DNSアンプ攻撃観測 (hizbullah.me)
ブラジル発の怪しいドメイン.
$ dig @127.0.0.1 hizbullah.me any ;; Truncated, retrying in TCP mode. ; <<>> DiG 9.7.6-P1 <<>> @127.0.0.1 hizbullah.me any ; (1 server found) ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 28928 ;; flags: qr rd ra; QUERY: 1, ANSWER: 244, AUTHORITY: 0, ADDITIONAL: 1 ;; QUESTION SECTION: ;hizbullah.me. IN ANY ;; ANSWER SECTION: hizbullah.me. 1800 IN NS ns1.hizbullah.me. hizbullah.me. 1800 IN A 204.46.43.203 hizbullah.me. 1800 IN A 204.46.43.204 hizbullah.me. 1800 IN A 204.46.43.205 hizbullah.me. 1800 IN A 204.46.43.206 hizbullah.me. 1800 IN A 204.46.43.207 hizbullah.me. 1800 IN A 204.46.43.208 hizbullah.me. 1800 IN A 204.46.43.209 hizbullah.me. 1800 IN A 204.46.43.210 hizbullah.me. 1800 IN A 204.46.43.211 hizbullah.me. 1800 IN A 204.46.43.212 hizbullah.me. 1800 IN A 204.46.43.213 hizbullah.me. 1800 IN A 204.46.43.214 hizbullah.me. 1800 IN A 204.46.43.215 hizbullah.me. 1800 IN A 204.46.43.216 hizbullah.me. 1800 IN A 204.46.43.217 hizbullah.me. 1800 IN A 204.46.43.218 hizbullah.me. 1800 IN A 204.46.43.219 hizbullah.me. 1800 IN A 204.46.43.220 hizbullah.me. 1800 IN A 204.46.43.221 hizbullah.me. 1800 IN A 204.46.43.222 hizbullah.me. 1800 IN A 204.46.43.223 hizbullah.me. 1800 IN A 204.46.43.224 hizbullah.me. 1800 IN A 204.46.43.225 hizbullah.me. 1800 IN A 204.46.43.226 hizbullah.me. 1800 IN A 204.46.43.227 hizbullah.me. 1800 IN A 204.46.43.228 hizbullah.me. 1800 IN A 204.46.43.229 hizbullah.me. 1800 IN A 204.46.43.230 hizbullah.me. 1800 IN A 204.46.43.231 hizbullah.me. 1800 IN A 204.46.43.232 hizbullah.me. 1800 IN A 204.46.43.233 hizbullah.me. 1800 IN A 204.46.43.234 hizbullah.me. 1800 IN A 204.46.43.235 hizbullah.me. 1800 IN A 204.46.43.236 hizbullah.me. 1800 IN A 204.46.43.237 hizbullah.me. 1800 IN A 204.46.43.238 hizbullah.me. 1800 IN A 204.46.43.239 hizbullah.me. 1800 IN A 204.46.43.240 hizbullah.me. 1800 IN A 204.46.43.241 hizbullah.me. 1800 IN A 204.46.43.242 hizbullah.me. 1800 IN A 204.46.43.1 hizbullah.me. 1800 IN A 204.46.43.2 hizbullah.me. 1800 IN A 204.46.43.3 hizbullah.me. 1800 IN A 204.46.43.4 hizbullah.me. 1800 IN A 204.46.43.5 hizbullah.me. 1800 IN A 204.46.43.6 hizbullah.me. 1800 IN A 204.46.43.7 hizbullah.me. 1800 IN A 204.46.43.8 hizbullah.me. 1800 IN A 204.46.43.9 hizbullah.me. 1800 IN A 204.46.43.10 hizbullah.me. 1800 IN A 204.46.43.11 hizbullah.me. 1800 IN A 204.46.43.12 hizbullah.me. 1800 IN A 204.46.43.13 hizbullah.me. 1800 IN A 204.46.43.14 hizbullah.me. 1800 IN A 204.46.43.15 hizbullah.me. 1800 IN A 204.46.43.16 hizbullah.me. 1800 IN A 204.46.43.17 hizbullah.me. 1800 IN A 204.46.43.18 hizbullah.me. 1800 IN A 204.46.43.19 hizbullah.me. 1800 IN A 204.46.43.20 hizbullah.me. 1800 IN A 204.46.43.21 hizbullah.me. 1800 IN A 204.46.43.22 hizbullah.me. 1800 IN A 204.46.43.23 hizbullah.me. 1800 IN A 204.46.43.24 hizbullah.me. 1800 IN A 204.46.43.25 hizbullah.me. 1800 IN A 204.46.43.26 hizbullah.me. 1800 IN A 204.46.43.27 hizbullah.me. 1800 IN A 204.46.43.28 hizbullah.me. 1800 IN A 204.46.43.29 hizbullah.me. 1800 IN A 204.46.43.30 hizbullah.me. 1800 IN A 204.46.43.31 hizbullah.me. 1800 IN A 204.46.43.32 hizbullah.me. 1800 IN A 204.46.43.33 hizbullah.me. 1800 IN A 204.46.43.34 