last data update: 2011/10/20, 05:41

Website loading time

during the test: 1.44 s

cable connection (average): 1.71 s

DSL connection (average): 1.97 s

modem (average): 16.1 s

HTTP headers

Information about DNS servers

cj2s.deA80.67.28.202IN3600
cj2s.deAAAA2a00:1158::300:7f92:0:0:1IN3600
cj2s.deMX100mxlb.ispgateway.deIN3600
cj2s.deSOAns.namespace4you.dehostmaster.cj2s.de131940819916384 2048 1048576 2560 IN 2560
cj2s.deNSns.namespace4you.deIN3600
cj2s.deNSns2.namespace4you.deIN3600

Received from the first DNS server

Request to the server "cj2s.de"
You used the following DNS server:
DNS Name: ns.namespace4you.de
DNS Server Address: 80.67.16.124#53
DNS server aliases:

HEADER opcode: REQUEST, status: NOERROR, id: 57417
flag: qr aa rd REQUEST: 1, ANSWER: 6, AUTHORITY: 0, ADDITIONAL: 3

REQUEST SECTION:
cj2s.de. IN ANY

ANSWER SECTION:
cj2s.de. 2560 IN SOA ns.namespace4you.de. hostmaster.cj2s.de. 1319408199 16384 2048 1048576 2560
cj2s.de. 3600 IN NS ns.namespace4you.de.
cj2s.de. 3600 IN NS ns2.namespace4you.de.
cj2s.de. 3600 IN MX 100 mxlb.ispgateway.de.
cj2s.de. 3600 IN AAAA 2a00:1158:0:300:7f92::1
cj2s.de. 3600 IN A 80.67.28.202

SECTION NOTES:
ns.namespace4you.de. 3600 IN A 80.67.16.124
ns2.namespace4you.de. 3600 IN A 193.223.77.3
mxlb.ispgateway.de. 60 IN A 80.67.18.126

Received 245 bytes from address 80.67.16.124#53 in 96 ms

Received from the second DNS server

Request to the server "cj2s.de"
You used the following DNS server:
DNS Name: ns2.namespace4you.de
DNS Server Address: 193.223.77.3#53
DNS server aliases:

HEADER opcode: REQUEST, status: NOERROR, id: 31304
flag: qr aa rd REQUEST: 1, ANSWER: 6, AUTHORITY: 0, ADDITIONAL: 3

REQUEST SECTION:
cj2s.de. IN ANY

ANSWER SECTION:
cj2s.de. 2560 IN SOA ns.namespace4you.de. hostmaster.cj2s.de. 1319408199 16384 2048 1048576 2560
cj2s.de. 3600 IN NS ns.namespace4you.de.
cj2s.de. 3600 IN NS ns2.namespace4you.de.
cj2s.de. 3600 IN MX 100 mxlb.ispgateway.de.
cj2s.de. 3600 IN AAAA 2a00:1158:0:300:7f92::1
cj2s.de. 3600 IN A 80.67.28.202

SECTION NOTES:
ns.namespace4you.de. 3600 IN A 80.67.16.124
ns2.namespace4you.de. 3600 IN A 193.223.77.3
mxlb.ispgateway.de. 60 IN A 80.67.18.126

Received 245 bytes from address 193.223.77.3#53 in 90 ms

Subdomains (the first 50)

Typos (misspells)

xj2s.de
vj2s.de
fj2s.de
dj2s.de
ch2s.de
cn2s.de
cm2s.de
ck2s.de
ci2s.de
cu2s.de
cj1s.de
cjqs.de
cjws.de
cj3s.de
cj2a.de
cj2z.de
cj2x.de
cj2d.de
cj2e.de
cj2w.de
j2s.de
c2s.de
cjs.de
cj2.de
jc2s.de
c2js.de
cjs2.de
ccj2s.de
cjj2s.de
cj22s.de
cj2ss.de

Location

IP: 80.67.28.202

continent: EU, country: Germany (DEU), city:

Website value

rank in the traffic statistics:

There is not enough data to estimate website value.

Basic information

website build using CSS

code weight: 102.62 KB

text per all code ratio: 12 %

title: blueblog - by Christian J. Dietrich

description:

keywords:

encoding: UTF-8

language: en

Website code analysis

one word phrases repeated minimum three times

PhraseQuantity
the67
to38
is32
in29
of26
DNS25
and22
on16
for15
that15
as13
one10
C&C10
type10
by10
none9
(rw,bind)9
key9
//9
be9
botnet8
DNSSEC8
The8
with7
you7
we7
Christian6
used6
or6
from6
not6
are6
this6
have6
In6
carrier6
root5
at5
command5
using5
which5
will5
message5
Dietrich5
Feederbot5
BIND5
its5
J.5
control4
/etc/named.conf4
;;4
DLV4
there4
RC44
bot4
20114
an4
decryption4
domain4
chroot4
Skip4
server4
name4
has4
TXT3
bug3
/etc/named.rfc1912.zones3
uses3
more3
traffic.3
dig3
some3
value3
named.conf3
/var/named3
also3
/etc/rndc.key3
chrooted3
/usr/lib/bind3
Botnets3
Since3
what3
been3
ISC's3
seems3
part3
Internet3
IP3
/etc/rndc.conf3
order3
yes;3
Thus,3

two word phrases repeated minimum three times

PhraseQuantity
of the10
in the10
none (rw,bind)9
type none9
DNS as7
carrier for6
as carrier6
command and5
by Christian5
to be5
J. Dietrich5
Christian J.5
for its4
and control4
that is4
to the4
Skip to4
for botnet3
seems to3
part of3
is used3
used to3
root DNSSEC3
for the3
In order3
order to3
there is3
ISC's DLV3
which is3
DNSSEC key3
using DNS3
the chroot3

three word phrases repeated minimum three times

PhraseQuantity
type none (rw,bind)9
as carrier for6
DNS as carrier6
by Christian J.5
Christian J. Dietrich5
command and control4
seems to be3
root DNSSEC key3
carrier for botnet3
In order to3
carrier for its3
using DNS as3

