216%22%20viewBox%3D%220%200%2024%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22%23999%22%20points%3D%2212%201%209%206%2015%206%22%20%2F%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22%23999%22%20points%3D%2212%2013%209%208%2015%208%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2224%22%20height%3D%2216%22%20viewBox%3D%220%200%2024%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20points%3D%2212%201%209%206%2015%206%22%20%2F%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20points%3D%2212%2013%209%208%2015%208%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%2224%22%20height%3D%2216%22%20viewBox%3D%220%200%2024%2016%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Cpolygon%20fill%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20points%3D%2212%2012%208%206%2016%206%22%20%2F%3E%0A%3C%2Fsvg%3E%0A1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%226%22%20height%3D%226%22%20viewBox%3D%220%200%206%206%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Ccircle%20fill%3D%22%23666%22%20cx%3D%223%22%20cy%3D%223%22%20r%3D%223%22%20%2F%3E%0A%3C%2Fsvg%3E1
data:image/svg+xml;charset=UTF-8,%3Csvg%20width%3D%226%22%20height%3D%226%22%20viewBox%3D%220%200%206%206%22%20xmlns%3D%22http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%22%3E%0A%20%20%20%20%3Ccircle%20fill%3D%22rgba%28255,%20255,%20255,%200.7%29%22%20cx%3D%223%22%20cy%3D%223%22%20r%3D%223%22%20%2F%3E%0A%3C%2Fsvg%3E1

meta
charset
utf-8


1
ok















meta
X-UA-Compatible
IE=edge


1
ok















meta
apple-mobile-web-app-status-bar-style
black-translucent


1
ok















meta
description
Аренда недвижимости в Москве и Краснодаре, поможем снять офис в москве или арендовать место под магазин


1
ok















meta
keywords
Аренда недвижимости в Москве и Краснодаре


1
ok















meta
theme-color
#fff


1
ok















meta
viewport
width=device-width, user-scalable=no, initial-scale=1.0, maximum-scale=1.0, minimum-scale=1.0


1
ok















script
src
/js/libs_2.js
200

1
ok
defer attribute found application/javascript
missing X-Content-Type-Options nosniff





Cache-Control: max-age=3888000 - with long duration found.
Compression required: 126604 Bytes






local SRI possible, possible hash-values:

 

sha256-tWJjqaF3c/s1SHDayECM0lJUMTyJ6XoSRnt4b4b2/kc=
sha384-PWuUy0ZYtLKnkkoTEEPTEu52TcmlOK45Xy7Q7dETgJ6PZNAnjJmOGJMLeqZLckiq
sha512-AtPT3FPkc3+ojtlz+1LVoPQf4mmsgpGXQBO3JH91H/CB9NkU2SHKYaMW78z3yUNe39gcQy8ip/+kcoyXsIHFSw==

 

<script src="/js/libs_2.js" crossorigin="anonymous" integrity="sha256-tWJjqaF3c/s1SHDayECM0lJUMTyJ6XoSRnt4b4b2/kc=" />



script
src
/js/main.min.js
200

1
ok
defer attribute found application/javascript
missing X-Content-Type-Options nosniff





Cache-Control: max-age=3888000 - with long duration found.
Compression required: 5465 Bytes






local SRI possible, possible hash-values:

 

sha256-eAzYIUrQWfeZjM4v+Gl5mFXHOlai+jdzfqO5d1faRvk=
sha384-c4Yppb2jYyvOaWcWlT6HdSE9h8TUZxM1f6jqbCe2hn6sX8/TKh88Fy4j9byeSvOJ
sha512-MbEtZILnETqu9Ek3Kp2lDIsZ1nYV2EdKqpec9f3ffGeR/Q+w+cW/CiEX/9Zjmd2KtegdTU28uImf412ynbG5GA==

 

<script src="/js/main.min.js" crossorigin="anonymous" integrity="sha256-eAzYIUrQWfeZjM4v+Gl5mFXHOlai+jdzfqO5d1faRvk=" />



script
src
/js/map.js
200

1
ok
defer attribute found application/javascript
missing X-Content-Type-Options nosniff





Cache-Control: max-age=3888000 - with long duration found.
Compression required: 4415 Bytes






local SRI possible, possible hash-values:

