dont understand dns tree with fishing email url , dns-friewall

Reindl Harald h.reindl at thelounge.net
Sun Jun 8 21:21:07 UTC 2014


Am 08.06.2014 23:16, schrieb Hans-Cees Speel:
> I got a fishing email and for my dns-firewall I want to find the dns server that serves the domain.
> 
> Somehow it doesn't work, so they probably use a trick.
> 
> They want you to click this link:
> 
> https://bit.ly/1lfxB4n
> 
> parsing it with http://www.getlinkinfo.com/
> show this redirects to       
> 
>      1. http://bit.ly/1lfxB4n
>      2. http://bbsaj12.nl/images/prettyPhoto/default/8-6/2
>      3. http://bbsaj12.nl/images/prettyPhoto/default/8-6/2/
>      4. http://www.ing-beveiligingsoftware.nl.ae/
> 
> dig www.ing-beveiligingsoftware.nl.ae
> 
> ;; QUESTION SECTION:
> ;www.ing-beveiligingsoftware.nl.ae. IN  A
> 
> ;; ANSWER SECTION:
> www.ing-beveiligingsoftware.nl.ae. 85186 IN A   83.137.195.50
>  <http://www.ing-beveiligingsoftware.nl.ae/>
> But I can't find the dns servers. Any help is apreciated. 

"dig NS nl.ae" is your friend
"ing-beveiligingsoftware" is just a subdomain

;; ANSWER SECTION:
nl.ae.                  3575    IN      NS      ns2.transip.eu.
nl.ae.                  3575    IN      NS      ns0.transip.net.
nl.ae.                  3575    IN      NS      ns1.transip.nl.


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 246 bytes
Desc: OpenPGP digital signature
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20140608/bfd1b41c/attachment.bin>


More information about the bind-users mailing list