Home page logo

fulldisclosure logo Full Disclosure mailing list archives

Re: Microsoft DNS resolver: deliberately sabotaged hosts-file lookup
From: Nick FitzGerald <nick () virus-l demon co uk>
Date: Fri, 14 Apr 2006 16:03:53 +1200

John Doe wrote:

I don't even get the same IP address for that. I have .
I tried to change it in the host files with the same results. Next I will
block that IP in my firewall and see what happens.

Think load-balancing, dynaminc content distribution hosting, etc.


So, the exception is not that the IP is hard-coded, but that the DNS 
resolver skips looking in hosts for that _domain_ and necessarily does 
a network DNS lookup...


Nick FitzGerald

Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]