 

sha256-8qZq+e9o+IReY0Qgz5ZaeAZ8mYHp18xNxhwQS9MRpV0=
sha384-wIT9iQkTGXVSgk6ULqyKHPqEF96YlrgwenQ7WOQsmaltZAJvlqNniu7d7dn0KcCg
sha512-oD7/fUDsM4Yu4AfIqfQMuf/XTpKRErc7YidHbpLuGhT5f8odILfJzLoiOZhsXjsZ9JHzseInYCedPxajuO4Qzw==

 

<script src="/js/map.js" crossorigin="anonymous" integrity="sha256-8qZq+e9o+IReY0Qgz5ZaeAZ8mYHp18xNxhwQS9MRpV0=" />



script
src
/js/vendor.min.js
200

1
ok
defer attribute found application/javascript
missing X-Content-Type-Options nosniff





Cache-Control: max-age=3888000 - with long duration found.
Compression required: 159658 Bytes






local SRI possible, possible hash-values:

 

sha256-Ubg4vf7BtAoKnGUwhrMxDfz1eYy+8svEznk6CGlOBX4=
sha384-imI8S3M4scnz6Yy6put66o6uJNW7UC36RoXvZRBj8X5CxtbEXaNjXt9soLqAl++7
sha512-L8fXKk5PWMOfCPFqlf01kyi+maa5upTfEmNYRn6v375j+lp5yzncQ25a7xyuLLsEURS3Aev0+HaLKQ4OqI74zA==

 

<script src="/js/vendor.min.js" crossorigin="anonymous" integrity="sha256-Ubg4vf7BtAoKnGUwhrMxDfz1eYy+8svEznk6CGlOBX4=" />



script
src
/netcat/modules/stats/js/nc_stats_analytics_event.min.js
200

1
ok
Missing defer / async attribute. application/javascript
missing X-Content-Type-Options nosniff





Cache-Control: max-age=3888000 - with long duration found.
Compression required: 2971 Bytes






local SRI possible, possible hash-values:

 

sha256-rm/FwA9RRgu4iMqJBr0xw4fglk8ZL2G4EkHtgRIZhKk=
sha384-pg84H1z79kzzJ5x7dw4GZWQ6188liCw0mXdytu1llgg5wvV3OsmHTrLYpdCTHQ1m
sha512-rDOSB9gsjjElapCFbW5QETlCdk02/ck5Fl7xnkKsREBTz9Za5+l660mJcLVlsINmUKx0tdZpYYR6U/Z+x+rbyA==

 

<script src="/netcat/modules/stats/js/nc_stats_analytics_event.min.js" crossorigin="anonymous" integrity="sha256-rm/FwA9RRgu4iMqJBr0xw4fglk8ZL2G4EkHtgRIZhKk=" />



script
src
https://www.google.com/recaptcha/api.js?onload=recaptchaCallback&render=explicit
200

1
ok
Missing defer / async attribute. text/javascript; charset=utf-8
X-Content-Type-Options nosniff found





Cache-Control: max-age=300, private - max-age too short.
591 Bytes






Server-Header Access-Control-Allow-Origin: not found
Cross-Origin Resource Sharing (CORS) not supported



style

../fonts/coworking.ttf
404
Not Found
1
missing file
text/html; charset=utf-8
missing X-Content-Type-Options nosniff





0 Bytes








style

../fonts/coworking.woff
404
Not Found
1
missing file
text/html; charset=utf-8
missing X-Content-Type-Options nosniff





0 Bytes








style

../fonts/coworking.woff2
404
Not Found
1
missing file
text/html; charset=utf-8
missing X-Content-Type-Options nosniff





0 Bytes








style

../fonts/montserrat-bold.ttf
404
Not Found
1
missing file
text/html; charset=utf-8
missing X-Content-Type-Options nosniff





0 Bytes








style

../fonts/montserrat-bold.woff
200

1
ok
application/font-woff
missing X-Content-Type-Options nosniff


This Combination of MediaType "application" and MediaSubType "font-woff" is deprecated. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "font/woff" instead.


