men-aptekar.ru

Observed Aug 12, 2026, 03:48 UTC (5d ago). Every field below was attested with an Ed25519 signature at scan time.

This reading of men-aptekar.ru was taken 5d ago

men-aptekar.ru is on the survey sweep, which works its way across the whole catalog rather than returning to one name on a schedule. Putting men-aptekar.ru under watch moves it to the fast lane, where DomainDrift re-checks it about every 5 minutes and signs each reading, so a change becomes a dated event within minutes instead of waiting for the sweep to come round.

Watch men-aptekar.ru Watching a domain needs a DRM3 account. The reading above stays free and public either way.
Not responding
Signed observation on record.
tranco
Every line above is a signed observation. Check the math at the bottom of the page.
DRIFT

Steady. No change on record for men-aptekar.ru in the last day; this reading matches the one before it. The steady record is signed like every other reading. Watch it to catch the next move the moment it lands.

INFRASTRUCTURE MAPwhat men-aptekar.ru actually stands on - every host below is a signed observation
men-aptekar.ru
A / AAAA
185.4.67.171
unattributedserves the site
NS
ns2.r01.runs1.r01.ru
r01.ruanswers its DNS
MX
mx.yandex.ru
yandex.rureceives its email

DNS Records

A 1

  • 185.4.67.171

MX 1

  • 10mx.yandex.ru

TXT 1

  • v=spf1 a mx ip4:185.4.67.171 include:_spf.yandex.ru ~all

NS 2

  • ns2.r01.ru
  • ns1.r01.ru

SOA 1

  • ns1.r01.ru noc.parkline.ru

MCP_RECORDS 1

  • v=spf1 a mx ip4:185.4.67.171 include:_spf.yandex.ru ~all

DMARC_RECORDS 1

  • v=spf1 a mx ip4:185.4.67.171 include:_spf.yandex.ru ~all

BIMI_RECORDS 1

  • v=spf1 a mx ip4:185.4.67.171 include:_spf.yandex.ru ~all

MTA_STS_RECORDS 1

  • v=spf1 a mx ip4:185.4.67.171 include:_spf.yandex.ru ~all

TLS Certificates (0)

None.

Subdomains (0)

None observed.

WILDCARD DNSobserved 2026-08-15 03:49 UTC

DomainDrift asked this domain for one hostname that nobody ever registered, and it answered. A domain that answers invented hostnames is running wildcard DNS. It is common and usually deliberate. A SaaS platform gives every customer a subdomain this way. How the check works

The proof

Signed at scan time. Check the math yourself. Every line above is part of one signed observation. Re-hash it and check the Ed25519 signature in your own browser; the only network request the check makes is for the published public keys.

Verify this receipt

Ed25519 Receipt

Receipt ID
rcpt_7c8611abf3bc4a6e
Output Hash
33eb05085b72f107bd0eae6c21b38c64a93eebc072973e37e6026ad01981442c
Signature
ed25519:8ecb46dac2be052f2b2b62362125efbfb381be16fa48a7051f4c991e4929743e1be50a666d13835446b9a856fb69af54b374cff11452d0fa27b61f9cb5ae9e09
Public Key
ed25519:4859bb613d650e12dd7478cc307c73a8712fabc115a9dc59f65534ed3c09a8f9
Parent
(genesis)
Plane
fast
Verify this in your browser
CONTINUOUS INTERNET TELEMETRY24H DRIFT38,179 material changesacross 36,363 domains · 24h to ~3h ago · -1,061 vs yesterdayROTATION57 domains moved DNS from magpiedns.com to koaladns.com, 55 moved backa rotation loop, not a migration · 24hEMAIL DRIFT7 domains switched email providertop destination alltheemails.comNOW528 curated domains not reachable-63 vs yesterdaySITE ERRORS33,930 sites serving errorslast probe · 5xx / 404 / TLSBOT DEFENSEbot defense observed on 116,733 sites429 rate-limit / 403 bot-block, a posture signal