Random DNS Queries?

While sifting through my DNS query log, I came across these highly suspicious DNS queries:

query[A] urjhyay.local
query[A] tadzwrawzpuqdc.local
query[A] fgrxhztwffv.local
query[A] tadzwrawzpuqdc.local
query[A] urjhyay.local
query[A] fgrxhztwffv.local
query[A] qieosgbvzzhtt.local
query[A] qdjpfwezir.local
query[A] kzqwcaaq.local
query[A] qdjpfwezir.local
query[A] kzqwcaaq.local
query[A] qieosgbvzzhtt.local
query[A] prhwndine.local

While this looks like something maleware-ish, I found a plausible explaination for this weirdness, it seems to be related to the chrome browser:

Among those requests Chrome also tries to find out if someone is messing up with the DNS (i.e. “nasty”ISPs that have wildcard DNS servers to catch all domains). Chrome does this by issuing 3 DNS requests to randomly generated domain names, for every DNS extension configured.

Advertisements

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s