No Cache-Control header
No Compression (): 140100/140100 Bytes, font already compressed








style

../fonts/montserrat-bold.woff2
200

1
ok

missing X-Content-Type-Options nosniff





81348 Bytes







 

12. Html-Parsing via https://validator.w3.org/nu/

Small Code update, wait one minute

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns1.kngk.org, ns2.kngk.org

 

QNr.DomainTypeNS used
1
org
NS
b.root-servers.net (2001:500:200::b)

Answer: a0.org.afilias-nst.info, a2.org.afilias-nst.info, b0.org.afilias-nst.org, b2.org.afilias-nst.org, c0.org.afilias-nst.info, d0.org.afilias-nst.org
2
ns1.kngk.org: 46.18.200.246
NS
a0.org.afilias-nst.info (2001:500:e::1)

Answer: ns2.kngk.org
109.196.202.178

 

14. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
www.shamara.info
0

no CAA entry found
1
0
shamara.info
5
issue
letsencrypt.org
1
0
info
0

no CAA entry found
1
0

 

15. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
shamara.info
_globalsign-domain-verification=OBP7u9gn54KCionIsdWQgDB8AvEn2JtAXD3I21ecei
ok
1
0
shamara.info
google-site-verification=rtKs3Gr_fOLzcCXsPBAvbIeDkzXnjZkK6tVgbC_b_iI
ok
1
0
shamara.info
mailru-verification: c1f60405f3b01573
ok
1
0
shamara.info
v=spf1 +mx +a include:_spf.shamara.info ~all
ok
1
0
shamara.info
zvyq80l1yj6sc4ftf9ph5jf31x4fcfjn
ok
1
0
www.shamara.info

ok
1
0
_acme-challenge.shamara.info
FxMams40YrK9-FB5UAEU_DnIVJbicItgMduOFfMbDOM
looks good, correct length, correct characters
1
0
_acme-challenge.www.shamara.info

Name Error - The domain name does not exist
1
0
_acme-challenge.shamara.info.shamara.info

Name Error - The domain name does not exist
1
0
_acme-challenge.www.shamara.info.shamara.info

Name Error - The domain name does not exist
1
0
_acme-challenge.www.shamara.info.www.shamara.info

Name Error - The domain name does not exist
1
0

 

16. DomainService - Entries

TypeDomainPrefValueDNS-errornum AnswersStatusDescription
MX

shamara.info
10
mail.kngk.org
01ok

A


46.18.200.248
01ok

CNAME


00ok
SPF
TXT
shamara.info

v=spf1 +mx +a include:_spf.shamara.info ~all
ok

MX
shamara.info

mail.kngk.org
ok

MX-A
mail.kngk.org

46.18.200.248
ok

TXT
_spf.shamara.info

ip4:10.10.5.2
256Private ip address found

A
shamara.info

195.24.65.64
ok

TXT
_spf.shamara.info

v=spf1 ip4:46.18.200.240/26 ip4:10.10.5.2 ip4:109.196.202.185 ~all
256Private ip address found
_dmarc
TXT
_dmarc.shamara.info

v=DMARC1; p=quarantine; aspf=s; sp=quarantine; rua=mailto:postmaster@shamara.info
ok

 

 

17. Cipher Suites

Summary
DomainIPPortnum CipherstimeStd.ProtocolForward Secrecy
shamara.info
195.24.65.64
443
21 Ciphers94.90 sec
12 without, 9 FS
42.86 %
www.shamara.info
195.24.65.64
443
21 Ciphers94.92 sec
12 without, 9 FS
42.86 %
Complete

2
42 Ciphers
21.00 Ciphers/Check
189.82 sec94.91 sec/Check
24 without, 18 FS
42.86 %

Details
DomainIPPortCipher (OpenSsl / IANA)
shamara.info
195.24.65.64
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
21 Ciphers, 94.90 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




