M-am uitat si in celelalte loguri si nu am vazut nimic suspect.
Nici conturi noi, nici fisiere suspecte. E ceva ce ar trebui sa fac?

Ciprian Mihai

>
> In general poate fi vorba de un simplu transfer de zona pe care
> DNS-urile slave le fac de la master din cand in cand pentru as se tine
> la curent cu schimbarile, in special find vorba de rh 6.2 si de
> implicarea unui server indian:
>
> [mircea@mircea mircea]$ nslookup 144.16.64.2
>
> Non-authoritative answer:
> 2.64.16.144.in-addr.arpa        name = ece.iisc.ernet.in.
> 2.64.16.144.in-addr.arpa        name = ftp.iisc.ernet.in.
> 2.64.16.144.in-addr.arpa        name = gopher.iisc.ernet.in.
>
> Authoritative answers can be found from:
> 64.16.144.in-addr.arpa  nameserver = iisc.ernet.in.
> 64.16.144.in-addr.arpa  nameserver = ss585.ncst.ernet.in.
> 64.16.144.in-addr.arpa  nameserver = naamak.ncst.ernet.in.
> 64.16.144.in-addr.arpa  nameserver = ece.iisc.ernet.in.
>
> care n-ar avea treaba cu domeniul .ro, ti-o trage cineva pe la spate
> prin clasicul exploit de DNS redhatian :).
>
> Mircea "sfinte, mai sunt inca redhaturi nesparte, maare minune :)" C.
>
>
>
>
>
> Ciprian Mihai wrote:
> >
> > Am gasit chestia asta pe un server (printre altele si de nume) Linux RH
6.2,
> > in messages:
> >
> > Jul 25 08:04:29 roccas named[720]: approved AXFR from [144.16.64.2].2873
for
> > "blabla.ro"
> > Jul 25 08:04:29 roccas named[720]: zone transfer (AXFR) of "blabla.ro"
(IN)
> > to [144.16.64.2].2873
> >
> > unde blabla.ro este domeniul serverului. Nu inteleg exact ce inseamna.
> > Va rog sa ma lamuriti si pe mine.
> >
> > Ciprian Mihai
> ---
> Send e-mail to '[EMAIL PROTECTED]' with 'unsubscribe rlug' to
> unsubscribe from this list.


_________________________________________________________
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com

---
Send e-mail to '[EMAIL PROTECTED]' with 'unsubscribe rlug' to 
unsubscribe from this list.

Raspunde prin e-mail lui