Friday, November 29, 2013

Police report made on duplicate MOM website

Ay, I thought the DNS record should only have 1 official URL with the correct public IP address of the official website.

How come the DNS record can have duplicate official URL with 2 different public IP address.


Do a nslookup www.mom.gov.sg show the following which should be the right DNS record to the official website – with URL different from the forged website and also notice is a IPv6 address unlike the forged address which is a IPv4 address.

Non-authoritative answer:
IP address :- 2406:3000:2a:8::66
                 203.117.191.66



Do a nslookup www.momgov.sg show the following which should be the duplicate DNS record to the forged website – with a different URL and a different IP address - by saving the real MOM webpage as html web page - can forged like the real one.

Non-authoritative answer:

Name :- momgov.sg
IP address :- 182.50.130.87
Aliases :- www.momgov.sg

Attached below is the trace route for this forged website.

No comments:

Post a Comment