Just to give an example what is a Poodle vulnerable site like this one doing in this list:
http://toolbar.netcraft.com/site_report?url=https://mirindadomo.ru
Site has a C ranking, sessions could be vulnerable to BEAST attack,
HTTP Strict-Transport-Security not installed on that server.
Unnecessary certificates sent during SSL/TLS-negotiation.
No FIPS enabled - no federal norms (Russian Server)
No SPDY set.
So we see now that my question in this thread was a legit one.
polonus
P.S. This is a properly configured site with a A+ status: https://sslcheck.globalsign.com/nl/sslcheck?host=www.fish-hook.ru
only minor issue: OCSP Stapling
Damian