fli4l 3.2.2 # tcpdump -ns1550 -iany port 53 -vv
tcpdump: WARNING: Promiscuous mode not supported on the "any" device
tcpdump: listening on any, link-type LINUX_SLL (Linux cooked), capture size 1550 bytes
18:50:14.989831 IP (tos 0x0, ttl 128, id 26835, offset 0, flags [none], proto: UDP (17), length: 75) 192.168.115.122.60350 > 192.168.115.5.53: [udp sum ok] 50874+ A? pagead2.googlesyndication.com. (47)
18:50:14.991777 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 75) 79.215.115.95.5958 > 217.0.43.81.53: [udp sum ok] 63500+ A? pagead2.googlesyndication.com. (47)
18:50:15.466438 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 169) 217.0.43.81.53 > 79.215.115.95.5958: [udp sum ok] 63500 q: A? pagead2.googlesyndication.com. 5/0/0 pagead2.googlesyndication.com. CNAME pagead.l.google.com., pagead.l.google.com. A 209.85.135.166, pagead.l.google.com. A 209.85.135.167, pagead.l.google.com. A 209.85.135.165, pagead.l.google.com. A 209.85.135.164 (141)
18:50:15.467783 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 169) 192.168.115.5.53 > 192.168.115.122.60350: [udp sum ok] 50874 q: A? pagead2.googlesyndication.com. 5/0/0 pagead2.googlesyndication.com. CNAME pagead.l.google.com., pagead.l.google.com. A 209.85.135.166, pagead.l.google.com. A 209.85.135.167, pagead.l.google.com. A 209.85.135.165, pagead.l.google.com. A 209.85.135.164 (141)
18:50:15.470044 IP (tos 0x0, ttl 128, id 26913, offset 0, flags [none], proto: UDP (17), length: 75) 192.168.115.122.50391 > 192.168.115.5.53: [udp sum ok] 12112+ AAAA? pagead2.googlesyndication.com. (47)
18:50:15.472016 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 75) 79.215.115.95.18708 > 217.0.43.81.53: [udp sum ok] 3817+ AAAA? pagead2.googlesyndication.com. (47)
18:50:15.933937 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 155) 217.0.43.81.53 > 79.215.115.95.18708: [udp sum ok] 3817 q: AAAA? pagead2.googlesyndication.com. 1/1/0 pagead2.googlesyndication.com. CNAME pagead.l.google.com. ns: l.google.com. SOA ns1.google.com. dns-admin.google.com. 1417314 900 900 1800 60 (127)
18:50:15.934812 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 155) 192.168.115.5.53 > 192.168.115.122.50391: [udp sum ok] 12112 q: AAAA? pagead2.googlesyndication.com. 1/1/0 pagead2.googlesyndication.com. CNAME pagead.l.google.com. ns: l.google.com. SOA ns1.google.com. dns-admin.google.com. 1417314 900 900 1800 60 (127)
18:50:16.720806 IP (tos 0x0, ttl 128, id 27134, offset 0, flags [none], proto: UDP (17), length: 73) 192.168.115.122.58107 > 192.168.115.5.53: [udp sum ok] 6886+ A? googleads.g.doubleclick.net. (45)
18:50:16.721747 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 73) 79.215.115.95.47407 > 217.0.43.81.53: [udp sum ok] 21051+ A? googleads.g.doubleclick.net. (45)
18:50:17.104051 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 160) 217.0.43.81.53 > 79.215.115.95.47407: [udp sum ok] 21051 q: A? googleads.g.doubleclick.net. 5/0/0 googleads.g.doubleclick.net. CNAME pagead.l.doubleclick.net., pagead.l.doubleclick.net. A 209.85.135.155, pagead.l.doubleclick.net. A 209.85.135.156, pagead.l.doubleclick.net. A 209.85.135.157, pagead.l.doubleclick.net. A 209.85.135.154 (132)
18:50:17.106774 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 160) 192.168.115.5.53 > 192.168.115.122.58107: [udp sum ok] 6886 q: A? googleads.g.doubleclick.net. 5/0/0 googleads.g.doubleclick.net. CNAME pagead.l.doubleclick.net., pagead.l.doubleclick.net. A 209.85.135.155, pagead.l.doubleclick.net. A 209.85.135.156, pagead.l.doubleclick.net. A 209.85.135.157, pagead.l.doubleclick.net. A 209.85.135.154 (132)
18:50:17.107843 IP (tos 0x0, ttl 128, id 27211, offset 0, flags [none], proto: UDP (17), length: 73) 192.168.115.122.52660 > 192.168.115.5.53: [udp sum ok] 37527+ AAAA? googleads.g.doubleclick.net. (45)