ECDHE-ARIA256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x61
FS

TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384

ECDH
RSA
ARIAGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD




ECDHE-ARIA128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x60
FS

TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256

ECDH
RSA
ARIAGCM(128)
AEAD




ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384

ECDH
RSA
AES(256)
SHA384




ARIA256-GCM-SHA384
(Weak)
TLSv1.2
0xC0,0x51
No FS

TLS_RSA_WITH_ARIA_256_GCM_SHA384

RSA
RSA
ARIAGCM(256)
AEAD




AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384

RSA
RSA
AESGCM(256)
AEAD




AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256

RSA
RSA
AES(256)
SHA256




AES256-CCM8
(Weak)
TLSv1.2
0xC0,0xA1
No FS

TLS_RSA_WITH_AES_256_CCM_8

RSA
RSA
AESCCM8(256)
AEAD




AES256-CCM
(Weak)
TLSv1.2
0xC0,0x9D
No FS

TLS_RSA_WITH_AES_256_CCM

RSA
RSA
AESCCM(256)
AEAD




ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256

ECDH
RSA
AES(128)
SHA256




ARIA128-GCM-SHA256
(Weak)
TLSv1.2
0xC0,0x50
No FS

TLS_RSA_WITH_ARIA_128_GCM_SHA256

RSA
RSA
ARIAGCM(128)
AEAD




AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256

RSA
RSA
AESGCM(128)
AEAD




AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256

RSA
RSA
AES(128)
SHA256




AES128-CCM8
(Weak)
TLSv1.2
0xC0,0xA0
No FS

TLS_RSA_WITH_AES_128_CCM_8

RSA
RSA
AESCCM8(128)
AEAD




AES128-CCM
(Weak)
TLSv1.2
0xC0,0x9C
No FS

TLS_RSA_WITH_AES_128_CCM

RSA
RSA
AESCCM(128)
AEAD




ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA

ECDH
RSA
AES(256)
SHA1




ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA

ECDH
RSA
AES(128)
SHA1




AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA

RSA
RSA
AES(256)
SHA1




AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA

RSA
RSA
AES(128)
SHA1

www.shamara.info
195.24.65.64
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
21 Ciphers, 94.92 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




ECDHE-ARIA256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x61
FS

TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384

ECDH
RSA
ARIAGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD




ECDHE-ARIA128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x60
FS

TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256

ECDH
RSA
ARIAGCM(128)
AEAD




ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384

ECDH
RSA
AES(256)
SHA384




ARIA256-GCM-SHA384
(Weak)
TLSv1.2
0xC0,0x51
No FS

TLS_RSA_WITH_ARIA_256_GCM_SHA384

RSA
RSA
ARIAGCM(256)
AEAD




AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384

RSA
RSA
AESGCM(256)
AEAD




AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256

RSA
RSA
AES(256)
SHA256




AES256-CCM8
(Weak)
TLSv1.2
0xC0,0xA1
No FS

TLS_RSA_WITH_AES_256_CCM_8

RSA
RSA
AESCCM8(256)
AEAD




AES256-CCM
(Weak)
TLSv1.2
0xC0,0x9D
No FS

TLS_RSA_WITH_AES_256_CCM

RSA
RSA
AESCCM(256)
AEAD




ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256

ECDH
RSA
AES(128)
SHA256




ARIA128-GCM-SHA256
(Weak)
TLSv1.2
0xC0,0x50
No FS

TLS_RSA_WITH_ARIA_128_GCM_SHA256

RSA
RSA
ARIAGCM(128)
AEAD




AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256

RSA
RSA
AESGCM(128)
AEAD




AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256

RSA
RSA
AES(128)
SHA256




AES128-CCM8
(Weak)
TLSv1.2
0xC0,0xA0
No FS

TLS_RSA_WITH_AES_128_CCM_8

RSA
RSA
AESCCM8(128)
AEAD




AES128-CCM
(Weak)
TLSv1.2
0xC0,0x9C
No FS

TLS_RSA_WITH_AES_128_CCM

RSA
RSA
AESCCM(128)
AEAD




ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA

ECDH
RSA
AES(256)
SHA1




ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA

ECDH
RSA
AES(128)
SHA1




AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA

RSA
RSA
AES(256)
SHA1




AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA

RSA
RSA
AES(128)
SHA1

 

18. Portchecks

DomainIPPortDescriptionResultAnswer
shamara.info
195.24.65.64
21
FTP



shamara.info
195.24.65.64
21
FTP



shamara.info
195.24.65.64
22
SSH
open
SSH-2.0-OpenSSH_8.0

shamara.info
195.24.65.64
22
SSH
open
SSH-2.0-OpenSSH_8.0
Bad: SSH without DNS SSHFP Record found

Possible DNS SSHFP Entries:
shamara.info IN SSHFP 1 2 4dc378389e2cf5d0a650437fdda9ec6574a1f40ce60727633fd0f83137e34a28
shamara.info IN SSHFP 3 2 903eba3e182c039b673f5efecb8ac69ada54e5ac0464ec7ed428e521b16fd29c
shamara.info IN SSHFP 4 2 109cbcf521343264309694bdc0510020d7475e6e04d3ed8452cba767cac6c721
shamara.info
195.24.65.64
25
SMTP



shamara.info
195.24.65.64
25
SMTP



shamara.info
195.24.65.64
53
DNS



shamara.info
195.24.65.64
53
DNS



shamara.info
195.24.65.64
110
POP3



shamara.info
195.24.65.64
110
POP3



shamara.info
195.24.65.64
143
IMAP



shamara.info
195.24.65.64
143
IMAP



shamara.info
195.24.65.64
465
SMTP (encrypted)



