Re: [opensuse] Spyware on my laptop? (hope it's not OT)



Try setting up a dummy user account and try accessing
the web from that.... The user level settings should be clean...




Tried with a "test" user on konqueror, same result.... I guess it must
be DNS, as a single ping from commandline to a non existent domain
resolves to 206.225.95.129.

ciro@roamer:~> ping me.esta.jodiendo
PING me.esta.jodiendo.local.net (206.225.95.129) 56(84) bytes of data.
64 bytes from 206-225-95-129.dedicated.abac.net (206.225.95.129):
icmp_seq=1 ttl=111 time=218 ms
64 bytes from 206-225-95-129.dedicated.abac.net (206.225.95.129):
icmp_seq=2 ttl=111 time=219 ms
...

But trying a debug, there's no ip in the response from the DNS server

ciro@roamer:~/download/dnstracer-1.8> sudo ./dnstracer -v me.esta.jodiendo
Tracing to me.esta.jodiendo[a] via 200.3.250.1, maximum of 3 retries
200.3.250.1 (200.3.250.1) IP HEADER
- Destination address: 200.3.250.1
DNS HEADER (send)
- Identifier: 0x2760
- Flags: 0x00 (Q )
- Opcode: 0 (Standard query)
- Return code: 0 (No error)
- Number questions: 1
- Number answer RR: 0
- Number authority RR: 0
- Number additional RR: 0
QUESTIONS (send)
- Queryname: (2)me(4)esta(8)jodiendo
- Type: 1 (A)
- Class: 1 (Internet)
DNS HEADER (recv)
- Identifier: 0x2760
- Flags: 0x8083 (R RA )
- Opcode: 0 (Standard query)
- Return code: 3 (Name error)
- Number questions: 1
- Number answer RR: 0
- Number authority RR: 1
- Number additional RR: 0
QUESTIONS (recv)
- Queryname: (2)me(4)esta(8)jodiendo
- Type: 1 (A)
- Class: 1 (Internet)
AUTHORITY RR
- Domainname: (1).
- Type: 6 (SOA)
- Class: 1 (Internet)
- TTL: 10656 (2h57m36s)
- Resource length: 64
- Resource data: serial: 2007060801 mname:
(1)A(12)ROOT-SERVERS(3)NET rname: (5)NSTLD(12)VERISIGN-GRS(3)COM


Ciro.
--
To unsubscribe, e-mail: opensuse+unsubscribe@xxxxxxxxxxxx
For additional commands, e-mail: opensuse+help@xxxxxxxxxxxx



Relevant Pages

  • Re: Page cannot be found
    ... I have been trying to help someone with a similar problem, ping of yahoo ... line "Internet Explorer Q824145 size 1.23mb used occasionally last used ... > winsock getting corrupted by installation of software can be other ... > IP address automatically", click on the DNS tab, disable DNS here, click ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • Re: USR5637 USB modem setup (2)
    ... Good - not having those in that file breaks DNS for you. ... Avahi program. ... ping -nc2 152.46.7.80 ... Now, if this works, your setup is fine, and it's the browser that's ...
    (comp.os.linux.networking)
  • Re: Cant see out to .co.uk from inside my .local domain (forward l
    ... Well I removed the entry from my hosts file and issued a ping command to both ... network only from the server which I changed the hosts file for. ... Indeed is it even a DNS issue. ...
    (microsoft.public.windows.server.sbs)
  • Re: iptables udp and output
    ... Ping can be a nice tool to help troubleshoot the network with. ... If those are incoming connection requests, you could specify that they're ... DNS traffic is UDP. ...
    (comp.os.linux.security)
  • Re: Multiple Domains and 1 is not working
    ... likely) in Internet Explore ... > If I ping either address: ALPHASITE.com points to the internal IP: ... but merely a DNS zone/domain name. ... You cannot have a DNS resolution point to both an internal ...
    (microsoft.public.windows.server.dns)