18:50:17.109209 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 73) 79.215.115.95.40142 > 217.0.43.81.53: [udp sum ok] 33378+ AAAA? googleads.g.doubleclick.net. (45)
18:50:17.560773 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 156) 217.0.43.81.53 > 79.215.115.95.40142: [udp sum ok] 33378 q: AAAA? googleads.g.doubleclick.net. 1/1/0 googleads.g.doubleclick.net. CNAME pagead.l.doubleclick.net. ns: l.doubleclick.net. SOA ns1.google.com. dns-admin.google.com. 1417315 21600 3600 1209600 300 (128)
18:50:17.561653 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 156) 192.168.115.5.53 > 192.168.115.122.52660: [udp sum ok] 37527 q: AAAA? googleads.g.doubleclick.net. 1/1/0 googleads.g.doubleclick.net. CNAME pagead.l.doubleclick.net. ns: l.doubleclick.net. SOA ns1.google.com. dns-admin.google.com. 1417315 21600 3600 1209600 300 (128)
18:50:18.763861 IP (tos 0x0, ttl 128, id 27559, offset 0, flags [none], proto: UDP (17), length: 60) 192.168.115.122.60226 > 192.168.115.5.53: [udp sum ok] 18157+ A? www.google.com. (32)
18:50:18.764978 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 60) 79.215.115.95.20273 > 217.0.43.81.53: [udp sum ok] 33253+ A? www.google.com. (32)
18:50:19.226309 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 176) 217.0.43.81.53 > 79.215.115.95.20273: [udp sum ok] 33253 q: A? www.google.com. 7/0/0 www.google.com. CNAME www.l.google.com., www.l.google.com. A 209.85.135.105, www.l.google.com. A 209.85.135.147, www.l.google.com. A 209.85.135.106, www.l.google.com. A 209.85.135.103, www.l.google.com. A 209.85.135.104, www.l.google.com. A 209.85.135.99 (148)
18:50:19.227839 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 176) 192.168.115.5.53 > 192.168.115.122.60226: [udp sum ok] 18157 q: A? www.google.com. 7/0/0 www.google.com. CNAME www.l.google.com., www.l.google.com. A 209.85.135.105, www.l.google.com. A 209.85.135.147, www.l.google.com. A 209.85.135.106, www.l.google.com. A 209.85.135.103, www.l.google.com. A 209.85.135.104, www.l.google.com. A 209.85.135.99 (148)
18:50:19.228720 IP (tos 0x0, ttl 128, id 27642, offset 0, flags [none], proto: UDP (17), length: 60) 192.168.115.122.64188 > 192.168.115.5.53: [udp sum ok] 60423+ AAAA? www.google.com. (32)
18:50:19.232203 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 60) 79.215.115.95.43804 > 217.0.43.81.53: [udp sum ok] 4008+ AAAA? www.google.com. (32)
18:50:19.718565 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 130) 217.0.43.81.53 > 79.215.115.95.43804: [udp sum ok] 4008 q: AAAA? www.google.com. 1/1/0 www.google.com. CNAME www.l.google.com. ns: l.google.com. SOA ns2.google.com. dns-admin.google.com. 1417315 900 900 1800 60 (102)
18:50:19.719394 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 130) 192.168.115.5.53 > 192.168.115.122.64188: [udp sum ok] 60423 q: AAAA? www.google.com. 1/1/0 www.google.com. CNAME www.l.google.com. ns: l.google.com. SOA ns2.google.com. dns-admin.google.com. 1417315 900 900 1800 60 (102)
18:53:26.144677 IP (tos 0x0, ttl 128, id 27217, offset 0, flags [none], proto: UDP (17), length: 77) 192.168.115.122.52996 > 192.168.115.5.53: [udp sum ok] 8551+ A? safebrowsing.clients.google.com. (49)
18:53:26.145619 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 77) 79.215.115.95.22820 > 217.0.43.81.53: [udp sum ok] 55906+ A? safebrowsing.clients.google.com. (49)
18:53:26.547423 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 197) 217.0.43.81.53 > 79.215.115.95.22820: [udp sum ok] 55906 q: A? safebrowsing.clients.google.com. 7/0/0 safebrowsing.clients.google.com. CNAME clients.l.google.com., clients.l.google.com. A 74.125.43.102, clients.l.google.com. A 74.125.43.101, clients.l.google.com. A 74.125.43.138, clients.l.google.com. A 74.125.43.113, clients.l.google.com. A 74.125.43.139, clients.l.google.com. A 74.125.43.100 (169)