hizbullah.me. 1800 IN A 204.46.43.35 hizbullah.me. 1800 IN A 204.46.43.36 hizbullah.me. 1800 IN A 204.46.43.37 hizbullah.me. 1800 IN A 204.46.43.38 hizbullah.me. 1800 IN A 204.46.43.39 hizbullah.me. 1800 IN A 204.46.43.40 hizbullah.me. 1800 IN A 204.46.43.41 hizbullah.me. 1800 IN A 204.46.43.42 hizbullah.me. 1800 IN A 204.46.43.43 hizbullah.me. 1800 IN A 204.46.43.44 hizbullah.me. 1800 IN A 204.46.43.45 hizbullah.me. 1800 IN A 204.46.43.46 hizbullah.me. 1800 IN A 204.46.43.47 hizbullah.me. 1800 IN A 204.46.43.48 hizbullah.me. 1800 IN A 204.46.43.49 hizbullah.me. 1800 IN A 204.46.43.50 hizbullah.me. 1800 IN A 204.46.43.51 hizbullah.me. 1800 IN A 204.46.43.52 hizbullah.me. 1800 IN A 204.46.43.53 hizbullah.me. 1800 IN A 204.46.43.54 hizbullah.me. 1800 IN A 204.46.43.55 hizbullah.me. 1800 IN A 204.46.43.56 hizbullah.me. 1800 IN A 204.46.43.57 hizbullah.me. 1800 IN A 204.46.43.58 hizbullah.me. 1800 IN A 204.46.43.59 hizbullah.me. 1800 IN A 204.46.43.60 hizbullah.me. 1800 IN A 204.46.43.61 hizbullah.me. 1800 IN A 204.46.43.62 hizbullah.me. 1800 IN A 204.46.43.63 hizbullah.me. 1800 IN A 204.46.43.64 hizbullah.me. 1800 IN A 204.46.43.65 hizbullah.me. 1800 IN A 204.46.43.66 hizbullah.me. 1800 IN A 204.46.43.67 hizbullah.me. 1800 IN A 204.46.43.68 hizbullah.me. 1800 IN A 204.46.43.69 hizbullah.me. 1800 IN A 204.46.43.70 hizbullah.me. 1800 IN A 204.46.43.71 hizbullah.me. 1800 IN A 204.46.43.72 hizbullah.me. 1800 IN A 204.46.43.73 hizbullah.me. 1800 IN A 204.46.43.74 hizbullah.me. 1800 IN A 204.46.43.75 hizbullah.me. 1800 IN A 204.46.43.76 hizbullah.me. 1800 IN A 204.46.43.77 hizbullah.me. 1800 IN A 204.46.43.78 hizbullah.me. 1800 IN A 204.46.43.79 hizbullah.me. 1800 IN A 204.46.43.80 hizbullah.me. 1800 IN A 204.46.43.81 hizbullah.me. 1800 IN A 204.46.43.82 hizbullah.me. 1800 IN A 204.46.43.83 hizbullah.me. 1800 IN A 204.46.43.84 hizbullah.me. 1800 IN A 204.46.43.85 hizbullah.me. 1800 IN A 204.46.43.86 hizbullah.me. 1800 IN A 204.46.43.87 hizbullah.me. 1800 IN A 204.46.43.88 hizbullah.me. 1800 IN A 204.46.43.89 hizbullah.me. 1800 IN A 204.46.43.90 hizbullah.me. 1800 IN A 204.46.43.91 hizbullah.me. 1800 IN A 204.46.43.92 hizbullah.me. 1800 IN A 204.46.43.93 hizbullah.me. 1800 IN A 204.46.43.94 hizbullah.me. 1800 IN A 204.46.43.95 hizbullah.me. 1800 IN A 204.46.43.96 hizbullah.me. 1800 IN A 204.46.43.97 hizbullah.me. 1800 IN A 204.46.43.98 hizbullah.me. 1800 IN A 204.46.43.99 hizbullah.me. 1800 IN A 204.46.43.100 hizbullah.me. 1800 IN A 204.46.43.101 hizbullah.me. 1800 IN A 204.46.43.102 hizbullah.me. 1800 IN A 204.46.43.103 hizbullah.me. 1800 IN A 204.46.43.104 hizbullah.me. 1800 IN A 204.46.43.105 hizbullah.me. 1800 IN A 204.46.43.106 hizbullah.me. 1800 IN A 204.46.43.107 hizbullah.me. 1800 IN A 204.46.43.108 hizbullah.me. 1800 IN A 204.46.43.109 hizbullah.me. 1800 IN A 204.46.43.110 hizbullah.me. 1800 IN A 204.46.43.111 hizbullah.me. 1800 IN A 204.46.43.112 hizbullah.me. 1800 IN A 204.46.43.113 hizbullah.me. 1800 IN A 204.46.43.114 hizbullah.me. 1800 IN A 204.46.43.115 hizbullah.me. 1800 IN A 204.46.43.116 hizbullah.me. 1800 IN A 204.46.43.117 hizbullah.me. 1800 IN A 204.46.43.118 hizbullah.me. 1800 IN A 204.46.43.119 hizbullah.me. 1800 IN A 