cancel
Showing results for 
Search instead for 
Did you mean: 

Odd entries in my routers DNS debug spoof settings

Stubbs
Newbie
Posts: 4
Registered: 05-04-2007

Odd entries in my routers DNS debug spoof settings


Following commands are available :
clear            : Clear the intercept cache table
list            : List the intercept cache table.
getflags        : Get the error flags for the given spoofed ip
getaddress      : Get the real ip for the given spoofed ip
update          : update the intercept cache table
{Administrator}[dns server debug spoof]=>list
Spoof IP          FQDN                        Real IP          Flags
198.18.1.34      tweetdeck.twitter.com        185.45.5.35
198.18.1.35      2.sonostime.pool.ntp.org    193.225.118.162
198.18.1.36      gspe1-ssl.ls.apple.com      104.68.187.5
198.18.1.40      3.sonostime.pool.ntp.org    148.251.90.84
198.18.1.43      37-courier.push.apple.com    0.0.0.0          Not resolved
198.18.1.44      lechmere.ws.sonos.com        0.0.0.0          Not resolved
198.18.1.46      guzzoni.apple.com            17.174.3.5
198.18.1.47      chat-gateway133-prod.chat.snapchat.com 108.59.84.74
198.18.1.48      app.snapchat.com            0.0.0.0          Not resolved
198.18.1.49      talk.google.com              74.125.133.125
198.18.1.50      phpnw.slack.com              54.86.101.16
198.18.1.51      ssl.google-analytics.com    216.58.209.232
198.18.1.52      im2.oovoo.com                0.0.0.0          Not resolved
198.18.1.53      50-courier.push.apple.com    17.110.224.16
198.18.1.54      instagram.com                52.5.109.145
198.18.1.55      46-courier.push.apple.com    0.0.0.0          Not resolved
198.18.1.56      27-courier.push.apple.com    17.110.224.16
198.18.1.57      ssl-google-analytics.l.google.com 0.0.0.0          Not resolved
198.18.1.58      www.apple.com ;               0.0.0.0          Not resolved
198.18.1.59      e6858.dscc.akamaiedge.net    0.0.0.0          Not resolved
198.18.1.29      sheffielddigital.slack.com  52.22.114.137
198.18.1.31      p02-caldav.icloud.com        0.0.0.0          Not resolved
198.18.1.32      p06-calendars.icloud.com    17.172.116.13

198.18 is a reserved IP range for labs etc, so why would my router be spoofing them, all the domain names in there look like stuff we use so it's not likely they're there by default.
1 REPLY
pwatson
Rising Star
Posts: 2,468
Thanks: 8
Fixes: 1
Registered: 26-11-2012

Re: Odd entries in my routers DNS debug spoof settings