18:53:26.549008 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 197) 192.168.115.5.53 > 192.168.115.122.52996: [udp sum ok] 8551 q: A? safebrowsing.clients.google.com. 7/0/0 safebrowsing.clients.google.com. CNAME clients.l.google.com., clients.l.google.com. A 74.125.43.102, clients.l.google.com. A 74.125.43.101, clients.l.google.com. A 74.125.43.138, clients.l.google.com. A 74.125.43.113, clients.l.google.com. A 74.125.43.139, clients.l.google.com. A 74.125.43.100 (169)
18:53:26.549819 IP (tos 0x0, ttl 128, id 27311, offset 0, flags [none], proto: UDP (17), length: 77) 192.168.115.122.61378 > 192.168.115.5.53: [udp sum ok] 53788+ AAAA? safebrowsing.clients.google.com. (49)
18:53:26.553346 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 77) 79.215.115.95.46220 > 217.0.43.81.53: [udp sum ok] 10936+ AAAA? safebrowsing.clients.google.com. (49)
18:53:26.955976 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 151) 217.0.43.81.53 > 79.215.115.95.46220: [udp sum ok] 10936 q: AAAA? safebrowsing.clients.google.com. 1/1/0 safebrowsing.clients.google.com. CNAME clients.l.google.com. ns: l.google.com. SOA ns3.google.com. dns-admin.google.com. 1417315 900 900 1800 60 (123)
18:53:26.956553 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 151) 192.168.115.5.53 > 192.168.115.122.61378: [udp sum ok] 53788 q: AAAA? safebrowsing.clients.google.com. 1/1/0 safebrowsing.clients.google.com. CNAME clients.l.google.com. ns: l.google.com. SOA ns3.google.com. dns-admin.google.com. 1417315 900 900 1800 60 (123)
18:53:27.868544 IP (tos 0x0, ttl 128, id 27534, offset 0, flags [none], proto: UDP (17), length: 75) 192.168.115.122.59323 > 192.168.115.5.53: [udp sum ok] 51815+ A? safebrowsing-cache.google.com. (47)
18:53:27.869521 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 75) 79.215.115.95.25865 > 217.0.43.81.53: [udp sum ok] 38716+ A? safebrowsing-cache.google.com. (47)
18:53:28.291852 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 126) 217.0.43.81.53 > 79.215.115.95.25865: [udp sum ok] 38716 q: A? safebrowsing-cache.google.com. 2/0/0 safebrowsing-cache.google.com. CNAME safebrowsing.cache.l.google.com., safebrowsing.cache.l.google.com. A 74.125.162.16 (98)
18:53:28.292716 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 126) 192.168.115.5.53 > 192.168.115.122.59323: [udp sum ok] 51815 q: A? safebrowsing-cache.google.com. 2/0/0 safebrowsing-cache.google.com. CNAME safebrowsing.cache.l.google.com., safebrowsing.cache.l.google.com. A 74.125.162.16 (98)
18:53:28.293797 IP (tos 0x0, ttl 128, id 27615, offset 0, flags [none], proto: UDP (17), length: 75) 192.168.115.122.60562 > 192.168.115.5.53: [udp sum ok] 45156+ AAAA? safebrowsing-cache.google.com. (47)
18:53:28.295092 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 75) 79.215.115.95.32215 > 217.0.43.81.53: [udp sum ok] 18997+ AAAA? safebrowsing-cache.google.com. (47)
18:53:28.731820 IP (tos 0x0, ttl 60, id 0, offset 0, flags [DF], proto: UDP (17), length: 160) 217.0.43.81.53 > 79.215.115.95.32215: [udp sum ok] 18997 q: AAAA? safebrowsing-cache.google.com. 1/1/0 safebrowsing-cache.google.com. CNAME safebrowsing.cache.l.google.com. ns: l.google.com. SOA ns3.google.com. dns-admin.google.com. 1417315 900 900 1800 60 (132)
18:53:28.732809 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto: UDP (17), length: 160) 192.168.115.5.53 > 192.168.115.122.60562: [udp sum ok] 45156 q: AAAA? safebrowsing-cache.google.com. 1/1/0 safebrowsing-cache.google.com. CNAME safebrowsing.cache.l.google.com. ns: l.google.com. SOA ns3.google.com. dns-admin.google.com. 1417315 900 900 1800 60 (132)
...
usw. usw.