- 论坛徽章:
- 0
|
正常情况下日志可以记录这些信息,但国内大部分地区做不到,因为即使是一个根本不存在的域名也给你解析出一个自定义的IP地址(里面有很多猫腻):
C:\Documents and Settings\Administrator>dig jlsdjflsdjflsjdfsffff.com
; <<>> DiG 9.3.3 <<>> jlsdjflsdjflsjdfsffff.com
;; global options: printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 99
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 0
;; QUESTION SECTION:
;jlsdjflsdjflsjdfsffff.com. IN A
;; ANSWER SECTION:
jlsdjflsdjflsjdfsffff.com. 3600 IN A 221.192.153.44
;; AUTHORITY SECTION:
com. 360 IN SOA a.gtld-servers.net. nstld.verisi
gn-grs.com. 1353114785 1800 900 604800 86400
;; Query time: 531 msec
;; SERVER: 202.99.166.4#53(202.99.166.4)
;; WHEN: Sat Nov 17 09:13:26 2012
;; MSG SIZE rcvd: 132 |
|