r9wine.dk

📜 Historical scan 2026-06-17 12:57:54  ·  ← Latest scan
⬇ Zone File 📜 Record History ⚡ Scan Now

r9wine.dk is a .dk domain served by 4 nameservers (ns1.simply.com, ns2.simply.com, ns3.simply.com and 1 more). It was already in the .dk zone when our tracking began on 16 June 2026. Mail is handled by r9wine-dk.mail.protection.outlook.com. The zone is DNSSEC-signed and validates, has no DMARC policy and has no IPv6 address. Below are all of its DNS records from this scan: nameservers, A/AAAA, MX, TXT, SPF, DMARC, CAA, TLSA/DANE, MTA-STS, SRV and more.

🖥️ Nameservers

4 records   117ms

🌍 A Records

🌍
No A records found

📧 MX Records

1 records   113ms

🔷 AAAA Records (IPv6)

✗ No AAAA records — IPv6 not configured

🔐 HTTPS Records

✗ No HTTPS RR — no SVCB/HTTPS service binding

📝 TXT Records

2 records   296ms
TXT Record
v=spf1 include:servers.mcsv.net ?all
v=spf1 include:spf.protection.outlook.com include:spf.simply.com -all

✉️ SPF

⚠ Multiple SPF records — RFC 7208 §4.5 violation (receivers must treat this as permerror)
PolicyRecord (r9wine.dk)
?all (neutral) v=spf1 include:servers.mcsv.net ?all
-all (hard fail) v=spf1 include:spf.protection.outlook.com include:spf.simply.com -all

📨 DMARC

✗ No DMARC record — mail spoofing not restricted

📬 MTA-STS

✗ No MTA-STS policy — SMTP TLS not enforced

📈 TLSRPT

✗ No TLSRPT record — no SMTP TLS failure reporting

📜 CAA Records

✗ No CAA records — any CA may issue certificates

🧩 Web & zone

latest probe, not this scan · checked 2026-10-01 11:31:56
wwwAddress record (no CNAME)
WildcardNo
Denial of existenceNSEC zone can be walked (all names enumerable)
CDS / CDNSKEYPublished: key rollovers can be automated with the registry (RFC 7344/8078) 1 CDS, 1 CDNSKEY

✍️ DKIM keys

1 found
SelectorCNAMEKey
k1 dkim.mcsv.net RSA · ~1024 bit below 2048 bit

DKIM selectors can't be listed, so we check the common ones (Microsoft 365, Google, Mailchimp, SendGrid, generic). Keys under other selectors aren't shown.

🔎 SPF check

zone-wide SPF report

DNS lookups: 1/10 · policy: ?all

  • error 2 SPF records: receivers must treat that as a permanent error (RFC 7208 §4.5)
  • warn "?all" is neutral: it gives receivers no guidance, much like having no SPF

🔗 TLSA / DANE

✗ No TLSA records — DANE not configured for HTTPS (_443) or MX (_25)

🔐 DNSSEC

314ms
CheckResult
Validation Status🔒 Secure
AD Flag (resolver validates)✓ Set
DS Record✓ Found
DNSKEY Record✓ Found
Flagsresolution failed: ncache nxrrset

🏷️ SOA

117ms
FieldValue
Serial2021092000
Primary NS (MNAME)ns1.simply.com
Responsible (RNAME)hostmaster@simply.com
Refresh14400s
Retry3600s
Expire1209600s
Minimum (neg-cache TTL)3600s

📋 Registration

✗ No registration data — collected automatically when SOA serial changes
📋 WHOIS

⏱️ Lookup Timing

NS
117ms
A
101ms
MX
113ms
AAAA
102ms
TXT
296ms
CAA
98ms
HTTPS
102ms
TLSA
268ms
SOA
117ms
MTA-STS
151ms
DNSSEC
314ms
SRV
0ms
Total
2402ms

🕐 Scan History

Scanned AtDurationRecordsDNSSEC
2026-10-01 11:31:56 931ms 4 NS 0 A 1 MX 🔒 Secure
2026-08-27 23:14:36 1091ms 4 NS 0 A 1 MX 🔒 Secure
2026-06-30 19:12:27 711ms 4 NS 0 A 1 MX 🔒 Secure
2026-06-30 04:57:30 1216ms 4 NS 0 A 1 MX 🔒 Secure
2026-06-20 00:29:02 2640ms 4 NS 0 A 1 MX 🔒 Secure
2026-06-17 12:57:54 shown 2402ms 4 NS 0 A 1 MX 🔒 Secure
dhd.dk [/] search Domains, Hosts & DNS — .dk zone