B tags

U tags

I tags

images

file namealternative text
Feederbot DNS message chunk
RC4 initialization routine
Christian J. Dietrich, SAT.1 interview
Richard Paul Lohse Generator
Christian J. Dietrich
XML
ATOM/XML
Based on the s9y Bulletproof template framework

headers

H1

blueblog - by Christian J. Dietrich

H2

on malware, botnets and the like by Christian J. Dietrich

H3

on malware, botnets and the like by Christian J. Dietrich

H4

Feederbot - a bot using DNS as carrier for its C&C

DNS as carrier for botnet C&C

Best practice: chrooted BIND on CentOS 5.6+ with DNSSEC aware resolution

Delegating IN-ADDR.ARPA domains for reverse DNS resolution (PTR: IP to hostname)

Kryptotag - Transport Layer Security with RSA-PSK

TLS-RSA-PSK Cipher Suites for OpenSSL

Expert Comments on Possible Web Fraud

LaTeX Editing on Windows

Compiling Gnuplot 4.4.2 on CentOS 5.5

neuer Personalausweis (nPA) - analysis of remaining risks

Can keyloggers reveal secret PIN of the new German ID card "neuer Personalausweis" (nPA)?

Compiling libsvm with OpenMP support on CentOS 5.5

Lohse yourself updated

Published my Master Thesis: eID Online Authentication mit dem neuen elektronischen Personalausweis nPA

Protecting from SSH Bruteforce Attacks

H5

H6

internal links

addressanchor text
Skip to blog entries
Skip to archive page
Skip to left sidebar
Skip to right sidebar
blueblog - by Christian J. Dietrich
on malware, botnets and the like by Christian J. Dietrich
Feederbot - a bot using DNS as carrier for its C&C
work on covert communication of botnet command and control channels
Christian J. Dietrich
Botnets
18:05
DNS as carrier for botnet C&C
DNS as carrier for botnet command and control channels
Christian J. Dietrich
Botnets
17:49
Best practice: chrooted BIND on CentOS 5.6+ with DNSSEC aware resolution
Christian J. Dietrich
Securing Linux
21:50
Delegating IN-ADDR.ARPA domains for reverse DNS resolution (PTR: IP to hostname)
Christian J. Dietrich
Linux Hints
19:03
Kryptotag - Transport Layer Security with RSA-PSK
here
Christian J. Dietrich
German ID card / nPA
21:35
TLS-RSA-PSK Cipher Suites for OpenSSL
TLS-RSA-PSK cipher suites as a patch
server log
client log
Christian J. Dietrich
German ID card / nPA
19:38
Expert Comments on Possible Web Fraud
Christian J. Dietrich
TV
16:19
LaTeX Editing on Windows
Christian J. Dietrich
15:09
Compiling Gnuplot 4.4.2 on CentOS 5.5
Christian J. Dietrich
Linux Hints
19:25
neuer Personalausweis (nPA) - analysis of remaining risks
Christian J. Dietrich
German ID card / nPA
22:22
Can keyloggers reveal secret PIN of the new German ID card "neuer Personalausweis" (nPA)?
blog category
Christian J. Dietrich
German ID card / nPA
09:50
Compiling libsvm with OpenMP support on CentOS 5.5
Christian J. Dietrich
11:13
Lohse yourself updated
http://www.cj2s.de/lose-yourself/
thesis titled 'farbflaechenbilder'
Lohse-Yourself App
Richard Paul Lohse Generator
Christian J. Dietrich
Arts
13:46
Published my Master Thesis: eID Online Authentication mit dem neuen elektronischen Personalausweis nPA
Christian J. Dietrich
German ID card / nPA
13:53
Protecting from SSH Bruteforce Attacks
Christian J. Dietrich
Securing Linux
15:59
next page
Christian J. Dietrich
Frontpage
Publications
XML
Arts
XML
Botnets
XML
German ID card / nPA
XML
Linux Hints
XML
PostgreSQL
XML
Securing Linux
XML
TV
All categories
XML
RSS 2.0 feed
ATOM/XML
ATOM 1.0 feed

external links

addressanchor text
Morto
Christian Rossow
this year's EC2ND conference
named.conf template by Rob Thomas of Team Cymru
verifiable path to validate ISC's DLV root key
a bug in the init script of bind97
RFC 2317
Kryptotag
SPRING
HGI
Technical Guideline TR-03110
TLS
Transport Layer Security, RFC 5246
TLS-RSA-PSK and defined in RFC 4279
openssl-1.0.0c
http://www.sat1nrw.de/Archiv/Illegales-Gluecksspiel/441d2794/
Christian J. Dietrich, SAT.1 interview
MiKTEX
Texmaker
German Federal Ministry of the Interior (Bundesinnenministerium)
the summary of our study
key findings of the remaining risks (in German)
summary
list of certified card readers
BSI TR 03119
BSI TR 03119
https://www.internet-sicherheit.de
libsvm
its FAQ
Junge Nacht
'eID Online Authentisierung mit dem neuen elektronischen Personalausweis nPA'
German Ministry of the Interior
EAC
elektronischen Ausweisdokument
Bürgerclient
Password Authenticated Connection Establishment (PACE)
Terminal Authentication
Chip Authentication
full thesis
fail2ban
My profile at Institute for Internet Security
Christian Rossow's blog
Based on the s9y Bulletproof template framework
s9y
Bulletproof development team