M-am uitat si in celelalte loguri si nu am vazut nimic suspect. Nici conturi noi, nici fisiere suspecte. E ceva ce ar trebui sa fac? Ciprian Mihai > > In general poate fi vorba de un simplu transfer de zona pe care > DNS-urile slave le fac de la master din cand in cand pentru as se tine > la curent cu schimbarile, in special find vorba de rh 6.2 si de > implicarea unui server indian: > > [mircea@mircea mircea]$ nslookup 144.16.64.2 > > Non-authoritative answer: > 2.64.16.144.in-addr.arpa name = ece.iisc.ernet.in. > 2.64.16.144.in-addr.arpa name = ftp.iisc.ernet.in. > 2.64.16.144.in-addr.arpa name = gopher.iisc.ernet.in. > > Authoritative answers can be found from: > 64.16.144.in-addr.arpa nameserver = iisc.ernet.in. > 64.16.144.in-addr.arpa nameserver = ss585.ncst.ernet.in. > 64.16.144.in-addr.arpa nameserver = naamak.ncst.ernet.in. > 64.16.144.in-addr.arpa nameserver = ece.iisc.ernet.in. > > care n-ar avea treaba cu domeniul .ro, ti-o trage cineva pe la spate > prin clasicul exploit de DNS redhatian :). > > Mircea "sfinte, mai sunt inca redhaturi nesparte, maare minune :)" C. > > > > > > Ciprian Mihai wrote: > > > > Am gasit chestia asta pe un server (printre altele si de nume) Linux RH 6.2, > > in messages: > > > > Jul 25 08:04:29 roccas named[720]: approved AXFR from [144.16.64.2].2873 for > > "blabla.ro" > > Jul 25 08:04:29 roccas named[720]: zone transfer (AXFR) of "blabla.ro" (IN) > > to [144.16.64.2].2873 > > > > unde blabla.ro este domeniul serverului. Nu inteleg exact ce inseamna. > > Va rog sa ma lamuriti si pe mine. > > > > Ciprian Mihai > --- > Send e-mail to '[EMAIL PROTECTED]' with 'unsubscribe rlug' to > unsubscribe from this list. _________________________________________________________ Do You Yahoo!? Get your free @yahoo.com address at http://mail.yahoo.com --- Send e-mail to '[EMAIL PROTECTED]' with 'unsubscribe rlug' to unsubscribe from this list.