shamara.info
195.24.65.64
465
SMTP (encrypted)



shamara.info
195.24.65.64
587
SMTP (encrypted, submission)



shamara.info
195.24.65.64
587
SMTP (encrypted, submission)



shamara.info
195.24.65.64
993
IMAP (encrypted)



shamara.info
195.24.65.64
993
IMAP (encrypted)



shamara.info
195.24.65.64
995
POP3 (encrypted)



shamara.info
195.24.65.64
995
POP3 (encrypted)



shamara.info
195.24.65.64
1433
MS SQL



shamara.info
195.24.65.64
1433
MS SQL



shamara.info
195.24.65.64
2082
cPanel (http)



shamara.info
195.24.65.64
2082
cPanel (http)



shamara.info
195.24.65.64
2083
cPanel (https)



shamara.info
195.24.65.64
2083
cPanel (https)



shamara.info
195.24.65.64
2086
WHM (http)



shamara.info
195.24.65.64
2086
WHM (http)



shamara.info
195.24.65.64
2087
WHM (https)



shamara.info
195.24.65.64
2087
WHM (https)



shamara.info
195.24.65.64
2089
cPanel Licensing



shamara.info
195.24.65.64
2089
cPanel Licensing



shamara.info
195.24.65.64
2095
cPanel Webmail (http)



shamara.info
195.24.65.64
2095
cPanel Webmail (http)



shamara.info
195.24.65.64
2096
cPanel Webmail (https)



shamara.info
195.24.65.64
2096
cPanel Webmail (https)



shamara.info
195.24.65.64
2222
DirectAdmin (http)



shamara.info
195.24.65.64
2222
DirectAdmin (http)



shamara.info
195.24.65.64
2222
DirectAdmin (https)



shamara.info
195.24.65.64
2222
DirectAdmin (https)



shamara.info
195.24.65.64
3306
mySql



shamara.info
195.24.65.64
3306
mySql



shamara.info
195.24.65.64
5224
Plesk Licensing



shamara.info
195.24.65.64
5224
Plesk Licensing



shamara.info
195.24.65.64
5432
PostgreSQL



shamara.info
195.24.65.64
5432
PostgreSQL



shamara.info
195.24.65.64
8080
Ookla Speedtest (http)



shamara.info
195.24.65.64
8080
Ookla Speedtest (http)



shamara.info
195.24.65.64
8080
Ookla Speedtest (https)



shamara.info
195.24.65.64
8080
Ookla Speedtest (https)



shamara.info
195.24.65.64
8083
VestaCP http



shamara.info
195.24.65.64
8083
VestaCP http



shamara.info
195.24.65.64
8083
VestaCP https



shamara.info
195.24.65.64
8083
VestaCP https



shamara.info
195.24.65.64
8443
Plesk Administration (https)



shamara.info
195.24.65.64
8443
Plesk Administration (https)



shamara.info
195.24.65.64
8447
Plesk Installer + Updates



shamara.info
195.24.65.64
8447
Plesk Installer + Updates



shamara.info
195.24.65.64
8880
Plesk Administration (http)



shamara.info
195.24.65.64
8880
Plesk Administration (http)



shamara.info
195.24.65.64
10000
Webmin (http)



shamara.info
195.24.65.64
10000
Webmin (http)



shamara.info
195.24.65.64
10000
Webmin (https)



shamara.info
195.24.65.64
10000
Webmin (https)



www.shamara.info
195.24.65.64
21
FTP



www.shamara.info
195.24.65.64
21
FTP



www.shamara.info
195.24.65.64
22
SSH
open
SSH-2.0-OpenSSH_8.0

www.shamara.info
195.24.65.64
22
SSH
open
SSH-2.0-OpenSSH_8.0
Bad: SSH without DNS SSHFP Record found

