Advertisement
jtl999

wikileaks.org DNS hijack

Aug 30th, 2017
261
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.57 KB | None | 0 0
  1. jtl-macbookpro:~ jtl$ whois wikileaks.org
  2. Domain Name: WIKILEAKS.ORG
  3. Registry Domain ID: D130035267-LROR
  4. Registrar WHOIS Server:
  5. Registrar URL: http://www.dynadot.com
  6. Updated Date: 2017-08-30T23:46:09Z
  7. [snip]
  8.  
  9. jtl-macbookpro:~ jtl$ dig NS @a2.org.afilias-nst.info. wikileaks.org
  10.  
  11. ; <<>> DiG 9.11.2 <<>> NS @a2.org.afilias-nst.info. wikileaks.org
  12. ; (1 server found)
  13. ;; global options: +cmd
  14. ;; Got answer:
  15. ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 9379
  16. ;; flags: qr rd; QUERY: 1, ANSWER: 0, AUTHORITY: 2, ADDITIONAL: 3
  17. ;; WARNING: recursion requested but not available
  18.  
  19. ;; OPT PSEUDOSECTION:
  20. ; EDNS: version: 0, flags:; udp: 4096
  21. ;; QUESTION SECTION:
  22. ;wikileaks.org. IN NS
  23.  
  24. ;; AUTHORITY SECTION:
  25. wikileaks.org. 86400 IN NS ns1.wikileaks.org.
  26. wikileaks.org. 86400 IN NS ns2.wikileaks.org.
  27.  
  28. ;; ADDITIONAL SECTION:
  29. ns1.wikileaks.org. 86400 IN A 191.101.26.67
  30. ns2.wikileaks.org. 86400 IN A 45.63.62.195
  31.  
  32. ;; Query time: 5 msec
  33. ;; SERVER: 199.249.112.1#53(199.249.112.1)
  34. ;; WHEN: Wed Aug 30 21:47:50 PDT 2017
  35. ;; MSG SIZE rcvd: 110
  36.  
  37. jtl-macbookpro:~ jtl$ geoip 191.101.26.67; geoip 45.63.62.195
  38. Resolving IP: 191.101.26.67
  39. {
  40. "ip": "191.101.26.67",
  41. "city": "Santiago",
  42. "region": "Santiago Metropolitan",
  43. "country": "CL",
  44. "loc": "-33.4625,-70.6682",
  45. "org": "AS20454 SECURED SERVERS LLC"
  46. }
  47. Resolving IP: 45.63.62.195
  48. {
  49. "ip": "45.63.62.195",
  50. "hostname": "la10g001.rivalserver.com",
  51. "city": "Los Angeles",
  52. "region": "California",
  53. "country": "US",
  54. "loc": "34.0729,-118.2606",
  55. "org": "AS20473 Choopa, LLC",
  56. "postal": "90012"
  57. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement