dont understand dns tree with fishing email url , dns-friewall
Reindl Harald
h.reindl at thelounge.net
Sun Jun 8 21:21:07 UTC 2014
Am 08.06.2014 23:16, schrieb Hans-Cees Speel:
> I got a fishing email and for my dns-firewall I want to find the dns server that serves the domain.
>
> Somehow it doesn't work, so they probably use a trick.
>
> They want you to click this link:
>
> https://bit.ly/1lfxB4n
>
> parsing it with http://www.getlinkinfo.com/
> show this redirects to
>
> 1. http://bit.ly/1lfxB4n
> 2. http://bbsaj12.nl/images/prettyPhoto/default/8-6/2
> 3. http://bbsaj12.nl/images/prettyPhoto/default/8-6/2/
> 4. http://www.ing-beveiligingsoftware.nl.ae/
>
> dig www.ing-beveiligingsoftware.nl.ae
>
> ;; QUESTION SECTION:
> ;www.ing-beveiligingsoftware.nl.ae. IN A
>
> ;; ANSWER SECTION:
> www.ing-beveiligingsoftware.nl.ae. 85186 IN A 83.137.195.50
> <http://www.ing-beveiligingsoftware.nl.ae/>
> But I can't find the dns servers. Any help is apreciated.
"dig NS nl.ae" is your friend
"ing-beveiligingsoftware" is just a subdomain
;; ANSWER SECTION:
nl.ae. 3575 IN NS ns2.transip.eu.
nl.ae. 3575 IN NS ns0.transip.net.
nl.ae. 3575 IN NS ns1.transip.nl.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 246 bytes
Desc: OpenPGP digital signature
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20140608/bfd1b41c/attachment.bin>
More information about the bind-users
mailing list