204.46.43.120 hizbullah.me. 1800 IN A 204.46.43.121 hizbullah.me. 1800 IN A 204.46.43.122 hizbullah.me. 1800 IN A 204.46.43.123 hizbullah.me. 1800 IN A 204.46.43.124 hizbullah.me. 1800 IN A 204.46.43.125 hizbullah.me. 1800 IN A 204.46.43.126 hizbullah.me. 1800 IN A 204.46.43.127 hizbullah.me. 1800 IN A 204.46.43.128 hizbullah.me. 1800 IN A 204.46.43.129 hizbullah.me. 1800 IN A 204.46.43.130 hizbullah.me. 1800 IN A 204.46.43.131 hizbullah.me. 1800 IN A 204.46.43.132 hizbullah.me. 1800 IN A 204.46.43.133 hizbullah.me. 1800 IN A 204.46.43.134 hizbullah.me. 1800 IN A 204.46.43.135 hizbullah.me. 1800 IN A 204.46.43.136 hizbullah.me. 1800 IN A 204.46.43.137 hizbullah.me. 1800 IN A 204.46.43.138 hizbullah.me. 1800 IN A 204.46.43.139 hizbullah.me. 1800 IN A 204.46.43.140 hizbullah.me. 1800 IN A 204.46.43.141 hizbullah.me. 1800 IN A 204.46.43.142 hizbullah.me. 1800 IN A 204.46.43.143 hizbullah.me. 1800 IN A 204.46.43.144 hizbullah.me. 1800 IN A 204.46.43.145 hizbullah.me. 1800 IN A 204.46.43.146 hizbullah.me. 1800 IN A 204.46.43.147 hizbullah.me. 1800 IN A 204.46.43.148 hizbullah.me. 1800 IN A 204.46.43.149 hizbullah.me. 1800 IN A 204.46.43.150 hizbullah.me. 1800 IN A 204.46.43.151 hizbullah.me. 1800 IN A 204.46.43.152 hizbullah.me. 1800 IN A 204.46.43.153 hizbullah.me. 1800 IN A 204.46.43.154 hizbullah.me. 1800 IN A 204.46.43.155 hizbullah.me. 1800 IN A 204.46.43.156 hizbullah.me. 1800 IN A 204.46.43.157 hizbullah.me. 1800 IN A 204.46.43.158 hizbullah.me. 1800 IN A 204.46.43.159 hizbullah.me. 1800 IN A 204.46.43.160 hizbullah.me. 1800 IN A 204.46.43.161 hizbullah.me. 1800 IN A 204.46.43.162 hizbullah.me. 1800 IN A 204.46.43.163 hizbullah.me. 1800 IN A 204.46.43.164 hizbullah.me. 1800 IN A 204.46.43.165 hizbullah.me. 1800 IN A 204.46.43.166 hizbullah.me. 1800 IN A 204.46.43.167 hizbullah.me. 1800 IN A 204.46.43.168 hizbullah.me. 1800 IN A 204.46.43.169 hizbullah.me. 1800 IN A 204.46.43.170 hizbullah.me. 1800 IN A 204.46.43.171 hizbullah.me. 1800 IN A 204.46.43.172 hizbullah.me. 1800 IN A 204.46.43.173 hizbullah.me. 1800 IN A 204.46.43.174 hizbullah.me. 1800 IN A 204.46.43.175 hizbullah.me. 1800 IN A 204.46.43.176 hizbullah.me. 1800 IN A 204.46.43.177 hizbullah.me. 1800 IN A 204.46.43.178 hizbullah.me. 1800 IN A 204.46.43.179 hizbullah.me. 1800 IN A 204.46.43.180 hizbullah.me. 1800 IN A 204.46.43.181 hizbullah.me. 1800 IN A 204.46.43.182 hizbullah.me. 1800 IN A 204.46.43.183 hizbullah.me. 1800 IN A 204.46.43.184 hizbullah.me. 1800 IN A 204.46.43.185 hizbullah.me. 1800 IN A 204.46.43.186 hizbullah.me. 1800 IN A 204.46.43.187 hizbullah.me. 1800 IN A 204.46.43.188 hizbullah.me. 1800 IN A 204.46.43.189 hizbullah.me. 1800 IN A 204.46.43.190 hizbullah.me. 1800 IN A 204.46.43.191 hizbullah.me. 1800 IN A 204.46.43.192 hizbullah.me. 1800 IN A 204.46.43.193 hizbullah.me. 1800 IN A 204.46.43.194 hizbullah.me. 1800 IN A 204.46.43.195 hizbullah.me. 1800 IN A 204.46.43.196 hizbullah.me. 1800 IN A 204.46.43.197 hizbullah.me. 1800 IN A 204.46.43.198 hizbullah.me. 1800 IN A 204.46.43.199 hizbullah.me. 1800 IN A 204.46.43.200 hizbullah.me. 1800 IN A 204.46.43.201 hizbullah.me. 1800 IN A 204.46.43.202 hizbullah.me. 86400 IN SOA ns1.hizbullah.me. admin.hizbullah.me. 2012292301 28800 86400 3600000 86400 ;; ADDITIONAL SECTION: ns1.hizbullah.me. 1800 IN A 200.241.86.132 ;; Query time: 12 msec ;; SERVER: 127.0.0.1#53(127.0.0.1) ;; WHEN: Wed Oct 9 10:33:14 2013 ;; MSG SIZE rcvd: 3978