Possible DNS SSHFP Entries:
www.shamara.info IN SSHFP 1 2 4dc378389e2cf5d0a650437fdda9ec6574a1f40ce60727633fd0f83137e34a28
www.shamara.info IN SSHFP 3 2 903eba3e182c039b673f5efecb8ac69ada54e5ac0464ec7ed428e521b16fd29c
www.shamara.info IN SSHFP 4 2 109cbcf521343264309694bdc0510020d7475e6e04d3ed8452cba767cac6c721
www.shamara.info
195.24.65.64
25
SMTP



www.shamara.info
195.24.65.64
25
SMTP



www.shamara.info
195.24.65.64
53
DNS



www.shamara.info
195.24.65.64
53
DNS



www.shamara.info
195.24.65.64
110
POP3



www.shamara.info
195.24.65.64
110
POP3



www.shamara.info
195.24.65.64
143
IMAP



www.shamara.info
195.24.65.64
143
IMAP



www.shamara.info
195.24.65.64
465
SMTP (encrypted)



www.shamara.info
195.24.65.64
465
SMTP (encrypted)



www.shamara.info
195.24.65.64
587
SMTP (encrypted, submission)



www.shamara.info
195.24.65.64
587
SMTP (encrypted, submission)



www.shamara.info
195.24.65.64
993
IMAP (encrypted)



www.shamara.info
195.24.65.64
993
IMAP (encrypted)



www.shamara.info
195.24.65.64
995
POP3 (encrypted)



www.shamara.info
195.24.65.64
995
POP3 (encrypted)



www.shamara.info
195.24.65.64
1433
MS SQL



www.shamara.info
195.24.65.64
1433
MS SQL



www.shamara.info
195.24.65.64
2082
cPanel (http)



www.shamara.info
195.24.65.64
2082
cPanel (http)



www.shamara.info
195.24.65.64
2083
cPanel (https)



www.shamara.info
195.24.65.64
2083
cPanel (https)



www.shamara.info
195.24.65.64
2086
WHM (http)



www.shamara.info
195.24.65.64
2086
WHM (http)



www.shamara.info
195.24.65.64
2087
WHM (https)



www.shamara.info
195.24.65.64
2087
WHM (https)



www.shamara.info
195.24.65.64
2089
cPanel Licensing



www.shamara.info
195.24.65.64
2089
cPanel Licensing



www.shamara.info
195.24.65.64
2095
cPanel Webmail (http)



www.shamara.info
195.24.65.64
2095
cPanel Webmail (http)



www.shamara.info
195.24.65.64
2096
cPanel Webmail (https)



www.shamara.info
195.24.65.64
2096
cPanel Webmail (https)



www.shamara.info
195.24.65.64
2222
DirectAdmin (http)



www.shamara.info
195.24.65.64
2222
DirectAdmin (http)



www.shamara.info
195.24.65.64
2222
DirectAdmin (https)



www.shamara.info
195.24.65.64
2222
DirectAdmin (https)



www.shamara.info
195.24.65.64
3306
mySql



www.shamara.info
195.24.65.64
3306
mySql



www.shamara.info
195.24.65.64
5224
Plesk Licensing



www.shamara.info
195.24.65.64
5224
Plesk Licensing



www.shamara.info
195.24.65.64
5432
PostgreSQL



www.shamara.info
195.24.65.64
5432
PostgreSQL



www.shamara.info
195.24.65.64
8080
Ookla Speedtest (http)



www.shamara.info
195.24.65.64
8080
Ookla Speedtest (http)



www.shamara.info
195.24.65.64
8080
Ookla Speedtest (https)



www.shamara.info
195.24.65.64
8080
Ookla Speedtest (https)



www.shamara.info
195.24.65.64
8083
VestaCP http



www.shamara.info
195.24.65.64
8083
VestaCP http



www.shamara.info
195.24.65.64
8083
VestaCP https



www.shamara.info
195.24.65.64
8083
VestaCP https



www.shamara.info
195.24.65.64
8443
Plesk Administration (https)



www.shamara.info
195.24.65.64
8443
Plesk Administration (https)



www.shamara.info
195.24.65.64
8447
Plesk Installer + Updates



www.shamara.info
195.24.65.64
8447
Plesk Installer + Updates



www.shamara.info
195.24.65.64
8880
Plesk Administration (http)



www.shamara.info
195.24.65.64
8880
Plesk Administration (http)



www.shamara.info
195.24.65.64
10000
Webmin (http)



www.shamara.info
195.24.65.64
10000
Webmin (http)



www.shamara.info
195.24.65.64
10000
Webmin (https)



www.shamara.info
195.24.65.64
10000
Webmin (https)



 

 

Permalink: https://check-your-website.server-daten.de/?i=41359cbc-8fef-4c95-a556-2b086f26df50

 

Last Result: https://check-your-website.server-daten.de/?q=shamara.info - 2024-07-10 07:10:52

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=shamara.info" target="_blank">Check this Site: shamara.info</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=shamara.info