[Lula] dns poisoning

Steve Glasser steve at fpig.net
Mon Jun 18 02:39:56 EDT 2007


hey gurus,

Please take a look at the following two digs.  Obviously the results
are wrong and point to some pos add page.  Would this be dns cache
poisoning?

steve at steve-laptop:~$ dig @ns2.dock.net  youtube.com

; <<>> DiG 9.3.4 <<>> @ns2.dock.net youtube.com
; (1 server found)
;; global options:  printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 57783
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 0

;; QUESTION SECTION:
;youtube.com.                   IN      A

;; ANSWER SECTION:
youtube.com.            63609   IN      A       64.79.198.211

;; Query time: 549 msec
;; SERVER: 206.72.64.87#53(206.72.64.87)
;; WHEN: Sun Jun 17 23:36:54 2007
;; MSG SIZE  rcvd: 45


steve at steve-laptop:~$ dig @ns2.dock.net  yahoo.com

; <<>> DiG 9.3.4 <<>> @ns2.dock.net yahoo.com
; (1 server found)
;; global options:  printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 63606
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 0

;; QUESTION SECTION:
;yahoo.com.                     IN      A

;; ANSWER SECTION:
yahoo.com.              86078   IN      A       64.79.198.211

;; Query time: 334 msec
;; SERVER: 206.72.64.87#53(206.72.64.87)
;; WHEN: Sun Jun 17 23:39:16 2007
;; MSG SIZE  rcvd: 43

Thanks,
-- 
Steve Glasser
Flying Pig Computer Svc.
sgla9347 at gmail.com



More information about the Lula mailing list