$ whois 200.241.86.132 # # ARIN WHOIS data and services are subject to the Terms of Use # available at: https://www.arin.net/whois_tou.html # # # Query terms are ambiguous. The query is assumed to be: # "n 200.241.86.132" # # Use "?" to get help. # # # The following results may also be obtained via: # http://whois.arin.net/rest/nets;q=200.241.86.132?showDetails=true&showARIN=false&ext=netref2 # NetRange: 200.0.0.0 - 200.255.255.255 CIDR: 200.0.0.0/8 OriginAS: NetName: LACNIC-200 NetHandle: NET-200-0-0-0-1 Parent: NetType: Allocated to LACNIC Comment: This IP address range is under LACNIC responsibility for further Comment: allocations to users in LACNIC region. Comment: Please see http://www.lacnic.net/ for further details, or check the Comment: WHOIS server located at http://whois.lacnic.net RegDate: 2002-07-27 Updated: 2010-07-21 Ref: http://whois.arin.net/rest/net/NET-200-0-0-0-1 OrgName: Latin American and Caribbean IP address Regional Registry OrgId: LACNIC Address: Rambla Republica de Mexico 6125 City: Montevideo StateProv: PostalCode: 11400 Country: UY RegDate: 2002-07-27 Updated: 2011-09-24 Ref: http://whois.arin.net/rest/org/LACNIC ReferralServer: whois://whois.lacnic.net OrgAbuseHandle: LACNIC-ARIN OrgAbuseName: LACNIC Whois Info OrgAbusePhone: 999-999-9999 OrgAbuseEmail: whois-contact@lacnic.net OrgAbuseRef: http://whois.arin.net/rest/poc/LACNIC-ARIN OrgTechHandle: LACNIC-ARIN OrgTechName: LACNIC Whois Info OrgTechPhone: 999-999-9999 OrgTechEmail: whois-contact@lacnic.net OrgTechRef: http://whois.arin.net/rest/poc/LACNIC-ARIN # # ARIN WHOIS data and services are subject to the Terms of Use # available at: https://www.arin.net/whois_tou.html # % Joint Whois - whois.lacnic.net % This server accepts single ASN, IPv4 or IPv6 queries % Brazilian resource: whois.registro.br % Copyright (c) Nic.br % The use of the data below is only permitted as described in % full by the terms of use (http://registro.br/termo/en.html), % being prohibited its distribution, comercialization or % reproduction, in particular, to use it for advertising or % any similar purpose. % 2013-10-08 22:36:52 (BRT -03:00) inetnum: 200.241.86.128/26 aut-num: AS4230 abuse-c: GSE6 owner: fundacao de previdencia complementar ownerid: 007.009.152/0001-02 responsible: fernando calvet country: BR owner-c: FMC217 tech-c: FMC217 created: 20040123 changed: 20130307 inetnum-up: 200.241/16 nic-hdl-br: FMC217 person: fernando messias calvet e-mail: egitf@zipmail.com.br created: 20031112 changed: 20031112 nic-hdl-br: GSE6 person: Grupo de Seguran�a Internet da Embratel e-mail: abuse@embratel.net.br created: 20001005 changed: 20001005 % Security and mail abuse issues should also be addressed to % cert.br, http://www.cert.br/, respectivelly to cert@cert.br % and mail-abuse@cert.br % % whois.registro.br accepts only direct match queries. Types % of queries are: domain (.br), registrant (tax ID), ticket, % provider, contact handle (ID), CIDR block, IP and ASN.