Skip to main content

Thread: Wireshark showing multiple DNS queries despite no active connections


i have noticed little unusual.

when run wireshark on system after browsing internet no active internet connections or browsers open multiple dns queries in form:

code:
23    68.735879    192.168.0.3    192.168.0.1    dns    78    standard query ar-ar.facebook.com
code:
24    68.764752    192.168.0.1    192.168.0.3    dns    182    standard query response cname www.facebook.com 69.171.242.13
the thing these sites have visited earlier (eg ubuntu forums, email account etc, not facebook). reiterate, netstat not show active connections , firefox not running. don't have google toolbars installed, use scroogle ssl searches. cookies disabled , have noscript , betterprivacy addons installed.

deduce list of sites had visited earlier in day running wireshark. have idea of why happening. normal?

quote posted danr01 view post
i have noticed little unusual.

when run wireshark on system after browsing internet no active internet connections or browsers open multiple dns queries in form:

code:
23    68.735879    192.168.0.3    192.168.0.1    dns    78    standard query ar-ar.facebook.com
code:
24    68.764752    192.168.0.1    192.168.0.3    dns    182    standard query response cname www.facebook.com 69.171.242.13
the thing these sites have visited earlier (eg ubuntu forums, email account etc, not facebook). reiterate, netstat not show active connections , firefox not running. don't have google toolbars installed, use scroogle ssl searches. cookies disabled , have noscript , betterprivacy addons installed.

deduce list of sites had visited earlier in day running wireshark. have idea of why happening. normal?

i'm going take wild guess , default browser firefox, , same browser set default in wireshark. sound right?

if so. know firefox "updates" dns cache sites visit every often. if firefox set default wireshark browser stilll continue being firefox.

hope helps.


Forum The Ubuntu Forum Community Ubuntu Specialised Support Security [ubuntu] Wireshark showing multiple DNS queries despite no active connections


Ubuntu

Comments

Popular posts from this blog

How to set the order of FAQs instead of alphabetical

Thread: Get UK Keyboard working

how do I change the e-mail address for my merchant account